
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
YesSearches.com
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
YesSearches.com
Dobrý večer, nevědomky jsem si to PC nainstaloval tento program YesSearches.com a bojím se, že po něm stále něco zůstalo v počítači.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Michael at 2016-03-02 19:48:25
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 88 GB (31%) free of 286 GB
Total RAM: 3982 MB (39% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:48:32, on 2.3.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18205)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Windows\SysWOW64\ACEngSvr.exe
C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe
C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
C:\Program Files\trend micro\Michael.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HPUsageTracking] C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe "C:\Program Files (x86)\HP\HP UT\"
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Unknown owner - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (file missing)
O23 - Service: Bluetooth Device Monitor - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 12420 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\igfxCUIService.exe
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
/QuitInfo:0000000000000214;0000000000000218; /AddRef;
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
C:\Windows\system32\WLANExt.exe 39510416
\??\C:\Windows\system32\conhost.exe "-822891427307007154-188030771314967907221385859711-219412569-541686038-287747589
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
taskeng.exe {D6B5D60A-FCBE-4BB1-897E-432E4401F197}
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
WLIDSvcM.exe 2632
"taskhost.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
ATKOSD.exe
KBFiltr.exe
WDC.exe
"C:\Windows\system32\spool\DRIVERS\x64\3\HP1006MC.EXE" -Embedding
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
taskeng.exe {C8E47707-CA79-46AD-AA08-B896CDC9E11A}
/QuitInfo:00000000000007C8;00000000000007CC; /AddRef;
/QuitInfo:00000000000007BC;00000000000007D4;
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x64\QuickGesture64.exe"
taskeng.exe {58190ACD-C9D8-497E-AA12-9C86FCC0A0EE}
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
/loadhooks /Parent:0000000000001210
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
C:\Windows\system32\sppsvc.exe
\??\C:\Windows\system32\conhost.exe "-2103159507-2017203748972525152-1958191512-1120533315144195887846751546165210479
C:\Windows\SysWOW64\ACEngSvr.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe" --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller winlogon
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe" --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\Windows\system32\SearchIndexer.exe /Embedding
igfxEM.exe
igfxHK.exe
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe"
igfxTray.exe
"C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe" "C:\Program Files (x86)\HP\HP UT\"
"C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDGesture.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe" -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\system32\SearchFilterHost.exe" 0 528 532 540 65536 536
"C:\Users\Michael\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job - C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller winlogon-impersonate
C:\Windows\tasks\SlimCleaner Plus (Scheduled Scan - Michael).job - C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe /doScheduledScan
C:\Windows\tasks\SlimDrivers Startup.job - C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe -boot
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-03-17 553384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-02-03 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-03-17 210856]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-02-03 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 441216]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2011-12-20 11406608]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-07-25 2403104]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2014-07-25 1283136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACMON]
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2012-02-07 102568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13 1085656]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2015-09-24 40336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2012-08-06 3058304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2012-02-24 3331312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2010-08-20 107816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ETDCtrl]
C:\Program Files\Elantech\ETDCtrl.exe [2012-02-19 2661672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-08-01 152392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-02-21 12452456]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-02-07 291608]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2011-12-23 318080]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2011-10-25 174720]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"Wireless Console 3"=C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2011-10-19 2319536]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-07-31 43816]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-02-16 7139768]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-08-01 152392]
""= []
"HPUsageTracking"=C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe [2009-05-11 24576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\System32\nvinitx.dll,C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"vidc.ffds"=ff_vfw.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2016-03-02 19:48:25 ----D---- C:\rsit
2016-03-02 19:37:56 ----A---- C:\vir.txt
2016-03-02 18:56:32 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2016-03-02 18:55:28 ----D---- C:\ProgramData\Malwarebytes
2016-03-02 18:55:28 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mwac.sys
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mbam.sys
2016-03-02 18:02:54 ----D---- C:\extensions
2016-03-02 18:01:49 ----D---- C:\Users\Michael\AppData\Roaming\Opera Software
2016-02-29 23:21:03 ----D---- C:\Program Files (x86)\SlimDrivers
2016-02-29 22:55:16 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2016-02-29 22:55:16 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-02-29 22:55:16 ----A---- C:\Windows\system32\ucrtbase.dll
2016-02-29 22:55:16 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-02-29 22:55:12 ----A---- C:\Windows\system32\icaapi.dll
2016-02-29 22:55:12 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2016-02-29 22:54:44 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\iernonce.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\inseng.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\ie4uinit.exe
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\occache.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-02-11 16:53:40 ----A---- C:\Windows\system32\msfeeds.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\iedkcs32.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\dxtrans.dll
2016-02-11 16:53:39 ----A---- C:\Windows\system32\iesetup.dll
2016-02-11 16:53:39 ----A---- C:\Windows\system32\ieapfltr.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-02-11 16:53:38 ----A---- C:\Windows\system32\vbscript.dll
2016-02-11 16:53:38 ----A---- C:\Windows\system32\jsproxy.dll
2016-02-11 16:53:37 ----A---- C:\Windows\system32\mshtmled.dll
2016-02-11 16:53:37 ----A---- C:\Windows\system32\dxtmsft.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\wininet.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\webcheck.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript9diag.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript9.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript.dll
2016-02-11 16:53:35 ----A---- C:\Windows\system32\msrating.dll
2016-02-11 16:53:35 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-02-11 16:47:37 ----A---- C:\Windows\system32\wuaueng.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuwebv.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wups2.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wups.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wudriver.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wucltux.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuauclt.exe
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuapp.exe
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuapi.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\rdpudd.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\rdpcorets.dll
2016-02-11 16:47:20 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-02-11 16:47:20 ----A---- C:\Windows\system32\EncDec.dll
2016-02-11 16:47:20 ----A---- C:\Windows\system32\CPFilters.dll
2016-02-11 16:47:19 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-02-11 16:47:19 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-02-11 16:47:18 ----A---- C:\Windows\system32\ntdll.dll
2016-02-11 16:47:16 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-02-11 16:47:16 ----A---- C:\Windows\system32\KernelBase.dll
2016-02-11 16:47:15 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-02-11 16:47:15 ----A---- C:\Windows\system32\mtxoci.dll
2016-02-11 16:47:15 ----A---- C:\Windows\system32\kerberos.dll
2016-02-11 16:47:13 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-02-11 16:47:13 ----A---- C:\Windows\system32\kernel32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\system32\advapi32.dll
2016-02-11 16:47:11 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-02-11 16:47:11 ----A---- C:\Windows\system32\lsasrv.dll
2016-02-11 16:47:11 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-02-11 16:47:11 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-02-11 16:47:10 ----A---- C:\Windows\system32\rpcrt4.dll
2016-02-11 16:47:09 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\winsrv.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\TSpkg.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\smss.exe
2016-02-11 16:47:09 ----A---- C:\Windows\system32\schannel.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\ncrypt.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\msv1_0.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-02-11 16:47:09 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wow64win.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wow64.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wdigest.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\sspisrv.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\sspicli.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\srcore.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\cryptbase.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\conhost.exe
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\wow64cpu.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\srclient.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\secur32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\rstrui.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\ntvdm64.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\lsass.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-02-11 16:47:07 ----A---- C:\Windows\system32\csrsrv.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\credssp.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\auditpol.exe
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-11 16:47:05 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-02-11 16:47:05 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-02-11 16:47:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-02-11 16:47:04 ----A---- C:\Windows\SYSWOW64\user.exe
2016-02-11 16:47:04 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-02-11 16:47:04 ----A---- C:\Windows\system32\apisetschema.dll
2016-02-11 16:47:04 ----A---- C:\Windows\system32\adtschema.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-02-11 16:47:03 ----A---- C:\Windows\system32\msobjs.dll
2016-02-11 16:47:03 ----A---- C:\Windows\system32\msaudite.dll
2016-02-11 16:45:52 ----A---- C:\Windows\system32\shell32.dll
2016-02-11 16:45:50 ----A---- C:\Windows\explorer.exe
2016-02-11 16:45:49 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-02-11 16:45:48 ----A---- C:\Windows\SYSWOW64\explorer.exe
2016-02-11 16:45:48 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-02-11 16:45:47 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-02-11 16:45:47 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-02-11 16:45:47 ----A---- C:\Windows\system32\authui.dll
2016-02-11 16:45:17 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2016-02-11 16:45:17 ----A---- C:\Windows\system32\jnwmon.dll
2016-02-11 16:45:17 ----A---- C:\Windows\system32\InkEd.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\generaltel.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\appraiser.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\aeinv.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\invagent.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\devinv.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-02-11 16:45:09 ----A---- C:\Windows\system32\acmigration.dll
2016-02-11 16:45:02 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-02-11 16:45:02 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-02-11 16:45:02 ----A---- C:\Windows\system32\iertutil.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-02-11 16:45:00 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-02-11 16:45:00 ----A---- C:\Windows\system32\urlmon.dll
2016-02-11 16:45:00 ----A---- C:\Windows\system32\ieui.dll
2016-02-11 16:45:00 ----A---- C:\Windows\system32\ieframe.dll
2016-02-11 16:44:59 ----A---- C:\Windows\system32\mshtml.dll
2016-02-11 16:44:59 ----A---- C:\Windows\system32\ieUnatt.exe
2016-02-11 16:40:26 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-02-11 16:40:23 ----A---- C:\Windows\system32\win32k.sys
2016-02-11 16:38:31 ----A---- C:\Windows\system32\ole32.dll
2016-02-11 16:38:22 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-02-03 16:42:31 ----A---- C:\Windows\system32\drivers\aswKbd.sys
2016-02-03 16:42:11 ----A---- C:\Windows\system32\aswBoot.exe
2016-02-03 16:42:01 ----A---- C:\Windows\avastSS.scr
======List of files/folders modified in the last 1 month======
2016-03-02 19:48:30 ----D---- C:\Windows\temp
2016-03-02 19:48:30 ----D---- C:\Program Files\trend micro
2016-03-02 19:43:48 ----A---- C:\Windows\SYSWOW64\log.txt
2016-03-02 19:43:21 ----D---- C:\Windows\system32\drivers
2016-03-02 19:42:54 ----A---- C:\Windows\system32\ServiceFilter.ini
2016-03-02 19:42:41 ----D---- C:\Windows\system32\config
2016-03-02 18:55:28 ----RD---- C:\Program Files (x86)
2016-03-02 18:55:28 ----D---- C:\ProgramData
2016-03-02 18:45:13 ----D---- C:\Windows
2016-03-02 18:43:53 ----D---- C:\Windows\system32\Tasks
2016-03-02 18:43:53 ----D---- C:\AdwCleaner
2016-03-02 18:36:14 ----D---- C:\Users\Michael\AppData\Roaming\uTorrent
2016-03-02 18:36:14 ----D---- C:\Program Files (x86)\Steam
2016-03-02 18:35:56 ----D---- C:\Windows\inf
2016-03-02 18:35:56 ----D---- C:\Windows\debug
2016-03-02 18:35:56 ----AD---- C:\Windows\Minidump
2016-03-02 18:21:40 ----D---- C:\Program Files (x86)\Common Files
2016-03-02 18:21:31 ----RSD---- C:\Windows\assembly
2016-03-02 18:17:44 ----SHD---- C:\Windows\Installer
2016-03-02 18:17:41 ----SHD---- C:\Config.Msi
2016-03-02 18:17:40 ----D---- C:\Program Files
2016-03-02 18:17:18 ----SHD---- C:\System Volume Information
2016-03-02 18:12:12 ----A---- C:\Windows\system32\AutoRunFilter.ini
2016-03-02 17:33:33 ----D---- C:\Windows\Tasks
2016-03-02 17:31:07 ----D---- C:\Windows\Prefetch
2016-02-29 23:09:32 ----D---- C:\Windows\System32
2016-02-29 23:09:27 ----A---- C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-02-29 23:09:04 ----D---- C:\Windows\SYSWOW64\NV
2016-02-29 23:09:04 ----D---- C:\Windows\system32\NV
2016-02-29 23:08:47 ----D---- C:\Windows\winsxs
2016-02-29 23:08:01 ----D---- C:\Windows\SysWOW64
2016-02-29 23:07:12 ----D---- C:\Windows\system32\catroot
2016-02-29 23:01:37 ----D---- C:\Windows\system32\DriverStore
2016-02-29 22:53:50 ----D---- C:\Windows\system32\catroot2
2016-02-28 16:45:26 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-02-28 11:56:07 ----SD---- C:\Windows\SYSWOW64\GWX
2016-02-28 11:56:07 ----SD---- C:\Windows\system32\GWX
2016-02-12 19:32:52 ----D---- C:\Windows\rescache
2016-02-12 18:38:56 ----D---- C:\Windows\Microsoft.NET
2016-02-12 14:04:42 ----D---- C:\Program Files\Windows Journal
2016-02-12 14:04:39 ----SD---- C:\Windows\system32\CompatTel
2016-02-12 14:04:39 ----D---- C:\Windows\system32\appraiser
2016-02-12 14:04:37 ----D---- C:\Windows\AppPatch
2016-02-12 14:04:37 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-12 14:04:36 ----D---- C:\Windows\SYSWOW64\en-US
2016-02-12 14:04:36 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-02-12 14:04:36 ----D---- C:\Windows\system32\cs-CZ
2016-02-12 14:04:36 ----D---- C:\Program Files\Internet Explorer
2016-02-12 14:04:35 ----D---- C:\Windows\system32\en-US
2016-02-12 14:03:45 ----D---- C:\Windows\cs-CZ
2016-02-12 13:03:40 ----D---- C:\Windows\system32\MRT
2016-02-12 12:52:50 ----A---- C:\Windows\system32\MRT.exe
2016-02-10 18:41:24 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-02-03 16:42:07 ----D---- C:\ProgramData\AVAST Software
2016-02-03 16:41:55 ----D---- C:\Program Files\AVAST Software
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-02-03 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-02-10 287016]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-12-23 568600]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-02-07 16152]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2015-08-25 31352]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-02-03 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-02-03 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-02-03 1065720]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-02-23 463744]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-02-03 37656]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-02-03 107792]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-02-03 165344]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2015-02-08 314016]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2015-02-08 43680]
R3 AiCharger;ASUS Charger Driver; C:\Windows\system32\DRIVERS\AiCharger.sys [2012-01-30 17152]
R3 AMPPAL;Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter; C:\Windows\system32\DRIVERS\AMPPAL.sys [2012-01-09 195584]
R3 AsusVBus;AsusVBus; C:\Windows\system32\DRIVERS\AsusVBus.sys [2012-04-11 35968]
R3 AsusVTouch;AsusVTouch; C:\Windows\system32\DRIVERS\AsusVTouch.sys [2012-04-11 16512]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2012-02-19 200488]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-08-27 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-03-06 4763112]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-02-07 356120]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-02-07 787736]
R3 iwdbus;IWD Bus Enumerator; C:\Windows\system32\DRIVERS\iwdbus.sys [2011-12-21 25496]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2016-03-02 192216]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-10-05 63704]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-08-06 62784]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2012-01-09 11416576]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-07-25 20256]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSBASTOR;Realtek PCIE CardReader Driver - BA; C:\Windows\system32\DRIVERS\RtsBaStor.sys [2011-12-28 292456]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys []
S3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
S3 AMPPALP;Intel® Centrino® Wireless Bluetooth® + High Speed Protocol; C:\Windows\system32\DRIVERS\amppal.sys [2012-01-09 195584]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2012-02-24 80384]
S3 btmaux;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2011-12-13 94720]
S3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [2011-12-13 747008]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2011-05-14 48488]
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
S3 ibtfltcoex;ibtfltcoex; C:\Windows\system32\DRIVERS\iBtFltCoex.sys [2011-12-14 60416]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2011-12-21 34200]
S3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20); C:\Windows\system32\DRIVERS\L1C62x64.sys [2009-06-10 57344]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2011-03-04 379520]
R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2012-01-09 659968]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2011-11-21 80512]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-02-03 237096]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2011-12-20 1014096]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2011-12-20 1104208]
R2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-01-12 135952]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-12-08 618256]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2015-08-27 330136]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-03 628448]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-02-21 128280]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-21 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-29 277784]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-07-25 1720608]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-07-25 18956064]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-08-25 937776]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-12-08 148752]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-29 363800]
R3 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-06-12 43336]
R3 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [2012-04-13 277120]
R3 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2011-12-20 1304912]
R3 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-08-01 641352]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10 269504]
S3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe []
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2015-08-27 291744]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2011-05-14 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-01-22 114688]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-12-08 273168]
S3 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-10-16 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Michael at 2016-03-02 19:48:25
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 88 GB (31%) free of 286 GB
Total RAM: 3982 MB (39% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:48:32, on 2.3.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18205)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Windows\SysWOW64\ACEngSvr.exe
C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe
C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
C:\Program Files\trend micro\Michael.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HPUsageTracking] C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe "C:\Program Files (x86)\HP\HP UT\"
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Unknown owner - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (file missing)
O23 - Service: Bluetooth Device Monitor - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 12420 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\igfxCUIService.exe
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
/QuitInfo:0000000000000214;0000000000000218; /AddRef;
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
C:\Windows\system32\WLANExt.exe 39510416
\??\C:\Windows\system32\conhost.exe "-822891427307007154-188030771314967907221385859711-219412569-541686038-287747589
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
taskeng.exe {D6B5D60A-FCBE-4BB1-897E-432E4401F197}
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
WLIDSvcM.exe 2632
"taskhost.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
ATKOSD.exe
KBFiltr.exe
WDC.exe
"C:\Windows\system32\spool\DRIVERS\x64\3\HP1006MC.EXE" -Embedding
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
taskeng.exe {C8E47707-CA79-46AD-AA08-B896CDC9E11A}
/QuitInfo:00000000000007C8;00000000000007CC; /AddRef;
/QuitInfo:00000000000007BC;00000000000007D4;
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x64\QuickGesture64.exe"
taskeng.exe {58190ACD-C9D8-497E-AA12-9C86FCC0A0EE}
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
/loadhooks /Parent:0000000000001210
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
C:\Windows\system32\sppsvc.exe
\??\C:\Windows\system32\conhost.exe "-2103159507-2017203748972525152-1958191512-1120533315144195887846751546165210479
C:\Windows\SysWOW64\ACEngSvr.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe" --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller winlogon
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe" --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\Windows\system32\SearchIndexer.exe /Embedding
igfxEM.exe
igfxHK.exe
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe"
igfxTray.exe
"C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe" "C:\Program Files (x86)\HP\HP UT\"
"C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDGesture.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe" -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\system32\SearchFilterHost.exe" 0 528 532 540 65536 536
"C:\Users\Michael\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job - C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller winlogon-impersonate
C:\Windows\tasks\SlimCleaner Plus (Scheduled Scan - Michael).job - C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe /doScheduledScan
C:\Windows\tasks\SlimDrivers Startup.job - C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe -boot
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-03-17 553384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-02-03 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-03-17 210856]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-02-03 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 441216]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2011-12-20 11406608]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-07-25 2403104]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2014-07-25 1283136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACMON]
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2012-02-07 102568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13 1085656]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2015-09-24 40336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2012-08-06 3058304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2012-02-24 3331312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2010-08-20 107816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ETDCtrl]
C:\Program Files\Elantech\ETDCtrl.exe [2012-02-19 2661672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-08-01 152392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-02-21 12452456]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-02-07 291608]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2011-12-23 318080]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2011-10-25 174720]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"Wireless Console 3"=C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2011-10-19 2319536]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-07-31 43816]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-02-16 7139768]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-08-01 152392]
""= []
"HPUsageTracking"=C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe [2009-05-11 24576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\System32\nvinitx.dll,C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"vidc.ffds"=ff_vfw.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2016-03-02 19:48:25 ----D---- C:\rsit
2016-03-02 19:37:56 ----A---- C:\vir.txt
2016-03-02 18:56:32 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2016-03-02 18:55:28 ----D---- C:\ProgramData\Malwarebytes
2016-03-02 18:55:28 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mwac.sys
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mbam.sys
2016-03-02 18:02:54 ----D---- C:\extensions
2016-03-02 18:01:49 ----D---- C:\Users\Michael\AppData\Roaming\Opera Software
2016-02-29 23:21:03 ----D---- C:\Program Files (x86)\SlimDrivers
2016-02-29 22:55:16 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2016-02-29 22:55:16 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-02-29 22:55:16 ----A---- C:\Windows\system32\ucrtbase.dll
2016-02-29 22:55:16 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-02-29 22:55:12 ----A---- C:\Windows\system32\icaapi.dll
2016-02-29 22:55:12 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2016-02-29 22:54:44 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\iernonce.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\inseng.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\ie4uinit.exe
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\occache.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-02-11 16:53:40 ----A---- C:\Windows\system32\msfeeds.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\iedkcs32.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\dxtrans.dll
2016-02-11 16:53:39 ----A---- C:\Windows\system32\iesetup.dll
2016-02-11 16:53:39 ----A---- C:\Windows\system32\ieapfltr.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-02-11 16:53:38 ----A---- C:\Windows\system32\vbscript.dll
2016-02-11 16:53:38 ----A---- C:\Windows\system32\jsproxy.dll
2016-02-11 16:53:37 ----A---- C:\Windows\system32\mshtmled.dll
2016-02-11 16:53:37 ----A---- C:\Windows\system32\dxtmsft.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\wininet.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\webcheck.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript9diag.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript9.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript.dll
2016-02-11 16:53:35 ----A---- C:\Windows\system32\msrating.dll
2016-02-11 16:53:35 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-02-11 16:47:37 ----A---- C:\Windows\system32\wuaueng.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuwebv.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wups2.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wups.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wudriver.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wucltux.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuauclt.exe
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuapp.exe
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuapi.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\rdpudd.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\rdpcorets.dll
2016-02-11 16:47:20 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-02-11 16:47:20 ----A---- C:\Windows\system32\EncDec.dll
2016-02-11 16:47:20 ----A---- C:\Windows\system32\CPFilters.dll
2016-02-11 16:47:19 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-02-11 16:47:19 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-02-11 16:47:18 ----A---- C:\Windows\system32\ntdll.dll
2016-02-11 16:47:16 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-02-11 16:47:16 ----A---- C:\Windows\system32\KernelBase.dll
2016-02-11 16:47:15 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-02-11 16:47:15 ----A---- C:\Windows\system32\mtxoci.dll
2016-02-11 16:47:15 ----A---- C:\Windows\system32\kerberos.dll
2016-02-11 16:47:13 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-02-11 16:47:13 ----A---- C:\Windows\system32\kernel32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\system32\advapi32.dll
2016-02-11 16:47:11 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-02-11 16:47:11 ----A---- C:\Windows\system32\lsasrv.dll
2016-02-11 16:47:11 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-02-11 16:47:11 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-02-11 16:47:10 ----A---- C:\Windows\system32\rpcrt4.dll
2016-02-11 16:47:09 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\winsrv.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\TSpkg.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\smss.exe
2016-02-11 16:47:09 ----A---- C:\Windows\system32\schannel.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\ncrypt.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\msv1_0.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-02-11 16:47:09 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wow64win.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wow64.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wdigest.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\sspisrv.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\sspicli.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\srcore.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\cryptbase.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\conhost.exe
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\wow64cpu.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\srclient.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\secur32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\rstrui.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\ntvdm64.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\lsass.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-02-11 16:47:07 ----A---- C:\Windows\system32\csrsrv.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\credssp.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\auditpol.exe
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-11 16:47:05 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-02-11 16:47:05 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-02-11 16:47:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-02-11 16:47:04 ----A---- C:\Windows\SYSWOW64\user.exe
2016-02-11 16:47:04 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-02-11 16:47:04 ----A---- C:\Windows\system32\apisetschema.dll
2016-02-11 16:47:04 ----A---- C:\Windows\system32\adtschema.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-02-11 16:47:03 ----A---- C:\Windows\system32\msobjs.dll
2016-02-11 16:47:03 ----A---- C:\Windows\system32\msaudite.dll
2016-02-11 16:45:52 ----A---- C:\Windows\system32\shell32.dll
2016-02-11 16:45:50 ----A---- C:\Windows\explorer.exe
2016-02-11 16:45:49 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-02-11 16:45:48 ----A---- C:\Windows\SYSWOW64\explorer.exe
2016-02-11 16:45:48 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-02-11 16:45:47 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-02-11 16:45:47 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-02-11 16:45:47 ----A---- C:\Windows\system32\authui.dll
2016-02-11 16:45:17 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2016-02-11 16:45:17 ----A---- C:\Windows\system32\jnwmon.dll
2016-02-11 16:45:17 ----A---- C:\Windows\system32\InkEd.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\generaltel.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\appraiser.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\aeinv.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\invagent.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\devinv.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-02-11 16:45:09 ----A---- C:\Windows\system32\acmigration.dll
2016-02-11 16:45:02 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-02-11 16:45:02 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-02-11 16:45:02 ----A---- C:\Windows\system32\iertutil.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-02-11 16:45:00 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-02-11 16:45:00 ----A---- C:\Windows\system32\urlmon.dll
2016-02-11 16:45:00 ----A---- C:\Windows\system32\ieui.dll
2016-02-11 16:45:00 ----A---- C:\Windows\system32\ieframe.dll
2016-02-11 16:44:59 ----A---- C:\Windows\system32\mshtml.dll
2016-02-11 16:44:59 ----A---- C:\Windows\system32\ieUnatt.exe
2016-02-11 16:40:26 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-02-11 16:40:23 ----A---- C:\Windows\system32\win32k.sys
2016-02-11 16:38:31 ----A---- C:\Windows\system32\ole32.dll
2016-02-11 16:38:22 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-02-03 16:42:31 ----A---- C:\Windows\system32\drivers\aswKbd.sys
2016-02-03 16:42:11 ----A---- C:\Windows\system32\aswBoot.exe
2016-02-03 16:42:01 ----A---- C:\Windows\avastSS.scr
======List of files/folders modified in the last 1 month======
2016-03-02 19:48:30 ----D---- C:\Windows\temp
2016-03-02 19:48:30 ----D---- C:\Program Files\trend micro
2016-03-02 19:43:48 ----A---- C:\Windows\SYSWOW64\log.txt
2016-03-02 19:43:21 ----D---- C:\Windows\system32\drivers
2016-03-02 19:42:54 ----A---- C:\Windows\system32\ServiceFilter.ini
2016-03-02 19:42:41 ----D---- C:\Windows\system32\config
2016-03-02 18:55:28 ----RD---- C:\Program Files (x86)
2016-03-02 18:55:28 ----D---- C:\ProgramData
2016-03-02 18:45:13 ----D---- C:\Windows
2016-03-02 18:43:53 ----D---- C:\Windows\system32\Tasks
2016-03-02 18:43:53 ----D---- C:\AdwCleaner
2016-03-02 18:36:14 ----D---- C:\Users\Michael\AppData\Roaming\uTorrent
2016-03-02 18:36:14 ----D---- C:\Program Files (x86)\Steam
2016-03-02 18:35:56 ----D---- C:\Windows\inf
2016-03-02 18:35:56 ----D---- C:\Windows\debug
2016-03-02 18:35:56 ----AD---- C:\Windows\Minidump
2016-03-02 18:21:40 ----D---- C:\Program Files (x86)\Common Files
2016-03-02 18:21:31 ----RSD---- C:\Windows\assembly
2016-03-02 18:17:44 ----SHD---- C:\Windows\Installer
2016-03-02 18:17:41 ----SHD---- C:\Config.Msi
2016-03-02 18:17:40 ----D---- C:\Program Files
2016-03-02 18:17:18 ----SHD---- C:\System Volume Information
2016-03-02 18:12:12 ----A---- C:\Windows\system32\AutoRunFilter.ini
2016-03-02 17:33:33 ----D---- C:\Windows\Tasks
2016-03-02 17:31:07 ----D---- C:\Windows\Prefetch
2016-02-29 23:09:32 ----D---- C:\Windows\System32
2016-02-29 23:09:27 ----A---- C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-02-29 23:09:04 ----D---- C:\Windows\SYSWOW64\NV
2016-02-29 23:09:04 ----D---- C:\Windows\system32\NV
2016-02-29 23:08:47 ----D---- C:\Windows\winsxs
2016-02-29 23:08:01 ----D---- C:\Windows\SysWOW64
2016-02-29 23:07:12 ----D---- C:\Windows\system32\catroot
2016-02-29 23:01:37 ----D---- C:\Windows\system32\DriverStore
2016-02-29 22:53:50 ----D---- C:\Windows\system32\catroot2
2016-02-28 16:45:26 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-02-28 11:56:07 ----SD---- C:\Windows\SYSWOW64\GWX
2016-02-28 11:56:07 ----SD---- C:\Windows\system32\GWX
2016-02-12 19:32:52 ----D---- C:\Windows\rescache
2016-02-12 18:38:56 ----D---- C:\Windows\Microsoft.NET
2016-02-12 14:04:42 ----D---- C:\Program Files\Windows Journal
2016-02-12 14:04:39 ----SD---- C:\Windows\system32\CompatTel
2016-02-12 14:04:39 ----D---- C:\Windows\system32\appraiser
2016-02-12 14:04:37 ----D---- C:\Windows\AppPatch
2016-02-12 14:04:37 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-12 14:04:36 ----D---- C:\Windows\SYSWOW64\en-US
2016-02-12 14:04:36 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-02-12 14:04:36 ----D---- C:\Windows\system32\cs-CZ
2016-02-12 14:04:36 ----D---- C:\Program Files\Internet Explorer
2016-02-12 14:04:35 ----D---- C:\Windows\system32\en-US
2016-02-12 14:03:45 ----D---- C:\Windows\cs-CZ
2016-02-12 13:03:40 ----D---- C:\Windows\system32\MRT
2016-02-12 12:52:50 ----A---- C:\Windows\system32\MRT.exe
2016-02-10 18:41:24 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-02-03 16:42:07 ----D---- C:\ProgramData\AVAST Software
2016-02-03 16:41:55 ----D---- C:\Program Files\AVAST Software
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-02-03 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-02-10 287016]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-12-23 568600]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-02-07 16152]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2015-08-25 31352]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-02-03 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-02-03 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-02-03 1065720]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-02-23 463744]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-02-03 37656]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-02-03 107792]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-02-03 165344]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2015-02-08 314016]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2015-02-08 43680]
R3 AiCharger;ASUS Charger Driver; C:\Windows\system32\DRIVERS\AiCharger.sys [2012-01-30 17152]
R3 AMPPAL;Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter; C:\Windows\system32\DRIVERS\AMPPAL.sys [2012-01-09 195584]
R3 AsusVBus;AsusVBus; C:\Windows\system32\DRIVERS\AsusVBus.sys [2012-04-11 35968]
R3 AsusVTouch;AsusVTouch; C:\Windows\system32\DRIVERS\AsusVTouch.sys [2012-04-11 16512]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2012-02-19 200488]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-08-27 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-03-06 4763112]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-02-07 356120]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-02-07 787736]
R3 iwdbus;IWD Bus Enumerator; C:\Windows\system32\DRIVERS\iwdbus.sys [2011-12-21 25496]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2016-03-02 192216]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-10-05 63704]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-08-06 62784]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2012-01-09 11416576]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-07-25 20256]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSBASTOR;Realtek PCIE CardReader Driver - BA; C:\Windows\system32\DRIVERS\RtsBaStor.sys [2011-12-28 292456]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys []
S3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
S3 AMPPALP;Intel® Centrino® Wireless Bluetooth® + High Speed Protocol; C:\Windows\system32\DRIVERS\amppal.sys [2012-01-09 195584]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2012-02-24 80384]
S3 btmaux;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2011-12-13 94720]
S3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [2011-12-13 747008]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2011-05-14 48488]
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
S3 ibtfltcoex;ibtfltcoex; C:\Windows\system32\DRIVERS\iBtFltCoex.sys [2011-12-14 60416]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2011-12-21 34200]
S3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20); C:\Windows\system32\DRIVERS\L1C62x64.sys [2009-06-10 57344]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2011-03-04 379520]
R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2012-01-09 659968]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2011-11-21 80512]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-02-03 237096]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2011-12-20 1014096]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2011-12-20 1104208]
R2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-01-12 135952]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-12-08 618256]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2015-08-27 330136]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-03 628448]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-02-21 128280]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-21 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-29 277784]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-07-25 1720608]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-07-25 18956064]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-08-25 937776]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-12-08 148752]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-29 363800]
R3 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-06-12 43336]
R3 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [2012-04-13 277120]
R3 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2011-12-20 1304912]
R3 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-08-01 641352]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10 269504]
S3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe []
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2015-08-27 291744]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2011-05-14 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-01-22 114688]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-12-08 273168]
S3 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-10-16 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: YesSearches.com
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: YesSearches.com
# AdwCleaner v5.025 - Logfile created 17/12/2015 at 12:56:13
# Updated 13/12/2015 by Xplode
# Database : 2015-12-13.2 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Michael - MICHAEL-PC
# Running from : C:\Users\Michael\Desktop\adwcleaner_5.025.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Value Deleted : HKCU\Software\Mozilla\Firefox\Extensions [{b64d9b05-48e1-4ceb-bf58-e0643994e900}]
***** [ Web browsers ] *****
[-] [C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : nikpibnbobmbdbheedjfogjlikpgpnhp
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [933 bytes] ##########
# AdwCleaner v5.037 - Logfile created 02/03/2016 at 21:08:06
# Updated 28/02/2016 by Xplode
# Database : 2016-03-02.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Michael - MICHAEL-PC
# Running from : C:\Users\Michael\Desktop\adwcleaner_5.037.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Users\Michael\AppData\Local\slimware utilities inc
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\SLIMWARE UTILITIES, INC.
[-] Key Deleted : HKLM\SOFTWARE\SlimWare Utilities Inc
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [2623 bytes] - [02/03/2016 18:43:53]
C:\AdwCleaner\AdwCleaner[C2].txt - [1988 bytes] - [17/12/2015 12:56:13]
C:\AdwCleaner\AdwCleaner[S1].txt - [2359 bytes] - [02/03/2016 18:42:39]
C:\AdwCleaner\AdwCleaner[S2].txt - [2075 bytes] - [17/12/2015 12:53:44]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [2207 bytes] ##########
# Updated 13/12/2015 by Xplode
# Database : 2015-12-13.2 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Michael - MICHAEL-PC
# Running from : C:\Users\Michael\Desktop\adwcleaner_5.025.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Value Deleted : HKCU\Software\Mozilla\Firefox\Extensions [{b64d9b05-48e1-4ceb-bf58-e0643994e900}]
***** [ Web browsers ] *****
[-] [C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : nikpibnbobmbdbheedjfogjlikpgpnhp
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [933 bytes] ##########
# AdwCleaner v5.037 - Logfile created 02/03/2016 at 21:08:06
# Updated 28/02/2016 by Xplode
# Database : 2016-03-02.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Michael - MICHAEL-PC
# Running from : C:\Users\Michael\Desktop\adwcleaner_5.037.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Users\Michael\AppData\Local\slimware utilities inc
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\SLIMWARE UTILITIES, INC.
[-] Key Deleted : HKLM\SOFTWARE\SlimWare Utilities Inc
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [2623 bytes] - [02/03/2016 18:43:53]
C:\AdwCleaner\AdwCleaner[C2].txt - [1988 bytes] - [17/12/2015 12:56:13]
C:\AdwCleaner\AdwCleaner[S1].txt - [2359 bytes] - [02/03/2016 18:42:39]
C:\AdwCleaner\AdwCleaner[S2].txt - [2075 bytes] - [17/12/2015 12:53:44]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [2207 bytes] ##########
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: YesSearches.com
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: YesSearches.com
Logfile of random's system information tool 1.10 (written by random/random)
Run by Michael at 2016-03-02 21:45:59
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 87 GB (31%) free of 286 GB
Total RAM: 3982 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:46:00, on 2.3.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18205)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Windows\SysWOW64\ACEngSvr.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
C:\Program Files\trend micro\Michael.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HPUsageTracking] C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe "C:\Program Files (x86)\HP\HP UT\"
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Unknown owner - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (file missing)
O23 - Service: Bluetooth Device Monitor - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 12158 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\igfxCUIService.exe
C:\Windows\system32\svchost.exe -k NetworkService
/QuitInfo:0000000000000228;000000000000022C; /AddRef;
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\WLANExt.exe 38631760
"C:\Windows\system32\FBAgent.exe"
\??\C:\Windows\system32\conhost.exe "-860455621173666210-20684110611847250794951954549424747541422340598284615770
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
WLIDSvcM.exe 2680
"taskhost.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
ATKOSD.exe
KBFiltr.exe
WDC.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
taskeng.exe {E4C9DDC6-DCEF-4F09-9CD8-8D89928FCAF9}
/QuitInfo:0000000000000794;0000000000000798; /AddRef;
/QuitInfo:0000000000000774;00000000000007A0;
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Windows\system32\spool\DRIVERS\x64\3\HP1006MC.EXE" -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe"
taskeng.exe {ACA95910-CE1A-4F10-B12C-DAFB55CB5391}
"C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x64\QuickGesture64.exe"
/loadhooks /Parent:00000000000011C8
C:\Windows\SysWOW64\ACEngSvr.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\AsScrPro.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "-97191691816888393628831741062033848541808308380526466850-274909238787295358
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe"
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
igfxEM.exe
igfxHK.exe
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
igfxTray.exe
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDGesture.exe"
"C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe" -Embedding
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Michael\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job - C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller winlogon-impersonate
C:\Windows\tasks\SlimCleaner Plus (Scheduled Scan - Michael).job - C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe /doScheduledScan
C:\Windows\tasks\SlimDrivers Startup.job - C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe -boot
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-03-17 553384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-02-03 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-03-17 210856]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-02-03 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 441216]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2011-12-20 11406608]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-07-25 2403104]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2014-07-25 1283136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACMON]
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2012-02-07 102568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13 1085656]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2015-09-24 40336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2012-08-06 3058304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2012-02-24 3331312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2010-08-20 107816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ETDCtrl]
C:\Program Files\Elantech\ETDCtrl.exe [2012-02-19 2661672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-08-01 152392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-02-21 12452456]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-02-07 291608]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2011-12-23 318080]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2011-10-25 174720]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"Wireless Console 3"=C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2011-10-19 2319536]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-07-31 43816]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-02-16 7139768]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-08-01 152392]
""= []
"HPUsageTracking"=C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe [2009-05-11 24576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\System32\nvinitx.dll,C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"vidc.ffds"=ff_vfw.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2016-03-02 19:58:15 ----D---- C:\ProgramData\HitmanPro
2016-03-02 19:48:25 ----D---- C:\rsit
2016-03-02 19:37:56 ----A---- C:\vir.txt
2016-03-02 18:56:32 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2016-03-02 18:55:28 ----D---- C:\ProgramData\Malwarebytes
2016-03-02 18:55:28 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mwac.sys
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mbam.sys
2016-03-02 18:02:54 ----D---- C:\extensions
2016-03-02 18:01:49 ----D---- C:\Users\Michael\AppData\Roaming\Opera Software
2016-02-29 23:21:03 ----D---- C:\Program Files (x86)\SlimDrivers
2016-02-29 22:55:16 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2016-02-29 22:55:16 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-02-29 22:55:16 ----A---- C:\Windows\system32\ucrtbase.dll
2016-02-29 22:55:16 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-02-29 22:55:12 ----A---- C:\Windows\system32\icaapi.dll
2016-02-29 22:55:12 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2016-02-29 22:54:44 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\iernonce.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\inseng.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\ie4uinit.exe
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\occache.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-02-11 16:53:40 ----A---- C:\Windows\system32\msfeeds.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\iedkcs32.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\dxtrans.dll
2016-02-11 16:53:39 ----A---- C:\Windows\system32\iesetup.dll
2016-02-11 16:53:39 ----A---- C:\Windows\system32\ieapfltr.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-02-11 16:53:38 ----A---- C:\Windows\system32\vbscript.dll
2016-02-11 16:53:38 ----A---- C:\Windows\system32\jsproxy.dll
2016-02-11 16:53:37 ----A---- C:\Windows\system32\mshtmled.dll
2016-02-11 16:53:37 ----A---- C:\Windows\system32\dxtmsft.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\wininet.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\webcheck.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript9diag.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript9.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript.dll
2016-02-11 16:53:35 ----A---- C:\Windows\system32\msrating.dll
2016-02-11 16:53:35 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-02-11 16:47:37 ----A---- C:\Windows\system32\wuaueng.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuwebv.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wups2.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wups.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wudriver.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wucltux.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuauclt.exe
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuapp.exe
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuapi.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\rdpudd.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\rdpcorets.dll
2016-02-11 16:47:20 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-02-11 16:47:20 ----A---- C:\Windows\system32\EncDec.dll
2016-02-11 16:47:20 ----A---- C:\Windows\system32\CPFilters.dll
2016-02-11 16:47:19 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-02-11 16:47:19 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-02-11 16:47:18 ----A---- C:\Windows\system32\ntdll.dll
2016-02-11 16:47:16 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-02-11 16:47:16 ----A---- C:\Windows\system32\KernelBase.dll
2016-02-11 16:47:15 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-02-11 16:47:15 ----A---- C:\Windows\system32\mtxoci.dll
2016-02-11 16:47:15 ----A---- C:\Windows\system32\kerberos.dll
2016-02-11 16:47:13 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-02-11 16:47:13 ----A---- C:\Windows\system32\kernel32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\system32\advapi32.dll
2016-02-11 16:47:11 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-02-11 16:47:11 ----A---- C:\Windows\system32\lsasrv.dll
2016-02-11 16:47:11 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-02-11 16:47:11 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-02-11 16:47:10 ----A---- C:\Windows\system32\rpcrt4.dll
2016-02-11 16:47:09 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\winsrv.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\TSpkg.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\smss.exe
2016-02-11 16:47:09 ----A---- C:\Windows\system32\schannel.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\ncrypt.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\msv1_0.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-02-11 16:47:09 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wow64win.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wow64.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wdigest.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\sspisrv.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\sspicli.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\srcore.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\cryptbase.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\conhost.exe
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\wow64cpu.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\srclient.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\secur32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\rstrui.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\ntvdm64.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\lsass.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-02-11 16:47:07 ----A---- C:\Windows\system32\csrsrv.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\credssp.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\auditpol.exe
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-11 16:47:05 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-02-11 16:47:05 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-02-11 16:47:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-02-11 16:47:04 ----A---- C:\Windows\SYSWOW64\user.exe
2016-02-11 16:47:04 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-02-11 16:47:04 ----A---- C:\Windows\system32\apisetschema.dll
2016-02-11 16:47:04 ----A---- C:\Windows\system32\adtschema.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-02-11 16:47:03 ----A---- C:\Windows\system32\msobjs.dll
2016-02-11 16:47:03 ----A---- C:\Windows\system32\msaudite.dll
2016-02-11 16:45:52 ----A---- C:\Windows\system32\shell32.dll
2016-02-11 16:45:50 ----A---- C:\Windows\explorer.exe
2016-02-11 16:45:49 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-02-11 16:45:48 ----A---- C:\Windows\SYSWOW64\explorer.exe
2016-02-11 16:45:48 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-02-11 16:45:47 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-02-11 16:45:47 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-02-11 16:45:47 ----A---- C:\Windows\system32\authui.dll
2016-02-11 16:45:17 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2016-02-11 16:45:17 ----A---- C:\Windows\system32\jnwmon.dll
2016-02-11 16:45:17 ----A---- C:\Windows\system32\InkEd.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\generaltel.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\appraiser.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\aeinv.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\invagent.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\devinv.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-02-11 16:45:09 ----A---- C:\Windows\system32\acmigration.dll
2016-02-11 16:45:02 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-02-11 16:45:02 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-02-11 16:45:02 ----A---- C:\Windows\system32\iertutil.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-02-11 16:45:00 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-02-11 16:45:00 ----A---- C:\Windows\system32\urlmon.dll
2016-02-11 16:45:00 ----A---- C:\Windows\system32\ieui.dll
2016-02-11 16:45:00 ----A---- C:\Windows\system32\ieframe.dll
2016-02-11 16:44:59 ----A---- C:\Windows\system32\mshtml.dll
2016-02-11 16:44:59 ----A---- C:\Windows\system32\ieUnatt.exe
2016-02-11 16:40:26 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-02-11 16:40:23 ----A---- C:\Windows\system32\win32k.sys
2016-02-11 16:38:31 ----A---- C:\Windows\system32\ole32.dll
2016-02-11 16:38:22 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-02-03 16:42:31 ----A---- C:\Windows\system32\drivers\aswKbd.sys
2016-02-03 16:42:11 ----A---- C:\Windows\system32\aswBoot.exe
2016-02-03 16:42:01 ----A---- C:\Windows\avastSS.scr
======List of files/folders modified in the last 1 month======
2016-03-02 21:45:59 ----D---- C:\Program Files\trend micro
2016-03-02 21:45:57 ----D---- C:\Windows\temp
2016-03-02 21:22:32 ----D---- C:\Windows\system32\config
2016-03-02 21:22:27 ----D---- C:\Windows\winsxs
2016-03-02 21:15:19 ----D---- C:\Windows\system32\drivers
2016-03-02 21:13:24 ----A---- C:\Windows\SYSWOW64\log.txt
2016-03-02 20:21:34 ----D---- C:\Program Files
2016-03-02 20:18:43 ----D---- C:\Windows\system32\Tasks
2016-03-02 19:58:15 ----D---- C:\ProgramData
2016-03-02 19:42:54 ----A---- C:\Windows\system32\ServiceFilter.ini
2016-03-02 18:55:28 ----RD---- C:\Program Files (x86)
2016-03-02 18:45:13 ----D---- C:\Windows
2016-03-02 18:43:53 ----D---- C:\AdwCleaner
2016-03-02 18:36:14 ----D---- C:\Users\Michael\AppData\Roaming\uTorrent
2016-03-02 18:36:14 ----D---- C:\Program Files (x86)\Steam
2016-03-02 18:35:56 ----D---- C:\Windows\inf
2016-03-02 18:35:56 ----D---- C:\Windows\debug
2016-03-02 18:35:56 ----AD---- C:\Windows\Minidump
2016-03-02 18:21:40 ----D---- C:\Program Files (x86)\Common Files
2016-03-02 18:21:31 ----RSD---- C:\Windows\assembly
2016-03-02 18:17:44 ----SHD---- C:\Windows\Installer
2016-03-02 18:17:41 ----SHD---- C:\Config.Msi
2016-03-02 18:17:18 ----SHD---- C:\System Volume Information
2016-03-02 18:12:12 ----A---- C:\Windows\system32\AutoRunFilter.ini
2016-03-02 17:33:33 ----D---- C:\Windows\Tasks
2016-03-02 17:31:07 ----D---- C:\Windows\Prefetch
2016-02-29 23:09:32 ----D---- C:\Windows\System32
2016-02-29 23:09:27 ----A---- C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-02-29 23:09:04 ----D---- C:\Windows\SYSWOW64\NV
2016-02-29 23:09:04 ----D---- C:\Windows\system32\NV
2016-02-29 23:08:01 ----D---- C:\Windows\SysWOW64
2016-02-29 23:07:12 ----D---- C:\Windows\system32\catroot
2016-02-29 23:01:37 ----D---- C:\Windows\system32\DriverStore
2016-02-29 22:53:50 ----D---- C:\Windows\system32\catroot2
2016-02-28 16:45:26 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-02-28 11:56:07 ----SD---- C:\Windows\SYSWOW64\GWX
2016-02-28 11:56:07 ----SD---- C:\Windows\system32\GWX
2016-02-12 19:32:52 ----D---- C:\Windows\rescache
2016-02-12 18:38:56 ----D---- C:\Windows\Microsoft.NET
2016-02-12 14:04:42 ----D---- C:\Program Files\Windows Journal
2016-02-12 14:04:39 ----SD---- C:\Windows\system32\CompatTel
2016-02-12 14:04:39 ----D---- C:\Windows\system32\appraiser
2016-02-12 14:04:37 ----D---- C:\Windows\AppPatch
2016-02-12 14:04:37 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-12 14:04:36 ----D---- C:\Windows\SYSWOW64\en-US
2016-02-12 14:04:36 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-02-12 14:04:36 ----D---- C:\Windows\system32\cs-CZ
2016-02-12 14:04:36 ----D---- C:\Program Files\Internet Explorer
2016-02-12 14:04:35 ----D---- C:\Windows\system32\en-US
2016-02-12 14:03:45 ----D---- C:\Windows\cs-CZ
2016-02-12 13:03:40 ----D---- C:\Windows\system32\MRT
2016-02-12 12:52:50 ----A---- C:\Windows\system32\MRT.exe
2016-02-10 18:41:24 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-02-03 16:42:07 ----D---- C:\ProgramData\AVAST Software
2016-02-03 16:41:55 ----D---- C:\Program Files\AVAST Software
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-02-03 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-02-10 287016]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-12-23 568600]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-02-07 16152]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2015-08-25 31352]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-02-03 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-02-03 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-02-03 1065720]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-02-23 463744]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-02-03 37656]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-02-03 107792]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-02-03 165344]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2015-02-08 314016]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2015-02-08 43680]
R3 AiCharger;ASUS Charger Driver; C:\Windows\system32\DRIVERS\AiCharger.sys [2012-01-30 17152]
R3 AMPPAL;Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter; C:\Windows\system32\DRIVERS\AMPPAL.sys [2012-01-09 195584]
R3 AsusVBus;AsusVBus; C:\Windows\system32\DRIVERS\AsusVBus.sys [2012-04-11 35968]
R3 AsusVTouch;AsusVTouch; C:\Windows\system32\DRIVERS\AsusVTouch.sys [2012-04-11 16512]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2012-02-19 200488]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-08-27 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-03-06 4763112]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-02-07 356120]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-02-07 787736]
R3 iwdbus;IWD Bus Enumerator; C:\Windows\system32\DRIVERS\iwdbus.sys [2011-12-21 25496]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-08-06 62784]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2012-01-09 11416576]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-07-25 20256]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSBASTOR;Realtek PCIE CardReader Driver - BA; C:\Windows\system32\DRIVERS\RtsBaStor.sys [2011-12-28 292456]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys []
S3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
S3 AMPPALP;Intel® Centrino® Wireless Bluetooth® + High Speed Protocol; C:\Windows\system32\DRIVERS\amppal.sys [2012-01-09 195584]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2012-02-24 80384]
S3 btmaux;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2011-12-13 94720]
S3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [2011-12-13 747008]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2011-05-14 48488]
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
S3 ibtfltcoex;ibtfltcoex; C:\Windows\system32\DRIVERS\iBtFltCoex.sys [2011-12-14 60416]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2011-12-21 34200]
S3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20); C:\Windows\system32\DRIVERS\L1C62x64.sys [2009-06-10 57344]
S3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-10-05 25816]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-10-05 63704]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2011-03-04 379520]
R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2012-01-09 659968]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2011-11-21 80512]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-02-03 237096]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2011-12-20 1014096]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2011-12-20 1104208]
R2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-01-12 135952]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-12-08 618256]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2015-08-27 330136]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-03 628448]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-02-21 128280]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-21 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-29 277784]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-07-25 1720608]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-07-25 18956064]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-08-25 937776]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-12-08 148752]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-29 363800]
R3 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-06-12 43336]
R3 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [2012-04-13 277120]
R3 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2011-12-20 1304912]
R3 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-08-01 641352]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
S2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10 269504]
S3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe []
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2015-08-27 291744]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2011-05-14 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-01-22 114688]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-12-08 273168]
S3 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-10-16 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
Run by Michael at 2016-03-02 21:45:59
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 87 GB (31%) free of 286 GB
Total RAM: 3982 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:46:00, on 2.3.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18205)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Windows\SysWOW64\ACEngSvr.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
C:\Program Files\trend micro\Michael.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HPUsageTracking] C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe "C:\Program Files (x86)\HP\HP UT\"
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Unknown owner - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (file missing)
O23 - Service: Bluetooth Device Monitor - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 12158 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\igfxCUIService.exe
C:\Windows\system32\svchost.exe -k NetworkService
/QuitInfo:0000000000000228;000000000000022C; /AddRef;
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\WLANExt.exe 38631760
"C:\Windows\system32\FBAgent.exe"
\??\C:\Windows\system32\conhost.exe "-860455621173666210-20684110611847250794951954549424747541422340598284615770
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
WLIDSvcM.exe 2680
"taskhost.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
ATKOSD.exe
KBFiltr.exe
WDC.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
taskeng.exe {E4C9DDC6-DCEF-4F09-9CD8-8D89928FCAF9}
/QuitInfo:0000000000000794;0000000000000798; /AddRef;
/QuitInfo:0000000000000774;00000000000007A0;
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Windows\system32\spool\DRIVERS\x64\3\HP1006MC.EXE" -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe"
taskeng.exe {ACA95910-CE1A-4F10-B12C-DAFB55CB5391}
"C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x64\QuickGesture64.exe"
/loadhooks /Parent:00000000000011C8
C:\Windows\SysWOW64\ACEngSvr.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\AsScrPro.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "-97191691816888393628831741062033848541808308380526466850-274909238787295358
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe"
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
igfxEM.exe
igfxHK.exe
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
igfxTray.exe
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDGesture.exe"
"C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe" -Embedding
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Michael\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job - C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller winlogon-impersonate
C:\Windows\tasks\SlimCleaner Plus (Scheduled Scan - Michael).job - C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe /doScheduledScan
C:\Windows\tasks\SlimDrivers Startup.job - C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe -boot
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-03-17 553384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-02-03 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-03-17 210856]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-02-03 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 441216]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2011-12-20 11406608]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-07-25 2403104]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2014-07-25 1283136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACMON]
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2012-02-07 102568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13 1085656]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2015-09-24 40336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2012-08-06 3058304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2012-02-24 3331312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2010-08-20 107816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ETDCtrl]
C:\Program Files\Elantech\ETDCtrl.exe [2012-02-19 2661672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-08-01 152392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-02-21 12452456]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-02-07 291608]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2011-12-23 318080]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2011-10-25 174720]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"Wireless Console 3"=C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2011-10-19 2319536]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-07-31 43816]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-02-16 7139768]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-08-01 152392]
""= []
"HPUsageTracking"=C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe [2009-05-11 24576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\System32\nvinitx.dll,C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"vidc.ffds"=ff_vfw.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2016-03-02 19:58:15 ----D---- C:\ProgramData\HitmanPro
2016-03-02 19:48:25 ----D---- C:\rsit
2016-03-02 19:37:56 ----A---- C:\vir.txt
2016-03-02 18:56:32 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2016-03-02 18:55:28 ----D---- C:\ProgramData\Malwarebytes
2016-03-02 18:55:28 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mwac.sys
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mbam.sys
2016-03-02 18:02:54 ----D---- C:\extensions
2016-03-02 18:01:49 ----D---- C:\Users\Michael\AppData\Roaming\Opera Software
2016-02-29 23:21:03 ----D---- C:\Program Files (x86)\SlimDrivers
2016-02-29 22:55:16 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2016-02-29 22:55:16 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-02-29 22:55:16 ----A---- C:\Windows\system32\ucrtbase.dll
2016-02-29 22:55:16 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-02-29 22:55:12 ----A---- C:\Windows\system32\icaapi.dll
2016-02-29 22:55:12 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2016-02-29 22:54:44 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\iernonce.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\inseng.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\ie4uinit.exe
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\occache.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-02-11 16:53:40 ----A---- C:\Windows\system32\msfeeds.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\iedkcs32.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\dxtrans.dll
2016-02-11 16:53:39 ----A---- C:\Windows\system32\iesetup.dll
2016-02-11 16:53:39 ----A---- C:\Windows\system32\ieapfltr.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-02-11 16:53:38 ----A---- C:\Windows\system32\vbscript.dll
2016-02-11 16:53:38 ----A---- C:\Windows\system32\jsproxy.dll
2016-02-11 16:53:37 ----A---- C:\Windows\system32\mshtmled.dll
2016-02-11 16:53:37 ----A---- C:\Windows\system32\dxtmsft.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\wininet.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\webcheck.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript9diag.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript9.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript.dll
2016-02-11 16:53:35 ----A---- C:\Windows\system32\msrating.dll
2016-02-11 16:53:35 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-02-11 16:47:37 ----A---- C:\Windows\system32\wuaueng.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuwebv.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wups2.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wups.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wudriver.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wucltux.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuauclt.exe
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuapp.exe
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuapi.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\rdpudd.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\rdpcorets.dll
2016-02-11 16:47:20 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-02-11 16:47:20 ----A---- C:\Windows\system32\EncDec.dll
2016-02-11 16:47:20 ----A---- C:\Windows\system32\CPFilters.dll
2016-02-11 16:47:19 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-02-11 16:47:19 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-02-11 16:47:18 ----A---- C:\Windows\system32\ntdll.dll
2016-02-11 16:47:16 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-02-11 16:47:16 ----A---- C:\Windows\system32\KernelBase.dll
2016-02-11 16:47:15 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-02-11 16:47:15 ----A---- C:\Windows\system32\mtxoci.dll
2016-02-11 16:47:15 ----A---- C:\Windows\system32\kerberos.dll
2016-02-11 16:47:13 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-02-11 16:47:13 ----A---- C:\Windows\system32\kernel32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\system32\advapi32.dll
2016-02-11 16:47:11 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-02-11 16:47:11 ----A---- C:\Windows\system32\lsasrv.dll
2016-02-11 16:47:11 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-02-11 16:47:11 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-02-11 16:47:10 ----A---- C:\Windows\system32\rpcrt4.dll
2016-02-11 16:47:09 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\winsrv.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\TSpkg.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\smss.exe
2016-02-11 16:47:09 ----A---- C:\Windows\system32\schannel.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\ncrypt.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\msv1_0.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-02-11 16:47:09 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wow64win.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wow64.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wdigest.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\sspisrv.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\sspicli.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\srcore.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\cryptbase.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\conhost.exe
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\wow64cpu.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\srclient.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\secur32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\rstrui.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\ntvdm64.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\lsass.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-02-11 16:47:07 ----A---- C:\Windows\system32\csrsrv.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\credssp.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\auditpol.exe
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-11 16:47:05 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-02-11 16:47:05 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-02-11 16:47:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-02-11 16:47:04 ----A---- C:\Windows\SYSWOW64\user.exe
2016-02-11 16:47:04 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-02-11 16:47:04 ----A---- C:\Windows\system32\apisetschema.dll
2016-02-11 16:47:04 ----A---- C:\Windows\system32\adtschema.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-02-11 16:47:03 ----A---- C:\Windows\system32\msobjs.dll
2016-02-11 16:47:03 ----A---- C:\Windows\system32\msaudite.dll
2016-02-11 16:45:52 ----A---- C:\Windows\system32\shell32.dll
2016-02-11 16:45:50 ----A---- C:\Windows\explorer.exe
2016-02-11 16:45:49 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-02-11 16:45:48 ----A---- C:\Windows\SYSWOW64\explorer.exe
2016-02-11 16:45:48 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-02-11 16:45:47 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-02-11 16:45:47 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-02-11 16:45:47 ----A---- C:\Windows\system32\authui.dll
2016-02-11 16:45:17 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2016-02-11 16:45:17 ----A---- C:\Windows\system32\jnwmon.dll
2016-02-11 16:45:17 ----A---- C:\Windows\system32\InkEd.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\generaltel.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\appraiser.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\aeinv.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\invagent.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\devinv.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-02-11 16:45:09 ----A---- C:\Windows\system32\acmigration.dll
2016-02-11 16:45:02 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-02-11 16:45:02 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-02-11 16:45:02 ----A---- C:\Windows\system32\iertutil.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-02-11 16:45:00 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-02-11 16:45:00 ----A---- C:\Windows\system32\urlmon.dll
2016-02-11 16:45:00 ----A---- C:\Windows\system32\ieui.dll
2016-02-11 16:45:00 ----A---- C:\Windows\system32\ieframe.dll
2016-02-11 16:44:59 ----A---- C:\Windows\system32\mshtml.dll
2016-02-11 16:44:59 ----A---- C:\Windows\system32\ieUnatt.exe
2016-02-11 16:40:26 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-02-11 16:40:23 ----A---- C:\Windows\system32\win32k.sys
2016-02-11 16:38:31 ----A---- C:\Windows\system32\ole32.dll
2016-02-11 16:38:22 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-02-03 16:42:31 ----A---- C:\Windows\system32\drivers\aswKbd.sys
2016-02-03 16:42:11 ----A---- C:\Windows\system32\aswBoot.exe
2016-02-03 16:42:01 ----A---- C:\Windows\avastSS.scr
======List of files/folders modified in the last 1 month======
2016-03-02 21:45:59 ----D---- C:\Program Files\trend micro
2016-03-02 21:45:57 ----D---- C:\Windows\temp
2016-03-02 21:22:32 ----D---- C:\Windows\system32\config
2016-03-02 21:22:27 ----D---- C:\Windows\winsxs
2016-03-02 21:15:19 ----D---- C:\Windows\system32\drivers
2016-03-02 21:13:24 ----A---- C:\Windows\SYSWOW64\log.txt
2016-03-02 20:21:34 ----D---- C:\Program Files
2016-03-02 20:18:43 ----D---- C:\Windows\system32\Tasks
2016-03-02 19:58:15 ----D---- C:\ProgramData
2016-03-02 19:42:54 ----A---- C:\Windows\system32\ServiceFilter.ini
2016-03-02 18:55:28 ----RD---- C:\Program Files (x86)
2016-03-02 18:45:13 ----D---- C:\Windows
2016-03-02 18:43:53 ----D---- C:\AdwCleaner
2016-03-02 18:36:14 ----D---- C:\Users\Michael\AppData\Roaming\uTorrent
2016-03-02 18:36:14 ----D---- C:\Program Files (x86)\Steam
2016-03-02 18:35:56 ----D---- C:\Windows\inf
2016-03-02 18:35:56 ----D---- C:\Windows\debug
2016-03-02 18:35:56 ----AD---- C:\Windows\Minidump
2016-03-02 18:21:40 ----D---- C:\Program Files (x86)\Common Files
2016-03-02 18:21:31 ----RSD---- C:\Windows\assembly
2016-03-02 18:17:44 ----SHD---- C:\Windows\Installer
2016-03-02 18:17:41 ----SHD---- C:\Config.Msi
2016-03-02 18:17:18 ----SHD---- C:\System Volume Information
2016-03-02 18:12:12 ----A---- C:\Windows\system32\AutoRunFilter.ini
2016-03-02 17:33:33 ----D---- C:\Windows\Tasks
2016-03-02 17:31:07 ----D---- C:\Windows\Prefetch
2016-02-29 23:09:32 ----D---- C:\Windows\System32
2016-02-29 23:09:27 ----A---- C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-02-29 23:09:04 ----D---- C:\Windows\SYSWOW64\NV
2016-02-29 23:09:04 ----D---- C:\Windows\system32\NV
2016-02-29 23:08:01 ----D---- C:\Windows\SysWOW64
2016-02-29 23:07:12 ----D---- C:\Windows\system32\catroot
2016-02-29 23:01:37 ----D---- C:\Windows\system32\DriverStore
2016-02-29 22:53:50 ----D---- C:\Windows\system32\catroot2
2016-02-28 16:45:26 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-02-28 11:56:07 ----SD---- C:\Windows\SYSWOW64\GWX
2016-02-28 11:56:07 ----SD---- C:\Windows\system32\GWX
2016-02-12 19:32:52 ----D---- C:\Windows\rescache
2016-02-12 18:38:56 ----D---- C:\Windows\Microsoft.NET
2016-02-12 14:04:42 ----D---- C:\Program Files\Windows Journal
2016-02-12 14:04:39 ----SD---- C:\Windows\system32\CompatTel
2016-02-12 14:04:39 ----D---- C:\Windows\system32\appraiser
2016-02-12 14:04:37 ----D---- C:\Windows\AppPatch
2016-02-12 14:04:37 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-12 14:04:36 ----D---- C:\Windows\SYSWOW64\en-US
2016-02-12 14:04:36 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-02-12 14:04:36 ----D---- C:\Windows\system32\cs-CZ
2016-02-12 14:04:36 ----D---- C:\Program Files\Internet Explorer
2016-02-12 14:04:35 ----D---- C:\Windows\system32\en-US
2016-02-12 14:03:45 ----D---- C:\Windows\cs-CZ
2016-02-12 13:03:40 ----D---- C:\Windows\system32\MRT
2016-02-12 12:52:50 ----A---- C:\Windows\system32\MRT.exe
2016-02-10 18:41:24 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-02-03 16:42:07 ----D---- C:\ProgramData\AVAST Software
2016-02-03 16:41:55 ----D---- C:\Program Files\AVAST Software
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-02-03 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-02-10 287016]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-12-23 568600]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-02-07 16152]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2015-08-25 31352]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-02-03 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-02-03 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-02-03 1065720]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-02-23 463744]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-02-03 37656]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-02-03 107792]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-02-03 165344]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2015-02-08 314016]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2015-02-08 43680]
R3 AiCharger;ASUS Charger Driver; C:\Windows\system32\DRIVERS\AiCharger.sys [2012-01-30 17152]
R3 AMPPAL;Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter; C:\Windows\system32\DRIVERS\AMPPAL.sys [2012-01-09 195584]
R3 AsusVBus;AsusVBus; C:\Windows\system32\DRIVERS\AsusVBus.sys [2012-04-11 35968]
R3 AsusVTouch;AsusVTouch; C:\Windows\system32\DRIVERS\AsusVTouch.sys [2012-04-11 16512]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2012-02-19 200488]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-08-27 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-03-06 4763112]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-02-07 356120]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-02-07 787736]
R3 iwdbus;IWD Bus Enumerator; C:\Windows\system32\DRIVERS\iwdbus.sys [2011-12-21 25496]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-08-06 62784]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2012-01-09 11416576]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-07-25 20256]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSBASTOR;Realtek PCIE CardReader Driver - BA; C:\Windows\system32\DRIVERS\RtsBaStor.sys [2011-12-28 292456]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys []
S3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
S3 AMPPALP;Intel® Centrino® Wireless Bluetooth® + High Speed Protocol; C:\Windows\system32\DRIVERS\amppal.sys [2012-01-09 195584]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2012-02-24 80384]
S3 btmaux;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2011-12-13 94720]
S3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [2011-12-13 747008]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2011-05-14 48488]
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
S3 ibtfltcoex;ibtfltcoex; C:\Windows\system32\DRIVERS\iBtFltCoex.sys [2011-12-14 60416]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2011-12-21 34200]
S3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20); C:\Windows\system32\DRIVERS\L1C62x64.sys [2009-06-10 57344]
S3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-10-05 25816]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-10-05 63704]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2011-03-04 379520]
R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2012-01-09 659968]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2011-11-21 80512]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-02-03 237096]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2011-12-20 1014096]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2011-12-20 1104208]
R2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-01-12 135952]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-12-08 618256]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2015-08-27 330136]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-03 628448]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-02-21 128280]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-21 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-29 277784]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-07-25 1720608]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-07-25 18956064]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-08-25 937776]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-12-08 148752]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-29 363800]
R3 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-06-12 43336]
R3 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [2012-04-13 277120]
R3 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2011-12-20 1304912]
R3 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-08-01 641352]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
S2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10 269504]
S3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe []
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2015-08-27 291744]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2011-05-14 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-01-22 114688]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-12-08 273168]
S3 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-10-16 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: YesSearches.com
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.:files
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
:services
Bonjour Service
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: YesSearches.com
Logfile of random's system information tool 1.10 (written by random/random)
Run by Michael at 2016-03-02 22:21:39
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 87 GB (31%) free of 286 GB
Total RAM: 3982 MB (53% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:21:45, on 2.3.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18205)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Windows\SysWOW64\ACEngSvr.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe
C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
C:\Program Files\trend micro\Michael.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HPUsageTracking] C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe "C:\Program Files (x86)\HP\HP UT\"
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Unknown owner - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (file missing)
O23 - Service: Bluetooth Device Monitor - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 12330 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\igfxCUIService.exe
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
/QuitInfo:0000000000000220;0000000000000224; /AddRef;
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
C:\Windows\system32\WLANExt.exe 30757696
\??\C:\Windows\system32\conhost.exe "-16133630516318476711224045837-2052223892162536732420230553951080810499570708958
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
taskeng.exe {C11488A9-83A0-4AE1-BD22-8E97E9FAF635}
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
WLIDSvcM.exe 2256
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\servicing\TrustedInstaller.exe
"C:\Windows\system32\spool\DRIVERS\x64\3\HP1006MC.EXE" -Embedding
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"taskhost.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
C:\Windows\SysWOW64\ACEngSvr.exe -Embedding
ATKOSD.exe
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
igfxEM.exe
KBFiltr.exe
igfxHK.exe
igfxTray.exe
WDC.exe
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe"
/QuitInfo:00000000000008F0;0000000000000714; /AddRef;
taskeng.exe {D079DBE9-3F21-4EFE-B974-62DB5B5ACEF6}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
/QuitInfo:00000000000008FC;0000000000000914;
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
\??\C:\Windows\system32\conhost.exe "-818359080-18754940311917287555-1442419582-7825754406598127381826948825-1236311957
/loadhooks /Parent:0000000000000554
"C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x64\QuickGesture64.exe"
"C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe"
taskeng.exe {09A39507-75A8-47F1-829E-653BAE3E59F2}
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe" --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller winlogon
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe" --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDGesture.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\notepad.exe" C:\_OTM\MovedFiles\03022016_221612.log
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe" "C:\Program Files (x86)\HP\HP UT\"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe" -Embedding
"C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe"
"C:\Users\Michael\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job - C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller winlogon-impersonate
C:\Windows\tasks\SlimCleaner Plus (Scheduled Scan - Michael).job - C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe /doScheduledScan
C:\Windows\tasks\SlimDrivers Startup.job - C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe -boot
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-03-17 553384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-02-03 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-03-17 210856]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-02-03 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 441216]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2011-12-20 11406608]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-07-25 2403104]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2014-07-25 1283136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACMON]
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2012-02-07 102568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13 1085656]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2015-09-24 40336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2012-08-06 3058304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2012-02-24 3331312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2010-08-20 107816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ETDCtrl]
C:\Program Files\Elantech\ETDCtrl.exe [2012-02-19 2661672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-08-01 152392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-02-21 12452456]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-02-07 291608]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2011-12-23 318080]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2011-10-25 174720]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"Wireless Console 3"=C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2011-10-19 2319536]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-07-31 43816]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-02-16 7139768]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-08-01 152392]
""= []
"HPUsageTracking"=C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe [2009-05-11 24576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\System32\nvinitx.dll,C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"vidc.ffds"=ff_vfw.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2016-03-02 22:16:12 ----D---- C:\_OTM
2016-03-02 19:58:15 ----D---- C:\ProgramData\HitmanPro
2016-03-02 19:48:25 ----D---- C:\rsit
2016-03-02 19:37:56 ----A---- C:\vir.txt
2016-03-02 18:56:32 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2016-03-02 18:55:28 ----D---- C:\ProgramData\Malwarebytes
2016-03-02 18:55:28 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mwac.sys
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mbam.sys
2016-03-02 18:02:54 ----D---- C:\extensions
2016-03-02 18:01:49 ----D---- C:\Users\Michael\AppData\Roaming\Opera Software
2016-02-29 23:21:03 ----D---- C:\Program Files (x86)\SlimDrivers
2016-02-29 22:55:16 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2016-02-29 22:55:16 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-02-29 22:55:16 ----A---- C:\Windows\system32\ucrtbase.dll
2016-02-29 22:55:16 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-02-29 22:55:12 ----A---- C:\Windows\system32\icaapi.dll
2016-02-29 22:55:12 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2016-02-29 22:54:44 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\iernonce.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\inseng.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\ie4uinit.exe
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\occache.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-02-11 16:53:40 ----A---- C:\Windows\system32\msfeeds.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\iedkcs32.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\dxtrans.dll
2016-02-11 16:53:39 ----A---- C:\Windows\system32\iesetup.dll
2016-02-11 16:53:39 ----A---- C:\Windows\system32\ieapfltr.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-02-11 16:53:38 ----A---- C:\Windows\system32\vbscript.dll
2016-02-11 16:53:38 ----A---- C:\Windows\system32\jsproxy.dll
2016-02-11 16:53:37 ----A---- C:\Windows\system32\mshtmled.dll
2016-02-11 16:53:37 ----A---- C:\Windows\system32\dxtmsft.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\wininet.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\webcheck.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript9diag.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript9.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript.dll
2016-02-11 16:53:35 ----A---- C:\Windows\system32\msrating.dll
2016-02-11 16:53:35 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-02-11 16:47:37 ----A---- C:\Windows\system32\wuaueng.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuwebv.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wups2.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wups.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wudriver.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wucltux.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuauclt.exe
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuapp.exe
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuapi.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\rdpudd.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\rdpcorets.dll
2016-02-11 16:47:20 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-02-11 16:47:20 ----A---- C:\Windows\system32\EncDec.dll
2016-02-11 16:47:20 ----A---- C:\Windows\system32\CPFilters.dll
2016-02-11 16:47:19 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-02-11 16:47:19 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-02-11 16:47:18 ----A---- C:\Windows\system32\ntdll.dll
2016-02-11 16:47:16 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-02-11 16:47:16 ----A---- C:\Windows\system32\KernelBase.dll
2016-02-11 16:47:15 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-02-11 16:47:15 ----A---- C:\Windows\system32\mtxoci.dll
2016-02-11 16:47:15 ----A---- C:\Windows\system32\kerberos.dll
2016-02-11 16:47:13 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-02-11 16:47:13 ----A---- C:\Windows\system32\kernel32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\system32\advapi32.dll
2016-02-11 16:47:11 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-02-11 16:47:11 ----A---- C:\Windows\system32\lsasrv.dll
2016-02-11 16:47:11 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-02-11 16:47:11 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-02-11 16:47:10 ----A---- C:\Windows\system32\rpcrt4.dll
2016-02-11 16:47:09 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\winsrv.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\TSpkg.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\smss.exe
2016-02-11 16:47:09 ----A---- C:\Windows\system32\schannel.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\ncrypt.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\msv1_0.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-02-11 16:47:09 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wow64win.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wow64.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wdigest.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\sspisrv.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\sspicli.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\srcore.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\cryptbase.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\conhost.exe
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\wow64cpu.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\srclient.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\secur32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\rstrui.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\ntvdm64.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\lsass.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-02-11 16:47:07 ----A---- C:\Windows\system32\csrsrv.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\credssp.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\auditpol.exe
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-11 16:47:05 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-02-11 16:47:05 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-02-11 16:47:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-02-11 16:47:04 ----A---- C:\Windows\SYSWOW64\user.exe
2016-02-11 16:47:04 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-02-11 16:47:04 ----A---- C:\Windows\system32\apisetschema.dll
2016-02-11 16:47:04 ----A---- C:\Windows\system32\adtschema.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-02-11 16:47:03 ----A---- C:\Windows\system32\msobjs.dll
2016-02-11 16:47:03 ----A---- C:\Windows\system32\msaudite.dll
2016-02-11 16:45:52 ----A---- C:\Windows\system32\shell32.dll
2016-02-11 16:45:50 ----A---- C:\Windows\explorer.exe
2016-02-11 16:45:49 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-02-11 16:45:48 ----A---- C:\Windows\SYSWOW64\explorer.exe
2016-02-11 16:45:48 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-02-11 16:45:47 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-02-11 16:45:47 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-02-11 16:45:47 ----A---- C:\Windows\system32\authui.dll
2016-02-11 16:45:17 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2016-02-11 16:45:17 ----A---- C:\Windows\system32\jnwmon.dll
2016-02-11 16:45:17 ----A---- C:\Windows\system32\InkEd.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\generaltel.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\appraiser.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\aeinv.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\invagent.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\devinv.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-02-11 16:45:09 ----A---- C:\Windows\system32\acmigration.dll
2016-02-11 16:45:02 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-02-11 16:45:02 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-02-11 16:45:02 ----A---- C:\Windows\system32\iertutil.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-02-11 16:45:00 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-02-11 16:45:00 ----A---- C:\Windows\system32\urlmon.dll
2016-02-11 16:45:00 ----A---- C:\Windows\system32\ieui.dll
2016-02-11 16:45:00 ----A---- C:\Windows\system32\ieframe.dll
2016-02-11 16:44:59 ----A---- C:\Windows\system32\mshtml.dll
2016-02-11 16:44:59 ----A---- C:\Windows\system32\ieUnatt.exe
2016-02-11 16:40:26 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-02-11 16:40:23 ----A---- C:\Windows\system32\win32k.sys
2016-02-11 16:38:31 ----A---- C:\Windows\system32\ole32.dll
2016-02-11 16:38:22 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-02-03 16:42:31 ----A---- C:\Windows\system32\drivers\aswKbd.sys
2016-02-03 16:42:11 ----A---- C:\Windows\system32\aswBoot.exe
2016-02-03 16:42:01 ----A---- C:\Windows\avastSS.scr
======List of files/folders modified in the last 1 month======
2016-03-02 22:21:44 ----D---- C:\Program Files\trend micro
2016-03-02 22:21:21 ----D---- C:\Windows\temp
2016-03-02 22:21:21 ----D---- C:\Windows\system32\drivers
2016-03-02 22:20:18 ----A---- C:\Windows\SYSWOW64\log.txt
2016-03-02 22:18:29 ----D---- C:\Windows\system32\config
2016-03-02 22:16:13 ----D---- C:\Windows\Tasks
2016-03-02 21:22:27 ----D---- C:\Windows\winsxs
2016-03-02 20:21:34 ----D---- C:\Program Files
2016-03-02 20:18:43 ----D---- C:\Windows\system32\Tasks
2016-03-02 19:58:15 ----D---- C:\ProgramData
2016-03-02 19:42:54 ----A---- C:\Windows\system32\ServiceFilter.ini
2016-03-02 18:55:28 ----RD---- C:\Program Files (x86)
2016-03-02 18:45:13 ----D---- C:\Windows
2016-03-02 18:43:53 ----D---- C:\AdwCleaner
2016-03-02 18:36:14 ----D---- C:\Users\Michael\AppData\Roaming\uTorrent
2016-03-02 18:36:14 ----D---- C:\Program Files (x86)\Steam
2016-03-02 18:35:56 ----D---- C:\Windows\inf
2016-03-02 18:35:56 ----D---- C:\Windows\debug
2016-03-02 18:35:56 ----AD---- C:\Windows\Minidump
2016-03-02 18:21:40 ----D---- C:\Program Files (x86)\Common Files
2016-03-02 18:21:31 ----RSD---- C:\Windows\assembly
2016-03-02 18:17:44 ----SHD---- C:\Windows\Installer
2016-03-02 18:17:41 ----SHD---- C:\Config.Msi
2016-03-02 18:17:18 ----SHD---- C:\System Volume Information
2016-03-02 18:12:12 ----A---- C:\Windows\system32\AutoRunFilter.ini
2016-03-02 17:31:07 ----D---- C:\Windows\Prefetch
2016-02-29 23:09:32 ----D---- C:\Windows\System32
2016-02-29 23:09:27 ----A---- C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-02-29 23:09:04 ----D---- C:\Windows\SYSWOW64\NV
2016-02-29 23:09:04 ----D---- C:\Windows\system32\NV
2016-02-29 23:08:01 ----D---- C:\Windows\SysWOW64
2016-02-29 23:07:12 ----D---- C:\Windows\system32\catroot
2016-02-29 23:01:37 ----D---- C:\Windows\system32\DriverStore
2016-02-29 22:53:50 ----D---- C:\Windows\system32\catroot2
2016-02-28 16:45:26 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-02-28 11:56:07 ----SD---- C:\Windows\SYSWOW64\GWX
2016-02-28 11:56:07 ----SD---- C:\Windows\system32\GWX
2016-02-12 19:32:52 ----D---- C:\Windows\rescache
2016-02-12 18:38:56 ----D---- C:\Windows\Microsoft.NET
2016-02-12 14:04:42 ----D---- C:\Program Files\Windows Journal
2016-02-12 14:04:39 ----SD---- C:\Windows\system32\CompatTel
2016-02-12 14:04:39 ----D---- C:\Windows\system32\appraiser
2016-02-12 14:04:37 ----D---- C:\Windows\AppPatch
2016-02-12 14:04:37 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-12 14:04:36 ----D---- C:\Windows\SYSWOW64\en-US
2016-02-12 14:04:36 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-02-12 14:04:36 ----D---- C:\Windows\system32\cs-CZ
2016-02-12 14:04:36 ----D---- C:\Program Files\Internet Explorer
2016-02-12 14:04:35 ----D---- C:\Windows\system32\en-US
2016-02-12 14:03:45 ----D---- C:\Windows\cs-CZ
2016-02-12 13:03:40 ----D---- C:\Windows\system32\MRT
2016-02-12 12:52:50 ----A---- C:\Windows\system32\MRT.exe
2016-02-10 18:41:24 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-02-03 16:42:07 ----D---- C:\ProgramData\AVAST Software
2016-02-03 16:41:55 ----D---- C:\Program Files\AVAST Software
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-02-03 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-02-10 287016]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-12-23 568600]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-02-07 16152]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2015-08-25 31352]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-02-03 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-02-03 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-02-03 1065720]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-02-23 463744]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-02-03 37656]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-02-03 107792]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-02-03 165344]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2015-02-08 314016]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2015-02-08 43680]
R3 AiCharger;ASUS Charger Driver; C:\Windows\system32\DRIVERS\AiCharger.sys [2012-01-30 17152]
R3 AMPPAL;Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter; C:\Windows\system32\DRIVERS\AMPPAL.sys [2012-01-09 195584]
R3 AsusVBus;AsusVBus; C:\Windows\system32\DRIVERS\AsusVBus.sys [2012-04-11 35968]
R3 AsusVTouch;AsusVTouch; C:\Windows\system32\DRIVERS\AsusVTouch.sys [2012-04-11 16512]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2012-02-19 200488]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-08-27 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-03-06 4763112]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-02-07 356120]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-02-07 787736]
R3 iwdbus;IWD Bus Enumerator; C:\Windows\system32\DRIVERS\iwdbus.sys [2011-12-21 25496]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2016-03-02 192216]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-10-05 63704]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-08-06 62784]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2012-01-09 11416576]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-07-25 20256]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSBASTOR;Realtek PCIE CardReader Driver - BA; C:\Windows\system32\DRIVERS\RtsBaStor.sys [2011-12-28 292456]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys []
S3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
S3 AMPPALP;Intel® Centrino® Wireless Bluetooth® + High Speed Protocol; C:\Windows\system32\DRIVERS\amppal.sys [2012-01-09 195584]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2012-02-24 80384]
S3 btmaux;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2011-12-13 94720]
S3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [2011-12-13 747008]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2011-05-14 48488]
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
S3 ibtfltcoex;ibtfltcoex; C:\Windows\system32\DRIVERS\iBtFltCoex.sys [2011-12-14 60416]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2011-12-21 34200]
S3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20); C:\Windows\system32\DRIVERS\L1C62x64.sys [2009-06-10 57344]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2011-03-04 379520]
R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2012-01-09 659968]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2011-11-21 80512]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-02-03 237096]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2011-12-20 1014096]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2011-12-20 1104208]
R2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-01-12 135952]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-12-08 618256]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2015-08-27 330136]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-03 628448]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-02-21 128280]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-21 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-29 277784]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-07-25 1720608]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-07-25 18956064]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-08-25 937776]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-12-08 148752]
R3 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-06-12 43336]
R3 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [2012-04-13 277120]
R3 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2011-12-20 1304912]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-08-01 641352]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-29 363800]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10 269504]
S3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe []
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2015-08-27 291744]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2011-05-14 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-01-22 114688]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-12-08 273168]
S3 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-10-16 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
Run by Michael at 2016-03-02 22:21:39
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 87 GB (31%) free of 286 GB
Total RAM: 3982 MB (53% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:21:45, on 2.3.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18205)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Windows\SysWOW64\ACEngSvr.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe
C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
C:\Program Files\trend micro\Michael.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HPUsageTracking] C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe "C:\Program Files (x86)\HP\HP UT\"
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Unknown owner - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (file missing)
O23 - Service: Bluetooth Device Monitor - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 12330 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\igfxCUIService.exe
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
/QuitInfo:0000000000000220;0000000000000224; /AddRef;
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
C:\Windows\system32\WLANExt.exe 30757696
\??\C:\Windows\system32\conhost.exe "-16133630516318476711224045837-2052223892162536732420230553951080810499570708958
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
taskeng.exe {C11488A9-83A0-4AE1-BD22-8E97E9FAF635}
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
WLIDSvcM.exe 2256
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\servicing\TrustedInstaller.exe
"C:\Windows\system32\spool\DRIVERS\x64\3\HP1006MC.EXE" -Embedding
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"taskhost.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
C:\Windows\SysWOW64\ACEngSvr.exe -Embedding
ATKOSD.exe
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
igfxEM.exe
KBFiltr.exe
igfxHK.exe
igfxTray.exe
WDC.exe
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe"
/QuitInfo:00000000000008F0;0000000000000714; /AddRef;
taskeng.exe {D079DBE9-3F21-4EFE-B974-62DB5B5ACEF6}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
/QuitInfo:00000000000008FC;0000000000000914;
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
\??\C:\Windows\system32\conhost.exe "-818359080-18754940311917287555-1442419582-7825754406598127381826948825-1236311957
/loadhooks /Parent:0000000000000554
"C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x64\QuickGesture64.exe"
"C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe"
taskeng.exe {09A39507-75A8-47F1-829E-653BAE3E59F2}
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe" --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller winlogon
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe" --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDGesture.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\notepad.exe" C:\_OTM\MovedFiles\03022016_221612.log
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe" "C:\Program Files (x86)\HP\HP UT\"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe" -Embedding
"C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe"
"C:\Users\Michael\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job - C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller winlogon-impersonate
C:\Windows\tasks\SlimCleaner Plus (Scheduled Scan - Michael).job - C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe /doScheduledScan
C:\Windows\tasks\SlimDrivers Startup.job - C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe -boot
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-03-17 553384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-02-03 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-03-17 210856]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-02-03 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 441216]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2011-12-20 11406608]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-07-25 2403104]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2014-07-25 1283136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACMON]
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2012-02-07 102568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13 1085656]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2015-09-24 40336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2012-08-06 3058304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2012-02-24 3331312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2010-08-20 107816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ETDCtrl]
C:\Program Files\Elantech\ETDCtrl.exe [2012-02-19 2661672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-08-01 152392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-02-21 12452456]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-02-07 291608]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2011-12-23 318080]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2011-10-25 174720]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"Wireless Console 3"=C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2011-10-19 2319536]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-07-31 43816]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-02-16 7139768]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-08-01 152392]
""= []
"HPUsageTracking"=C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe [2009-05-11 24576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\System32\nvinitx.dll,C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"vidc.ffds"=ff_vfw.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2016-03-02 22:16:12 ----D---- C:\_OTM
2016-03-02 19:58:15 ----D---- C:\ProgramData\HitmanPro
2016-03-02 19:48:25 ----D---- C:\rsit
2016-03-02 19:37:56 ----A---- C:\vir.txt
2016-03-02 18:56:32 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2016-03-02 18:55:28 ----D---- C:\ProgramData\Malwarebytes
2016-03-02 18:55:28 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mwac.sys
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2016-03-02 18:55:28 ----A---- C:\Windows\system32\drivers\mbam.sys
2016-03-02 18:02:54 ----D---- C:\extensions
2016-03-02 18:01:49 ----D---- C:\Users\Michael\AppData\Roaming\Opera Software
2016-02-29 23:21:03 ----D---- C:\Program Files (x86)\SlimDrivers
2016-02-29 22:55:16 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2016-02-29 22:55:16 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-02-29 22:55:16 ----A---- C:\Windows\system32\ucrtbase.dll
2016-02-29 22:55:16 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-02-29 22:55:15 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-02-29 22:55:12 ----A---- C:\Windows\system32\icaapi.dll
2016-02-29 22:55:12 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2016-02-29 22:54:44 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-02-11 16:53:42 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\iernonce.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-02-11 16:53:42 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-02-11 16:53:41 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\inseng.dll
2016-02-11 16:53:41 ----A---- C:\Windows\system32\ie4uinit.exe
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-02-11 16:53:40 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\occache.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-02-11 16:53:40 ----A---- C:\Windows\system32\msfeeds.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\iedkcs32.dll
2016-02-11 16:53:40 ----A---- C:\Windows\system32\dxtrans.dll
2016-02-11 16:53:39 ----A---- C:\Windows\system32\iesetup.dll
2016-02-11 16:53:39 ----A---- C:\Windows\system32\ieapfltr.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-02-11 16:53:38 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-02-11 16:53:38 ----A---- C:\Windows\system32\vbscript.dll
2016-02-11 16:53:38 ----A---- C:\Windows\system32\jsproxy.dll
2016-02-11 16:53:37 ----A---- C:\Windows\system32\mshtmled.dll
2016-02-11 16:53:37 ----A---- C:\Windows\system32\dxtmsft.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\wininet.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\webcheck.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript9diag.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript9.dll
2016-02-11 16:53:36 ----A---- C:\Windows\system32\jscript.dll
2016-02-11 16:53:35 ----A---- C:\Windows\system32\msrating.dll
2016-02-11 16:53:35 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-02-11 16:47:37 ----A---- C:\Windows\system32\wuaueng.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-02-11 16:47:36 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuwebv.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wups2.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wups.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wudriver.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wucltux.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuauclt.exe
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuapp.exe
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wuapi.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-02-11 16:47:36 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\rdpudd.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-02-11 16:47:33 ----A---- C:\Windows\system32\rdpcorets.dll
2016-02-11 16:47:20 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-02-11 16:47:20 ----A---- C:\Windows\system32\EncDec.dll
2016-02-11 16:47:20 ----A---- C:\Windows\system32\CPFilters.dll
2016-02-11 16:47:19 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-02-11 16:47:19 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-02-11 16:47:18 ----A---- C:\Windows\system32\ntdll.dll
2016-02-11 16:47:16 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-02-11 16:47:16 ----A---- C:\Windows\system32\KernelBase.dll
2016-02-11 16:47:15 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-02-11 16:47:15 ----A---- C:\Windows\system32\mtxoci.dll
2016-02-11 16:47:15 ----A---- C:\Windows\system32\kerberos.dll
2016-02-11 16:47:13 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-02-11 16:47:13 ----A---- C:\Windows\system32\kernel32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-02-11 16:47:12 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-02-11 16:47:12 ----A---- C:\Windows\system32\advapi32.dll
2016-02-11 16:47:11 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-02-11 16:47:11 ----A---- C:\Windows\system32\lsasrv.dll
2016-02-11 16:47:11 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-02-11 16:47:11 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-02-11 16:47:10 ----A---- C:\Windows\system32\rpcrt4.dll
2016-02-11 16:47:09 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\winsrv.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\TSpkg.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\smss.exe
2016-02-11 16:47:09 ----A---- C:\Windows\system32\schannel.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\ncrypt.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\msv1_0.dll
2016-02-11 16:47:09 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-02-11 16:47:09 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-02-11 16:47:08 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wow64win.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wow64.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\wdigest.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\sspisrv.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\sspicli.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\srcore.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\cryptbase.dll
2016-02-11 16:47:08 ----A---- C:\Windows\system32\conhost.exe
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-11 16:47:07 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-02-11 16:47:07 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\wow64cpu.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\srclient.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\secur32.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\rstrui.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\ntvdm64.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\lsass.exe
2016-02-11 16:47:07 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-02-11 16:47:07 ----A---- C:\Windows\system32\csrsrv.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\credssp.dll
2016-02-11 16:47:07 ----A---- C:\Windows\system32\auditpol.exe
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-02-11 16:47:06 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-11 16:47:05 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-11 16:47:05 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-02-11 16:47:05 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-02-11 16:47:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-02-11 16:47:04 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-02-11 16:47:04 ----A---- C:\Windows\SYSWOW64\user.exe
2016-02-11 16:47:04 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-02-11 16:47:04 ----A---- C:\Windows\system32\apisetschema.dll
2016-02-11 16:47:04 ----A---- C:\Windows\system32\adtschema.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-02-11 16:47:03 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-02-11 16:47:03 ----A---- C:\Windows\system32\msobjs.dll
2016-02-11 16:47:03 ----A---- C:\Windows\system32\msaudite.dll
2016-02-11 16:45:52 ----A---- C:\Windows\system32\shell32.dll
2016-02-11 16:45:50 ----A---- C:\Windows\explorer.exe
2016-02-11 16:45:49 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-02-11 16:45:48 ----A---- C:\Windows\SYSWOW64\explorer.exe
2016-02-11 16:45:48 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-02-11 16:45:47 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-02-11 16:45:47 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-02-11 16:45:47 ----A---- C:\Windows\system32\authui.dll
2016-02-11 16:45:17 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2016-02-11 16:45:17 ----A---- C:\Windows\system32\jnwmon.dll
2016-02-11 16:45:17 ----A---- C:\Windows\system32\InkEd.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\generaltel.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\appraiser.dll
2016-02-11 16:45:10 ----A---- C:\Windows\system32\aeinv.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\invagent.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\devinv.dll
2016-02-11 16:45:09 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-02-11 16:45:09 ----A---- C:\Windows\system32\acmigration.dll
2016-02-11 16:45:02 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-02-11 16:45:02 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-02-11 16:45:02 ----A---- C:\Windows\system32\iertutil.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-02-11 16:45:01 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-02-11 16:45:00 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-02-11 16:45:00 ----A---- C:\Windows\system32\urlmon.dll
2016-02-11 16:45:00 ----A---- C:\Windows\system32\ieui.dll
2016-02-11 16:45:00 ----A---- C:\Windows\system32\ieframe.dll
2016-02-11 16:44:59 ----A---- C:\Windows\system32\mshtml.dll
2016-02-11 16:44:59 ----A---- C:\Windows\system32\ieUnatt.exe
2016-02-11 16:40:26 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-02-11 16:40:23 ----A---- C:\Windows\system32\win32k.sys
2016-02-11 16:38:31 ----A---- C:\Windows\system32\ole32.dll
2016-02-11 16:38:22 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-02-03 16:42:31 ----A---- C:\Windows\system32\drivers\aswKbd.sys
2016-02-03 16:42:11 ----A---- C:\Windows\system32\aswBoot.exe
2016-02-03 16:42:01 ----A---- C:\Windows\avastSS.scr
======List of files/folders modified in the last 1 month======
2016-03-02 22:21:44 ----D---- C:\Program Files\trend micro
2016-03-02 22:21:21 ----D---- C:\Windows\temp
2016-03-02 22:21:21 ----D---- C:\Windows\system32\drivers
2016-03-02 22:20:18 ----A---- C:\Windows\SYSWOW64\log.txt
2016-03-02 22:18:29 ----D---- C:\Windows\system32\config
2016-03-02 22:16:13 ----D---- C:\Windows\Tasks
2016-03-02 21:22:27 ----D---- C:\Windows\winsxs
2016-03-02 20:21:34 ----D---- C:\Program Files
2016-03-02 20:18:43 ----D---- C:\Windows\system32\Tasks
2016-03-02 19:58:15 ----D---- C:\ProgramData
2016-03-02 19:42:54 ----A---- C:\Windows\system32\ServiceFilter.ini
2016-03-02 18:55:28 ----RD---- C:\Program Files (x86)
2016-03-02 18:45:13 ----D---- C:\Windows
2016-03-02 18:43:53 ----D---- C:\AdwCleaner
2016-03-02 18:36:14 ----D---- C:\Users\Michael\AppData\Roaming\uTorrent
2016-03-02 18:36:14 ----D---- C:\Program Files (x86)\Steam
2016-03-02 18:35:56 ----D---- C:\Windows\inf
2016-03-02 18:35:56 ----D---- C:\Windows\debug
2016-03-02 18:35:56 ----AD---- C:\Windows\Minidump
2016-03-02 18:21:40 ----D---- C:\Program Files (x86)\Common Files
2016-03-02 18:21:31 ----RSD---- C:\Windows\assembly
2016-03-02 18:17:44 ----SHD---- C:\Windows\Installer
2016-03-02 18:17:41 ----SHD---- C:\Config.Msi
2016-03-02 18:17:18 ----SHD---- C:\System Volume Information
2016-03-02 18:12:12 ----A---- C:\Windows\system32\AutoRunFilter.ini
2016-03-02 17:31:07 ----D---- C:\Windows\Prefetch
2016-02-29 23:09:32 ----D---- C:\Windows\System32
2016-02-29 23:09:27 ----A---- C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-02-29 23:09:04 ----D---- C:\Windows\SYSWOW64\NV
2016-02-29 23:09:04 ----D---- C:\Windows\system32\NV
2016-02-29 23:08:01 ----D---- C:\Windows\SysWOW64
2016-02-29 23:07:12 ----D---- C:\Windows\system32\catroot
2016-02-29 23:01:37 ----D---- C:\Windows\system32\DriverStore
2016-02-29 22:53:50 ----D---- C:\Windows\system32\catroot2
2016-02-28 16:45:26 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-02-28 11:56:07 ----SD---- C:\Windows\SYSWOW64\GWX
2016-02-28 11:56:07 ----SD---- C:\Windows\system32\GWX
2016-02-12 19:32:52 ----D---- C:\Windows\rescache
2016-02-12 18:38:56 ----D---- C:\Windows\Microsoft.NET
2016-02-12 14:04:42 ----D---- C:\Program Files\Windows Journal
2016-02-12 14:04:39 ----SD---- C:\Windows\system32\CompatTel
2016-02-12 14:04:39 ----D---- C:\Windows\system32\appraiser
2016-02-12 14:04:37 ----D---- C:\Windows\AppPatch
2016-02-12 14:04:37 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-12 14:04:36 ----D---- C:\Windows\SYSWOW64\en-US
2016-02-12 14:04:36 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-02-12 14:04:36 ----D---- C:\Windows\system32\cs-CZ
2016-02-12 14:04:36 ----D---- C:\Program Files\Internet Explorer
2016-02-12 14:04:35 ----D---- C:\Windows\system32\en-US
2016-02-12 14:03:45 ----D---- C:\Windows\cs-CZ
2016-02-12 13:03:40 ----D---- C:\Windows\system32\MRT
2016-02-12 12:52:50 ----A---- C:\Windows\system32\MRT.exe
2016-02-10 18:41:24 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-02-03 16:42:07 ----D---- C:\ProgramData\AVAST Software
2016-02-03 16:41:55 ----D---- C:\Program Files\AVAST Software
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-02-03 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-02-10 287016]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-12-23 568600]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-02-07 16152]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2015-08-25 31352]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-02-03 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-02-03 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-02-03 1065720]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-02-23 463744]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-02-03 37656]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-02-03 107792]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-02-03 165344]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2015-02-08 314016]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2015-02-08 43680]
R3 AiCharger;ASUS Charger Driver; C:\Windows\system32\DRIVERS\AiCharger.sys [2012-01-30 17152]
R3 AMPPAL;Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter; C:\Windows\system32\DRIVERS\AMPPAL.sys [2012-01-09 195584]
R3 AsusVBus;AsusVBus; C:\Windows\system32\DRIVERS\AsusVBus.sys [2012-04-11 35968]
R3 AsusVTouch;AsusVTouch; C:\Windows\system32\DRIVERS\AsusVTouch.sys [2012-04-11 16512]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2012-02-19 200488]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-08-27 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-03-06 4763112]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-02-07 356120]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-02-07 787736]
R3 iwdbus;IWD Bus Enumerator; C:\Windows\system32\DRIVERS\iwdbus.sys [2011-12-21 25496]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2016-03-02 192216]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-10-05 63704]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-08-06 62784]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2012-01-09 11416576]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-07-25 20256]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSBASTOR;Realtek PCIE CardReader Driver - BA; C:\Windows\system32\DRIVERS\RtsBaStor.sys [2011-12-28 292456]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys []
S3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
S3 AMPPALP;Intel® Centrino® Wireless Bluetooth® + High Speed Protocol; C:\Windows\system32\DRIVERS\amppal.sys [2012-01-09 195584]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2012-02-24 80384]
S3 btmaux;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2011-12-13 94720]
S3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [2011-12-13 747008]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2011-05-14 48488]
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
S3 ibtfltcoex;ibtfltcoex; C:\Windows\system32\DRIVERS\iBtFltCoex.sys [2011-12-14 60416]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2011-12-21 34200]
S3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20); C:\Windows\system32\DRIVERS\L1C62x64.sys [2009-06-10 57344]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2011-03-04 379520]
R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2012-01-09 659968]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2011-11-21 80512]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-02-03 237096]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2011-12-20 1014096]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2011-12-20 1104208]
R2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-01-12 135952]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-12-08 618256]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2015-08-27 330136]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-03 628448]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-02-21 128280]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-21 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-29 277784]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-07-25 1720608]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-07-25 18956064]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-08-25 937776]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-12-08 148752]
R3 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-06-12 43336]
R3 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [2012-04-13 277120]
R3 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2011-12-20 1304912]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-08-01 641352]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-29 363800]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10 269504]
S3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe []
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2015-08-27 291744]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2011-05-14 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-01-22 114688]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-12-08 273168]
S3 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-10-16 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: YesSearches.com
Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Log je již OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: YesSearches.com
dobře, děkuji vám. Ještě se chci zeptat, zda nevíte o nějakém slušném programu, který udržuje aktualizované ovladače. Zatím jsem si nainstaloval SlimDrivers, ale nevím jestli to je ta nejlepší volba
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: YesSearches.com
Nedoporučuji žádný z těchto programů. Už jsem několikrát viděl, že stáhl nevhodný ovladač a systém pak jevil vady. Doporučuji ponechat ovladače, dokud vše správně funguje. V opačném případě se podívejte na web výrobce daného hardwaru a stáhněte aktuální ovladač ručně.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: YesSearches.com
Nemáte zač! 
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?