
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu logu - velmi pomalý ntb
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
libor.prajzler
- Návštěvník

- Příspěvky: 19
- Registrován: 17 pro 2015 18:15
Prosím o kontrolu logu - velmi pomalý ntb
V posledních dnech se mi velmi zpomalil ntb. Několik vteřin trvá i překlikávání mezi taby prohlížeče (Chrome, FF, i Edge, to je jedno), i kalkulačka se spouští třeba 7 vteřin apod. Procesor i paměť je de facto pořád u 100 %!
Logfile of random's system information tool 1.10 (written by random/random)
Run by libor.prajzler at 2016-03-18 15:12:10
Microsoft Windows 10 Home
System drive C: has 290 GB (62%) free of 467 GB
Total RAM: 3979 MB (12% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:12:22, on 18. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Users\libor.prajzler\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Dell Update\DellUpTray.exe
C:\Program Files (x86)\Dell Backup and Recovery\COMPONENTS\DBRUPDATE\DBRUPD.EXE
C:\Program Files (x86)\Dell Backup and Recovery\TOASTER.EXE
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\eBRANA_VPN\OpenVPN\bin\openvpn-gui-1.0.3.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\libor.prajzler.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://dell13.msn.com/?pc=DCJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: PDF Architect 3 Helper - {06E08260-0695-4EC1-A74B-1310D8899D93} - C:\Program Files (x86)\PDF Architect 3\creator-ie-helper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O3 - Toolbar: PDF Architect 3 Toolbar - {2DFF3579-5AA7-45B9-9328-1D38EA230861} - C:\Program Files (x86)\PDF Architect 3\creator-ie-plugin.dll
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [MalwareProtectionLive] C:\Users\libor.prajzler\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\libor.prajzler\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dell Customer Connect - Dell Inc. - C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
O23 - Service: Dell Data Vault (DellDataVault) - Dell Inc. - C:\Program Files\Dell\DellDataVault\DellDataVault.exe
O23 - Service: Dell Data Vault Wizard (DellDataVaultWiz) - Dell Inc. - C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
O23 - Service: Dell Product Registration Manager (DellProdRegManager) - Aviata, Inc. - C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe
O23 - Service: Dell Update Service (DellUpdate) - Dell Inc. - C:\Program Files (x86)\Dell Update\DellUpService.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - Unknown owner - C:\eBRANA_VPN\OpenVPN\bin\openvpnserv.exe
O23 - Service: PDF Architect 3 - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\ws.exe
O23 - Service: PDF Architect 3 CrashHandler - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe
O23 - Service: PDF Architect 3 Creator - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\creator-ws.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: SoftThinks Agent Service (SftService) - SoftThinks SAS - C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Dell SupportAssist Agent (SupportAssistAgent) - Dell Inc. - C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10887 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b7ec8ebe-6fe8-4268-837d-62b92c14417f -SystemEventPortName:HostProcess-4f398ae6-b472-4cb2-a3e4-d215e729cb35 -IoCancelEventPortName:HostProcess-4b7b87ce-0d9d-417e-94aa-0230910b6eb8 -NonStateChangingEventPortName:HostProcess-f43fd0be-8191-443f-9289-fc301f3e2807 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:37e8f26e-0a47-4e7b-ade6-9d9cb0699c34 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
dashost.exe {c1a028ff-2786-4294-b836f045ebd70845}
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
"C:\Program Files (x86)\PDF Architect 3\creator-ws.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Dell Customer Connect\DCCService.exe"
"C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe"
"C:\Program Files (x86)\Dell Update\DellUpService.exe"
"C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe"
"C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Dell\DellDataVault\DellDataVault.exe"
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SENDINPUT
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
/QuitInfo:0000000000001280;0000000000001228;
/loadhooks /Parent:000000000004fcd4
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX5
"C:\Program Files\Dell\QuickSet\quickset.exe"
"C:\Users\libor.prajzler\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\libor.prajzler\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0x1ac
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="332248.0.922577710\1487731740" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.4276 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.2.1971607127\1141287744" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.3.200597683\254105367" /prefetch:1
"C:\totalcmd\TOTALCMD64.EXE"
/x /hideintroballoon /launchedbywindowsservice
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Dell Backup and Recovery\COMPONENTS\DBRUPDATE\DBRUPD.EXE"
"C:\Program Files (x86)\Dell Backup and Recovery\TOASTER.EXE" C:\Users\libor.prajzler
C:\WINDOWS\sysWOW64\wbem\wmiprvse.exe -Embedding
"C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRSync.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.19.1627028439\1661476551" /prefetch:1
"C:\eBRANA_VPN\OpenVPN\bin\openvpn-gui-1.0.3.exe" --exe_path C:\eBRANA_VPN\OpenVPN\bin\openvpn.exe --config_dir C:\eBRANA_VPN\OpenVPN\Config --log_dir C:\eBRANA_VPN\OpenVPN\log
C:\WINDOWS\splwow64.exe 8192
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Dell\SupportAssist\uaclauncher.exe" -silentenumeration -st SystemToolsDailyTest --ignoresecondarysplash --runsilently
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.252.1309266549\683473861" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.254.81142528\535132182" /prefetch:1
"C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey A719E14D-0708-F508-152D-72149BFBC2E8 -Reinvoke
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.262.2023052864\1851985305" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.263.1272995270\270775117" /prefetch:1
"C:\Windows\System32\notepad.exe"
taskhostw.exe
"C:\WINDOWS\System32\Taskmgr.exe" /2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.264.1525540536\330903655" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.265.503794781\1542343314" /prefetch:1
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
"C:\Users\libor.prajzler\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\libor.prajzler\AppData\Roaming\Mozilla\Firefox\Profiles\7en47d7r.default-1446411230078
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\PDF Architect 3]
"Description"=
"Path"=C:\Program Files (x86)\PDF Architect 3\np-previewer.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll
C:\Users\libor.prajzler\AppData\Roaming\Mozilla\Firefox\Profiles\7en47d7r.default-1446411230078\extensions\
adbhelper@mozilla.org
fxdevtools-adapters@mozilla.org
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06E08260-0695-4EC1-A74B-1310D8899D93}]
PDF Architect 3 Helper - C:\Program Files (x86)\PDF Architect 3\creator-ie-helper.dll [2015-04-24 38104]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2DFF3579-5AA7-45B9-9328-1D38EA230861} - PDF Architect 3 Toolbar - C:\Program Files (x86)\PDF Architect 3\creator-ie-plugin.dll [2015-04-24 496344]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-12-11 8512760]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-12-11 1411320]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-14 3955888]
"QuickSet"=c:\Program Files\Dell\QuickSet\QuickSet.exe [2014-02-27 3775816]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\libor.prajzler\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-12 551112]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-12-08 8590760]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"MalwareProtectionLive"=C:\Users\libor.prajzler\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe [2016-02-08 1110048]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2ce.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"DisableCAD"=1
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
"NoFolderOptions"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-18 14:53:14 ----D---- C:\rsit
2016-03-12 06:59:06 ----SHD---- C:\Config.Msi
2016-03-11 05:39:07 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerInstaller.exe
2016-03-08 21:53:54 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-08 21:53:52 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-08 21:53:51 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-08 21:53:51 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-08 21:53:50 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-08 21:53:48 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-08 21:53:46 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-08 21:53:43 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-08 21:53:42 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-08 21:53:41 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-08 21:53:38 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-08 21:53:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-08 21:53:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-08 21:53:35 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-08 21:53:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-08 21:53:33 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-08 21:53:29 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-08 21:53:29 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-08 21:53:27 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-08 21:53:27 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-08 21:53:26 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-08 21:53:23 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-08 21:53:23 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-08 21:53:21 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-08 21:53:19 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-08 21:53:18 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-08 21:53:18 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-08 21:53:18 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-08 21:53:17 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-08 21:53:17 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-08 21:53:16 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-08 21:53:16 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-08 21:53:16 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-08 21:53:15 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-08 21:53:15 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-08 21:53:13 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-08 21:53:13 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-08 21:53:11 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-08 21:53:11 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-08 21:53:09 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-08 21:53:09 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-08 21:53:08 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-08 21:53:07 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-08 21:53:06 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-08 21:53:06 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-08 21:53:04 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-08 21:53:04 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-08 21:53:02 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-08 21:53:01 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-08 21:52:58 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-08 21:52:58 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-08 21:52:56 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-08 21:52:56 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-08 21:52:55 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-08 21:52:55 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-08 21:52:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-08 21:52:50 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-08 21:52:50 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-08 21:52:48 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-08 21:52:48 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-08 21:52:48 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-08 21:52:47 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-08 21:52:40 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-08 21:52:40 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-08 21:52:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-08 21:52:34 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-08 21:52:33 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-08 21:52:28 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-08 21:52:28 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-08 21:52:26 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-08 21:52:25 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-08 21:52:21 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 04:30:48 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 04:30:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 04:30:41 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 04:30:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 04:30:37 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 04:30:36 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 04:30:35 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 04:30:32 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 04:30:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 04:30:31 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 04:30:30 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 04:30:29 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 04:30:28 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 04:30:27 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 04:30:18 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 04:30:18 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 04:30:17 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 04:30:16 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 04:30:16 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 04:30:15 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 04:30:13 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 04:30:13 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 04:30:09 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 04:30:03 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 04:30:03 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 04:30:02 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 04:29:52 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 04:29:47 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 04:29:45 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 04:29:44 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 04:29:44 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 04:29:43 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 04:29:43 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 04:29:42 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 04:29:41 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 04:29:41 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 04:29:40 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 04:29:38 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 04:29:36 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 04:29:35 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 04:29:34 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 04:29:34 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 04:29:33 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 04:29:33 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 04:29:32 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 04:29:32 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 04:29:31 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 04:29:30 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 04:29:29 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 04:29:27 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 04:29:27 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 04:29:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 04:29:25 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 04:29:23 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 04:29:23 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 04:29:21 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 04:29:21 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 04:29:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 04:29:19 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 04:29:19 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 04:29:18 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 04:29:18 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 04:29:17 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 04:29:17 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 04:29:16 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 04:29:16 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 04:29:15 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 04:29:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 04:29:14 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 04:29:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 04:29:13 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 04:29:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 04:29:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 04:29:08 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 04:29:08 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 04:29:07 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 04:29:06 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 04:29:06 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 04:29:05 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 04:29:05 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 04:29:04 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 04:29:04 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 04:29:02 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 04:29:02 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 04:29:01 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 04:29:00 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 04:28:59 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 04:28:59 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 04:28:58 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 04:28:58 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 04:28:58 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 04:28:57 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 04:28:57 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 04:28:56 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 04:28:56 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 04:28:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 04:28:54 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 04:28:54 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 04:28:49 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 04:28:49 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 04:28:48 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 04:28:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 04:28:47 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 04:28:47 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 04:28:47 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 04:28:45 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 04:28:45 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 04:28:44 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 04:28:44 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 04:28:41 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 04:28:40 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 04:28:40 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 04:28:39 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 04:28:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 04:28:36 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 04:28:33 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 04:28:31 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 04:28:31 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-02 04:28:31 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-02-28 08:45:08 ----AD---- C:\Program Files (x86)\Mozilla Firefox
======List of files/folders modified in the last 1 month======
2016-03-18 15:12:20 ----D---- C:\Program Files\trend micro
2016-03-18 15:01:04 ----D---- C:\Users\libor.prajzler\AppData\Roaming\Skype
2016-03-18 15:00:08 ----D---- C:\WINDOWS\Prefetch
2016-03-18 14:23:07 ----D---- C:\WINDOWS\system32\sru
2016-03-18 14:11:35 ----D---- C:\WINDOWS\Temp
2016-03-18 09:35:51 ----SHD---- C:\System Volume Information
2016-03-18 09:34:50 ----D---- C:\Program Files (x86)\Dell Backup and Recovery
2016-03-18 06:22:32 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-17 21:45:49 ----D---- C:\WINDOWS\AppReadiness
2016-03-17 21:45:17 ----HD---- C:\Program Files\WindowsApps
2016-03-17 05:54:25 ----D---- C:\WINDOWS\system32\config
2016-03-17 04:06:41 ----D---- C:\Users\libor.prajzler\AppData\Roaming\vlc
2016-03-16 20:56:18 ----D---- C:\WINDOWS\debug
2016-03-16 14:16:14 ----D---- C:\Windows
2016-03-16 09:58:33 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-16 06:49:30 ----D---- C:\Users\libor.prajzler\AppData\Roaming\XnView
2016-03-16 06:49:01 ----D---- C:\WINDOWS\INF
2016-03-13 18:22:52 ----D---- C:\WINDOWS\System32
2016-03-13 18:22:52 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-12 08:32:09 ----SHD---- C:\WINDOWS\Installer
2016-03-12 08:32:06 ----D---- C:\ProgramData\Skype
2016-03-11 21:01:02 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-11 21:00:23 ----D---- C:\WINDOWS\WinSxS
2016-03-11 17:59:09 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 17:59:08 ----D---- C:\WINDOWS\SysWOW64
2016-03-10 06:26:15 ----RSD---- C:\WINDOWS\assembly
2016-03-10 04:08:50 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 04:08:50 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-09 18:03:05 ----D---- C:\WINDOWS\system32\drivers
2016-03-09 18:01:08 ----D---- C:\WINDOWS\system32\migration
2016-03-09 18:01:05 ----D---- C:\WINDOWS\AppPatch
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Portable Devices
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Media Player
2016-03-09 18:01:05 ----D---- C:\Program Files\Internet Explorer
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-08 21:40:38 ----D---- C:\WINDOWS\system32\catroot2
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-05 08:38:40 ----D---- C:\WINDOWS\rescache
2016-03-04 06:36:29 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-04 05:54:47 ----D---- C:\ProgramData\YTD Video Downloader
2016-03-02 06:22:24 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-03-02 06:17:18 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-02 06:17:18 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\wbem
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\Dism
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\Boot
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\appraiser
2016-03-02 06:17:10 ----RSD---- C:\WINDOWS\Media
2016-03-02 06:17:10 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-02 06:17:09 ----RSD---- C:\WINDOWS\Fonts
2016-03-02 06:17:09 ----D---- C:\WINDOWS\bcastdvr
2016-03-02 06:17:09 ----D---- C:\Program Files\Windows Journal
2016-02-29 18:28:03 ----D---- C:\Users\libor.prajzler\AppData\Roaming\uTorrent
2016-02-28 16:38:44 ----RD---- C:\Program Files (x86)
2016-02-25 08:41:55 ----D---- C:\WINDOWS\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 BTATH_BUS;@oem178.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2014-02-25 35016]
R0 stdcfltn;Disk Class Filter Driver for Accelerometer; C:\WINDOWS\system32\DRIVERS\stdcfltn.sys [2012-07-13 22168]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 athr;@oem36.inf,%ATHR.Service.DispName%;Dell Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athw10x.sys [2016-01-06 4341424]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2015-03-09 599240]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 DDDriver;DDDriver; C:\WINDOWS\system32\drivers\DDDriver64Dcsa.sys [2015-01-30 23760]
R3 DellProf;DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [2015-05-22 24240]
R3 DellRbtn;@oem105.inf,%DellRbtn%;Airplane Mode Switch; C:\WINDOWS\System32\drivers\DellRbtn.sys [2013-01-25 10752]
R3 iaioi2c;@oem88.inf,%Driver_Service.Desc%;I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2ce.sys [2013-11-11 67584]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-10-10 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-12-11 4518136]
R3 IntcDAud;@oem133.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iwdbus;@oem172.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 kiox_ff_driver;@oem29.inf,%kiox_ff_driver.SVCDESC%;Kionix freefall detection service; C:\WINDOWS\System32\drivers\kiox_ff_driver.sys [2015-06-15 41456]
R3 PCDSRVC{3B54B31B-D06B6431-06020200}_0;PCDSRVC{3B54B31B-D06B6431-06020200}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\program files\dell\supportassist\pcdsrvc_x64.pkms [2015-12-17 25584]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
R3 SensorsHIDClassDriver;@SensorsHidClassDriver.inf,%WudfSensorsHIDClassDriverDisplayName%;Služba Reflektor UMDF pro ovladač senzorů třídy HID; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2015-10-30 216064]
R3 SynRMIHID;@oem90.inf,%SynRMIHID.SVCDESC%;Synaptics HID Service; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [2015-09-14 67248]
R3 SynTP;@oem164.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-09-14 628912]
R3 tap0901;@oem160.inf,%DeviceDescription%;TAP-Win32 Adapter V9; C:\WINDOWS\System32\drivers\tap0901.sys [2011-07-01 31232]
R3 TXEIx64;@oem20.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2014-01-16 88592]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthA2DP;@wdma_bt.inf,%BthA2DP.SvcDesc%;Bluetooth stereo; C:\WINDOWS\system32\drivers\BthA2DP.sys [2015-10-30 165376]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
S3 BthHFAud;@wdma_bt.inf,%DISPLAY_NAME%;Bluetooth handsfree; C:\WINDOWS\system32\DRIVERS\BthHfAud.sys [2015-10-30 36864]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-01-05 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-12 117248]
S3 dg_ssudbus;@oem46.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 intaud_WaveExtensible;@oem53.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 iscFlash;iscFlash; \??\C:\Users\LIBOR~1.PRA\AppData\Local\Temp\7zS94BD.tmp\iscflashx64.sys []
S3 MiraDispKmd;@miradisp.inf,%MiraDispKmd%;Kernel Mode Miracast Filter Driver; C:\WINDOWS\System32\drivers\MiraDispKmd.sys [2015-10-30 23552]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RSUSBSTOR;@oem177.inf,%RSUSBSTOR.SvcDesc%;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2014-02-27 272088]
S3 ssudmdm;@oem64.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Dell Customer Connect;Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [2015-09-22 137968]
R2 DellDataVault;Dell Data Vault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2016-01-05 2571352]
R2 DellDataVaultWiz;Dell Data Vault Wizard; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [2016-01-05 201816]
R2 DellUpdate;Dell Update Service; C:\Program Files (x86)\Dell Update\DellUpService.exe [2015-08-27 237272]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-10-10 330136]
R2 OneSyncSvc_b6d13f6;Hostitel synchronizace_b6d13f6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 PDF Architect 3 Creator;PDF Architect 3 Creator; C:\Program Files (x86)\PDF Architect 3\creator-ws.exe [2015-04-24 740568]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-12-11 312056]
R2 SftService;SoftThinks Agent Service; C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe [2015-02-12 2005392]
R2 SupportAssistAgent;Dell SupportAssist Agent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [2016-01-12 31928]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-09-14 256688]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-09-11 5702416]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-10-10 291744]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 PimIndexMaintenanceSvc_b6d13f6;Data kontaktů_b6d13f6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_29d373;Hostitel synchronizace_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_56072;Hostitel synchronizace_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_5f690;Hostitel synchronizace_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-11 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DellProdRegManager;Dell Product Registration Manager; C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe [2014-10-31 278568]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_29d373;Služba zasílání zpráv_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_56072;Služba zasílání zpráv_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5f690;Služba zasílání zpráv_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_b6d13f6;Služba zasílání zpráv_b6d13f6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-02-28 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 OpenVPNService;OpenVPN Service; C:\eBRANA_VPN\OpenVPN\bin\openvpnserv.exe [2011-07-01 14848]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PDF Architect 3 CrashHandler;PDF Architect 3 CrashHandler; C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe [2015-04-24 901336]
S3 PDF Architect 3;PDF Architect 3; C:\Program Files (x86)\PDF Architect 3\ws.exe [2015-04-24 2244312]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_29d373;Data kontaktů_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_56072;Data kontaktů_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_5f690;Data kontaktů_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by libor.prajzler at 2016-03-18 15:12:10
Microsoft Windows 10 Home
System drive C: has 290 GB (62%) free of 467 GB
Total RAM: 3979 MB (12% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:12:22, on 18. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Users\libor.prajzler\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Dell Update\DellUpTray.exe
C:\Program Files (x86)\Dell Backup and Recovery\COMPONENTS\DBRUPDATE\DBRUPD.EXE
C:\Program Files (x86)\Dell Backup and Recovery\TOASTER.EXE
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\eBRANA_VPN\OpenVPN\bin\openvpn-gui-1.0.3.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\libor.prajzler.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://dell13.msn.com/?pc=DCJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: PDF Architect 3 Helper - {06E08260-0695-4EC1-A74B-1310D8899D93} - C:\Program Files (x86)\PDF Architect 3\creator-ie-helper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O3 - Toolbar: PDF Architect 3 Toolbar - {2DFF3579-5AA7-45B9-9328-1D38EA230861} - C:\Program Files (x86)\PDF Architect 3\creator-ie-plugin.dll
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [MalwareProtectionLive] C:\Users\libor.prajzler\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\libor.prajzler\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dell Customer Connect - Dell Inc. - C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
O23 - Service: Dell Data Vault (DellDataVault) - Dell Inc. - C:\Program Files\Dell\DellDataVault\DellDataVault.exe
O23 - Service: Dell Data Vault Wizard (DellDataVaultWiz) - Dell Inc. - C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
O23 - Service: Dell Product Registration Manager (DellProdRegManager) - Aviata, Inc. - C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe
O23 - Service: Dell Update Service (DellUpdate) - Dell Inc. - C:\Program Files (x86)\Dell Update\DellUpService.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - Unknown owner - C:\eBRANA_VPN\OpenVPN\bin\openvpnserv.exe
O23 - Service: PDF Architect 3 - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\ws.exe
O23 - Service: PDF Architect 3 CrashHandler - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe
O23 - Service: PDF Architect 3 Creator - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\creator-ws.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: SoftThinks Agent Service (SftService) - SoftThinks SAS - C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Dell SupportAssist Agent (SupportAssistAgent) - Dell Inc. - C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10887 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b7ec8ebe-6fe8-4268-837d-62b92c14417f -SystemEventPortName:HostProcess-4f398ae6-b472-4cb2-a3e4-d215e729cb35 -IoCancelEventPortName:HostProcess-4b7b87ce-0d9d-417e-94aa-0230910b6eb8 -NonStateChangingEventPortName:HostProcess-f43fd0be-8191-443f-9289-fc301f3e2807 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:37e8f26e-0a47-4e7b-ade6-9d9cb0699c34 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
dashost.exe {c1a028ff-2786-4294-b836f045ebd70845}
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
"C:\Program Files (x86)\PDF Architect 3\creator-ws.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Dell Customer Connect\DCCService.exe"
"C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe"
"C:\Program Files (x86)\Dell Update\DellUpService.exe"
"C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe"
"C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Dell\DellDataVault\DellDataVault.exe"
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SENDINPUT
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
/QuitInfo:0000000000001280;0000000000001228;
/loadhooks /Parent:000000000004fcd4
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX5
"C:\Program Files\Dell\QuickSet\quickset.exe"
"C:\Users\libor.prajzler\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\libor.prajzler\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0x1ac
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="332248.0.922577710\1487731740" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.4276 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.2.1971607127\1141287744" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.3.200597683\254105367" /prefetch:1
"C:\totalcmd\TOTALCMD64.EXE"
/x /hideintroballoon /launchedbywindowsservice
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Dell Backup and Recovery\COMPONENTS\DBRUPDATE\DBRUPD.EXE"
"C:\Program Files (x86)\Dell Backup and Recovery\TOASTER.EXE" C:\Users\libor.prajzler
C:\WINDOWS\sysWOW64\wbem\wmiprvse.exe -Embedding
"C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRSync.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.19.1627028439\1661476551" /prefetch:1
"C:\eBRANA_VPN\OpenVPN\bin\openvpn-gui-1.0.3.exe" --exe_path C:\eBRANA_VPN\OpenVPN\bin\openvpn.exe --config_dir C:\eBRANA_VPN\OpenVPN\Config --log_dir C:\eBRANA_VPN\OpenVPN\log
C:\WINDOWS\splwow64.exe 8192
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Dell\SupportAssist\uaclauncher.exe" -silentenumeration -st SystemToolsDailyTest --ignoresecondarysplash --runsilently
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.252.1309266549\683473861" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.254.81142528\535132182" /prefetch:1
"C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey A719E14D-0708-F508-152D-72149BFBC2E8 -Reinvoke
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.262.2023052864\1851985305" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.263.1272995270\270775117" /prefetch:1
"C:\Windows\System32\notepad.exe"
taskhostw.exe
"C:\WINDOWS\System32\Taskmgr.exe" /2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.264.1525540536\330903655" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="332248.265.503794781\1542343314" /prefetch:1
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
"C:\Users\libor.prajzler\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\libor.prajzler\AppData\Roaming\Mozilla\Firefox\Profiles\7en47d7r.default-1446411230078
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\PDF Architect 3]
"Description"=
"Path"=C:\Program Files (x86)\PDF Architect 3\np-previewer.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll
C:\Users\libor.prajzler\AppData\Roaming\Mozilla\Firefox\Profiles\7en47d7r.default-1446411230078\extensions\
adbhelper@mozilla.org
fxdevtools-adapters@mozilla.org
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06E08260-0695-4EC1-A74B-1310D8899D93}]
PDF Architect 3 Helper - C:\Program Files (x86)\PDF Architect 3\creator-ie-helper.dll [2015-04-24 38104]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2DFF3579-5AA7-45B9-9328-1D38EA230861} - PDF Architect 3 Toolbar - C:\Program Files (x86)\PDF Architect 3\creator-ie-plugin.dll [2015-04-24 496344]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-12-11 8512760]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-12-11 1411320]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-14 3955888]
"QuickSet"=c:\Program Files\Dell\QuickSet\QuickSet.exe [2014-02-27 3775816]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\libor.prajzler\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-12 551112]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-12-08 8590760]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"MalwareProtectionLive"=C:\Users\libor.prajzler\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe [2016-02-08 1110048]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2ce.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"DisableCAD"=1
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
"NoFolderOptions"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-18 14:53:14 ----D---- C:\rsit
2016-03-12 06:59:06 ----SHD---- C:\Config.Msi
2016-03-11 05:39:07 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerInstaller.exe
2016-03-08 21:53:54 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-08 21:53:52 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-08 21:53:51 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-08 21:53:51 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-08 21:53:50 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-08 21:53:48 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-08 21:53:46 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-08 21:53:43 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-08 21:53:42 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-08 21:53:41 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-08 21:53:38 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-08 21:53:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-08 21:53:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-08 21:53:35 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-08 21:53:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-08 21:53:33 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-08 21:53:29 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-08 21:53:29 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-08 21:53:27 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-08 21:53:27 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-08 21:53:26 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-08 21:53:23 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-08 21:53:23 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-08 21:53:21 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-08 21:53:19 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-08 21:53:18 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-08 21:53:18 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-08 21:53:18 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-08 21:53:17 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-08 21:53:17 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-08 21:53:16 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-08 21:53:16 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-08 21:53:16 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-08 21:53:15 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-08 21:53:15 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-08 21:53:13 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-08 21:53:13 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-08 21:53:11 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-08 21:53:11 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-08 21:53:09 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-08 21:53:09 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-08 21:53:08 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-08 21:53:07 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-08 21:53:06 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-08 21:53:06 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-08 21:53:04 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-08 21:53:04 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-08 21:53:02 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-08 21:53:01 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-08 21:52:58 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-08 21:52:58 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-08 21:52:56 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-08 21:52:56 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-08 21:52:55 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-08 21:52:55 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-08 21:52:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-08 21:52:50 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-08 21:52:50 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-08 21:52:48 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-08 21:52:48 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-08 21:52:48 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-08 21:52:47 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-08 21:52:40 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-08 21:52:40 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-08 21:52:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-08 21:52:34 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-08 21:52:33 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-08 21:52:28 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-08 21:52:28 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-08 21:52:26 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-08 21:52:25 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-08 21:52:21 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 04:30:48 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 04:30:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 04:30:41 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 04:30:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 04:30:37 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 04:30:36 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 04:30:35 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 04:30:32 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 04:30:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 04:30:31 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 04:30:30 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 04:30:29 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 04:30:28 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 04:30:27 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 04:30:18 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 04:30:18 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 04:30:17 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 04:30:16 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 04:30:16 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 04:30:15 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 04:30:13 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 04:30:13 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 04:30:09 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 04:30:03 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 04:30:03 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 04:30:02 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 04:29:52 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 04:29:47 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 04:29:45 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 04:29:44 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 04:29:44 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 04:29:43 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 04:29:43 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 04:29:42 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 04:29:41 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 04:29:41 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 04:29:40 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 04:29:38 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 04:29:36 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 04:29:35 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 04:29:34 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 04:29:34 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 04:29:33 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 04:29:33 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 04:29:32 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 04:29:32 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 04:29:31 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 04:29:30 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 04:29:29 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 04:29:27 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 04:29:27 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 04:29:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 04:29:25 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 04:29:23 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 04:29:23 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 04:29:21 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 04:29:21 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 04:29:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 04:29:19 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 04:29:19 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 04:29:18 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 04:29:18 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 04:29:17 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 04:29:17 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 04:29:16 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 04:29:16 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 04:29:15 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 04:29:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 04:29:14 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 04:29:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 04:29:13 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 04:29:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 04:29:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 04:29:08 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 04:29:08 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 04:29:07 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 04:29:06 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 04:29:06 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 04:29:05 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 04:29:05 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 04:29:04 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 04:29:04 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 04:29:02 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 04:29:02 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 04:29:01 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 04:29:00 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 04:28:59 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 04:28:59 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 04:28:58 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 04:28:58 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 04:28:58 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 04:28:57 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 04:28:57 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 04:28:56 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 04:28:56 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 04:28:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 04:28:54 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 04:28:54 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 04:28:49 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 04:28:49 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 04:28:48 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 04:28:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 04:28:47 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 04:28:47 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 04:28:47 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 04:28:45 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 04:28:45 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 04:28:44 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 04:28:44 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 04:28:41 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 04:28:40 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 04:28:40 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 04:28:39 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 04:28:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 04:28:36 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 04:28:33 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 04:28:31 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 04:28:31 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-02 04:28:31 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-02-28 08:45:08 ----AD---- C:\Program Files (x86)\Mozilla Firefox
======List of files/folders modified in the last 1 month======
2016-03-18 15:12:20 ----D---- C:\Program Files\trend micro
2016-03-18 15:01:04 ----D---- C:\Users\libor.prajzler\AppData\Roaming\Skype
2016-03-18 15:00:08 ----D---- C:\WINDOWS\Prefetch
2016-03-18 14:23:07 ----D---- C:\WINDOWS\system32\sru
2016-03-18 14:11:35 ----D---- C:\WINDOWS\Temp
2016-03-18 09:35:51 ----SHD---- C:\System Volume Information
2016-03-18 09:34:50 ----D---- C:\Program Files (x86)\Dell Backup and Recovery
2016-03-18 06:22:32 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-17 21:45:49 ----D---- C:\WINDOWS\AppReadiness
2016-03-17 21:45:17 ----HD---- C:\Program Files\WindowsApps
2016-03-17 05:54:25 ----D---- C:\WINDOWS\system32\config
2016-03-17 04:06:41 ----D---- C:\Users\libor.prajzler\AppData\Roaming\vlc
2016-03-16 20:56:18 ----D---- C:\WINDOWS\debug
2016-03-16 14:16:14 ----D---- C:\Windows
2016-03-16 09:58:33 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-16 06:49:30 ----D---- C:\Users\libor.prajzler\AppData\Roaming\XnView
2016-03-16 06:49:01 ----D---- C:\WINDOWS\INF
2016-03-13 18:22:52 ----D---- C:\WINDOWS\System32
2016-03-13 18:22:52 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-12 08:32:09 ----SHD---- C:\WINDOWS\Installer
2016-03-12 08:32:06 ----D---- C:\ProgramData\Skype
2016-03-11 21:01:02 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-11 21:00:23 ----D---- C:\WINDOWS\WinSxS
2016-03-11 17:59:09 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 17:59:08 ----D---- C:\WINDOWS\SysWOW64
2016-03-10 06:26:15 ----RSD---- C:\WINDOWS\assembly
2016-03-10 04:08:50 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 04:08:50 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-09 18:03:05 ----D---- C:\WINDOWS\system32\drivers
2016-03-09 18:01:08 ----D---- C:\WINDOWS\system32\migration
2016-03-09 18:01:05 ----D---- C:\WINDOWS\AppPatch
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Portable Devices
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Media Player
2016-03-09 18:01:05 ----D---- C:\Program Files\Internet Explorer
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-08 21:40:38 ----D---- C:\WINDOWS\system32\catroot2
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-05 08:38:40 ----D---- C:\WINDOWS\rescache
2016-03-04 06:36:29 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-04 05:54:47 ----D---- C:\ProgramData\YTD Video Downloader
2016-03-02 06:22:24 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-03-02 06:17:18 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-02 06:17:18 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\wbem
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\Dism
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\Boot
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\appraiser
2016-03-02 06:17:10 ----RSD---- C:\WINDOWS\Media
2016-03-02 06:17:10 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-02 06:17:09 ----RSD---- C:\WINDOWS\Fonts
2016-03-02 06:17:09 ----D---- C:\WINDOWS\bcastdvr
2016-03-02 06:17:09 ----D---- C:\Program Files\Windows Journal
2016-02-29 18:28:03 ----D---- C:\Users\libor.prajzler\AppData\Roaming\uTorrent
2016-02-28 16:38:44 ----RD---- C:\Program Files (x86)
2016-02-25 08:41:55 ----D---- C:\WINDOWS\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 BTATH_BUS;@oem178.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2014-02-25 35016]
R0 stdcfltn;Disk Class Filter Driver for Accelerometer; C:\WINDOWS\system32\DRIVERS\stdcfltn.sys [2012-07-13 22168]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 athr;@oem36.inf,%ATHR.Service.DispName%;Dell Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athw10x.sys [2016-01-06 4341424]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2015-03-09 599240]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 DDDriver;DDDriver; C:\WINDOWS\system32\drivers\DDDriver64Dcsa.sys [2015-01-30 23760]
R3 DellProf;DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [2015-05-22 24240]
R3 DellRbtn;@oem105.inf,%DellRbtn%;Airplane Mode Switch; C:\WINDOWS\System32\drivers\DellRbtn.sys [2013-01-25 10752]
R3 iaioi2c;@oem88.inf,%Driver_Service.Desc%;I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2ce.sys [2013-11-11 67584]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-10-10 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-12-11 4518136]
R3 IntcDAud;@oem133.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iwdbus;@oem172.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 kiox_ff_driver;@oem29.inf,%kiox_ff_driver.SVCDESC%;Kionix freefall detection service; C:\WINDOWS\System32\drivers\kiox_ff_driver.sys [2015-06-15 41456]
R3 PCDSRVC{3B54B31B-D06B6431-06020200}_0;PCDSRVC{3B54B31B-D06B6431-06020200}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\program files\dell\supportassist\pcdsrvc_x64.pkms [2015-12-17 25584]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
R3 SensorsHIDClassDriver;@SensorsHidClassDriver.inf,%WudfSensorsHIDClassDriverDisplayName%;Služba Reflektor UMDF pro ovladač senzorů třídy HID; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2015-10-30 216064]
R3 SynRMIHID;@oem90.inf,%SynRMIHID.SVCDESC%;Synaptics HID Service; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [2015-09-14 67248]
R3 SynTP;@oem164.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-09-14 628912]
R3 tap0901;@oem160.inf,%DeviceDescription%;TAP-Win32 Adapter V9; C:\WINDOWS\System32\drivers\tap0901.sys [2011-07-01 31232]
R3 TXEIx64;@oem20.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2014-01-16 88592]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthA2DP;@wdma_bt.inf,%BthA2DP.SvcDesc%;Bluetooth stereo; C:\WINDOWS\system32\drivers\BthA2DP.sys [2015-10-30 165376]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
S3 BthHFAud;@wdma_bt.inf,%DISPLAY_NAME%;Bluetooth handsfree; C:\WINDOWS\system32\DRIVERS\BthHfAud.sys [2015-10-30 36864]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-01-05 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-12 117248]
S3 dg_ssudbus;@oem46.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 intaud_WaveExtensible;@oem53.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 iscFlash;iscFlash; \??\C:\Users\LIBOR~1.PRA\AppData\Local\Temp\7zS94BD.tmp\iscflashx64.sys []
S3 MiraDispKmd;@miradisp.inf,%MiraDispKmd%;Kernel Mode Miracast Filter Driver; C:\WINDOWS\System32\drivers\MiraDispKmd.sys [2015-10-30 23552]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RSUSBSTOR;@oem177.inf,%RSUSBSTOR.SvcDesc%;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2014-02-27 272088]
S3 ssudmdm;@oem64.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Dell Customer Connect;Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [2015-09-22 137968]
R2 DellDataVault;Dell Data Vault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2016-01-05 2571352]
R2 DellDataVaultWiz;Dell Data Vault Wizard; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [2016-01-05 201816]
R2 DellUpdate;Dell Update Service; C:\Program Files (x86)\Dell Update\DellUpService.exe [2015-08-27 237272]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-10-10 330136]
R2 OneSyncSvc_b6d13f6;Hostitel synchronizace_b6d13f6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 PDF Architect 3 Creator;PDF Architect 3 Creator; C:\Program Files (x86)\PDF Architect 3\creator-ws.exe [2015-04-24 740568]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-12-11 312056]
R2 SftService;SoftThinks Agent Service; C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe [2015-02-12 2005392]
R2 SupportAssistAgent;Dell SupportAssist Agent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [2016-01-12 31928]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-09-14 256688]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-09-11 5702416]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-10-10 291744]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 PimIndexMaintenanceSvc_b6d13f6;Data kontaktů_b6d13f6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_29d373;Hostitel synchronizace_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_56072;Hostitel synchronizace_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_5f690;Hostitel synchronizace_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-11 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DellProdRegManager;Dell Product Registration Manager; C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe [2014-10-31 278568]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_29d373;Služba zasílání zpráv_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_56072;Služba zasílání zpráv_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5f690;Služba zasílání zpráv_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_b6d13f6;Služba zasílání zpráv_b6d13f6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-02-28 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 OpenVPNService;OpenVPN Service; C:\eBRANA_VPN\OpenVPN\bin\openvpnserv.exe [2011-07-01 14848]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PDF Architect 3 CrashHandler;PDF Architect 3 CrashHandler; C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe [2015-04-24 901336]
S3 PDF Architect 3;PDF Architect 3; C:\Program Files (x86)\PDF Architect 3\ws.exe [2015-04-24 2244312]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_29d373;Data kontaktů_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_56072;Data kontaktů_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_5f690;Data kontaktů_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - velmi pomalý ntb
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
libor.prajzler
- Návštěvník

- Příspěvky: 19
- Registrován: 17 pro 2015 18:15
Re: Prosím o kontrolu logu - velmi pomalý ntb
Zdravím, děkuji.
# AdwCleaner v5.102 - Logfile created 19/03/2016 at 08:45:33
# Updated 13/03/2016 by Xplode
# Database : 2016-03-18.1 [Server]
# Operating system : Windows 10 Home (x64)
# Username : libor.prajzler - PCLPMYCOMP
# Running from : C:\Users\libor.prajzler\Desktop\adwcleaner_5.102.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\GreenTree Applications
[-] Folder Deleted : C:\ProgramData\ytd video downloader
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader
[-] Folder Deleted : C:\Users\libor.prajzler\AppData\Local\MalwareProtectionLive
***** [ Files ] *****
[-] File Deleted : C:\Users\libor.prajzler\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Malware Protection Live.lnk
[-] File Deleted : C:\Users\Public\Desktop\YTD Video Downloader.lnk
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MalwareProtectionLive
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [MalwareProtectionLive]
***** [ Web browsers ] *****
[-] [C:\Users\libor.prajzler\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : shutterstock.com
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
*************************
C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [1646 bytes] - [19/03/2016 08:45:33]
C:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [1689 bytes] - [19/03/2016 08:42:08]
########## EOF - C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [1832 bytes] ##########
# AdwCleaner v5.102 - Logfile created 19/03/2016 at 08:45:33
# Updated 13/03/2016 by Xplode
# Database : 2016-03-18.1 [Server]
# Operating system : Windows 10 Home (x64)
# Username : libor.prajzler - PCLPMYCOMP
# Running from : C:\Users\libor.prajzler\Desktop\adwcleaner_5.102.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\GreenTree Applications
[-] Folder Deleted : C:\ProgramData\ytd video downloader
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader
[-] Folder Deleted : C:\Users\libor.prajzler\AppData\Local\MalwareProtectionLive
***** [ Files ] *****
[-] File Deleted : C:\Users\libor.prajzler\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Malware Protection Live.lnk
[-] File Deleted : C:\Users\Public\Desktop\YTD Video Downloader.lnk
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MalwareProtectionLive
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [MalwareProtectionLive]
***** [ Web browsers ] *****
[-] [C:\Users\libor.prajzler\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : shutterstock.com
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
*************************
C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [1646 bytes] - [19/03/2016 08:45:33]
C:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [1689 bytes] - [19/03/2016 08:42:08]
########## EOF - C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [1832 bytes] ##########
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - velmi pomalý ntb
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
libor.prajzler
- Návštěvník

- Příspěvky: 19
- Registrován: 17 pro 2015 18:15
Re: Prosím o kontrolu logu - velmi pomalý ntb
Logfile of random's system information tool 1.10 (written by random/random)
Run by libor.prajzler at 2016-03-19 16:06:34
Microsoft Windows 10 Home
System drive C: has 290 GB (62%) free of 467 GB
Total RAM: 3979 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:06:40, on 19. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Dell Update\DellUpTray.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files\trend micro\libor.prajzler.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://dell13.msn.com/?pc=DCJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: PDF Architect 3 Helper - {06E08260-0695-4EC1-A74B-1310D8899D93} - C:\Program Files (x86)\PDF Architect 3\creator-ie-helper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O3 - Toolbar: PDF Architect 3 Toolbar - {2DFF3579-5AA7-45B9-9328-1D38EA230861} - C:\Program Files (x86)\PDF Architect 3\creator-ie-plugin.dll
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKCU\..\Run: [OneDrive] "C:\Users\libor.prajzler\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dell Customer Connect - Dell Inc. - C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
O23 - Service: Dell Data Vault (DellDataVault) - Dell Inc. - C:\Program Files\Dell\DellDataVault\DellDataVault.exe
O23 - Service: Dell Data Vault Wizard (DellDataVaultWiz) - Dell Inc. - C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
O23 - Service: Dell Product Registration Manager (DellProdRegManager) - Aviata, Inc. - C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe
O23 - Service: Dell Update Service (DellUpdate) - Dell Inc. - C:\Program Files (x86)\Dell Update\DellUpService.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - Unknown owner - C:\eBRANA_VPN\OpenVPN\bin\openvpnserv.exe
O23 - Service: PDF Architect 3 - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\ws.exe
O23 - Service: PDF Architect 3 CrashHandler - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe
O23 - Service: PDF Architect 3 Creator - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\creator-ws.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: SoftThinks Agent Service (SftService) - SoftThinks SAS - C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Dell SupportAssist Agent (SupportAssistAgent) - Dell Inc. - C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9698 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-dfc41118-b066-471f-8c8d-9fafd977decf -SystemEventPortName:HostProcess-79e3506b-f027-48ba-a936-033a790d50f7 -IoCancelEventPortName:HostProcess-60b7af97-40ca-4cee-8dba-e6245d9c6de8 -NonStateChangingEventPortName:HostProcess-ed9dabde-4bea-462d-801b-ea8c5f5d1be3 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:1bc4e754-e2af-4812-9030-b48f24f57ca9 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SENDINPUT
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
dashost.exe {677f2741-a31c-4037-9bfaa6e18c933dea}
"C:\Program Files (x86)\PDF Architect 3\creator-ws.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Dell Customer Connect\DCCService.exe"
"C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe"
"C:\Program Files (x86)\Dell Update\DellUpService.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
taskeng.exe {244B3E64-DA80-4231-812F-4BAFE5839263}
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\Explorer.EXE
/x /hideintroballoon /launchedbywindowsservice
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
igfxEM.exe
igfxHK.exe
igfxTray.exe
/QuitInfo:0000000000000890;000000000000038C;
/loadhooks /Parent:0000000000001658
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX5
"C:\Program Files\Dell\QuickSet\quickset.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe"
"C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe"
"C:\Program Files\Dell\DellDataVault\DellDataVault.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.113_none_7689896a26389b16\TiWorker.exe -Embedding
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1368637417-3545678390-2215575575-10013_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1368637417-3545678390-2215575575-10013 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
taskhostw.exe
C:\WINDOWS\system32\PrintIsolationHost.exe -Embedding
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 620 624 632 8192 628
C:\WINDOWS\system32\wbem\WmiApSrv.exe
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{478B41E6-3257-4519-BDA8-E971F9843849}
"C:\WINDOWS\System32\NetworkUXBroker.exe" -ServerName:Windows.Networking.UX
"C:\Users\libor.prajzler\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\libor.prajzler\AppData\Roaming\Mozilla\Firefox\Profiles\7en47d7r.default-1446411230078
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\PDF Architect 3]
"Description"=
"Path"=C:\Program Files (x86)\PDF Architect 3\np-previewer.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll
C:\Users\libor.prajzler\AppData\Roaming\Mozilla\Firefox\Profiles\7en47d7r.default-1446411230078\extensions\
adbhelper@mozilla.org
fxdevtools-adapters@mozilla.org
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06E08260-0695-4EC1-A74B-1310D8899D93}]
PDF Architect 3 Helper - C:\Program Files (x86)\PDF Architect 3\creator-ie-helper.dll [2015-04-24 38104]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2DFF3579-5AA7-45B9-9328-1D38EA230861} - PDF Architect 3 Toolbar - C:\Program Files (x86)\PDF Architect 3\creator-ie-plugin.dll [2015-04-24 496344]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-12-11 8512760]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-12-11 1411320]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-14 3955888]
"QuickSet"=c:\Program Files\Dell\QuickSet\QuickSet.exe [2014-02-27 3775816]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\libor.prajzler\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-12 551112]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-12-08 8590760]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2ce.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"DisableCAD"=1
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
"NoFolderOptions"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-19 08:41:54 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-18 14:53:14 ----D---- C:\rsit
2016-03-12 06:59:06 ----SHD---- C:\Config.Msi
2016-03-11 05:39:07 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerInstaller.exe
2016-03-08 21:53:54 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-08 21:53:52 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-08 21:53:51 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-08 21:53:51 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-08 21:53:50 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-08 21:53:48 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-08 21:53:46 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-08 21:53:43 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-08 21:53:42 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-08 21:53:41 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-08 21:53:38 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-08 21:53:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-08 21:53:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-08 21:53:35 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-08 21:53:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-08 21:53:33 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-08 21:53:29 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-08 21:53:29 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-08 21:53:27 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-08 21:53:27 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-08 21:53:26 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-08 21:53:23 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-08 21:53:23 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-08 21:53:21 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-08 21:53:19 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-08 21:53:18 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-08 21:53:18 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-08 21:53:18 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-08 21:53:17 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-08 21:53:17 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-08 21:53:16 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-08 21:53:16 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-08 21:53:16 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-08 21:53:15 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-08 21:53:15 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-08 21:53:13 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-08 21:53:13 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-08 21:53:11 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-08 21:53:11 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-08 21:53:09 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-08 21:53:09 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-08 21:53:08 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-08 21:53:07 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-08 21:53:06 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-08 21:53:06 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-08 21:53:04 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-08 21:53:04 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-08 21:53:02 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-08 21:53:01 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-08 21:52:58 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-08 21:52:58 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-08 21:52:56 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-08 21:52:56 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-08 21:52:55 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-08 21:52:55 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-08 21:52:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-08 21:52:50 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-08 21:52:50 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-08 21:52:48 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-08 21:52:48 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-08 21:52:48 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-08 21:52:47 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-08 21:52:40 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-08 21:52:40 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-08 21:52:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-08 21:52:34 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-08 21:52:33 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-08 21:52:28 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-08 21:52:28 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-08 21:52:26 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-08 21:52:25 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-08 21:52:21 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 04:30:48 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 04:30:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 04:30:41 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 04:30:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 04:30:37 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 04:30:36 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 04:30:35 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 04:30:32 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 04:30:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 04:30:31 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 04:30:30 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 04:30:29 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 04:30:28 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 04:30:27 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 04:30:18 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 04:30:18 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 04:30:17 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 04:30:16 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 04:30:16 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 04:30:15 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 04:30:13 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 04:30:13 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 04:30:09 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 04:30:03 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 04:30:03 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 04:30:02 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 04:29:52 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 04:29:47 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 04:29:45 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 04:29:44 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 04:29:44 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 04:29:43 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 04:29:43 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 04:29:42 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 04:29:41 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 04:29:41 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 04:29:40 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 04:29:38 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 04:29:36 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 04:29:35 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 04:29:34 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 04:29:34 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 04:29:33 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 04:29:33 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 04:29:32 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 04:29:32 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 04:29:31 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 04:29:30 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 04:29:29 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 04:29:27 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 04:29:27 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 04:29:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 04:29:25 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 04:29:23 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 04:29:23 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 04:29:21 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 04:29:21 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 04:29:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 04:29:19 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 04:29:19 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 04:29:18 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 04:29:18 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 04:29:17 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 04:29:17 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 04:29:16 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 04:29:16 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 04:29:15 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 04:29:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 04:29:14 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 04:29:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 04:29:13 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 04:29:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 04:29:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 04:29:08 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 04:29:08 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 04:29:07 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 04:29:06 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 04:29:06 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 04:29:05 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 04:29:05 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 04:29:04 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 04:29:04 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 04:29:02 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 04:29:02 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 04:29:01 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 04:29:00 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 04:28:59 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 04:28:59 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 04:28:58 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 04:28:58 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 04:28:58 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 04:28:57 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 04:28:57 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 04:28:56 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 04:28:56 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 04:28:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 04:28:54 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 04:28:54 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 04:28:49 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 04:28:49 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 04:28:48 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 04:28:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 04:28:47 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 04:28:47 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 04:28:47 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 04:28:45 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 04:28:45 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 04:28:44 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 04:28:44 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 04:28:41 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 04:28:40 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 04:28:40 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 04:28:39 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 04:28:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 04:28:36 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 04:28:33 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 04:28:31 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 04:28:31 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-02 04:28:31 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-02-28 08:45:08 ----AD---- C:\Program Files (x86)\Mozilla Firefox
======List of files/folders modified in the last 1 month======
2016-03-19 16:06:37 ----D---- C:\Program Files\trend micro
2016-03-19 16:05:20 ----D---- C:\WINDOWS\system32\sru
2016-03-19 16:05:19 ----D---- C:\WINDOWS\System32
2016-03-19 16:05:19 ----D---- C:\WINDOWS\INF
2016-03-19 16:05:19 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-19 16:05:18 ----D---- C:\WINDOWS\Temp
2016-03-19 08:52:00 ----D---- C:\WINDOWS\Prefetch
2016-03-19 08:51:26 ----D---- C:\Program Files (x86)\Dell Backup and Recovery
2016-03-19 08:47:31 ----D---- C:\Windows
2016-03-19 08:45:36 ----HD---- C:\ProgramData
2016-03-19 08:45:35 ----RD---- C:\Program Files (x86)
2016-03-19 08:40:25 ----D---- C:\Users\libor.prajzler\AppData\Roaming\Skype
2016-03-18 22:44:14 ----D---- C:\WINDOWS\AppReadiness
2016-03-18 22:44:09 ----HD---- C:\Program Files\WindowsApps
2016-03-18 09:35:51 ----SHD---- C:\System Volume Information
2016-03-18 06:22:32 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-17 05:54:25 ----D---- C:\WINDOWS\system32\config
2016-03-17 04:06:41 ----D---- C:\Users\libor.prajzler\AppData\Roaming\vlc
2016-03-16 20:56:18 ----D---- C:\WINDOWS\debug
2016-03-16 09:58:33 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-16 06:49:30 ----D---- C:\Users\libor.prajzler\AppData\Roaming\XnView
2016-03-12 08:32:09 ----SHD---- C:\WINDOWS\Installer
2016-03-12 08:32:06 ----D---- C:\ProgramData\Skype
2016-03-11 21:01:02 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-11 21:00:23 ----D---- C:\WINDOWS\WinSxS
2016-03-11 17:59:09 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 17:59:08 ----D---- C:\WINDOWS\SysWOW64
2016-03-10 06:26:15 ----RSD---- C:\WINDOWS\assembly
2016-03-10 04:08:50 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 04:08:50 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-09 18:03:05 ----D---- C:\WINDOWS\system32\drivers
2016-03-09 18:01:08 ----D---- C:\WINDOWS\system32\migration
2016-03-09 18:01:05 ----D---- C:\WINDOWS\AppPatch
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Portable Devices
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Media Player
2016-03-09 18:01:05 ----D---- C:\Program Files\Internet Explorer
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-08 21:40:38 ----D---- C:\WINDOWS\system32\catroot2
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-05 08:38:40 ----D---- C:\WINDOWS\rescache
2016-03-04 06:36:29 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-02 06:22:24 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-03-02 06:17:18 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-02 06:17:18 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\wbem
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\Dism
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\Boot
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\appraiser
2016-03-02 06:17:10 ----RSD---- C:\WINDOWS\Media
2016-03-02 06:17:10 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-02 06:17:09 ----RSD---- C:\WINDOWS\Fonts
2016-03-02 06:17:09 ----D---- C:\WINDOWS\bcastdvr
2016-03-02 06:17:09 ----D---- C:\Program Files\Windows Journal
2016-02-29 18:28:03 ----D---- C:\Users\libor.prajzler\AppData\Roaming\uTorrent
2016-02-25 08:41:55 ----D---- C:\WINDOWS\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 BTATH_BUS;@oem178.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2014-02-25 35016]
R0 stdcfltn;Disk Class Filter Driver for Accelerometer; C:\WINDOWS\system32\DRIVERS\stdcfltn.sys [2012-07-13 22168]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 athr;@oem36.inf,%ATHR.Service.DispName%;Dell Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athw10x.sys [2016-01-06 4341424]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2015-03-09 599240]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 DDDriver;DDDriver; C:\WINDOWS\system32\drivers\DDDriver64Dcsa.sys [2015-01-30 23760]
R3 DellProf;DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [2015-05-22 24240]
R3 DellRbtn;@oem105.inf,%DellRbtn%;Airplane Mode Switch; C:\WINDOWS\System32\drivers\DellRbtn.sys [2013-01-25 10752]
R3 iaioi2c;@oem88.inf,%Driver_Service.Desc%;I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2ce.sys [2013-11-11 67584]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-10-10 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-12-11 4518136]
R3 IntcDAud;@oem133.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iwdbus;@oem172.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 kiox_ff_driver;@oem29.inf,%kiox_ff_driver.SVCDESC%;Kionix freefall detection service; C:\WINDOWS\System32\drivers\kiox_ff_driver.sys [2015-06-15 41456]
R3 SensorsHIDClassDriver;@SensorsHidClassDriver.inf,%WudfSensorsHIDClassDriverDisplayName%;Služba Reflektor UMDF pro ovladač senzorů třídy HID; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2015-10-30 216064]
R3 SynRMIHID;@oem90.inf,%SynRMIHID.SVCDESC%;Synaptics HID Service; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [2015-09-14 67248]
R3 SynTP;@oem164.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-09-14 628912]
R3 tap0901;@oem160.inf,%DeviceDescription%;TAP-Win32 Adapter V9; C:\WINDOWS\System32\drivers\tap0901.sys [2011-07-01 31232]
R3 TXEIx64;@oem20.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2014-01-16 88592]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthA2DP;@wdma_bt.inf,%BthA2DP.SvcDesc%;Bluetooth stereo; C:\WINDOWS\system32\drivers\BthA2DP.sys [2015-10-30 165376]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
S3 BthHFAud;@wdma_bt.inf,%DISPLAY_NAME%;Bluetooth handsfree; C:\WINDOWS\system32\DRIVERS\BthHfAud.sys [2015-10-30 36864]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-01-05 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-12 117248]
S3 dg_ssudbus;@oem46.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 intaud_WaveExtensible;@oem53.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 iscFlash;iscFlash; \??\C:\Users\LIBOR~1.PRA\AppData\Local\Temp\7zS94BD.tmp\iscflashx64.sys []
S3 MiraDispKmd;@miradisp.inf,%MiraDispKmd%;Kernel Mode Miracast Filter Driver; C:\WINDOWS\System32\drivers\MiraDispKmd.sys [2015-10-30 23552]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 PCDSRVC{3B54B31B-D06B6431-06020200}_0;PCDSRVC{3B54B31B-D06B6431-06020200}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\program files\dell\supportassist\pcdsrvc_x64.pkms [2015-12-17 25584]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
S3 RSUSBSTOR;@oem177.inf,%RSUSBSTOR.SvcDesc%;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2014-02-27 272088]
S3 ssudmdm;@oem64.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Dell Customer Connect;Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [2015-09-22 137968]
R2 DellDataVault;Dell Data Vault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2016-01-05 2571352]
R2 DellDataVaultWiz;Dell Data Vault Wizard; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [2016-01-05 201816]
R2 DellUpdate;Dell Update Service; C:\Program Files (x86)\Dell Update\DellUpService.exe [2015-08-27 237272]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-10-10 330136]
R2 OneSyncSvc_4e093;Hostitel synchronizace_4e093; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 PDF Architect 3 Creator;PDF Architect 3 Creator; C:\Program Files (x86)\PDF Architect 3\creator-ws.exe [2015-04-24 740568]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-12-11 312056]
R2 SftService;SoftThinks Agent Service; C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe [2015-02-12 2005392]
R2 SupportAssistAgent;Dell SupportAssist Agent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [2016-01-12 31928]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-09-14 256688]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-09-11 5702416]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-10-10 291744]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 PimIndexMaintenanceSvc_4e093;Data kontaktů_4e093; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_29d373;Hostitel synchronizace_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_56072;Hostitel synchronizace_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_5f690;Hostitel synchronizace_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-11 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DellProdRegManager;Dell Product Registration Manager; C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe [2014-10-31 278568]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_29d373;Služba zasílání zpráv_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e093;Služba zasílání zpráv_4e093; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_56072;Služba zasílání zpráv_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5f690;Služba zasílání zpráv_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-02-28 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 OpenVPNService;OpenVPN Service; C:\eBRANA_VPN\OpenVPN\bin\openvpnserv.exe [2011-07-01 14848]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PDF Architect 3 CrashHandler;PDF Architect 3 CrashHandler; C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe [2015-04-24 901336]
S3 PDF Architect 3;PDF Architect 3; C:\Program Files (x86)\PDF Architect 3\ws.exe [2015-04-24 2244312]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_29d373;Data kontaktů_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_56072;Data kontaktů_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_5f690;Data kontaktů_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Run by libor.prajzler at 2016-03-19 16:06:34
Microsoft Windows 10 Home
System drive C: has 290 GB (62%) free of 467 GB
Total RAM: 3979 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:06:40, on 19. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Dell Update\DellUpTray.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files\trend micro\libor.prajzler.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://dell13.msn.com/?pc=DCJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: PDF Architect 3 Helper - {06E08260-0695-4EC1-A74B-1310D8899D93} - C:\Program Files (x86)\PDF Architect 3\creator-ie-helper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O3 - Toolbar: PDF Architect 3 Toolbar - {2DFF3579-5AA7-45B9-9328-1D38EA230861} - C:\Program Files (x86)\PDF Architect 3\creator-ie-plugin.dll
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKCU\..\Run: [OneDrive] "C:\Users\libor.prajzler\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dell Customer Connect - Dell Inc. - C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
O23 - Service: Dell Data Vault (DellDataVault) - Dell Inc. - C:\Program Files\Dell\DellDataVault\DellDataVault.exe
O23 - Service: Dell Data Vault Wizard (DellDataVaultWiz) - Dell Inc. - C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
O23 - Service: Dell Product Registration Manager (DellProdRegManager) - Aviata, Inc. - C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe
O23 - Service: Dell Update Service (DellUpdate) - Dell Inc. - C:\Program Files (x86)\Dell Update\DellUpService.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - Unknown owner - C:\eBRANA_VPN\OpenVPN\bin\openvpnserv.exe
O23 - Service: PDF Architect 3 - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\ws.exe
O23 - Service: PDF Architect 3 CrashHandler - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe
O23 - Service: PDF Architect 3 Creator - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\creator-ws.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: SoftThinks Agent Service (SftService) - SoftThinks SAS - C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Dell SupportAssist Agent (SupportAssistAgent) - Dell Inc. - C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9698 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-dfc41118-b066-471f-8c8d-9fafd977decf -SystemEventPortName:HostProcess-79e3506b-f027-48ba-a936-033a790d50f7 -IoCancelEventPortName:HostProcess-60b7af97-40ca-4cee-8dba-e6245d9c6de8 -NonStateChangingEventPortName:HostProcess-ed9dabde-4bea-462d-801b-ea8c5f5d1be3 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:1bc4e754-e2af-4812-9030-b48f24f57ca9 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SENDINPUT
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
dashost.exe {677f2741-a31c-4037-9bfaa6e18c933dea}
"C:\Program Files (x86)\PDF Architect 3\creator-ws.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Dell Customer Connect\DCCService.exe"
"C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe"
"C:\Program Files (x86)\Dell Update\DellUpService.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
taskeng.exe {244B3E64-DA80-4231-812F-4BAFE5839263}
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\Explorer.EXE
/x /hideintroballoon /launchedbywindowsservice
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
igfxEM.exe
igfxHK.exe
igfxTray.exe
/QuitInfo:0000000000000890;000000000000038C;
/loadhooks /Parent:0000000000001658
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX5
"C:\Program Files\Dell\QuickSet\quickset.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe"
"C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe"
"C:\Program Files\Dell\DellDataVault\DellDataVault.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.113_none_7689896a26389b16\TiWorker.exe -Embedding
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1368637417-3545678390-2215575575-10013_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1368637417-3545678390-2215575575-10013 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
taskhostw.exe
C:\WINDOWS\system32\PrintIsolationHost.exe -Embedding
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 620 624 632 8192 628
C:\WINDOWS\system32\wbem\WmiApSrv.exe
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{478B41E6-3257-4519-BDA8-E971F9843849}
"C:\WINDOWS\System32\NetworkUXBroker.exe" -ServerName:Windows.Networking.UX
"C:\Users\libor.prajzler\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\libor.prajzler\AppData\Roaming\Mozilla\Firefox\Profiles\7en47d7r.default-1446411230078
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\PDF Architect 3]
"Description"=
"Path"=C:\Program Files (x86)\PDF Architect 3\np-previewer.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll
C:\Users\libor.prajzler\AppData\Roaming\Mozilla\Firefox\Profiles\7en47d7r.default-1446411230078\extensions\
adbhelper@mozilla.org
fxdevtools-adapters@mozilla.org
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06E08260-0695-4EC1-A74B-1310D8899D93}]
PDF Architect 3 Helper - C:\Program Files (x86)\PDF Architect 3\creator-ie-helper.dll [2015-04-24 38104]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2DFF3579-5AA7-45B9-9328-1D38EA230861} - PDF Architect 3 Toolbar - C:\Program Files (x86)\PDF Architect 3\creator-ie-plugin.dll [2015-04-24 496344]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-12-11 8512760]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-12-11 1411320]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-14 3955888]
"QuickSet"=c:\Program Files\Dell\QuickSet\QuickSet.exe [2014-02-27 3775816]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\libor.prajzler\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-12 551112]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-12-08 8590760]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2ce.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"DisableCAD"=1
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
"NoFolderOptions"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-19 08:41:54 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-18 14:53:14 ----D---- C:\rsit
2016-03-12 06:59:06 ----SHD---- C:\Config.Msi
2016-03-11 05:39:07 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerInstaller.exe
2016-03-08 21:53:54 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-08 21:53:52 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-08 21:53:51 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-08 21:53:51 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-08 21:53:50 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-08 21:53:48 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-08 21:53:46 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-08 21:53:43 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-08 21:53:42 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-08 21:53:41 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-08 21:53:38 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-08 21:53:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-08 21:53:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-08 21:53:35 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-08 21:53:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-08 21:53:33 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-08 21:53:29 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-08 21:53:29 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-08 21:53:27 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-08 21:53:27 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-08 21:53:26 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-08 21:53:23 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-08 21:53:23 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-08 21:53:21 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-08 21:53:19 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-08 21:53:18 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-08 21:53:18 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-08 21:53:18 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-08 21:53:17 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-08 21:53:17 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-08 21:53:16 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-08 21:53:16 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-08 21:53:16 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-08 21:53:15 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-08 21:53:15 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-08 21:53:13 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-08 21:53:13 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-08 21:53:11 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-08 21:53:11 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-08 21:53:09 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-08 21:53:09 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-08 21:53:08 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-08 21:53:07 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-08 21:53:06 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-08 21:53:06 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-08 21:53:04 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-08 21:53:04 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-08 21:53:02 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-08 21:53:01 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-08 21:52:58 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-08 21:52:58 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-08 21:52:56 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-08 21:52:56 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-08 21:52:55 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-08 21:52:55 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-08 21:52:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-08 21:52:50 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-08 21:52:50 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-08 21:52:48 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-08 21:52:48 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-08 21:52:48 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-08 21:52:47 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-08 21:52:40 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-08 21:52:40 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-08 21:52:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-08 21:52:34 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-08 21:52:33 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-08 21:52:28 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-08 21:52:28 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-08 21:52:26 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-08 21:52:25 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-08 21:52:21 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 04:30:48 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 04:30:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 04:30:41 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 04:30:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 04:30:37 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 04:30:36 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 04:30:35 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 04:30:32 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 04:30:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 04:30:31 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 04:30:30 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 04:30:29 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 04:30:28 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 04:30:27 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 04:30:18 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 04:30:18 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 04:30:17 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 04:30:16 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 04:30:16 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 04:30:15 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 04:30:13 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 04:30:13 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 04:30:09 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 04:30:03 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 04:30:03 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 04:30:02 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 04:29:52 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 04:29:47 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 04:29:45 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 04:29:44 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 04:29:44 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 04:29:43 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 04:29:43 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 04:29:42 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 04:29:41 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 04:29:41 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 04:29:40 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 04:29:38 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 04:29:36 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 04:29:35 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 04:29:34 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 04:29:34 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 04:29:33 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 04:29:33 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 04:29:32 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 04:29:32 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 04:29:31 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 04:29:30 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 04:29:29 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 04:29:27 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 04:29:27 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 04:29:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 04:29:25 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 04:29:23 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 04:29:23 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 04:29:21 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 04:29:21 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 04:29:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 04:29:19 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 04:29:19 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 04:29:18 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 04:29:18 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 04:29:17 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 04:29:17 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 04:29:16 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 04:29:16 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 04:29:15 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 04:29:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 04:29:14 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 04:29:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 04:29:13 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 04:29:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 04:29:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 04:29:08 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 04:29:08 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 04:29:07 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 04:29:06 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 04:29:06 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 04:29:05 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 04:29:05 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 04:29:04 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 04:29:04 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 04:29:02 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 04:29:02 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 04:29:01 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 04:29:00 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 04:28:59 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 04:28:59 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 04:28:58 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 04:28:58 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 04:28:58 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 04:28:57 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 04:28:57 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 04:28:56 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 04:28:56 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 04:28:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 04:28:54 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 04:28:54 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 04:28:49 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 04:28:49 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 04:28:48 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 04:28:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 04:28:47 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 04:28:47 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 04:28:47 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 04:28:45 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 04:28:45 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 04:28:44 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 04:28:44 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 04:28:41 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 04:28:40 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 04:28:40 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 04:28:39 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 04:28:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 04:28:36 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 04:28:33 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 04:28:31 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 04:28:31 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-02 04:28:31 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-02-28 08:45:08 ----AD---- C:\Program Files (x86)\Mozilla Firefox
======List of files/folders modified in the last 1 month======
2016-03-19 16:06:37 ----D---- C:\Program Files\trend micro
2016-03-19 16:05:20 ----D---- C:\WINDOWS\system32\sru
2016-03-19 16:05:19 ----D---- C:\WINDOWS\System32
2016-03-19 16:05:19 ----D---- C:\WINDOWS\INF
2016-03-19 16:05:19 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-19 16:05:18 ----D---- C:\WINDOWS\Temp
2016-03-19 08:52:00 ----D---- C:\WINDOWS\Prefetch
2016-03-19 08:51:26 ----D---- C:\Program Files (x86)\Dell Backup and Recovery
2016-03-19 08:47:31 ----D---- C:\Windows
2016-03-19 08:45:36 ----HD---- C:\ProgramData
2016-03-19 08:45:35 ----RD---- C:\Program Files (x86)
2016-03-19 08:40:25 ----D---- C:\Users\libor.prajzler\AppData\Roaming\Skype
2016-03-18 22:44:14 ----D---- C:\WINDOWS\AppReadiness
2016-03-18 22:44:09 ----HD---- C:\Program Files\WindowsApps
2016-03-18 09:35:51 ----SHD---- C:\System Volume Information
2016-03-18 06:22:32 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-17 05:54:25 ----D---- C:\WINDOWS\system32\config
2016-03-17 04:06:41 ----D---- C:\Users\libor.prajzler\AppData\Roaming\vlc
2016-03-16 20:56:18 ----D---- C:\WINDOWS\debug
2016-03-16 09:58:33 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-16 06:49:30 ----D---- C:\Users\libor.prajzler\AppData\Roaming\XnView
2016-03-12 08:32:09 ----SHD---- C:\WINDOWS\Installer
2016-03-12 08:32:06 ----D---- C:\ProgramData\Skype
2016-03-11 21:01:02 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-11 21:00:23 ----D---- C:\WINDOWS\WinSxS
2016-03-11 17:59:09 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 17:59:08 ----D---- C:\WINDOWS\SysWOW64
2016-03-10 06:26:15 ----RSD---- C:\WINDOWS\assembly
2016-03-10 04:08:50 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 04:08:50 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-09 18:03:05 ----D---- C:\WINDOWS\system32\drivers
2016-03-09 18:01:08 ----D---- C:\WINDOWS\system32\migration
2016-03-09 18:01:05 ----D---- C:\WINDOWS\AppPatch
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Portable Devices
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Media Player
2016-03-09 18:01:05 ----D---- C:\Program Files\Internet Explorer
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-08 21:40:38 ----D---- C:\WINDOWS\system32\catroot2
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-05 08:38:40 ----D---- C:\WINDOWS\rescache
2016-03-04 06:36:29 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-02 06:22:24 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-03-02 06:17:18 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-02 06:17:18 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\wbem
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\Dism
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\Boot
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\appraiser
2016-03-02 06:17:10 ----RSD---- C:\WINDOWS\Media
2016-03-02 06:17:10 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-02 06:17:09 ----RSD---- C:\WINDOWS\Fonts
2016-03-02 06:17:09 ----D---- C:\WINDOWS\bcastdvr
2016-03-02 06:17:09 ----D---- C:\Program Files\Windows Journal
2016-02-29 18:28:03 ----D---- C:\Users\libor.prajzler\AppData\Roaming\uTorrent
2016-02-25 08:41:55 ----D---- C:\WINDOWS\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 BTATH_BUS;@oem178.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2014-02-25 35016]
R0 stdcfltn;Disk Class Filter Driver for Accelerometer; C:\WINDOWS\system32\DRIVERS\stdcfltn.sys [2012-07-13 22168]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 athr;@oem36.inf,%ATHR.Service.DispName%;Dell Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athw10x.sys [2016-01-06 4341424]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2015-03-09 599240]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 DDDriver;DDDriver; C:\WINDOWS\system32\drivers\DDDriver64Dcsa.sys [2015-01-30 23760]
R3 DellProf;DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [2015-05-22 24240]
R3 DellRbtn;@oem105.inf,%DellRbtn%;Airplane Mode Switch; C:\WINDOWS\System32\drivers\DellRbtn.sys [2013-01-25 10752]
R3 iaioi2c;@oem88.inf,%Driver_Service.Desc%;I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2ce.sys [2013-11-11 67584]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-10-10 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-12-11 4518136]
R3 IntcDAud;@oem133.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iwdbus;@oem172.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 kiox_ff_driver;@oem29.inf,%kiox_ff_driver.SVCDESC%;Kionix freefall detection service; C:\WINDOWS\System32\drivers\kiox_ff_driver.sys [2015-06-15 41456]
R3 SensorsHIDClassDriver;@SensorsHidClassDriver.inf,%WudfSensorsHIDClassDriverDisplayName%;Služba Reflektor UMDF pro ovladač senzorů třídy HID; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2015-10-30 216064]
R3 SynRMIHID;@oem90.inf,%SynRMIHID.SVCDESC%;Synaptics HID Service; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [2015-09-14 67248]
R3 SynTP;@oem164.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-09-14 628912]
R3 tap0901;@oem160.inf,%DeviceDescription%;TAP-Win32 Adapter V9; C:\WINDOWS\System32\drivers\tap0901.sys [2011-07-01 31232]
R3 TXEIx64;@oem20.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2014-01-16 88592]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthA2DP;@wdma_bt.inf,%BthA2DP.SvcDesc%;Bluetooth stereo; C:\WINDOWS\system32\drivers\BthA2DP.sys [2015-10-30 165376]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
S3 BthHFAud;@wdma_bt.inf,%DISPLAY_NAME%;Bluetooth handsfree; C:\WINDOWS\system32\DRIVERS\BthHfAud.sys [2015-10-30 36864]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-01-05 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-12 117248]
S3 dg_ssudbus;@oem46.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 intaud_WaveExtensible;@oem53.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 iscFlash;iscFlash; \??\C:\Users\LIBOR~1.PRA\AppData\Local\Temp\7zS94BD.tmp\iscflashx64.sys []
S3 MiraDispKmd;@miradisp.inf,%MiraDispKmd%;Kernel Mode Miracast Filter Driver; C:\WINDOWS\System32\drivers\MiraDispKmd.sys [2015-10-30 23552]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 PCDSRVC{3B54B31B-D06B6431-06020200}_0;PCDSRVC{3B54B31B-D06B6431-06020200}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\program files\dell\supportassist\pcdsrvc_x64.pkms [2015-12-17 25584]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
S3 RSUSBSTOR;@oem177.inf,%RSUSBSTOR.SvcDesc%;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2014-02-27 272088]
S3 ssudmdm;@oem64.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Dell Customer Connect;Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [2015-09-22 137968]
R2 DellDataVault;Dell Data Vault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2016-01-05 2571352]
R2 DellDataVaultWiz;Dell Data Vault Wizard; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [2016-01-05 201816]
R2 DellUpdate;Dell Update Service; C:\Program Files (x86)\Dell Update\DellUpService.exe [2015-08-27 237272]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-10-10 330136]
R2 OneSyncSvc_4e093;Hostitel synchronizace_4e093; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 PDF Architect 3 Creator;PDF Architect 3 Creator; C:\Program Files (x86)\PDF Architect 3\creator-ws.exe [2015-04-24 740568]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-12-11 312056]
R2 SftService;SoftThinks Agent Service; C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe [2015-02-12 2005392]
R2 SupportAssistAgent;Dell SupportAssist Agent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [2016-01-12 31928]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-09-14 256688]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-09-11 5702416]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-10-10 291744]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 PimIndexMaintenanceSvc_4e093;Data kontaktů_4e093; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_29d373;Hostitel synchronizace_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_56072;Hostitel synchronizace_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_5f690;Hostitel synchronizace_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-11 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DellProdRegManager;Dell Product Registration Manager; C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe [2014-10-31 278568]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_29d373;Služba zasílání zpráv_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e093;Služba zasílání zpráv_4e093; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_56072;Služba zasílání zpráv_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5f690;Služba zasílání zpráv_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-02-28 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 OpenVPNService;OpenVPN Service; C:\eBRANA_VPN\OpenVPN\bin\openvpnserv.exe [2011-07-01 14848]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PDF Architect 3 CrashHandler;PDF Architect 3 CrashHandler; C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe [2015-04-24 901336]
S3 PDF Architect 3;PDF Architect 3; C:\Program Files (x86)\PDF Architect 3\ws.exe [2015-04-24 2244312]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_29d373;Data kontaktů_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_56072;Data kontaktů_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_5f690;Data kontaktů_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - velmi pomalý ntb
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]/64
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
libor.prajzler
- Návštěvník

- Příspěvky: 19
- Registrován: 17 pro 2015 18:15
Re: Prosím o kontrolu logu - velmi pomalý ntb
Nejprve log toho OTM
-------------------------
All processes killed
========== FILES ==========
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
========== REGISTRY ==========
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar\ deleted successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default.migrated
User: libor.prajzler
->Temp folder emptied: 95207042 bytes
->Temporary Internet Files folder emptied: 8481403 bytes
->FireFox cache emptied: 374895503 bytes
->Google Chrome cache emptied: 381458102 bytes
->Flash cache emptied: 1021 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 9551505 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 829,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: Default.migrated
User: libor.prajzler
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
OTM by OldTimer - Version 3.1.21.0 log created on 03192016_180839
Files moved on Reboot...
File move failed. C:\Users\libor.prajzler\AppData\Local\Microsoft\Windows\INetCache\counters.dat scheduled to be moved on reboot.
Registry entries deleted on Reboot...
-------------------------
All processes killed
========== FILES ==========
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
========== REGISTRY ==========
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar\ deleted successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default.migrated
User: libor.prajzler
->Temp folder emptied: 95207042 bytes
->Temporary Internet Files folder emptied: 8481403 bytes
->FireFox cache emptied: 374895503 bytes
->Google Chrome cache emptied: 381458102 bytes
->Flash cache emptied: 1021 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 9551505 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 829,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: Default.migrated
User: libor.prajzler
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
OTM by OldTimer - Version 3.1.21.0 log created on 03192016_180839
Files moved on Reboot...
File move failed. C:\Users\libor.prajzler\AppData\Local\Microsoft\Windows\INetCache\counters.dat scheduled to be moved on reboot.
Registry entries deleted on Reboot...
-
libor.prajzler
- Návštěvník

- Příspěvky: 19
- Registrován: 17 pro 2015 18:15
Re: Prosím o kontrolu logu - velmi pomalý ntb
Logfile of random's system information tool 1.10 (written by random/random)
Run by libor.prajzler at 2016-03-19 18:15:29
Microsoft Windows 10 Home
System drive C: has 291 GB (62%) free of 467 GB
Total RAM: 3979 MB (53% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:15:43, on 19. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Dell Update\DellUpTray.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\libor.prajzler.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://dell13.msn.com/?pc=DCJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: PDF Architect 3 Helper - {06E08260-0695-4EC1-A74B-1310D8899D93} - C:\Program Files (x86)\PDF Architect 3\creator-ie-helper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKCU\..\Run: [OneDrive] "C:\Users\libor.prajzler\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dell Customer Connect - Dell Inc. - C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
O23 - Service: Dell Data Vault (DellDataVault) - Dell Inc. - C:\Program Files\Dell\DellDataVault\DellDataVault.exe
O23 - Service: Dell Data Vault Wizard (DellDataVaultWiz) - Dell Inc. - C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
O23 - Service: Dell Product Registration Manager (DellProdRegManager) - Aviata, Inc. - C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe
O23 - Service: Dell Update Service (DellUpdate) - Dell Inc. - C:\Program Files (x86)\Dell Update\DellUpService.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - Unknown owner - C:\eBRANA_VPN\OpenVPN\bin\openvpnserv.exe
O23 - Service: PDF Architect 3 - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\ws.exe
O23 - Service: PDF Architect 3 CrashHandler - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe
O23 - Service: PDF Architect 3 Creator - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\creator-ws.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: SoftThinks Agent Service (SftService) - SoftThinks SAS - C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Dell SupportAssist Agent (SupportAssistAgent) - Dell Inc. - C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10043 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ba91c84b-9798-4d76-8670-4eaff75346d0 -SystemEventPortName:HostProcess-d9743a83-d5f3-415e-927a-1cee578e75ad -IoCancelEventPortName:HostProcess-90ca1d98-1d22-4101-b545-d20a3bb6e815 -NonStateChangingEventPortName:HostProcess-7c561d75-04ef-43e7-a257-0080ab14be35 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:9e28bc97-d2d4-4c8f-8c01-16cd71bde17d -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SENDINPUT
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
dashost.exe {d0c35912-a10e-4f5f-8d83f65e49b93cf8}
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\PDF Architect 3\creator-ws.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Dell Customer Connect\DCCService.exe"
"C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe"
"C:\Program Files (x86)\Dell Update\DellUpService.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
sihost.exe
taskeng.exe {431FEC30-F232-40BE-8B3F-8CA1F3FA7BEF}
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
/x /hideintroballoon /launchedbywindowsservice
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
igfxEM.exe
igfxHK.exe
/QuitInfo:0000000000000CF0;0000000000000CF4;
igfxTray.exe
/loadhooks /Parent:00000000000016c8
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\WINDOWS\notepad.exe" C:\_OTM\MovedFiles\03192016_180839.log
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX5
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 612 624 632 8192 628
"C:\Program Files\Dell\QuickSet\quickset.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe"
"C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\libor.prajzler\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0x1ac
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="948.0.1781695555\1433536556" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.4276 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="948.2.1772086702\1855048176" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="948.3.500984953\1828792822" /prefetch:1
taskhostw.exe
"C:\Program Files (x86)\Dell Product Registration\prodreg.exe" /updatecheck /LSRC=autolaunch
"C:\Program Files\Dell\DellDataVault\DellDataVault.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="948.5.1922480738\1858747621" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="948.7.206776383\1570127474" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="948.8.918705480\380936997" /prefetch:1
C:\WINDOWS\system32\wbem\WmiApSrv.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1368637417-3545678390-2215575575-10012_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1368637417-3545678390-2215575575-10012 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXmtcan0h2tfbfy7k9kn8hbxb6dmzz1zh0.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x.AppX368sbpk1kx658x0p332evjk2v0y02kxp.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6568.46331.0_x64__8wekyb3d8bbwe\HxTsr.exe" -ServerName:Hx.IPC.Server
"C:\Users\libor.prajzler\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\libor.prajzler\AppData\Roaming\Mozilla\Firefox\Profiles\7en47d7r.default-1446411230078
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\PDF Architect 3]
"Description"=
"Path"=C:\Program Files (x86)\PDF Architect 3\np-previewer.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll
C:\Users\libor.prajzler\AppData\Roaming\Mozilla\Firefox\Profiles\7en47d7r.default-1446411230078\extensions\
adbhelper@mozilla.org
fxdevtools-adapters@mozilla.org
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06E08260-0695-4EC1-A74B-1310D8899D93}]
PDF Architect 3 Helper - C:\Program Files (x86)\PDF Architect 3\creator-ie-helper.dll [2015-04-24 38104]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-12-11 8512760]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-12-11 1411320]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-14 3955888]
"QuickSet"=c:\Program Files\Dell\QuickSet\QuickSet.exe [2014-02-27 3775816]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\libor.prajzler\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-12 551112]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-12-08 8590760]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2ce.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"DisableCAD"=1
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
"NoFolderOptions"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-19 08:41:54 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-18 14:53:14 ----D---- C:\rsit
2016-03-12 06:59:06 ----SHD---- C:\Config.Msi
2016-03-11 05:39:07 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerInstaller.exe
2016-03-08 21:53:54 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-08 21:53:52 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-08 21:53:51 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-08 21:53:51 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-08 21:53:50 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-08 21:53:48 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-08 21:53:46 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-08 21:53:43 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-08 21:53:42 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-08 21:53:41 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-08 21:53:38 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-08 21:53:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-08 21:53:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-08 21:53:35 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-08 21:53:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-08 21:53:33 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-08 21:53:29 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-08 21:53:29 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-08 21:53:27 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-08 21:53:27 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-08 21:53:26 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-08 21:53:23 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-08 21:53:23 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-08 21:53:21 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-08 21:53:19 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-08 21:53:18 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-08 21:53:18 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-08 21:53:18 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-08 21:53:17 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-08 21:53:17 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-08 21:53:16 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-08 21:53:16 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-08 21:53:16 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-08 21:53:15 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-08 21:53:15 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-08 21:53:13 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-08 21:53:13 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-08 21:53:11 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-08 21:53:11 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-08 21:53:09 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-08 21:53:09 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-08 21:53:08 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-08 21:53:07 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-08 21:53:06 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-08 21:53:06 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-08 21:53:04 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-08 21:53:04 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-08 21:53:02 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-08 21:53:01 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-08 21:52:58 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-08 21:52:58 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-08 21:52:56 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-08 21:52:56 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-08 21:52:55 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-08 21:52:55 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-08 21:52:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-08 21:52:50 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-08 21:52:50 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-08 21:52:48 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-08 21:52:48 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-08 21:52:48 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-08 21:52:47 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-08 21:52:40 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-08 21:52:40 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-08 21:52:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-08 21:52:34 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-08 21:52:33 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-08 21:52:28 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-08 21:52:28 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-08 21:52:26 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-08 21:52:25 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-08 21:52:21 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 04:30:48 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 04:30:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 04:30:41 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 04:30:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 04:30:37 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 04:30:36 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 04:30:35 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 04:30:32 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 04:30:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 04:30:31 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 04:30:30 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 04:30:29 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 04:30:28 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 04:30:27 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 04:30:18 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 04:30:18 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 04:30:17 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 04:30:16 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 04:30:16 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 04:30:15 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 04:30:13 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 04:30:13 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 04:30:09 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 04:30:03 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 04:30:03 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 04:30:02 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 04:29:52 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 04:29:47 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 04:29:45 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 04:29:44 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 04:29:44 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 04:29:43 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 04:29:43 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 04:29:42 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 04:29:41 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 04:29:41 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 04:29:40 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 04:29:38 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 04:29:36 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 04:29:35 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 04:29:34 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 04:29:34 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 04:29:33 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 04:29:33 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 04:29:32 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 04:29:32 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 04:29:31 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 04:29:30 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 04:29:29 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 04:29:27 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 04:29:27 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 04:29:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 04:29:25 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 04:29:23 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 04:29:23 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 04:29:21 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 04:29:21 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 04:29:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 04:29:19 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 04:29:19 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 04:29:18 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 04:29:18 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 04:29:17 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 04:29:17 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 04:29:16 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 04:29:16 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 04:29:15 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 04:29:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 04:29:14 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 04:29:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 04:29:13 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 04:29:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 04:29:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 04:29:08 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 04:29:08 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 04:29:07 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 04:29:06 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 04:29:06 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 04:29:05 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 04:29:05 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 04:29:04 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 04:29:04 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 04:29:02 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 04:29:02 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 04:29:01 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 04:29:00 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 04:28:59 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 04:28:59 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 04:28:58 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 04:28:58 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 04:28:58 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 04:28:57 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 04:28:57 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 04:28:56 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 04:28:56 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 04:28:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 04:28:54 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 04:28:54 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 04:28:49 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 04:28:49 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 04:28:48 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 04:28:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 04:28:47 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 04:28:47 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 04:28:47 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 04:28:45 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 04:28:45 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 04:28:44 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 04:28:44 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 04:28:41 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 04:28:40 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 04:28:40 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 04:28:39 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 04:28:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 04:28:36 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 04:28:33 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 04:28:31 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 04:28:31 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-02 04:28:31 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-02-28 08:45:08 ----AD---- C:\Program Files (x86)\Mozilla Firefox
======List of files/folders modified in the last 1 month======
2016-03-19 18:15:40 ----D---- C:\Program Files\trend micro
2016-03-19 18:15:24 ----D---- C:\WINDOWS\Prefetch
2016-03-19 18:14:50 ----D---- C:\WINDOWS\Temp
2016-03-19 18:14:00 ----D---- C:\Program Files (x86)\Dell Backup and Recovery
2016-03-19 18:10:08 ----D---- C:\WINDOWS\system32\sru
2016-03-19 18:08:40 ----D---- C:\WINDOWS\Tasks
2016-03-19 17:08:45 ----SHD---- C:\System Volume Information
2016-03-19 16:22:15 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-19 16:21:50 ----D---- C:\WINDOWS\INF
2016-03-19 16:05:19 ----D---- C:\WINDOWS\System32
2016-03-19 16:05:19 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-19 08:47:31 ----D---- C:\Windows
2016-03-19 08:45:36 ----HD---- C:\ProgramData
2016-03-19 08:45:35 ----RD---- C:\Program Files (x86)
2016-03-19 08:40:25 ----D---- C:\Users\libor.prajzler\AppData\Roaming\Skype
2016-03-18 22:44:14 ----D---- C:\WINDOWS\AppReadiness
2016-03-18 22:44:09 ----HD---- C:\Program Files\WindowsApps
2016-03-17 05:54:25 ----D---- C:\WINDOWS\system32\config
2016-03-17 04:06:41 ----D---- C:\Users\libor.prajzler\AppData\Roaming\vlc
2016-03-16 20:56:18 ----D---- C:\WINDOWS\debug
2016-03-16 09:58:33 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-16 06:49:30 ----D---- C:\Users\libor.prajzler\AppData\Roaming\XnView
2016-03-12 08:32:09 ----SHD---- C:\WINDOWS\Installer
2016-03-12 08:32:06 ----D---- C:\ProgramData\Skype
2016-03-11 21:01:02 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-11 21:00:23 ----D---- C:\WINDOWS\WinSxS
2016-03-11 17:59:09 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 17:59:08 ----D---- C:\WINDOWS\SysWOW64
2016-03-10 06:26:15 ----RSD---- C:\WINDOWS\assembly
2016-03-10 04:08:50 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 04:08:50 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-09 18:03:05 ----D---- C:\WINDOWS\system32\drivers
2016-03-09 18:01:08 ----D---- C:\WINDOWS\system32\migration
2016-03-09 18:01:05 ----D---- C:\WINDOWS\AppPatch
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Portable Devices
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Media Player
2016-03-09 18:01:05 ----D---- C:\Program Files\Internet Explorer
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-08 21:40:38 ----D---- C:\WINDOWS\system32\catroot2
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-05 08:38:40 ----D---- C:\WINDOWS\rescache
2016-03-04 06:36:29 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-02 06:22:24 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-03-02 06:17:18 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-02 06:17:18 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\wbem
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\Dism
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\Boot
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\appraiser
2016-03-02 06:17:10 ----RSD---- C:\WINDOWS\Media
2016-03-02 06:17:10 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-02 06:17:09 ----RSD---- C:\WINDOWS\Fonts
2016-03-02 06:17:09 ----D---- C:\WINDOWS\bcastdvr
2016-03-02 06:17:09 ----D---- C:\Program Files\Windows Journal
2016-02-29 18:28:03 ----D---- C:\Users\libor.prajzler\AppData\Roaming\uTorrent
2016-02-25 08:41:55 ----D---- C:\WINDOWS\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 BTATH_BUS;@oem178.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2014-02-25 35016]
R0 stdcfltn;Disk Class Filter Driver for Accelerometer; C:\WINDOWS\system32\DRIVERS\stdcfltn.sys [2012-07-13 22168]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 athr;@oem36.inf,%ATHR.Service.DispName%;Dell Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athw10x.sys [2016-01-06 4341424]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2015-03-09 599240]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 DDDriver;DDDriver; C:\WINDOWS\system32\drivers\DDDriver64Dcsa.sys [2015-01-30 23760]
R3 DellProf;DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [2015-05-22 24240]
R3 DellRbtn;@oem105.inf,%DellRbtn%;Airplane Mode Switch; C:\WINDOWS\System32\drivers\DellRbtn.sys [2013-01-25 10752]
R3 iaioi2c;@oem88.inf,%Driver_Service.Desc%;I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2ce.sys [2013-11-11 67584]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-10-10 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-12-11 4518136]
R3 IntcDAud;@oem133.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iwdbus;@oem172.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 kiox_ff_driver;@oem29.inf,%kiox_ff_driver.SVCDESC%;Kionix freefall detection service; C:\WINDOWS\System32\drivers\kiox_ff_driver.sys [2015-06-15 41456]
R3 SensorsHIDClassDriver;@SensorsHidClassDriver.inf,%WudfSensorsHIDClassDriverDisplayName%;Služba Reflektor UMDF pro ovladač senzorů třídy HID; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2015-10-30 216064]
R3 SynRMIHID;@oem90.inf,%SynRMIHID.SVCDESC%;Synaptics HID Service; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [2015-09-14 67248]
R3 SynTP;@oem164.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-09-14 628912]
R3 tap0901;@oem160.inf,%DeviceDescription%;TAP-Win32 Adapter V9; C:\WINDOWS\System32\drivers\tap0901.sys [2011-07-01 31232]
R3 TXEIx64;@oem20.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2014-01-16 88592]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthA2DP;@wdma_bt.inf,%BthA2DP.SvcDesc%;Bluetooth stereo; C:\WINDOWS\system32\drivers\BthA2DP.sys [2015-10-30 165376]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
S3 BthHFAud;@wdma_bt.inf,%DISPLAY_NAME%;Bluetooth handsfree; C:\WINDOWS\system32\DRIVERS\BthHfAud.sys [2015-10-30 36864]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-01-05 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-12 117248]
S3 dg_ssudbus;@oem46.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 intaud_WaveExtensible;@oem53.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 iscFlash;iscFlash; \??\C:\Users\LIBOR~1.PRA\AppData\Local\Temp\7zS94BD.tmp\iscflashx64.sys []
S3 MiraDispKmd;@miradisp.inf,%MiraDispKmd%;Kernel Mode Miracast Filter Driver; C:\WINDOWS\System32\drivers\MiraDispKmd.sys [2015-10-30 23552]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 PCDSRVC{3B54B31B-D06B6431-06020200}_0;PCDSRVC{3B54B31B-D06B6431-06020200}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\program files\dell\supportassist\pcdsrvc_x64.pkms [2015-12-17 25584]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
S3 RSUSBSTOR;@oem177.inf,%RSUSBSTOR.SvcDesc%;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2014-02-27 272088]
S3 ssudmdm;@oem64.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Dell Customer Connect;Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [2015-09-22 137968]
R2 DellDataVault;Dell Data Vault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2016-01-05 2571352]
R2 DellDataVaultWiz;Dell Data Vault Wizard; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [2016-01-05 201816]
R2 DellUpdate;Dell Update Service; C:\Program Files (x86)\Dell Update\DellUpService.exe [2015-08-27 237272]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-10-10 330136]
R2 OneSyncSvc_51888;Hostitel synchronizace_51888; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 PDF Architect 3 Creator;PDF Architect 3 Creator; C:\Program Files (x86)\PDF Architect 3\creator-ws.exe [2015-04-24 740568]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-12-11 312056]
R2 SftService;SoftThinks Agent Service; C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe [2015-02-12 2005392]
R2 SupportAssistAgent;Dell SupportAssist Agent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [2016-01-12 31928]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-09-14 256688]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-09-11 5702416]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-10-10 291744]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 PimIndexMaintenanceSvc_51888;Data kontaktů_51888; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_29d373;Hostitel synchronizace_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_56072;Hostitel synchronizace_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_5f690;Hostitel synchronizace_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-11 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DellProdRegManager;Dell Product Registration Manager; C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe [2014-10-31 278568]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_29d373;Služba zasílání zpráv_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_51888;Služba zasílání zpráv_51888; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_56072;Služba zasílání zpráv_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5f690;Služba zasílání zpráv_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-02-28 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 OpenVPNService;OpenVPN Service; C:\eBRANA_VPN\OpenVPN\bin\openvpnserv.exe [2011-07-01 14848]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PDF Architect 3 CrashHandler;PDF Architect 3 CrashHandler; C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe [2015-04-24 901336]
S3 PDF Architect 3;PDF Architect 3; C:\Program Files (x86)\PDF Architect 3\ws.exe [2015-04-24 2244312]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_29d373;Data kontaktů_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_56072;Data kontaktů_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_5f690;Data kontaktů_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Run by libor.prajzler at 2016-03-19 18:15:29
Microsoft Windows 10 Home
System drive C: has 291 GB (62%) free of 467 GB
Total RAM: 3979 MB (53% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:15:43, on 19. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Dell Update\DellUpTray.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\libor.prajzler.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://dell13.msn.com/?pc=DCJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: PDF Architect 3 Helper - {06E08260-0695-4EC1-A74B-1310D8899D93} - C:\Program Files (x86)\PDF Architect 3\creator-ie-helper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKCU\..\Run: [OneDrive] "C:\Users\libor.prajzler\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dell Customer Connect - Dell Inc. - C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
O23 - Service: Dell Data Vault (DellDataVault) - Dell Inc. - C:\Program Files\Dell\DellDataVault\DellDataVault.exe
O23 - Service: Dell Data Vault Wizard (DellDataVaultWiz) - Dell Inc. - C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
O23 - Service: Dell Product Registration Manager (DellProdRegManager) - Aviata, Inc. - C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe
O23 - Service: Dell Update Service (DellUpdate) - Dell Inc. - C:\Program Files (x86)\Dell Update\DellUpService.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - Unknown owner - C:\eBRANA_VPN\OpenVPN\bin\openvpnserv.exe
O23 - Service: PDF Architect 3 - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\ws.exe
O23 - Service: PDF Architect 3 CrashHandler - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe
O23 - Service: PDF Architect 3 Creator - pdfforge GmbH - C:\Program Files (x86)\PDF Architect 3\creator-ws.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: SoftThinks Agent Service (SftService) - SoftThinks SAS - C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Dell SupportAssist Agent (SupportAssistAgent) - Dell Inc. - C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10043 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ba91c84b-9798-4d76-8670-4eaff75346d0 -SystemEventPortName:HostProcess-d9743a83-d5f3-415e-927a-1cee578e75ad -IoCancelEventPortName:HostProcess-90ca1d98-1d22-4101-b545-d20a3bb6e815 -NonStateChangingEventPortName:HostProcess-7c561d75-04ef-43e7-a257-0080ab14be35 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:9e28bc97-d2d4-4c8f-8c01-16cd71bde17d -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SENDINPUT
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
dashost.exe {d0c35912-a10e-4f5f-8d83f65e49b93cf8}
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\PDF Architect 3\creator-ws.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Dell Customer Connect\DCCService.exe"
"C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe"
"C:\Program Files (x86)\Dell Update\DellUpService.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
sihost.exe
taskeng.exe {431FEC30-F232-40BE-8B3F-8CA1F3FA7BEF}
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
/x /hideintroballoon /launchedbywindowsservice
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
igfxEM.exe
igfxHK.exe
/QuitInfo:0000000000000CF0;0000000000000CF4;
igfxTray.exe
/loadhooks /Parent:00000000000016c8
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\WINDOWS\notepad.exe" C:\_OTM\MovedFiles\03192016_180839.log
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX5
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 612 624 632 8192 628
"C:\Program Files\Dell\QuickSet\quickset.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe"
"C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\libor.prajzler\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0x1ac
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="948.0.1781695555\1433536556" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.4276 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="948.2.1772086702\1855048176" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="948.3.500984953\1828792822" /prefetch:1
taskhostw.exe
"C:\Program Files (x86)\Dell Product Registration\prodreg.exe" /updatecheck /LSRC=autolaunch
"C:\Program Files\Dell\DellDataVault\DellDataVault.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="948.5.1922480738\1858747621" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="948.7.206776383\1570127474" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Stable_EthersuggestPrefix_A3/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_03/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_05/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="948.8.918705480\380936997" /prefetch:1
C:\WINDOWS\system32\wbem\WmiApSrv.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1368637417-3545678390-2215575575-10012_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1368637417-3545678390-2215575575-10012 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXmtcan0h2tfbfy7k9kn8hbxb6dmzz1zh0.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x.AppX368sbpk1kx658x0p332evjk2v0y02kxp.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6568.46331.0_x64__8wekyb3d8bbwe\HxTsr.exe" -ServerName:Hx.IPC.Server
"C:\Users\libor.prajzler\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\libor.prajzler\AppData\Roaming\Mozilla\Firefox\Profiles\7en47d7r.default-1446411230078
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\PDF Architect 3]
"Description"=
"Path"=C:\Program Files (x86)\PDF Architect 3\np-previewer.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll
C:\Users\libor.prajzler\AppData\Roaming\Mozilla\Firefox\Profiles\7en47d7r.default-1446411230078\extensions\
adbhelper@mozilla.org
fxdevtools-adapters@mozilla.org
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06E08260-0695-4EC1-A74B-1310D8899D93}]
PDF Architect 3 Helper - C:\Program Files (x86)\PDF Architect 3\creator-ie-helper.dll [2015-04-24 38104]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-12-11 8512760]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-12-11 1411320]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-14 3955888]
"QuickSet"=c:\Program Files\Dell\QuickSet\QuickSet.exe [2014-02-27 3775816]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\libor.prajzler\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-12 551112]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-12-08 8590760]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2ce.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"DisableCAD"=1
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
"NoFolderOptions"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-19 08:41:54 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-18 14:53:14 ----D---- C:\rsit
2016-03-12 06:59:06 ----SHD---- C:\Config.Msi
2016-03-11 05:39:07 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerInstaller.exe
2016-03-08 21:53:54 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-08 21:53:52 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-08 21:53:51 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-08 21:53:51 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-08 21:53:50 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-08 21:53:48 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-08 21:53:46 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-08 21:53:43 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-08 21:53:42 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-08 21:53:41 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-08 21:53:38 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-08 21:53:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-08 21:53:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-08 21:53:35 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-08 21:53:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-08 21:53:33 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-08 21:53:29 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-08 21:53:29 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-08 21:53:27 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-08 21:53:27 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-08 21:53:26 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-08 21:53:23 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-08 21:53:23 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-08 21:53:22 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-08 21:53:21 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-08 21:53:20 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-08 21:53:19 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-08 21:53:19 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-08 21:53:18 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-08 21:53:18 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-08 21:53:18 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-08 21:53:17 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-08 21:53:17 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-08 21:53:16 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-08 21:53:16 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-08 21:53:16 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-08 21:53:15 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-08 21:53:15 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-08 21:53:14 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-08 21:53:13 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-08 21:53:13 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-08 21:53:12 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-08 21:53:11 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-08 21:53:11 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-08 21:53:10 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-08 21:53:09 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-08 21:53:09 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-08 21:53:08 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-08 21:53:07 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-08 21:53:07 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-08 21:53:06 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-08 21:53:06 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-08 21:53:05 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-08 21:53:04 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-08 21:53:04 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-08 21:53:03 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-08 21:53:02 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-08 21:53:02 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-08 21:53:01 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-08 21:53:00 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-08 21:52:58 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-08 21:52:58 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-08 21:52:56 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-08 21:52:56 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-08 21:52:55 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-08 21:52:55 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-08 21:52:51 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-08 21:52:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-08 21:52:50 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-08 21:52:50 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-08 21:52:48 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-08 21:52:48 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-08 21:52:48 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-08 21:52:47 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-08 21:52:47 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-08 21:52:46 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-08 21:52:45 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-08 21:52:41 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-08 21:52:40 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-08 21:52:40 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-08 21:52:39 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-08 21:52:38 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-08 21:52:37 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-08 21:52:36 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-08 21:52:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-08 21:52:34 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-08 21:52:33 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-08 21:52:31 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-08 21:52:30 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-08 21:52:29 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-08 21:52:28 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-08 21:52:28 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-08 21:52:27 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-08 21:52:26 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-08 21:52:25 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-08 21:52:21 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 04:30:48 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 04:30:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 04:30:41 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 04:30:38 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 04:30:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 04:30:37 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 04:30:36 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 04:30:35 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 04:30:32 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 04:30:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 04:30:31 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 04:30:30 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 04:30:29 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 04:30:28 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 04:30:27 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 04:30:18 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 04:30:18 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 04:30:17 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 04:30:17 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 04:30:16 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 04:30:16 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 04:30:15 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 04:30:13 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 04:30:13 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 04:30:09 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 04:30:03 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 04:30:03 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 04:30:02 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 04:29:52 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 04:29:47 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 04:29:45 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 04:29:44 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 04:29:44 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 04:29:43 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 04:29:43 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 04:29:42 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 04:29:41 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 04:29:41 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 04:29:40 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 04:29:38 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 04:29:36 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 04:29:35 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 04:29:34 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 04:29:34 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 04:29:33 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 04:29:33 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 04:29:32 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 04:29:32 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 04:29:31 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 04:29:30 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 04:29:29 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 04:29:27 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 04:29:27 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 04:29:26 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 04:29:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 04:29:25 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 04:29:23 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 04:29:23 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 04:29:22 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 04:29:21 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 04:29:21 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 04:29:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 04:29:19 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 04:29:19 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 04:29:18 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 04:29:18 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 04:29:17 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 04:29:17 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 04:29:16 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 04:29:16 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 04:29:15 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 04:29:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 04:29:14 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 04:29:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 04:29:13 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 04:29:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 04:29:11 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 04:29:10 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 04:29:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 04:29:08 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 04:29:08 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 04:29:07 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 04:29:06 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 04:29:06 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 04:29:05 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 04:29:05 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 04:29:04 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 04:29:04 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 04:29:03 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 04:29:02 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 04:29:02 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 04:29:01 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 04:29:00 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 04:28:59 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 04:28:59 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 04:28:58 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 04:28:58 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 04:28:58 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 04:28:57 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 04:28:57 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 04:28:56 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 04:28:56 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 04:28:55 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 04:28:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 04:28:54 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 04:28:54 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 04:28:53 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 04:28:52 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 04:28:51 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 04:28:50 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 04:28:49 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 04:28:49 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 04:28:48 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 04:28:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 04:28:47 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 04:28:47 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 04:28:47 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 04:28:46 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 04:28:45 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 04:28:45 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 04:28:44 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 04:28:44 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 04:28:41 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 04:28:40 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 04:28:40 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 04:28:39 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 04:28:38 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 04:28:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 04:28:36 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 04:28:35 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 04:28:34 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 04:28:33 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 04:28:32 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 04:28:31 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 04:28:31 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-02 04:28:31 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-02-28 08:45:08 ----AD---- C:\Program Files (x86)\Mozilla Firefox
======List of files/folders modified in the last 1 month======
2016-03-19 18:15:40 ----D---- C:\Program Files\trend micro
2016-03-19 18:15:24 ----D---- C:\WINDOWS\Prefetch
2016-03-19 18:14:50 ----D---- C:\WINDOWS\Temp
2016-03-19 18:14:00 ----D---- C:\Program Files (x86)\Dell Backup and Recovery
2016-03-19 18:10:08 ----D---- C:\WINDOWS\system32\sru
2016-03-19 18:08:40 ----D---- C:\WINDOWS\Tasks
2016-03-19 17:08:45 ----SHD---- C:\System Volume Information
2016-03-19 16:22:15 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-19 16:21:50 ----D---- C:\WINDOWS\INF
2016-03-19 16:05:19 ----D---- C:\WINDOWS\System32
2016-03-19 16:05:19 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-19 08:47:31 ----D---- C:\Windows
2016-03-19 08:45:36 ----HD---- C:\ProgramData
2016-03-19 08:45:35 ----RD---- C:\Program Files (x86)
2016-03-19 08:40:25 ----D---- C:\Users\libor.prajzler\AppData\Roaming\Skype
2016-03-18 22:44:14 ----D---- C:\WINDOWS\AppReadiness
2016-03-18 22:44:09 ----HD---- C:\Program Files\WindowsApps
2016-03-17 05:54:25 ----D---- C:\WINDOWS\system32\config
2016-03-17 04:06:41 ----D---- C:\Users\libor.prajzler\AppData\Roaming\vlc
2016-03-16 20:56:18 ----D---- C:\WINDOWS\debug
2016-03-16 09:58:33 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-16 06:49:30 ----D---- C:\Users\libor.prajzler\AppData\Roaming\XnView
2016-03-12 08:32:09 ----SHD---- C:\WINDOWS\Installer
2016-03-12 08:32:06 ----D---- C:\ProgramData\Skype
2016-03-11 21:01:02 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-11 21:00:23 ----D---- C:\WINDOWS\WinSxS
2016-03-11 17:59:09 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 17:59:08 ----D---- C:\WINDOWS\SysWOW64
2016-03-10 06:26:15 ----RSD---- C:\WINDOWS\assembly
2016-03-10 04:08:50 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 04:08:50 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-09 18:03:05 ----D---- C:\WINDOWS\system32\drivers
2016-03-09 18:01:08 ----D---- C:\WINDOWS\system32\migration
2016-03-09 18:01:05 ----D---- C:\WINDOWS\AppPatch
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Portable Devices
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-09 18:01:05 ----D---- C:\Program Files\Windows Media Player
2016-03-09 18:01:05 ----D---- C:\Program Files\Internet Explorer
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-09 18:01:05 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-08 21:40:38 ----D---- C:\WINDOWS\system32\catroot2
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-05 08:38:40 ----D---- C:\WINDOWS\rescache
2016-03-04 06:36:29 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-02 06:22:24 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-03-02 06:17:18 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-02 06:17:18 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\wbem
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\Dism
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\Boot
2016-03-02 06:17:16 ----D---- C:\WINDOWS\system32\appraiser
2016-03-02 06:17:10 ----RSD---- C:\WINDOWS\Media
2016-03-02 06:17:10 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-02 06:17:09 ----RSD---- C:\WINDOWS\Fonts
2016-03-02 06:17:09 ----D---- C:\WINDOWS\bcastdvr
2016-03-02 06:17:09 ----D---- C:\Program Files\Windows Journal
2016-02-29 18:28:03 ----D---- C:\Users\libor.prajzler\AppData\Roaming\uTorrent
2016-02-25 08:41:55 ----D---- C:\WINDOWS\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 BTATH_BUS;@oem178.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2014-02-25 35016]
R0 stdcfltn;Disk Class Filter Driver for Accelerometer; C:\WINDOWS\system32\DRIVERS\stdcfltn.sys [2012-07-13 22168]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 athr;@oem36.inf,%ATHR.Service.DispName%;Dell Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athw10x.sys [2016-01-06 4341424]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2015-03-09 599240]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 DDDriver;DDDriver; C:\WINDOWS\system32\drivers\DDDriver64Dcsa.sys [2015-01-30 23760]
R3 DellProf;DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [2015-05-22 24240]
R3 DellRbtn;@oem105.inf,%DellRbtn%;Airplane Mode Switch; C:\WINDOWS\System32\drivers\DellRbtn.sys [2013-01-25 10752]
R3 iaioi2c;@oem88.inf,%Driver_Service.Desc%;I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2ce.sys [2013-11-11 67584]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-10-10 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-12-11 4518136]
R3 IntcDAud;@oem133.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iwdbus;@oem172.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 kiox_ff_driver;@oem29.inf,%kiox_ff_driver.SVCDESC%;Kionix freefall detection service; C:\WINDOWS\System32\drivers\kiox_ff_driver.sys [2015-06-15 41456]
R3 SensorsHIDClassDriver;@SensorsHidClassDriver.inf,%WudfSensorsHIDClassDriverDisplayName%;Služba Reflektor UMDF pro ovladač senzorů třídy HID; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2015-10-30 216064]
R3 SynRMIHID;@oem90.inf,%SynRMIHID.SVCDESC%;Synaptics HID Service; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [2015-09-14 67248]
R3 SynTP;@oem164.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-09-14 628912]
R3 tap0901;@oem160.inf,%DeviceDescription%;TAP-Win32 Adapter V9; C:\WINDOWS\System32\drivers\tap0901.sys [2011-07-01 31232]
R3 TXEIx64;@oem20.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2014-01-16 88592]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthA2DP;@wdma_bt.inf,%BthA2DP.SvcDesc%;Bluetooth stereo; C:\WINDOWS\system32\drivers\BthA2DP.sys [2015-10-30 165376]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
S3 BthHFAud;@wdma_bt.inf,%DISPLAY_NAME%;Bluetooth handsfree; C:\WINDOWS\system32\DRIVERS\BthHfAud.sys [2015-10-30 36864]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-01-05 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-12 117248]
S3 dg_ssudbus;@oem46.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 intaud_WaveExtensible;@oem53.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 iscFlash;iscFlash; \??\C:\Users\LIBOR~1.PRA\AppData\Local\Temp\7zS94BD.tmp\iscflashx64.sys []
S3 MiraDispKmd;@miradisp.inf,%MiraDispKmd%;Kernel Mode Miracast Filter Driver; C:\WINDOWS\System32\drivers\MiraDispKmd.sys [2015-10-30 23552]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 PCDSRVC{3B54B31B-D06B6431-06020200}_0;PCDSRVC{3B54B31B-D06B6431-06020200}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\program files\dell\supportassist\pcdsrvc_x64.pkms [2015-12-17 25584]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
S3 RSUSBSTOR;@oem177.inf,%RSUSBSTOR.SvcDesc%;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2014-02-27 272088]
S3 ssudmdm;@oem64.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Dell Customer Connect;Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [2015-09-22 137968]
R2 DellDataVault;Dell Data Vault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2016-01-05 2571352]
R2 DellDataVaultWiz;Dell Data Vault Wizard; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [2016-01-05 201816]
R2 DellUpdate;Dell Update Service; C:\Program Files (x86)\Dell Update\DellUpService.exe [2015-08-27 237272]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-10-10 330136]
R2 OneSyncSvc_51888;Hostitel synchronizace_51888; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 PDF Architect 3 Creator;PDF Architect 3 Creator; C:\Program Files (x86)\PDF Architect 3\creator-ws.exe [2015-04-24 740568]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-12-11 312056]
R2 SftService;SoftThinks Agent Service; C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe [2015-02-12 2005392]
R2 SupportAssistAgent;Dell SupportAssist Agent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [2016-01-12 31928]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-09-14 256688]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-09-11 5702416]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-10-10 291744]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 PimIndexMaintenanceSvc_51888;Data kontaktů_51888; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_29d373;Hostitel synchronizace_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_56072;Hostitel synchronizace_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_5f690;Hostitel synchronizace_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-11 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DellProdRegManager;Dell Product Registration Manager; C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe [2014-10-31 278568]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_29d373;Služba zasílání zpráv_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_51888;Služba zasílání zpráv_51888; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_56072;Služba zasílání zpráv_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5f690;Služba zasílání zpráv_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-02-28 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 OpenVPNService;OpenVPN Service; C:\eBRANA_VPN\OpenVPN\bin\openvpnserv.exe [2011-07-01 14848]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PDF Architect 3 CrashHandler;PDF Architect 3 CrashHandler; C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe [2015-04-24 901336]
S3 PDF Architect 3;PDF Architect 3; C:\Program Files (x86)\PDF Architect 3\ws.exe [2015-04-24 2244312]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_29d373;Data kontaktů_29d373; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_56072;Data kontaktů_56072; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_5f690;Data kontaktů_5f690; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - velmi pomalý ntb
Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastalo zlepšení?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
libor.prajzler
- Návštěvník

- Příspěvky: 19
- Registrován: 17 pro 2015 18:15
Re: Prosím o kontrolu logu - velmi pomalý ntb
Zjistím zítra, teď musím pracovat 
Zeptám se, ten "bordel", co jsme smazali, může to být spojené s online streamy? Sleduju sportovní zápasy (live i ze záznamu). A hodně. Tak jestli se z toho hodně zanáší komp... budu moct tento Váš návod používat pravidelně.
Zeptám se, ten "bordel", co jsme smazali, může to být spojené s online streamy? Sleduju sportovní zápasy (live i ze záznamu). A hodně. Tak jestli se z toho hodně zanáší komp... budu moct tento Váš návod používat pravidelně.
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - velmi pomalý ntb
Některé ano.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Přispějete na provoz fóra?