
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu logu, děkuji
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prosím o kontrolu logu, děkuji
Dobrý den,
V internetovém prohlížeči mi na jakékoliv stránce vyskakuje okno, které nelze zavřít - vždy přesměruje na nějakou reklamní stránku. Avast mám z nezjištěných příčin vypnutý a nelze ho zapnout.
Udělala jsem log z RSIT. Děkuji
Logfile of random's system information tool 1.10 (written by random/random)
Run by Denis at 2016-03-20 20:07:37
Microsoft Windows 10 Home
System drive C: has 270 GB (57%) free of 476 GB
Total RAM: 3982 MB (53% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:07:39, on 20. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
c:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\CPP\CppKalkulacky\CppCalcServer.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Denis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://egate.proficredit.cz/marketing/K5/index.php#
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [ioCentre] C:\Genius\ioCentre\gTaskBar.exe
O4 - HKLM\..\Run: [ControlCenter4] "C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe" /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [BrStsInd00] C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe /AUTORUN
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [UpdateAdmin] C:\Users\Denis\AppData\Local\UpdateAdmin\UpdateAdmin.exe /RUN
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: CPP - CalcServer.lnk = C:\CPP\CppKalkulacky\CppCalcServer.exe
O4 - Global Startup: MouseCamera.lnk = C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{2ca1e72e-d5fb-44e4-8930-348cb320b69b}: NameServer = 82.163.143.171 82.163.142.173
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 82.163.143.171 82.163.142.173
O17 - HKLM\System\CS1\Services\Tcpip\..\{2ca1e72e-d5fb-44e4-8930-348cb320b69b}: NameServer = 82.163.143.171 82.163.142.173
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 82.163.143.171 82.163.142.173
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GeniusMouseService - Unknown owner - C:\Genius\ioCentre\GMouseService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12901 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE"
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\Genius\ioCentre\GMouseService.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
dashost.exe {c98a8c40-3206-4862-b66d43edc6f54aab}
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
sihost.exe
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
igfxEM.exe
C:\WINDOWS\Explorer.EXE
igfxHK.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"c:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /ANDREA_BF_BYPASS
"C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe"
szndesktop.exe default start
"C:\CPP\CppKalkulacky\CppCalcServer.exe"
"C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Genius\ioCentre\gTaskBar.exe"
"C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe" /AUTORUN
C:\Genius\ioCentre\gMouseTask
"C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe" /AUTORUN
C:\Genius\ioCentre\gKbdTask
C:\Genius\ioCentre\gIoCentreFunMgm
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"fontdrvhost.exe"
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
taskhostw.exe
"C:\Program Files\CCleaner\CCleaner64.exe" /monitor
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1601.49020.0_x64__8wekyb3d8bbwe\Calculator.exe" -ServerName:App.AppXsm3pg4n7er43kdh1qp4e79f1j7am68r8.mca
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.17801.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files\WindowsApps\Microsoft.CommsPhone_2.15.9015.0_x64__8wekyb3d8bbwe\CallsApp.exe" -ServerName:App.AppX86h4f1wzakn0578e3nh53tw85abztemz.mca
"C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6811.23771.0_x64__8wekyb3d8bbwe\OHub.exe" -ServerName:Microsoft.MicrosoftOfficeHub.AppXwp443v2n2zrtcr1s0fb1n191nvdppsm1.mca
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Denis\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0x1ac
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2280.0.665823243\126696528" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.4276 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="2280.3.2133769570\545809867" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="2280.4.1246806359\884457285" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="2280.5.1723028047\278311562" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="2280.8.548090724\1668152388" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="2280.34.1815002385\369620290" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="2280.36.356779850\331406290" /prefetch:1
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Denis\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll [2016-02-11 551520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08 2134656]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-11 212576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-02-11 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08 1725056]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-11 172640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-09-04 8505088]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-04 1402624]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-17 3944136]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-06 103080]
"OneDrive"=C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-12 551104]
"UpdateAdmin"=C:\Users\Denis\AppData\Local\UpdateAdmin\UpdateAdmin.exe [2015-09-14 237840]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-01-11 50603136]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2016-02-24 23260000]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-01-15 8619224]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-05-12 5515496]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"ioCentre"=C:\Genius\ioCentre\gTaskBar.exe [2012-04-23 61440]
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2014-06-16 139776]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2014-05-22 4513792]
"BrStsInd00"=C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [2012-12-18 1885184]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-01-29 594992]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
MouseCamera.lnk - C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
CPP - CalcServer.lnk - C:\CPP\CppKalkulacky\CppCalcServer.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-20 19:57:13 ----D---- C:\rsit
2016-03-20 19:57:13 ----D---- C:\Program Files\trend micro
2016-03-20 18:30:58 ----HD---- C:\OneDriveTemp
2016-03-12 03:36:01 ----D---- C:\ProgramData\002ee45c-4341-0
2016-03-12 03:36:00 ----D---- C:\ProgramData\002ee45c-6e85-1
2016-03-12 01:41:36 ----SHD---- C:\Config.Msi
2016-03-09 22:37:11 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 22:37:10 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 22:37:07 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 22:37:06 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 22:37:06 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 22:37:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 22:37:04 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 22:37:01 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 22:36:58 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 22:36:53 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 22:36:52 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 22:36:51 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 22:36:49 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 22:36:45 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 22:36:44 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 22:36:42 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 22:36:40 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 22:36:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 22:36:39 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 22:36:35 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 22:36:35 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 22:36:34 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 22:36:33 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 22:36:31 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 22:36:27 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 22:36:27 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 22:36:27 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 22:36:26 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 22:36:24 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 22:36:20 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 22:36:15 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 22:36:15 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 22:36:03 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 22:36:02 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 22:35:59 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-08 21:36:56 ----D---- C:\ProgramData\002ee45c-7d41-0
2016-03-08 21:36:55 ----D---- C:\ProgramData\002ee45c-57f3-1
2016-03-08 15:36:05 ----D---- C:\ProgramData\002ee45c-2d23-1
2016-03-08 15:36:05 ----D---- C:\ProgramData\002ee45c-1743-0
2016-03-07 21:36:28 ----D---- C:\ProgramData\002ee45c-61f5-0
2016-03-07 21:36:26 ----D---- C:\ProgramData\002ee45c-3e67-1
2016-03-07 15:36:00 ----D---- C:\ProgramData\002ee45c-4f23-1
2016-03-07 15:36:00 ----D---- C:\ProgramData\002ee45c-2a91-0
2016-03-02 11:25:42 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 11:25:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 11:25:37 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 11:25:34 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 11:25:33 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 11:25:33 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 11:25:32 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 11:25:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 11:25:31 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 11:25:31 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 11:25:29 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 11:25:23 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 11:25:22 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 11:25:20 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 11:25:20 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 11:25:17 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 11:25:13 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 11:25:13 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 11:25:12 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 11:25:05 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 11:25:03 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 11:25:02 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 11:25:01 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 11:25:01 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 11:25:00 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 11:25:00 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 11:24:57 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 11:24:54 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 11:24:54 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 11:24:53 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 11:24:53 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 11:24:53 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 11:24:51 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 11:24:50 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 11:24:50 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 11:24:48 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 11:24:48 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 11:24:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 11:24:46 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 11:24:44 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 11:24:44 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 11:24:41 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 11:24:41 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 11:24:32 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 11:24:31 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 11:24:30 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 11:24:30 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 11:24:30 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 11:24:28 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 11:24:25 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 11:24:24 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 11:24:23 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 11:24:22 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 11:24:22 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 11:24:21 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 11:24:21 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-02-21 15:36:00 ----D---- C:\ProgramData\002ee45c-5ed3-0
2016-02-21 15:31:03 ----D---- C:\ProgramData\002ee45c-2db3-0
2016-02-21 15:31:01 ----D---- C:\ProgramData\e21ec9f4
2016-02-21 15:30:59 ----D---- C:\ProgramData\{17efd5cb-612c-0}
2016-02-21 15:30:58 ----D---- C:\ProgramData\{0bf4b2eb-312c-1}
======List of files/folders modified in the last 1 month======
2016-03-20 20:01:22 ----D---- C:\WINDOWS\System32
2016-03-20 20:01:22 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-20 19:57:21 ----D---- C:\WINDOWS\Prefetch
2016-03-20 19:57:13 ----RD---- C:\Program Files
2016-03-20 19:40:43 ----D---- C:\WINDOWS\Temp
2016-03-20 19:30:00 ----D---- C:\WINDOWS\system32\sru
2016-03-20 19:08:38 ----D---- C:\WINDOWS\debug
2016-03-20 19:08:37 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-20 19:08:37 ----D---- C:\Windows
2016-03-20 19:03:37 ----RD---- C:\Program Files (x86)
2016-03-20 19:03:34 ----D---- C:\WINDOWS\system32\Tasks
2016-03-20 19:02:13 ----D---- C:\WINDOWS\INF
2016-03-20 18:39:14 ----D---- C:\WINDOWS\AppReadiness
2016-03-20 18:39:12 ----HD---- C:\Program Files\WindowsApps
2016-03-20 18:35:31 ----D---- C:\Users\Denis\AppData\Roaming\Seznam.cz
2016-03-20 18:29:51 ----HD---- C:\ProgramData
2016-03-17 13:18:46 ----AD---- C:\Program Files (x86)\Opera
2016-03-15 00:34:50 ----SHD---- C:\WINDOWS\Installer
2016-03-12 19:55:51 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-11 17:58:23 ----RD---- C:\WINDOWS\assembly
2016-03-11 15:34:09 ----AD---- C:\KMPlayer
2016-03-11 14:48:05 ----D---- C:\WINDOWS\system32\config
2016-03-11 14:36:47 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 14:36:38 ----D---- C:\WINDOWS\WinSxS
2016-03-11 14:36:38 ----D---- C:\WINDOWS\SysWOW64
2016-03-10 21:04:04 ----D---- C:\WINDOWS\system32\migration
2016-03-10 21:04:03 ----D---- C:\WINDOWS\AppPatch
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Media Player
2016-03-10 21:04:03 ----D---- C:\Program Files\Internet Explorer
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 21:04:02 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-10 21:04:02 ----D---- C:\WINDOWS\system32\drivers
2016-03-10 16:37:30 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 10:54:52 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 10:51:56 ----SHD---- C:\System Volume Information
2016-03-09 22:28:02 ----D---- C:\WINDOWS\system32\catroot2
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-03 15:47:01 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-03 15:47:01 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\wbem
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\Dism
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\Boot
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\appraiser
2016-03-03 15:46:59 ----RSD---- C:\WINDOWS\Media
2016-03-03 15:46:59 ----RSD---- C:\WINDOWS\Fonts
2016-03-03 15:46:59 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-03 15:46:59 ----D---- C:\WINDOWS\bcastdvr
2016-03-03 15:46:59 ----D---- C:\Program Files\Windows Journal
2016-02-23 12:58:06 ----SD---- C:\Users\Denis\AppData\Roaming\Microsoft
2016-02-21 15:32:09 ----D---- C:\ProgramData\f9dd6636-44b1-1
2016-02-21 15:31:07 ----D---- C:\ProgramData\f9dd6636-30c1-0
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MBI;@oem11.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\WINDOWS\System32\drivers\MBI.sys [2015-10-17 41456]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2015-02-28 127760]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 clwvd;@oem14.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2014-01-28 41704]
R3 gHidPnp;@oem5.inf,%SvcDisplayName%;USB Device Enhanced Function Driver; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [2011-10-26 25600]
R3 gMouUsb;@oem40.inf,%gMouUsb.SvcDesc%;USB Mouse Device Drv; C:\WINDOWS\System32\drivers\gMouUsb.sys [2009-11-02 14336]
R3 GPIO;@oem44.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpioe.sys [2015-11-16 59840]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-10-17 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-09-04 4515584]
R3 IntcDAud;@oem7.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2014-10-14 454416]
R3 iwdbus;@oem36.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 RSP2STOR;@oem19.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528]
R3 RTWlanE;@oem20.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E Network Adapter; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [2015-09-17 4629744]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-07-17 42696]
R3 StillCam;@sti.inf,%StillCam.SvcDesc%;Ovladač digitálního fotoaparátu pro sériový port; C:\WINDOWS\system32\DRIVERS\serscan.sys [2015-10-30 12800]
R3 SynTP;@oem8.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-07-17 614088]
R3 TXEIx64;@oem0.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2015-05-28 97320]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-01-04 117248]
S3 dg_ssudbus;@oem9.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
S3 ssudmdm;@oem24.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2015-10-30 46080]
S3 usbser;@usbser.inf,%UsbSerial.DriverDesc%;Microsoft USB Serial Driver; C:\WINDOWS\System32\drivers\usbser.sys [2016-01-16 67072]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [2015-09-04 106952]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2016-01-08 1433216]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2016-01-08 1773696]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 GeniusMouseService;GeniusMouseService; C:\Genius\ioCentre\GMouseService.exe [2010-03-11 16384]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-10-17 330136]
R2 OneSyncSvc_4c0266e;Hostitel synchronizace_4c0266e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-09-04 303360]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-07-17 246472]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2013-09-25 282112]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-10-17 291744]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 PimIndexMaintenanceSvc_4c0266e;Data kontaktů_4c0266e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 UnistoreSvc_4c0266e;Úložiště uživatelských dat_4c0266e; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [2015-03-28 89840]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3396687;Hostitel synchronizace_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fc5e;Hostitel synchronizace_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3396687;Služba zasílání zpráv_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fc5e;Služba zasílání zpráv_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4c0266e;Služba zasílání zpráv_4c0266e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3396687;Data kontaktů_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fc5e;Data kontaktů_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_3396687;Úložiště uživatelských dat_3396687; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_3fc5e;Úložiště uživatelských dat_3fc5e; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
V internetovém prohlížeči mi na jakékoliv stránce vyskakuje okno, které nelze zavřít - vždy přesměruje na nějakou reklamní stránku. Avast mám z nezjištěných příčin vypnutý a nelze ho zapnout.
Udělala jsem log z RSIT. Děkuji
Logfile of random's system information tool 1.10 (written by random/random)
Run by Denis at 2016-03-20 20:07:37
Microsoft Windows 10 Home
System drive C: has 270 GB (57%) free of 476 GB
Total RAM: 3982 MB (53% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:07:39, on 20. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
c:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\CPP\CppKalkulacky\CppCalcServer.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Denis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://egate.proficredit.cz/marketing/K5/index.php#
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [ioCentre] C:\Genius\ioCentre\gTaskBar.exe
O4 - HKLM\..\Run: [ControlCenter4] "C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe" /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [BrStsInd00] C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe /AUTORUN
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [UpdateAdmin] C:\Users\Denis\AppData\Local\UpdateAdmin\UpdateAdmin.exe /RUN
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: CPP - CalcServer.lnk = C:\CPP\CppKalkulacky\CppCalcServer.exe
O4 - Global Startup: MouseCamera.lnk = C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{2ca1e72e-d5fb-44e4-8930-348cb320b69b}: NameServer = 82.163.143.171 82.163.142.173
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 82.163.143.171 82.163.142.173
O17 - HKLM\System\CS1\Services\Tcpip\..\{2ca1e72e-d5fb-44e4-8930-348cb320b69b}: NameServer = 82.163.143.171 82.163.142.173
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 82.163.143.171 82.163.142.173
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GeniusMouseService - Unknown owner - C:\Genius\ioCentre\GMouseService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12901 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE"
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\Genius\ioCentre\GMouseService.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
dashost.exe {c98a8c40-3206-4862-b66d43edc6f54aab}
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
sihost.exe
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
igfxEM.exe
C:\WINDOWS\Explorer.EXE
igfxHK.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"c:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /ANDREA_BF_BYPASS
"C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe"
szndesktop.exe default start
"C:\CPP\CppKalkulacky\CppCalcServer.exe"
"C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Genius\ioCentre\gTaskBar.exe"
"C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe" /AUTORUN
C:\Genius\ioCentre\gMouseTask
"C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe" /AUTORUN
C:\Genius\ioCentre\gKbdTask
C:\Genius\ioCentre\gIoCentreFunMgm
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"fontdrvhost.exe"
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
taskhostw.exe
"C:\Program Files\CCleaner\CCleaner64.exe" /monitor
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1601.49020.0_x64__8wekyb3d8bbwe\Calculator.exe" -ServerName:App.AppXsm3pg4n7er43kdh1qp4e79f1j7am68r8.mca
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.17801.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files\WindowsApps\Microsoft.CommsPhone_2.15.9015.0_x64__8wekyb3d8bbwe\CallsApp.exe" -ServerName:App.AppX86h4f1wzakn0578e3nh53tw85abztemz.mca
"C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6811.23771.0_x64__8wekyb3d8bbwe\OHub.exe" -ServerName:Microsoft.MicrosoftOfficeHub.AppXwp443v2n2zrtcr1s0fb1n191nvdppsm1.mca
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Denis\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0x1ac
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2280.0.665823243\126696528" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.4276 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="2280.3.2133769570\545809867" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="2280.4.1246806359\884457285" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="2280.5.1723028047\278311562" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="2280.8.548090724\1668152388" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="2280.34.1815002385\369620290" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="2280.36.356779850\331406290" /prefetch:1
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Denis\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll [2016-02-11 551520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08 2134656]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-11 212576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-02-11 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08 1725056]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-11 172640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-09-04 8505088]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-04 1402624]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-17 3944136]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-06 103080]
"OneDrive"=C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-12 551104]
"UpdateAdmin"=C:\Users\Denis\AppData\Local\UpdateAdmin\UpdateAdmin.exe [2015-09-14 237840]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-01-11 50603136]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2016-02-24 23260000]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-01-15 8619224]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-05-12 5515496]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"ioCentre"=C:\Genius\ioCentre\gTaskBar.exe [2012-04-23 61440]
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2014-06-16 139776]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2014-05-22 4513792]
"BrStsInd00"=C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [2012-12-18 1885184]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-01-29 594992]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
MouseCamera.lnk - C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
CPP - CalcServer.lnk - C:\CPP\CppKalkulacky\CppCalcServer.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-20 19:57:13 ----D---- C:\rsit
2016-03-20 19:57:13 ----D---- C:\Program Files\trend micro
2016-03-20 18:30:58 ----HD---- C:\OneDriveTemp
2016-03-12 03:36:01 ----D---- C:\ProgramData\002ee45c-4341-0
2016-03-12 03:36:00 ----D---- C:\ProgramData\002ee45c-6e85-1
2016-03-12 01:41:36 ----SHD---- C:\Config.Msi
2016-03-09 22:37:11 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 22:37:10 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 22:37:07 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 22:37:06 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 22:37:06 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 22:37:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 22:37:04 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 22:37:01 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 22:36:58 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 22:36:53 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 22:36:52 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 22:36:51 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 22:36:49 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 22:36:45 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 22:36:44 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 22:36:42 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 22:36:40 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 22:36:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 22:36:39 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 22:36:35 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 22:36:35 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 22:36:34 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 22:36:33 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 22:36:31 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 22:36:27 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 22:36:27 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 22:36:27 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 22:36:26 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 22:36:24 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 22:36:20 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 22:36:15 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 22:36:15 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 22:36:03 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 22:36:02 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 22:35:59 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-08 21:36:56 ----D---- C:\ProgramData\002ee45c-7d41-0
2016-03-08 21:36:55 ----D---- C:\ProgramData\002ee45c-57f3-1
2016-03-08 15:36:05 ----D---- C:\ProgramData\002ee45c-2d23-1
2016-03-08 15:36:05 ----D---- C:\ProgramData\002ee45c-1743-0
2016-03-07 21:36:28 ----D---- C:\ProgramData\002ee45c-61f5-0
2016-03-07 21:36:26 ----D---- C:\ProgramData\002ee45c-3e67-1
2016-03-07 15:36:00 ----D---- C:\ProgramData\002ee45c-4f23-1
2016-03-07 15:36:00 ----D---- C:\ProgramData\002ee45c-2a91-0
2016-03-02 11:25:42 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 11:25:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 11:25:37 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 11:25:34 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 11:25:33 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 11:25:33 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 11:25:32 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 11:25:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 11:25:31 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 11:25:31 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 11:25:29 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 11:25:23 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 11:25:22 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 11:25:20 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 11:25:20 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 11:25:17 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 11:25:13 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 11:25:13 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 11:25:12 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 11:25:05 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 11:25:03 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 11:25:02 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 11:25:01 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 11:25:01 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 11:25:00 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 11:25:00 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 11:24:57 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 11:24:54 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 11:24:54 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 11:24:53 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 11:24:53 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 11:24:53 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 11:24:51 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 11:24:50 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 11:24:50 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 11:24:48 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 11:24:48 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 11:24:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 11:24:46 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 11:24:44 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 11:24:44 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 11:24:41 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 11:24:41 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 11:24:32 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 11:24:31 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 11:24:30 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 11:24:30 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 11:24:30 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 11:24:28 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 11:24:25 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 11:24:24 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 11:24:23 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 11:24:22 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 11:24:22 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 11:24:21 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 11:24:21 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-02-21 15:36:00 ----D---- C:\ProgramData\002ee45c-5ed3-0
2016-02-21 15:31:03 ----D---- C:\ProgramData\002ee45c-2db3-0
2016-02-21 15:31:01 ----D---- C:\ProgramData\e21ec9f4
2016-02-21 15:30:59 ----D---- C:\ProgramData\{17efd5cb-612c-0}
2016-02-21 15:30:58 ----D---- C:\ProgramData\{0bf4b2eb-312c-1}
======List of files/folders modified in the last 1 month======
2016-03-20 20:01:22 ----D---- C:\WINDOWS\System32
2016-03-20 20:01:22 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-20 19:57:21 ----D---- C:\WINDOWS\Prefetch
2016-03-20 19:57:13 ----RD---- C:\Program Files
2016-03-20 19:40:43 ----D---- C:\WINDOWS\Temp
2016-03-20 19:30:00 ----D---- C:\WINDOWS\system32\sru
2016-03-20 19:08:38 ----D---- C:\WINDOWS\debug
2016-03-20 19:08:37 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-20 19:08:37 ----D---- C:\Windows
2016-03-20 19:03:37 ----RD---- C:\Program Files (x86)
2016-03-20 19:03:34 ----D---- C:\WINDOWS\system32\Tasks
2016-03-20 19:02:13 ----D---- C:\WINDOWS\INF
2016-03-20 18:39:14 ----D---- C:\WINDOWS\AppReadiness
2016-03-20 18:39:12 ----HD---- C:\Program Files\WindowsApps
2016-03-20 18:35:31 ----D---- C:\Users\Denis\AppData\Roaming\Seznam.cz
2016-03-20 18:29:51 ----HD---- C:\ProgramData
2016-03-17 13:18:46 ----AD---- C:\Program Files (x86)\Opera
2016-03-15 00:34:50 ----SHD---- C:\WINDOWS\Installer
2016-03-12 19:55:51 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-11 17:58:23 ----RD---- C:\WINDOWS\assembly
2016-03-11 15:34:09 ----AD---- C:\KMPlayer
2016-03-11 14:48:05 ----D---- C:\WINDOWS\system32\config
2016-03-11 14:36:47 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 14:36:38 ----D---- C:\WINDOWS\WinSxS
2016-03-11 14:36:38 ----D---- C:\WINDOWS\SysWOW64
2016-03-10 21:04:04 ----D---- C:\WINDOWS\system32\migration
2016-03-10 21:04:03 ----D---- C:\WINDOWS\AppPatch
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Media Player
2016-03-10 21:04:03 ----D---- C:\Program Files\Internet Explorer
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 21:04:02 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-10 21:04:02 ----D---- C:\WINDOWS\system32\drivers
2016-03-10 16:37:30 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 10:54:52 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 10:51:56 ----SHD---- C:\System Volume Information
2016-03-09 22:28:02 ----D---- C:\WINDOWS\system32\catroot2
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-03 15:47:01 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-03 15:47:01 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\wbem
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\Dism
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\Boot
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\appraiser
2016-03-03 15:46:59 ----RSD---- C:\WINDOWS\Media
2016-03-03 15:46:59 ----RSD---- C:\WINDOWS\Fonts
2016-03-03 15:46:59 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-03 15:46:59 ----D---- C:\WINDOWS\bcastdvr
2016-03-03 15:46:59 ----D---- C:\Program Files\Windows Journal
2016-02-23 12:58:06 ----SD---- C:\Users\Denis\AppData\Roaming\Microsoft
2016-02-21 15:32:09 ----D---- C:\ProgramData\f9dd6636-44b1-1
2016-02-21 15:31:07 ----D---- C:\ProgramData\f9dd6636-30c1-0
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MBI;@oem11.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\WINDOWS\System32\drivers\MBI.sys [2015-10-17 41456]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2015-02-28 127760]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 clwvd;@oem14.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2014-01-28 41704]
R3 gHidPnp;@oem5.inf,%SvcDisplayName%;USB Device Enhanced Function Driver; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [2011-10-26 25600]
R3 gMouUsb;@oem40.inf,%gMouUsb.SvcDesc%;USB Mouse Device Drv; C:\WINDOWS\System32\drivers\gMouUsb.sys [2009-11-02 14336]
R3 GPIO;@oem44.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpioe.sys [2015-11-16 59840]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-10-17 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-09-04 4515584]
R3 IntcDAud;@oem7.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2014-10-14 454416]
R3 iwdbus;@oem36.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 RSP2STOR;@oem19.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528]
R3 RTWlanE;@oem20.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E Network Adapter; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [2015-09-17 4629744]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-07-17 42696]
R3 StillCam;@sti.inf,%StillCam.SvcDesc%;Ovladač digitálního fotoaparátu pro sériový port; C:\WINDOWS\system32\DRIVERS\serscan.sys [2015-10-30 12800]
R3 SynTP;@oem8.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-07-17 614088]
R3 TXEIx64;@oem0.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2015-05-28 97320]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-01-04 117248]
S3 dg_ssudbus;@oem9.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
S3 ssudmdm;@oem24.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2015-10-30 46080]
S3 usbser;@usbser.inf,%UsbSerial.DriverDesc%;Microsoft USB Serial Driver; C:\WINDOWS\System32\drivers\usbser.sys [2016-01-16 67072]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [2015-09-04 106952]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2016-01-08 1433216]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2016-01-08 1773696]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 GeniusMouseService;GeniusMouseService; C:\Genius\ioCentre\GMouseService.exe [2010-03-11 16384]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-10-17 330136]
R2 OneSyncSvc_4c0266e;Hostitel synchronizace_4c0266e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-09-04 303360]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-07-17 246472]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2013-09-25 282112]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-10-17 291744]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 PimIndexMaintenanceSvc_4c0266e;Data kontaktů_4c0266e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 UnistoreSvc_4c0266e;Úložiště uživatelských dat_4c0266e; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [2015-03-28 89840]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3396687;Hostitel synchronizace_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fc5e;Hostitel synchronizace_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3396687;Služba zasílání zpráv_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fc5e;Služba zasílání zpráv_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4c0266e;Služba zasílání zpráv_4c0266e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3396687;Data kontaktů_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fc5e;Data kontaktů_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_3396687;Úložiště uživatelských dat_3396687; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_3fc5e;Úložiště uživatelských dat_3fc5e; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu, děkuji
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu, děkuji
Trvalo to celkem dlouho ale zde je log:
# AdwCleaner v5.102 - Logfile created 20/03/2016 at 20:37:35
# Updated 13/03/2016 by Xplode
# Database : 2016-03-20.7 [Server]
# Operating system : Windows 10 Home (x64)
# Username : Denis - BUBELINI-DENIS
# Running from : C:\Users\Denis\Desktop\adwcleaner_5.102.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Genius
[-] Folder Deleted : C:\Program Files (x86)\OneSystemCare
[-] Folder Deleted : C:\ProgramData\simplitec
[-] Folder Deleted : C:\ProgramData\002ee45c-1743-0
[-] Folder Deleted : C:\ProgramData\002ee45c-2a91-0
[-] Folder Deleted : C:\ProgramData\002ee45c-2d23-1
[-] Folder Deleted : C:\ProgramData\002ee45c-2db3-0
[-] Folder Deleted : C:\ProgramData\002ee45c-3e67-1
[-] Folder Deleted : C:\ProgramData\002ee45c-4341-0
[-] Folder Deleted : C:\ProgramData\002ee45c-4f23-1
[-] Folder Deleted : C:\ProgramData\002ee45c-57f3-1
[-] Folder Deleted : C:\ProgramData\002ee45c-5ed3-0
[-] Folder Deleted : C:\ProgramData\002ee45c-61f5-0
[-] Folder Deleted : C:\ProgramData\002ee45c-6e85-1
[-] Folder Deleted : C:\ProgramData\002ee45c-7d41-0
[-] Folder Deleted : C:\ProgramData\e21ec9f4
[-] Folder Deleted : C:\ProgramData\f9dd6636-30c1-0
[-] Folder Deleted : C:\ProgramData\f9dd6636-44b1-1
[-] Folder Deleted : C:\ProgramData\{0bf4b2eb-312c-1}
[-] Folder Deleted : C:\ProgramData\{17efd5cb-612c-0}
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Genius
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UpdateAdmin
[-] Folder Deleted : C:\Users\Denis\AppData\Local\UpdateAdmin
[-] Folder Deleted : C:\Users\Denis\AppData\Roaming\Opera Software\Opera Stable\Extensions\jnioiobojokgpfnkphineipddglcihjb
[J] Folder Not Deleted : C:\Users\Denis\AppData\Roaming\Opera Software\Opera Stable\Extensions\jnioiobojokgpfnkphineipddglcihjb
[#] Folder Deleted : C:\WINDOWS\SysNative\Tasks\UpdateAdmin
***** [ Files ] *****
[-] File Deleted : C:\Users\Denis\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_jnioiobojokgpfnkphineipddglcihjb_0.localstorage
[#] File Deleted : C:\Users\Denis\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_jnioiobojokgpfnkphineipddglcihjb_0.localstorage
[-] File Deleted : C:\Users\gombi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_cdncache-a.akamaihd.net_0.localstorage
[-] File Deleted : C:\Users\gombi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_cdncache-a.akamaihd.net_0.localstorage-journal
[-] File Deleted : C:\Users\gombi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_nps.pastaleads.com_0.localstorage
[-] File Deleted : C:\Users\gombi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_nps.pastaleads.com_0.localstorage-journal
[-] File Deleted : C:\Users\gombi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.eshopcomp.com_0.localstorage
[-] File Deleted : C:\Users\gombi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.eshopcomp.com_0.localstorage-journal
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
[-] Task Deleted : UpdateAdmin
[-] Task Deleted : {7A057E47-7A0E-7A04-7A11-0F7D050C117E}
[-] Task Deleted : {7E3FF61D-27D7-DAFF-5DE4-2E003CCF8020}
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\3679CA35668772304D30A5FB873B0FA77BB70D54
[-] Key Deleted : HKLM\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\MsMpEng.exe
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{e21ec9f4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8BF0126F-A5B7-4720-ABB2-2414A0AF5474}
[-] Key Deleted : HKCU\Software\DownloadAdmin
[-] Key Deleted : HKLM\SOFTWARE\simplitec
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E1527582-8509-4011-B922-29E3FB548882}_is1
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E1527582-8509-4011-B922-29E3FB548882}_is1
[-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{2ca1e72e-d5fb-44e4-8930-348cb320b69b} [NameServer]
[-] Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [UpdateAdmin]
[#] Value Deleted : HKU\S-1-5-21-65128828-2039021028-1569899232-1001\Software\Microsoft\Windows\CurrentVersion\Run [UpdateAdmin]
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
*************************
C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [4889 bytes] - [20/03/2016 20:37:35]
C:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [4808 bytes] - [20/03/2016 20:32:49]
########## EOF - C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [5075 bytes] ##########
# AdwCleaner v5.102 - Logfile created 20/03/2016 at 20:37:35
# Updated 13/03/2016 by Xplode
# Database : 2016-03-20.7 [Server]
# Operating system : Windows 10 Home (x64)
# Username : Denis - BUBELINI-DENIS
# Running from : C:\Users\Denis\Desktop\adwcleaner_5.102.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Genius
[-] Folder Deleted : C:\Program Files (x86)\OneSystemCare
[-] Folder Deleted : C:\ProgramData\simplitec
[-] Folder Deleted : C:\ProgramData\002ee45c-1743-0
[-] Folder Deleted : C:\ProgramData\002ee45c-2a91-0
[-] Folder Deleted : C:\ProgramData\002ee45c-2d23-1
[-] Folder Deleted : C:\ProgramData\002ee45c-2db3-0
[-] Folder Deleted : C:\ProgramData\002ee45c-3e67-1
[-] Folder Deleted : C:\ProgramData\002ee45c-4341-0
[-] Folder Deleted : C:\ProgramData\002ee45c-4f23-1
[-] Folder Deleted : C:\ProgramData\002ee45c-57f3-1
[-] Folder Deleted : C:\ProgramData\002ee45c-5ed3-0
[-] Folder Deleted : C:\ProgramData\002ee45c-61f5-0
[-] Folder Deleted : C:\ProgramData\002ee45c-6e85-1
[-] Folder Deleted : C:\ProgramData\002ee45c-7d41-0
[-] Folder Deleted : C:\ProgramData\e21ec9f4
[-] Folder Deleted : C:\ProgramData\f9dd6636-30c1-0
[-] Folder Deleted : C:\ProgramData\f9dd6636-44b1-1
[-] Folder Deleted : C:\ProgramData\{0bf4b2eb-312c-1}
[-] Folder Deleted : C:\ProgramData\{17efd5cb-612c-0}
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Genius
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UpdateAdmin
[-] Folder Deleted : C:\Users\Denis\AppData\Local\UpdateAdmin
[-] Folder Deleted : C:\Users\Denis\AppData\Roaming\Opera Software\Opera Stable\Extensions\jnioiobojokgpfnkphineipddglcihjb
[J] Folder Not Deleted : C:\Users\Denis\AppData\Roaming\Opera Software\Opera Stable\Extensions\jnioiobojokgpfnkphineipddglcihjb
[#] Folder Deleted : C:\WINDOWS\SysNative\Tasks\UpdateAdmin
***** [ Files ] *****
[-] File Deleted : C:\Users\Denis\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_jnioiobojokgpfnkphineipddglcihjb_0.localstorage
[#] File Deleted : C:\Users\Denis\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_jnioiobojokgpfnkphineipddglcihjb_0.localstorage
[-] File Deleted : C:\Users\gombi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_cdncache-a.akamaihd.net_0.localstorage
[-] File Deleted : C:\Users\gombi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_cdncache-a.akamaihd.net_0.localstorage-journal
[-] File Deleted : C:\Users\gombi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_nps.pastaleads.com_0.localstorage
[-] File Deleted : C:\Users\gombi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_nps.pastaleads.com_0.localstorage-journal
[-] File Deleted : C:\Users\gombi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.eshopcomp.com_0.localstorage
[-] File Deleted : C:\Users\gombi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.eshopcomp.com_0.localstorage-journal
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
[-] Task Deleted : UpdateAdmin
[-] Task Deleted : {7A057E47-7A0E-7A04-7A11-0F7D050C117E}
[-] Task Deleted : {7E3FF61D-27D7-DAFF-5DE4-2E003CCF8020}
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\3679CA35668772304D30A5FB873B0FA77BB70D54
[-] Key Deleted : HKLM\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\MsMpEng.exe
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{e21ec9f4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8BF0126F-A5B7-4720-ABB2-2414A0AF5474}
[-] Key Deleted : HKCU\Software\DownloadAdmin
[-] Key Deleted : HKLM\SOFTWARE\simplitec
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E1527582-8509-4011-B922-29E3FB548882}_is1
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E1527582-8509-4011-B922-29E3FB548882}_is1
[-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{2ca1e72e-d5fb-44e4-8930-348cb320b69b} [NameServer]
[-] Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [UpdateAdmin]
[#] Value Deleted : HKU\S-1-5-21-65128828-2039021028-1569899232-1001\Software\Microsoft\Windows\CurrentVersion\Run [UpdateAdmin]
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
*************************
C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [4889 bytes] - [20/03/2016 20:37:35]
C:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [4808 bytes] - [20/03/2016 20:32:49]
########## EOF - C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [5075 bytes] ##########
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu, děkuji
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu, děkuji
Logfile of random's system information tool 1.10 (written by random/random)
Run by Denis at 2016-03-20 20:50:50
Microsoft Windows 10 Home
System drive C: has 270 GB (57%) free of 476 GB
Total RAM: 3982 MB (62% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:50:51, on 20. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
c:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
C:\CPP\CppKalkulacky\CppCalcServer.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Denis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://egate.proficredit.cz/marketing/K5/index.php#
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [ioCentre] C:\Genius\ioCentre\gTaskBar.exe
O4 - HKLM\..\Run: [ControlCenter4] "C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe" /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [BrStsInd00] C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe /AUTORUN
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: CPP - CalcServer.lnk = C:\CPP\CppKalkulacky\CppCalcServer.exe
O4 - Global Startup: MouseCamera.lnk = C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 82.163.143.171 82.163.142.173
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 82.163.143.171 82.163.142.173
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GeniusMouseService - Unknown owner - C:\Genius\ioCentre\GMouseService.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12400 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe"
dashost.exe {3264cb7f-9821-40a4-a3e7b0d769a1ff77}
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
igfxEM.exe
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
igfxHK.exe
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"c:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /ANDREA_BF_BYPASS
szndesktop.exe default start
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
"C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe"
"C:\CPP\CppKalkulacky\CppCalcServer.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Denis\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0x1b0
"fontdrvhost.exe"
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="452.0.454056689\1205875121" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.4276 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="452.3.568379541\199987185" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="452.4.1535838925\861895170" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="452.5.1604273863\420261259" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="452.7.742870936\382438132" /prefetch:1
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 628 632 640 8192 636
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="452.17.1469808580\1929117203" /prefetch:1
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Denis\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll [2016-02-11 551520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08 2134656]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-11 212576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-02-11 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08 1725056]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-11 172640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-09-04 8505088]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-04 1402624]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-17 3944136]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-06 103080]
"OneDrive"=C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-12 551104]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-01-11 50603136]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2016-02-24 23260000]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-01-15 8619224]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-05-12 5515496]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"ioCentre"=C:\Genius\ioCentre\gTaskBar.exe []
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2014-06-16 139776]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2014-05-22 4513792]
"BrStsInd00"=C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [2012-12-18 1885184]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-01-29 594992]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
MouseCamera.lnk - C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
CPP - CalcServer.lnk - C:\CPP\CppKalkulacky\CppCalcServer.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-20 20:32:38 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-20 19:57:13 ----D---- C:\rsit
2016-03-20 19:57:13 ----D---- C:\Program Files\trend micro
2016-03-20 18:30:58 ----HD---- C:\OneDriveTemp
2016-03-12 01:41:36 ----SHD---- C:\Config.Msi
2016-03-09 22:37:11 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 22:37:10 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 22:37:07 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 22:37:06 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 22:37:06 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 22:37:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 22:37:04 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 22:37:01 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 22:36:58 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 22:36:53 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 22:36:52 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 22:36:51 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 22:36:49 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 22:36:45 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 22:36:44 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 22:36:42 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 22:36:40 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 22:36:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 22:36:39 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 22:36:35 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 22:36:35 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 22:36:34 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 22:36:33 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 22:36:31 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 22:36:27 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 22:36:27 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 22:36:27 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 22:36:26 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 22:36:24 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 22:36:20 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 22:36:15 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 22:36:15 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 22:36:03 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 22:36:02 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 22:35:59 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 11:25:42 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 11:25:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 11:25:37 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 11:25:34 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 11:25:33 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 11:25:33 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 11:25:32 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 11:25:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 11:25:31 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 11:25:31 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 11:25:29 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 11:25:23 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 11:25:22 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 11:25:20 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 11:25:20 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 11:25:17 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 11:25:13 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 11:25:13 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 11:25:12 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 11:25:05 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 11:25:03 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 11:25:02 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 11:25:01 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 11:25:01 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 11:25:00 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 11:25:00 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 11:24:57 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 11:24:54 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 11:24:54 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 11:24:53 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 11:24:53 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 11:24:53 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 11:24:51 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 11:24:50 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 11:24:50 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 11:24:48 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 11:24:48 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 11:24:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 11:24:46 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 11:24:44 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 11:24:44 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 11:24:41 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 11:24:41 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 11:24:32 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 11:24:31 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 11:24:30 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 11:24:30 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 11:24:30 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 11:24:28 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 11:24:25 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 11:24:24 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 11:24:23 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 11:24:22 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 11:24:22 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 11:24:21 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 11:24:21 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\AppCapture.dll
======List of files/folders modified in the last 1 month======
2016-03-20 20:47:55 ----D---- C:\WINDOWS\System32
2016-03-20 20:47:55 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-20 20:46:38 ----D---- C:\Users\Denis\AppData\Roaming\Seznam.cz
2016-03-20 20:45:30 ----D---- C:\WINDOWS\Temp
2016-03-20 20:44:30 ----D---- C:\WINDOWS\Prefetch
2016-03-20 20:41:58 ----HD---- C:\ProgramData
2016-03-20 20:40:16 ----D---- C:\Windows
2016-03-20 20:39:49 ----D---- C:\WINDOWS\system32\sru
2016-03-20 20:38:18 ----D---- C:\WINDOWS\system32\Tasks
2016-03-20 20:38:17 ----RD---- C:\Program Files (x86)
2016-03-20 20:17:53 ----D---- C:\WINDOWS\INF
2016-03-20 19:57:13 ----RD---- C:\Program Files
2016-03-20 19:08:38 ----D---- C:\WINDOWS\debug
2016-03-20 19:08:37 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-20 18:39:14 ----D---- C:\WINDOWS\AppReadiness
2016-03-20 18:39:12 ----HD---- C:\Program Files\WindowsApps
2016-03-17 13:18:46 ----AD---- C:\Program Files (x86)\Opera
2016-03-15 00:34:50 ----SHD---- C:\WINDOWS\Installer
2016-03-12 19:55:51 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-11 17:58:23 ----RD---- C:\WINDOWS\assembly
2016-03-11 15:34:09 ----AD---- C:\KMPlayer
2016-03-11 14:48:05 ----D---- C:\WINDOWS\system32\config
2016-03-11 14:36:47 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 14:36:38 ----D---- C:\WINDOWS\WinSxS
2016-03-11 14:36:38 ----D---- C:\WINDOWS\SysWOW64
2016-03-10 21:04:04 ----D---- C:\WINDOWS\system32\migration
2016-03-10 21:04:03 ----D---- C:\WINDOWS\AppPatch
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Media Player
2016-03-10 21:04:03 ----D---- C:\Program Files\Internet Explorer
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 21:04:02 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-10 21:04:02 ----D---- C:\WINDOWS\system32\drivers
2016-03-10 16:37:30 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 10:54:52 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 10:51:56 ----SHD---- C:\System Volume Information
2016-03-09 22:28:02 ----D---- C:\WINDOWS\system32\catroot2
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-03 15:47:01 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-03 15:47:01 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\wbem
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\Dism
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\Boot
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\appraiser
2016-03-03 15:46:59 ----RSD---- C:\WINDOWS\Media
2016-03-03 15:46:59 ----RSD---- C:\WINDOWS\Fonts
2016-03-03 15:46:59 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-03 15:46:59 ----D---- C:\WINDOWS\bcastdvr
2016-03-03 15:46:59 ----D---- C:\Program Files\Windows Journal
2016-02-23 12:58:06 ----SD---- C:\Users\Denis\AppData\Roaming\Microsoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MBI;@oem11.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\WINDOWS\System32\drivers\MBI.sys [2015-10-17 41456]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2015-02-28 127760]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 clwvd;@oem14.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2014-01-28 41704]
R3 gHidPnp;@oem5.inf,%SvcDisplayName%;USB Device Enhanced Function Driver; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [2011-10-26 25600]
R3 gMouUsb;@oem40.inf,%gMouUsb.SvcDesc%;USB Mouse Device Drv; C:\WINDOWS\System32\drivers\gMouUsb.sys [2009-11-02 14336]
R3 GPIO;@oem44.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpioe.sys [2015-11-16 59840]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-10-17 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-09-04 4515584]
R3 IntcDAud;@oem7.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2014-10-14 454416]
R3 iwdbus;@oem36.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 RSP2STOR;@oem19.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528]
R3 RTWlanE;@oem20.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E Network Adapter; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [2015-09-17 4629744]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-07-17 42696]
R3 StillCam;@sti.inf,%StillCam.SvcDesc%;Ovladač digitálního fotoaparátu pro sériový port; C:\WINDOWS\system32\DRIVERS\serscan.sys [2015-10-30 12800]
R3 SynTP;@oem8.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-07-17 614088]
R3 TXEIx64;@oem0.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2015-05-28 97320]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-01-04 117248]
S3 dg_ssudbus;@oem9.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
S3 ssudmdm;@oem24.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2015-10-30 46080]
S3 usbser;@usbser.inf,%UsbSerial.DriverDesc%;Microsoft USB Serial Driver; C:\WINDOWS\System32\drivers\usbser.sys [2016-01-16 67072]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [2015-09-04 106952]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2016-01-08 1433216]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2016-01-08 1773696]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [2015-03-28 89840]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-10-17 330136]
R2 OneSyncSvc_3972c;Hostitel synchronizace_3972c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-09-04 303360]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-07-17 246472]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2013-09-25 282112]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-10-17 291744]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 PimIndexMaintenanceSvc_3972c;Data kontaktů_3972c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 UnistoreSvc_3972c;Úložiště uživatelských dat_3972c; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 GeniusMouseService;GeniusMouseService; C:\Genius\ioCentre\GMouseService.exe []
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3396687;Hostitel synchronizace_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fc5e;Hostitel synchronizace_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3396687;Služba zasílání zpráv_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3972c;Služba zasílání zpráv_3972c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fc5e;Služba zasílání zpráv_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3396687;Data kontaktů_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fc5e;Data kontaktů_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_3396687;Úložiště uživatelských dat_3396687; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_3fc5e;Úložiště uživatelských dat_3fc5e; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Run by Denis at 2016-03-20 20:50:50
Microsoft Windows 10 Home
System drive C: has 270 GB (57%) free of 476 GB
Total RAM: 3982 MB (62% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:50:51, on 20. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
c:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
C:\CPP\CppKalkulacky\CppCalcServer.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Denis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://egate.proficredit.cz/marketing/K5/index.php#
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [ioCentre] C:\Genius\ioCentre\gTaskBar.exe
O4 - HKLM\..\Run: [ControlCenter4] "C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe" /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [BrStsInd00] C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe /AUTORUN
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: CPP - CalcServer.lnk = C:\CPP\CppKalkulacky\CppCalcServer.exe
O4 - Global Startup: MouseCamera.lnk = C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 82.163.143.171 82.163.142.173
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 82.163.143.171 82.163.142.173
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GeniusMouseService - Unknown owner - C:\Genius\ioCentre\GMouseService.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12400 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe"
dashost.exe {3264cb7f-9821-40a4-a3e7b0d769a1ff77}
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
igfxEM.exe
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
igfxHK.exe
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"c:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /ANDREA_BF_BYPASS
szndesktop.exe default start
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
"C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe"
"C:\CPP\CppKalkulacky\CppCalcServer.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Denis\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0x1b0
"fontdrvhost.exe"
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="452.0.454056689\1205875121" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.4276 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="452.3.568379541\199987185" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="452.4.1535838925\861895170" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="452.5.1604273863\420261259" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="452.7.742870936\382438132" /prefetch:1
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 628 632 640 8192 636
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_38/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="452.17.1469808580\1929117203" /prefetch:1
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Denis\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll [2016-02-11 551520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08 2134656]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-11 212576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-02-11 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08 1725056]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-11 172640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-09-04 8505088]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-04 1402624]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-17 3944136]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-06 103080]
"OneDrive"=C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-12 551104]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-01-11 50603136]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2016-02-24 23260000]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-01-15 8619224]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-05-12 5515496]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"ioCentre"=C:\Genius\ioCentre\gTaskBar.exe []
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2014-06-16 139776]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2014-05-22 4513792]
"BrStsInd00"=C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [2012-12-18 1885184]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-01-29 594992]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
MouseCamera.lnk - C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
CPP - CalcServer.lnk - C:\CPP\CppKalkulacky\CppCalcServer.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-20 20:32:38 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-20 19:57:13 ----D---- C:\rsit
2016-03-20 19:57:13 ----D---- C:\Program Files\trend micro
2016-03-20 18:30:58 ----HD---- C:\OneDriveTemp
2016-03-12 01:41:36 ----SHD---- C:\Config.Msi
2016-03-09 22:37:11 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 22:37:10 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 22:37:07 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 22:37:06 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 22:37:06 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 22:37:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 22:37:04 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 22:37:01 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 22:36:58 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 22:36:53 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 22:36:52 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 22:36:51 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 22:36:49 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 22:36:45 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 22:36:44 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 22:36:42 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 22:36:40 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 22:36:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 22:36:39 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 22:36:35 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 22:36:35 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 22:36:34 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 22:36:33 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 22:36:31 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 22:36:27 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 22:36:27 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 22:36:27 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 22:36:26 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 22:36:24 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 22:36:20 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 22:36:15 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 22:36:15 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 22:36:03 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 22:36:02 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 22:35:59 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 11:25:42 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 11:25:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 11:25:37 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 11:25:34 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 11:25:33 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 11:25:33 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 11:25:32 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 11:25:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 11:25:31 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 11:25:31 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 11:25:29 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 11:25:23 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 11:25:22 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 11:25:20 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 11:25:20 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 11:25:17 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 11:25:13 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 11:25:13 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 11:25:12 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 11:25:05 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 11:25:03 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 11:25:02 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 11:25:01 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 11:25:01 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 11:25:00 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 11:25:00 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 11:24:57 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 11:24:54 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 11:24:54 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 11:24:53 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 11:24:53 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 11:24:53 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 11:24:51 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 11:24:50 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 11:24:50 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 11:24:48 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 11:24:48 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 11:24:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 11:24:46 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 11:24:44 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 11:24:44 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 11:24:41 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 11:24:41 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 11:24:32 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 11:24:31 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 11:24:30 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 11:24:30 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 11:24:30 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 11:24:28 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 11:24:25 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 11:24:24 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 11:24:23 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 11:24:22 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 11:24:22 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 11:24:21 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 11:24:21 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\AppCapture.dll
======List of files/folders modified in the last 1 month======
2016-03-20 20:47:55 ----D---- C:\WINDOWS\System32
2016-03-20 20:47:55 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-20 20:46:38 ----D---- C:\Users\Denis\AppData\Roaming\Seznam.cz
2016-03-20 20:45:30 ----D---- C:\WINDOWS\Temp
2016-03-20 20:44:30 ----D---- C:\WINDOWS\Prefetch
2016-03-20 20:41:58 ----HD---- C:\ProgramData
2016-03-20 20:40:16 ----D---- C:\Windows
2016-03-20 20:39:49 ----D---- C:\WINDOWS\system32\sru
2016-03-20 20:38:18 ----D---- C:\WINDOWS\system32\Tasks
2016-03-20 20:38:17 ----RD---- C:\Program Files (x86)
2016-03-20 20:17:53 ----D---- C:\WINDOWS\INF
2016-03-20 19:57:13 ----RD---- C:\Program Files
2016-03-20 19:08:38 ----D---- C:\WINDOWS\debug
2016-03-20 19:08:37 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-20 18:39:14 ----D---- C:\WINDOWS\AppReadiness
2016-03-20 18:39:12 ----HD---- C:\Program Files\WindowsApps
2016-03-17 13:18:46 ----AD---- C:\Program Files (x86)\Opera
2016-03-15 00:34:50 ----SHD---- C:\WINDOWS\Installer
2016-03-12 19:55:51 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-11 17:58:23 ----RD---- C:\WINDOWS\assembly
2016-03-11 15:34:09 ----AD---- C:\KMPlayer
2016-03-11 14:48:05 ----D---- C:\WINDOWS\system32\config
2016-03-11 14:36:47 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 14:36:38 ----D---- C:\WINDOWS\WinSxS
2016-03-11 14:36:38 ----D---- C:\WINDOWS\SysWOW64
2016-03-10 21:04:04 ----D---- C:\WINDOWS\system32\migration
2016-03-10 21:04:03 ----D---- C:\WINDOWS\AppPatch
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Media Player
2016-03-10 21:04:03 ----D---- C:\Program Files\Internet Explorer
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 21:04:02 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-10 21:04:02 ----D---- C:\WINDOWS\system32\drivers
2016-03-10 16:37:30 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 10:54:52 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 10:51:56 ----SHD---- C:\System Volume Information
2016-03-09 22:28:02 ----D---- C:\WINDOWS\system32\catroot2
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-03 15:47:01 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-03 15:47:01 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\wbem
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\Dism
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\Boot
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\appraiser
2016-03-03 15:46:59 ----RSD---- C:\WINDOWS\Media
2016-03-03 15:46:59 ----RSD---- C:\WINDOWS\Fonts
2016-03-03 15:46:59 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-03 15:46:59 ----D---- C:\WINDOWS\bcastdvr
2016-03-03 15:46:59 ----D---- C:\Program Files\Windows Journal
2016-02-23 12:58:06 ----SD---- C:\Users\Denis\AppData\Roaming\Microsoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MBI;@oem11.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\WINDOWS\System32\drivers\MBI.sys [2015-10-17 41456]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2015-02-28 127760]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 clwvd;@oem14.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2014-01-28 41704]
R3 gHidPnp;@oem5.inf,%SvcDisplayName%;USB Device Enhanced Function Driver; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [2011-10-26 25600]
R3 gMouUsb;@oem40.inf,%gMouUsb.SvcDesc%;USB Mouse Device Drv; C:\WINDOWS\System32\drivers\gMouUsb.sys [2009-11-02 14336]
R3 GPIO;@oem44.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpioe.sys [2015-11-16 59840]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-10-17 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-09-04 4515584]
R3 IntcDAud;@oem7.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2014-10-14 454416]
R3 iwdbus;@oem36.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 RSP2STOR;@oem19.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528]
R3 RTWlanE;@oem20.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E Network Adapter; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [2015-09-17 4629744]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-07-17 42696]
R3 StillCam;@sti.inf,%StillCam.SvcDesc%;Ovladač digitálního fotoaparátu pro sériový port; C:\WINDOWS\system32\DRIVERS\serscan.sys [2015-10-30 12800]
R3 SynTP;@oem8.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-07-17 614088]
R3 TXEIx64;@oem0.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2015-05-28 97320]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-01-04 117248]
S3 dg_ssudbus;@oem9.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
S3 ssudmdm;@oem24.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2015-10-30 46080]
S3 usbser;@usbser.inf,%UsbSerial.DriverDesc%;Microsoft USB Serial Driver; C:\WINDOWS\System32\drivers\usbser.sys [2016-01-16 67072]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [2015-09-04 106952]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2016-01-08 1433216]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2016-01-08 1773696]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [2015-03-28 89840]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-10-17 330136]
R2 OneSyncSvc_3972c;Hostitel synchronizace_3972c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-09-04 303360]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-07-17 246472]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2013-09-25 282112]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-10-17 291744]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 PimIndexMaintenanceSvc_3972c;Data kontaktů_3972c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 UnistoreSvc_3972c;Úložiště uživatelských dat_3972c; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 GeniusMouseService;GeniusMouseService; C:\Genius\ioCentre\GMouseService.exe []
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3396687;Hostitel synchronizace_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fc5e;Hostitel synchronizace_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3396687;Služba zasílání zpráv_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3972c;Služba zasílání zpráv_3972c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fc5e;Služba zasílání zpráv_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3396687;Data kontaktů_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fc5e;Data kontaktů_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_3396687;Úložiště uživatelských dat_3396687; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_3fc5e;Úložiště uživatelských dat_3fc5e; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu, děkuji
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.:files
C:\Program Files (x86)\Skype\Toolbars
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]/64
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-
:services
c2cautoupdatesvc
c2cpnrsvc
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu, děkuji
Logfile of random's system information tool 1.10 (written by random/random)
Run by Denis at 2016-03-20 21:56:02
Microsoft Windows 10 Home
System drive C: has 271 GB (57%) free of 476 GB
Total RAM: 3982 MB (73% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:56:05, on 20. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe
C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
c:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\CPP\CppKalkulacky\CppCalcServer.exe
C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe
C:\Program Files\trend micro\Denis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://egate.proficredit.cz/marketing/K5/index.php#
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [ioCentre] C:\Genius\ioCentre\gTaskBar.exe
O4 - HKLM\..\Run: [ControlCenter4] "C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe" /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [BrStsInd00] C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe /AUTORUN
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: CPP - CalcServer.lnk = C:\CPP\CppKalkulacky\CppCalcServer.exe
O4 - Global Startup: MouseCamera.lnk = C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 82.163.143.171 82.163.142.173
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 82.163.143.171 82.163.142.173
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GeniusMouseService - Unknown owner - C:\Genius\ioCentre\GMouseService.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11793 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
dashost.exe {c7c62bff-d871-4e32-abb5f717a455bd28}
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskeng.exe {5D947C78-CF1E-41EE-BB62-6CC1825BD062}
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
sihost.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
igfxEM.exe
igfxHK.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 624 628 636 8192 632
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /ANDREA_BF_BYPASS
"C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe" -c
szndesktop.exe default start
"C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe"
"C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe" /AUTORUN
"c:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe"
"C:\CPP\CppKalkulacky\CppCalcServer.exe"
"C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe" /AUTORUN
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
"fontdrvhost.exe"
C:\WINDOWS\system32\PrintIsolationHost.exe -Embedding
"C:\Users\Denis\Desktop\RSITx64.exe"
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll [2016-02-11 551520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-11 212576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-02-11 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-11 172640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-09-04 8505088]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-04 1402624]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-17 3944136]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-06 103080]
"OneDrive"=C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-12 551104]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-01-11 50603136]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2016-02-24 23260000]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-01-15 8619224]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-05-12 5515496]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"ioCentre"=C:\Genius\ioCentre\gTaskBar.exe []
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2014-06-16 139776]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2014-05-22 4513792]
"BrStsInd00"=C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [2012-12-18 1885184]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
MouseCamera.lnk - C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
CPP - CalcServer.lnk - C:\CPP\CppKalkulacky\CppCalcServer.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-20 21:50:31 ----D---- C:\_OTM
2016-03-20 20:32:38 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-20 19:57:13 ----D---- C:\rsit
2016-03-20 19:57:13 ----D---- C:\Program Files\trend micro
2016-03-20 18:30:58 ----HD---- C:\OneDriveTemp
2016-03-12 01:41:36 ----SHD---- C:\Config.Msi
2016-03-09 22:37:11 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 22:37:10 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 22:37:07 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 22:37:06 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 22:37:06 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 22:37:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 22:37:04 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 22:37:01 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 22:36:58 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 22:36:53 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 22:36:52 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 22:36:51 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 22:36:49 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 22:36:45 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 22:36:44 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 22:36:42 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 22:36:40 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 22:36:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 22:36:39 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 22:36:35 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 22:36:35 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 22:36:34 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 22:36:33 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 22:36:31 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 22:36:27 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 22:36:27 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 22:36:27 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 22:36:26 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 22:36:24 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 22:36:20 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 22:36:15 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 22:36:15 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 22:36:03 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 22:36:02 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 22:35:59 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 11:25:42 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 11:25:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 11:25:37 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 11:25:34 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 11:25:33 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 11:25:33 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 11:25:32 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 11:25:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 11:25:31 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 11:25:31 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 11:25:29 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 11:25:23 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 11:25:22 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 11:25:20 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 11:25:20 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 11:25:17 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 11:25:13 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 11:25:13 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 11:25:12 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 11:25:05 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 11:25:03 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 11:25:02 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 11:25:01 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 11:25:01 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 11:25:00 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 11:25:00 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 11:24:57 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 11:24:54 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 11:24:54 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 11:24:53 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 11:24:53 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 11:24:53 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 11:24:51 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 11:24:50 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 11:24:50 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 11:24:48 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 11:24:48 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 11:24:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 11:24:46 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 11:24:44 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 11:24:44 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 11:24:41 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 11:24:41 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 11:24:32 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 11:24:31 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 11:24:30 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 11:24:30 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 11:24:30 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 11:24:28 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 11:24:25 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 11:24:24 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 11:24:23 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 11:24:22 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 11:24:22 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 11:24:21 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 11:24:21 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\AppCapture.dll
======List of files/folders modified in the last 1 month======
2016-03-20 21:55:39 ----D---- C:\WINDOWS\Prefetch
2016-03-20 21:55:20 ----D---- C:\WINDOWS\Temp
2016-03-20 21:54:26 ----HD---- C:\ProgramData
2016-03-20 21:53:19 ----D---- C:\WINDOWS\system32\sru
2016-03-20 21:51:32 ----D---- C:\WINDOWS\SysWOW64
2016-03-20 21:50:32 ----D---- C:\WINDOWS\Tasks
2016-03-20 21:50:31 ----RD---- C:\Program Files (x86)\Skype
2016-03-20 20:47:55 ----D---- C:\WINDOWS\System32
2016-03-20 20:47:55 ----D---- C:\WINDOWS\INF
2016-03-20 20:47:55 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-20 20:46:38 ----D---- C:\Users\Denis\AppData\Roaming\Seznam.cz
2016-03-20 20:40:16 ----D---- C:\Windows
2016-03-20 20:38:18 ----D---- C:\WINDOWS\system32\Tasks
2016-03-20 20:38:17 ----RD---- C:\Program Files (x86)
2016-03-20 19:57:13 ----RD---- C:\Program Files
2016-03-20 19:08:38 ----D---- C:\WINDOWS\debug
2016-03-20 19:08:37 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-20 18:39:14 ----D---- C:\WINDOWS\AppReadiness
2016-03-20 18:39:12 ----HD---- C:\Program Files\WindowsApps
2016-03-17 13:18:46 ----AD---- C:\Program Files (x86)\Opera
2016-03-15 00:34:50 ----SHD---- C:\WINDOWS\Installer
2016-03-12 19:55:51 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-11 17:58:23 ----RD---- C:\WINDOWS\assembly
2016-03-11 15:34:09 ----AD---- C:\KMPlayer
2016-03-11 14:48:05 ----D---- C:\WINDOWS\system32\config
2016-03-11 14:36:47 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 14:36:38 ----D---- C:\WINDOWS\WinSxS
2016-03-10 21:04:04 ----D---- C:\WINDOWS\system32\migration
2016-03-10 21:04:03 ----D---- C:\WINDOWS\AppPatch
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Media Player
2016-03-10 21:04:03 ----D---- C:\Program Files\Internet Explorer
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 21:04:02 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-10 21:04:02 ----D---- C:\WINDOWS\system32\drivers
2016-03-10 16:37:30 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 10:54:52 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 10:51:56 ----SHD---- C:\System Volume Information
2016-03-09 22:28:02 ----D---- C:\WINDOWS\system32\catroot2
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-03 15:47:01 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-03 15:47:01 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\wbem
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\Dism
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\Boot
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\appraiser
2016-03-03 15:46:59 ----RSD---- C:\WINDOWS\Media
2016-03-03 15:46:59 ----RSD---- C:\WINDOWS\Fonts
2016-03-03 15:46:59 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-03 15:46:59 ----D---- C:\WINDOWS\bcastdvr
2016-03-03 15:46:59 ----D---- C:\Program Files\Windows Journal
2016-02-23 12:58:06 ----SD---- C:\Users\Denis\AppData\Roaming\Microsoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MBI;@oem11.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\WINDOWS\System32\drivers\MBI.sys [2015-10-17 41456]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2015-02-28 127760]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 clwvd;@oem14.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2014-01-28 41704]
R3 gHidPnp;@oem5.inf,%SvcDisplayName%;USB Device Enhanced Function Driver; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [2011-10-26 25600]
R3 gMouUsb;@oem40.inf,%gMouUsb.SvcDesc%;USB Mouse Device Drv; C:\WINDOWS\System32\drivers\gMouUsb.sys [2009-11-02 14336]
R3 GPIO;@oem44.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpioe.sys [2015-11-16 59840]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-10-17 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-09-04 4515584]
R3 IntcDAud;@oem7.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2014-10-14 454416]
R3 iwdbus;@oem36.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 RSP2STOR;@oem19.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528]
R3 RTWlanE;@oem20.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E Network Adapter; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [2015-09-17 4629744]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-07-17 42696]
R3 StillCam;@sti.inf,%StillCam.SvcDesc%;Ovladač digitálního fotoaparátu pro sériový port; C:\WINDOWS\system32\DRIVERS\serscan.sys [2015-10-30 12800]
R3 SynTP;@oem8.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-07-17 614088]
R3 TXEIx64;@oem0.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2015-05-28 97320]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2015-10-30 221184]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-01-04 117248]
S3 dg_ssudbus;@oem9.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
S3 ssudmdm;@oem24.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2015-10-30 46080]
S3 usbser;@usbser.inf,%UsbSerial.DriverDesc%;Microsoft USB Serial Driver; C:\WINDOWS\System32\drivers\usbser.sys [2016-01-16 67072]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [2015-09-04 106952]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [2015-03-28 89840]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-10-17 330136]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-09-04 303360]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-07-17 246472]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2013-09-25 282112]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-10-17 291744]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 GeniusMouseService;GeniusMouseService; C:\Genius\ioCentre\GMouseService.exe []
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3396687;Hostitel synchronizace_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fc5e;Hostitel synchronizace_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_41c3d;Hostitel synchronizace_41c3d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3396687;Služba zasílání zpráv_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fc5e;Služba zasílání zpráv_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_41c3d;Služba zasílání zpráv_41c3d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3396687;Data kontaktů_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fc5e;Data kontaktů_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_41c3d;Data kontaktů_41c3d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_3396687;Úložiště uživatelských dat_3396687; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_3fc5e;Úložiště uživatelských dat_3fc5e; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_41c3d;Úložiště uživatelských dat_41c3d; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Run by Denis at 2016-03-20 21:56:02
Microsoft Windows 10 Home
System drive C: has 271 GB (57%) free of 476 GB
Total RAM: 3982 MB (73% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:56:05, on 20. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe
C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
c:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\CPP\CppKalkulacky\CppCalcServer.exe
C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe
C:\Program Files\trend micro\Denis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://egate.proficredit.cz/marketing/K5/index.php#
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [ioCentre] C:\Genius\ioCentre\gTaskBar.exe
O4 - HKLM\..\Run: [ControlCenter4] "C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe" /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [BrStsInd00] C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe /AUTORUN
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: CPP - CalcServer.lnk = C:\CPP\CppKalkulacky\CppCalcServer.exe
O4 - Global Startup: MouseCamera.lnk = C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 82.163.143.171 82.163.142.173
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 82.163.143.171 82.163.142.173
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GeniusMouseService - Unknown owner - C:\Genius\ioCentre\GMouseService.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11793 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
dashost.exe {c7c62bff-d871-4e32-abb5f717a455bd28}
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskeng.exe {5D947C78-CF1E-41EE-BB62-6CC1825BD062}
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
sihost.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
igfxEM.exe
igfxHK.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 624 628 636 8192 632
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /ANDREA_BF_BYPASS
"C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe" -c
szndesktop.exe default start
"C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe"
"C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe" /AUTORUN
"c:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe"
"C:\CPP\CppKalkulacky\CppCalcServer.exe"
"C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe" /AUTORUN
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
"fontdrvhost.exe"
C:\WINDOWS\system32\PrintIsolationHost.exe -Embedding
"C:\Users\Denis\Desktop\RSITx64.exe"
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll [2016-02-11 551520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-11 212576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-02-11 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-11 172640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-09-04 8505088]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-04 1402624]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-17 3944136]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-06 103080]
"OneDrive"=C:\Users\Denis\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-12 551104]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-01-11 50603136]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2016-02-24 23260000]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-01-15 8619224]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Denis\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-05-12 5515496]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"ioCentre"=C:\Genius\ioCentre\gTaskBar.exe []
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2014-06-16 139776]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2014-05-22 4513792]
"BrStsInd00"=C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [2012-12-18 1885184]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
MouseCamera.lnk - C:\Program Files (x86)\ArcSoft\WebCam Companion 4\MouseCamera.exe
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
CPP - CalcServer.lnk - C:\CPP\CppKalkulacky\CppCalcServer.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-20 21:50:31 ----D---- C:\_OTM
2016-03-20 20:32:38 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-20 19:57:13 ----D---- C:\rsit
2016-03-20 19:57:13 ----D---- C:\Program Files\trend micro
2016-03-20 18:30:58 ----HD---- C:\OneDriveTemp
2016-03-12 01:41:36 ----SHD---- C:\Config.Msi
2016-03-09 22:37:11 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 22:37:10 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 22:37:07 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 22:37:06 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 22:37:06 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 22:37:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 22:37:04 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 22:37:01 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 22:36:58 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 22:36:53 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 22:36:52 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 22:36:51 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 22:36:49 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 22:36:45 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 22:36:44 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 22:36:42 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 22:36:40 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 22:36:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 22:36:39 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 22:36:35 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 22:36:35 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 22:36:34 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 22:36:33 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 22:36:31 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 22:36:30 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 22:36:29 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 22:36:28 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 22:36:27 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 22:36:27 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 22:36:27 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 22:36:26 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 22:36:26 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 22:36:25 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 22:36:24 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 22:36:24 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 22:36:23 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 22:36:22 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 22:36:21 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 22:36:20 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 22:36:20 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 22:36:19 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 22:36:18 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 22:36:17 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 22:36:16 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 22:36:15 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 22:36:15 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 22:36:14 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 22:36:11 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 22:36:09 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 22:36:08 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 22:36:06 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 22:36:05 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 22:36:04 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 22:36:03 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 22:36:02 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 22:36:01 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 22:36:00 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 22:35:59 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 11:25:42 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 11:25:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 11:25:37 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 11:25:36 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 11:25:35 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 11:25:34 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 11:25:33 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 11:25:33 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 11:25:32 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 11:25:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 11:25:31 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 11:25:31 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 11:25:29 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 11:25:23 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 11:25:22 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 11:25:22 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 11:25:21 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 11:25:20 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 11:25:20 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 11:25:17 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 11:25:13 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 11:25:13 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 11:25:12 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 11:25:05 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 11:25:03 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 11:25:02 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 11:25:01 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 11:25:01 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 11:25:00 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 11:25:00 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 11:24:59 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 11:24:57 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 11:24:54 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 11:24:54 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 11:24:53 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 11:24:53 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 11:24:53 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 11:24:52 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 11:24:51 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 11:24:50 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 11:24:50 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 11:24:48 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 11:24:48 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 11:24:47 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 11:24:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 11:24:46 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 11:24:45 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 11:24:44 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 11:24:44 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 11:24:43 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 11:24:42 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 11:24:41 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 11:24:41 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 11:24:40 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 11:24:39 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 11:24:38 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 11:24:37 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 11:24:36 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 11:24:35 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 11:24:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 11:24:33 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 11:24:32 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 11:24:31 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 11:24:31 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 11:24:30 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 11:24:30 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 11:24:30 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 11:24:29 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 11:24:28 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 11:24:28 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 11:24:27 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 11:24:26 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 11:24:25 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 11:24:25 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 11:24:24 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 11:24:24 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 11:24:23 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 11:24:23 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 11:24:22 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 11:24:22 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 11:24:21 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 11:24:21 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 11:24:20 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 11:24:19 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 11:24:18 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 11:24:17 ----A---- C:\WINDOWS\system32\AppCapture.dll
======List of files/folders modified in the last 1 month======
2016-03-20 21:55:39 ----D---- C:\WINDOWS\Prefetch
2016-03-20 21:55:20 ----D---- C:\WINDOWS\Temp
2016-03-20 21:54:26 ----HD---- C:\ProgramData
2016-03-20 21:53:19 ----D---- C:\WINDOWS\system32\sru
2016-03-20 21:51:32 ----D---- C:\WINDOWS\SysWOW64
2016-03-20 21:50:32 ----D---- C:\WINDOWS\Tasks
2016-03-20 21:50:31 ----RD---- C:\Program Files (x86)\Skype
2016-03-20 20:47:55 ----D---- C:\WINDOWS\System32
2016-03-20 20:47:55 ----D---- C:\WINDOWS\INF
2016-03-20 20:47:55 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-20 20:46:38 ----D---- C:\Users\Denis\AppData\Roaming\Seznam.cz
2016-03-20 20:40:16 ----D---- C:\Windows
2016-03-20 20:38:18 ----D---- C:\WINDOWS\system32\Tasks
2016-03-20 20:38:17 ----RD---- C:\Program Files (x86)
2016-03-20 19:57:13 ----RD---- C:\Program Files
2016-03-20 19:08:38 ----D---- C:\WINDOWS\debug
2016-03-20 19:08:37 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-20 18:39:14 ----D---- C:\WINDOWS\AppReadiness
2016-03-20 18:39:12 ----HD---- C:\Program Files\WindowsApps
2016-03-17 13:18:46 ----AD---- C:\Program Files (x86)\Opera
2016-03-15 00:34:50 ----SHD---- C:\WINDOWS\Installer
2016-03-12 19:55:51 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-11 17:58:23 ----RD---- C:\WINDOWS\assembly
2016-03-11 15:34:09 ----AD---- C:\KMPlayer
2016-03-11 14:48:05 ----D---- C:\WINDOWS\system32\config
2016-03-11 14:36:47 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 14:36:38 ----D---- C:\WINDOWS\WinSxS
2016-03-10 21:04:04 ----D---- C:\WINDOWS\system32\migration
2016-03-10 21:04:03 ----D---- C:\WINDOWS\AppPatch
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 21:04:03 ----D---- C:\Program Files\Windows Media Player
2016-03-10 21:04:03 ----D---- C:\Program Files\Internet Explorer
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 21:04:03 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 21:04:02 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-10 21:04:02 ----D---- C:\WINDOWS\system32\drivers
2016-03-10 16:37:30 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 10:54:52 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 10:51:56 ----SHD---- C:\System Volume Information
2016-03-09 22:28:02 ----D---- C:\WINDOWS\system32\catroot2
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-03 15:47:01 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-03 15:47:01 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\wbem
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\Dism
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\Boot
2016-03-03 15:47:00 ----D---- C:\WINDOWS\system32\appraiser
2016-03-03 15:46:59 ----RSD---- C:\WINDOWS\Media
2016-03-03 15:46:59 ----RSD---- C:\WINDOWS\Fonts
2016-03-03 15:46:59 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-03 15:46:59 ----D---- C:\WINDOWS\bcastdvr
2016-03-03 15:46:59 ----D---- C:\Program Files\Windows Journal
2016-02-23 12:58:06 ----SD---- C:\Users\Denis\AppData\Roaming\Microsoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MBI;@oem11.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\WINDOWS\System32\drivers\MBI.sys [2015-10-17 41456]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2015-02-28 127760]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 clwvd;@oem14.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2014-01-28 41704]
R3 gHidPnp;@oem5.inf,%SvcDisplayName%;USB Device Enhanced Function Driver; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [2011-10-26 25600]
R3 gMouUsb;@oem40.inf,%gMouUsb.SvcDesc%;USB Mouse Device Drv; C:\WINDOWS\System32\drivers\gMouUsb.sys [2009-11-02 14336]
R3 GPIO;@oem44.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpioe.sys [2015-11-16 59840]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-10-17 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-09-04 4515584]
R3 IntcDAud;@oem7.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2014-10-14 454416]
R3 iwdbus;@oem36.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 RSP2STOR;@oem19.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528]
R3 RTWlanE;@oem20.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E Network Adapter; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [2015-09-17 4629744]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-07-17 42696]
R3 StillCam;@sti.inf,%StillCam.SvcDesc%;Ovladač digitálního fotoaparátu pro sériový port; C:\WINDOWS\system32\DRIVERS\serscan.sys [2015-10-30 12800]
R3 SynTP;@oem8.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-07-17 614088]
R3 TXEIx64;@oem0.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2015-05-28 97320]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2015-10-30 221184]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-01-04 117248]
S3 dg_ssudbus;@oem9.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
S3 ssudmdm;@oem24.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2015-10-30 46080]
S3 usbser;@usbser.inf,%UsbSerial.DriverDesc%;Microsoft USB Serial Driver; C:\WINDOWS\System32\drivers\usbser.sys [2016-01-16 67072]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [2015-09-04 106952]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [2015-03-28 89840]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-10-17 330136]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-09-04 303360]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-07-17 246472]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2013-09-25 282112]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-10-17 291744]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 GeniusMouseService;GeniusMouseService; C:\Genius\ioCentre\GMouseService.exe []
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3396687;Hostitel synchronizace_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fc5e;Hostitel synchronizace_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_41c3d;Hostitel synchronizace_41c3d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3396687;Služba zasílání zpráv_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fc5e;Služba zasílání zpráv_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_41c3d;Služba zasílání zpráv_41c3d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3396687;Data kontaktů_3396687; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fc5e;Data kontaktů_3fc5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_41c3d;Data kontaktů_41c3d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_3396687;Úložiště uživatelských dat_3396687; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_3fc5e;Úložiště uživatelských dat_3fc5e; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_41c3d;Úložiště uživatelských dat_41c3d; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu, děkuji
Dvouklikem na soubor C:\Program Files\trend micro\Denis.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu, děkuji
Ale nefunguje mi nyní windows ikonka, jakmile chci cokoliv spustit z dolní lišty ať už lupu či ikonku windows tak nereaguje.
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu, děkuji
Typický problém desítek. Zkuste obnovu systému k datu, kdy korketně fungoval.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu, děkuji
Poradíte mi prosím jak na to ?
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu, děkuji
Zde: http://windows.microsoft.com/cs-cz/wind ... ry-options je návod. Přečtěte si "Obnovení počítače z bodu obnovení systému".
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu, děkuji
Obnova systému vrátila všechno - Úplně všechno, viry opět aktivní, antivirus Avira se odinstaloval, opět skáčou reklamy a programy, které jsem odinstaloval se mi po obnově opět ukázali zpět.
Takže jsme přesně tam kde jsme byl na začátku
Takže jsme přesně tam kde jsme byl na začátku
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu, děkuji
Udělal jste asi obnovu do továrního nastavení a to jsem po vás nechtěl. Napsal jsem jasně:
Udělejte tyto skeny:
1. Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize
Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.
a
2. Junkware removal tool: http://thisisudax.org/downloads/JRT.exe
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.
To je zcela něco jiného. Zkusíme na to jít jinak a doufám, že problém nenastane.Obnovení počítače z bodu obnovení systému
Udělejte tyto skeny:
1. Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize
autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;
Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.
a
2. Junkware removal tool: http://thisisudax.org/downloads/JRT.exe
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?