Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

po nějaké době mi začne blbnout kurzor a nejde psát

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
bajer1991
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 28 bře 2016 20:00

po nějaké době mi začne blbnout kurzor a nejde psát

#1 Příspěvek od bajer1991 »

Dobrý den,

prosím o pomoc. Když mám déle spuštěné PC přestane mi skoro reagovat myš a nejde psát.


přikládám log:


Logfile of random's system information tool 1.10 (written by random/random)
Run by PB at 2016-03-28 21:03:09
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 466 GB (78%) free of 594 GB
Total RAM: 4044 MB (43% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:03:19, on 28.3.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18231)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASP\AdvancedSystemProtector.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\PB\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.87\Installer\chrmstp.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\PB.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13014
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Partner BHO Class - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll" (file missing)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [NBAgent] "c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [TSleepSrv] %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
O4 - HKLM\..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe /STARTUP
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\PB\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\PB\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'Default user')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user')
O4 - Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe
O4 - Global Startup: Bluetooth Manager.lnk = ?
O4 - Global Startup: Toshiba Places Icon Utility.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Přidat do aplikace TOSHIBA Bulletin Board - res://C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @c:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Partner Service - Google Inc. - C:\ProgramData\Partner\Partner.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13696 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
winlogon.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs

C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 3216432
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
\??\C:\windows\system32\conhost.exe "-1536442297-1772047573-1255525638907913295-608001175-12119853752047015524-94020846
"C:\windows\system32\Dwm.exe"
C:\windows\System32\spoolsv.exe
C:\windows\Explorer.EXE
"taskhost.exe"
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
C:\windows\System32\svchost.exe -k utcsvc
taskeng.exe {CA2E9624-9E52-4868-8B49-EEE22A443381}
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
"C:\Windows\system32\mfevtps.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
"C:\Program Files (x86)\ASP\AdvancedSystemProtector.exe" autolaunch
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system32\TODDSrv.exe
"C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe"
C:\windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
WLIDSvcM.exe 2952
C:\windows\system32\wbem\wmiprvse.exe
"C:\windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe"
"C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe"
"C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe"
"C:\Program Files\TOSHIBA\TECO\TecoService.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe"
taskeng.exe {C2F8E0B9-7C36-42FD-8D5F-F66381F8CEDF}
"C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe"
C:\windows\system32\igfxext.exe -Embedding
C:\windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\TOSHIBA\TECO\Teco.exe" /r
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe" /STARTUP
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
C:\windows\servicing\TrustedInstaller.exe
szndesktop.exe default start
"C:\Users\PB\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\windows\system32\conhost.exe "255644769-359056476-1872504480530754599-919101334-471778462-202962616213535760
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe"
"C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe"
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe"
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosA2dp.exe"
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHid.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHsp.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe"
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\tosBtProc.exe"
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe"
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe"
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe"
"C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe"
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe"
"C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.87\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome --force-configure-user-settings
"C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe"
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"c:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\PB\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0xdc
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7996.0.470493568\701182802" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,9,11,16,25,54 --disable-accelerated-video-decode --gpu-vendor-id=0x8086 --gpu-device-id=0x0106 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2353 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A9_Stable_R2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_39/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-accelerated-video-decode --channel="7996.4.368011945\1440132257" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A9_Stable_R2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_39/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-accelerated-video-decode --channel="7996.7.403742911\169660926" /prefetch:1
C:\windows\system32\sppsvc.exe
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/*MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A9_Stable_R2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_39/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-accelerated-video-decode --channel="7996.8.968424902\2100579797" /prefetch:1
"C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe"
"C:\Users\PB\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA1cf4e3fdd6c3421.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
Partner BHO Class - C:\ProgramData\Partner\Partner64.dll [2011-08-03 750064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-01 662672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20 256456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08 2134656]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
Partner BHO Class - C:\ProgramData\Partner\Partner.dll [2011-08-03 433648]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-01 565304]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20 194504]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08 1725056]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13 1307928]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-08-03 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20 256456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13 1307928]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20 194504]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Toshiba TEMPRO"=C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [2011-02-10 1546720]
"TosNC"=C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [2011-03-03 597928]
"TosReelTimeMonitor"=C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [2010-12-14 38304]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-04-07 167256]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-04-07 391000]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-04-07 418136]
"TPwrMain"=C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [2011-03-02 566696]
"HSON"=C:\Program Files\TOSHIBA\TBS\HSON.exe [2010-09-25 296824]
"TCrdMain"=C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [2010-12-15 973176]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe [2010-12-14 316032]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-02-03 2679592]
"Teco"=C:\Program Files\TOSHIBA\TECO\Teco.exe [2011-03-02 1520552]
"TosSENotify"=C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [2010-12-08 710040]
"TosWaitSrv"=C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [2011-07-01 712096]
"TosVolRegulator"=C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [2009-11-11 24376]
"Toshiba Registration"=C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe [2011-08-03 150992]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"TOPI.EXE"=C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe [2011-05-16 846936]
"cz.seznam.software.autoupdate"=C:\Users\PB\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\PB\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-12-17 50385536]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-03-11 8686296]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"NBAgent"=c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe [2011-06-29 1409424]
"TSleepSrv"=C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe [2010-06-04 252792]
"ToshibaServiceStation"=C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [2010-11-29 1294712]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-07-02 5515496]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth Manager.lnk - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
Toshiba Places Icon Utility.lnk - C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe

C:\Users\PB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
TRDCReminder.lnk - C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-04-04 385024]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0
"NoFolderOptions"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe]
"Debugger="tasklist.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux3"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux4"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-03-28 21:03:09 ----D---- C:\rsit
2016-03-28 21:03:09 ----D---- C:\Program Files\trend micro
2016-03-28 19:36:40 ----D---- C:\Program Files\CCleaner
2016-03-09 02:25:50 ----A---- C:\windows\system32\drivers\ntfs.sys
2016-03-09 02:25:49 ----A---- C:\windows\system32\ucrtbase.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\ucrtbase.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-03-09 02:25:46 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 02:25:46 ----A---- C:\windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 02:25:46 ----A---- C:\windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 02:25:46 ----A---- C:\windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 02:25:44 ----A---- C:\windows\system32\win32k.sys
2016-03-09 02:25:39 ----A---- C:\windows\system32\wucltux.dll
2016-03-09 02:25:39 ----A---- C:\windows\system32\wuaueng.dll
2016-03-09 02:25:39 ----A---- C:\windows\system32\wuapi.dll
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wuwebv.dll
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wups.dll
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wudriver.dll
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wuapp.exe
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wuapi.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wuwebv.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wups2.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wups.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wudriver.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wuauclt.exe
2016-03-09 02:25:38 ----A---- C:\windows\system32\wuapp.exe
2016-03-09 02:25:38 ----A---- C:\windows\system32\wu.upgrade.ps.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\WinSetupUI.dll
2016-03-09 02:25:32 ----A---- C:\windows\system32\drivers\USBSTOR.SYS
2016-03-09 02:25:31 ----A---- C:\windows\SYSWOW64\oleaut32.dll
2016-03-09 02:25:31 ----A---- C:\windows\system32\oleaut32.dll
2016-03-09 02:25:31 ----A---- C:\windows\system32\asycfilt.dll
2016-03-09 02:25:30 ----A---- C:\windows\SYSWOW64\asycfilt.dll
2016-03-09 02:25:24 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2016-03-09 02:25:24 ----A---- C:\windows\SYSWOW64\inseng.dll
2016-03-09 02:25:24 ----A---- C:\windows\SYSWOW64\iernonce.dll
2016-03-09 02:25:24 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2016-03-09 02:25:24 ----A---- C:\windows\system32\iertutil.dll
2016-03-09 02:25:24 ----A---- C:\windows\system32\iernonce.dll
2016-03-09 02:25:24 ----A---- C:\windows\system32\ieetwproxystub.dll
2016-03-09 02:25:24 ----A---- C:\windows\system32\ieetwcollector.exe
2016-03-09 02:25:23 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\occache.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2016-03-09 02:25:22 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2016-03-09 02:25:22 ----A---- C:\windows\system32\inseng.dll
2016-03-09 02:25:22 ----A---- C:\windows\system32\ie4uinit.exe
2016-03-09 02:25:21 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-03-09 02:25:19 ----A---- C:\windows\SYSWOW64\iesetup.dll
2016-03-09 02:25:19 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-03-09 02:25:18 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2016-03-09 02:25:18 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2016-03-09 02:25:18 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-03-09 02:25:18 ----A---- C:\windows\system32\urlmon.dll
2016-03-09 02:25:18 ----A---- C:\windows\system32\occache.dll
2016-03-09 02:25:18 ----A---- C:\windows\system32\ieetwcollectorres.dll
2016-03-09 02:25:18 ----A---- C:\windows\system32\iedkcs32.dll
2016-03-09 02:25:17 ----A---- C:\windows\SYSWOW64\ieui.dll
2016-03-09 02:25:17 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2016-03-09 02:25:17 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2016-03-09 02:25:17 ----A---- C:\windows\system32\msfeeds.dll
2016-03-09 02:25:17 ----A---- C:\windows\system32\dxtrans.dll
2016-03-09 02:25:16 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-03-09 02:25:15 ----A---- C:\windows\system32\iesetup.dll
2016-03-09 02:25:15 ----A---- C:\windows\system32\ieapfltr.dll
2016-03-09 02:25:13 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-03-09 02:25:13 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2016-03-09 02:25:13 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-03-09 02:25:13 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2016-03-09 02:25:13 ----A---- C:\windows\system32\vbscript.dll
2016-03-09 02:25:12 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-03-09 02:25:12 ----A---- C:\windows\SYSWOW64\msrating.dll
2016-03-09 02:25:12 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2016-03-09 02:25:12 ----A---- C:\windows\system32\jsproxy.dll
2016-03-09 02:25:11 ----A---- C:\windows\system32\ieui.dll
2016-03-09 02:25:11 ----A---- C:\windows\system32\dxtmsft.dll
2016-03-09 02:25:10 ----A---- C:\windows\system32\ieframe.dll
2016-03-09 02:25:09 ----A---- C:\windows\system32\mshtmled.dll
2016-03-09 02:25:08 ----A---- C:\windows\system32\webcheck.dll
2016-03-09 02:25:08 ----A---- C:\windows\system32\mshtmlmedia.dll
2016-03-09 02:25:08 ----A---- C:\windows\system32\ieUnatt.exe
2016-03-09 02:25:07 ----A---- C:\windows\system32\jscript9diag.dll
2016-03-09 02:25:07 ----A---- C:\windows\system32\jscript.dll
2016-03-09 02:25:06 ----A---- C:\windows\system32\wininet.dll
2016-03-09 02:25:06 ----A---- C:\windows\system32\jscript9.dll
2016-03-09 02:25:03 ----A---- C:\windows\system32\msrating.dll
2016-03-09 02:25:03 ----A---- C:\windows\system32\MshtmlDac.dll
2016-03-09 02:25:02 ----A---- C:\windows\system32\mshtml.dll
2016-03-09 02:23:18 ----A---- C:\windows\system32\ntoskrnl.exe
2016-03-09 02:23:18 ----A---- C:\windows\system32\ntdll.dll
2016-03-09 02:23:17 ----A---- C:\windows\system32\KernelBase.dll
2016-03-09 02:23:16 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2016-03-09 02:23:16 ----A---- C:\windows\SYSWOW64\ntdll.dll
2016-03-09 02:23:16 ----A---- C:\windows\system32\kerberos.dll
2016-03-09 02:23:14 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2016-03-09 02:23:12 ----A---- C:\windows\SYSWOW64\advapi32.dll
2016-03-09 02:23:12 ----A---- C:\windows\system32\kernel32.dll
2016-03-09 02:23:12 ----A---- C:\windows\system32\advapi32.dll
2016-03-09 02:23:11 ----A---- C:\windows\SYSWOW64\kerberos.dll
2016-03-09 02:23:11 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2016-03-09 02:23:10 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-03-09 02:23:10 ----A---- C:\windows\system32\drivers\ksecdd.sys
2016-03-09 02:23:09 ----A---- C:\windows\system32\rpcrt4.dll
2016-03-09 02:23:09 ----A---- C:\windows\system32\lsasrv.dll
2016-03-09 02:23:09 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-03-09 02:23:08 ----A---- C:\windows\SYSWOW64\rpcrt4.dll
2016-03-09 02:23:08 ----A---- C:\windows\system32\smss.exe
2016-03-09 02:23:08 ----A---- C:\windows\system32\schannel.dll
2016-03-09 02:23:08 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2016-03-09 02:23:07 ----A---- C:\windows\SYSWOW64\sspicli.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\wow64win.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\winsrv.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\wdigest.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\TSpkg.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\srcore.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\ncrypt.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\msv1_0.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\conhost.exe
2016-03-09 02:23:06 ----A---- C:\windows\SYSWOW64\wdigest.dll
2016-03-09 02:23:06 ----A---- C:\windows\SYSWOW64\schannel.dll
2016-03-09 02:23:06 ----A---- C:\windows\SYSWOW64\ncrypt.dll
2016-03-09 02:23:06 ----A---- C:\windows\SYSWOW64\msv1_0.dll
2016-03-09 02:23:06 ----A---- C:\windows\system32\wow64.dll
2016-03-09 02:23:06 ----A---- C:\windows\system32\sspicli.dll
2016-03-09 02:23:06 ----A---- C:\windows\system32\lsass.exe
2016-03-09 02:23:06 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-03-09 02:23:06 ----A---- C:\windows\system32\csrsrv.dll
2016-03-09 02:23:05 ----A---- C:\windows\SYSWOW64\TSpkg.dll
2016-03-09 02:23:05 ----A---- C:\windows\SYSWOW64\srclient.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\wow64cpu.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\sspisrv.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\srclient.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\secur32.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\rstrui.exe
2016-03-09 02:23:05 ----A---- C:\windows\system32\cryptbase.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\credssp.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\wow32.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\secur32.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\kernel32.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\cryptbase.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\credssp.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\auditpol.exe
2016-03-09 02:23:04 ----A---- C:\windows\system32\ntvdm64.dll
2016-03-09 02:23:04 ----A---- C:\windows\system32\auditpol.exe
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-03-09 02:22:59 ----A---- C:\windows\SYSWOW64\setup16.exe
2016-03-09 02:22:59 ----A---- C:\windows\SYSWOW64\apisetschema.dll
2016-03-09 02:22:59 ----A---- C:\windows\system32\apisetschema.dll
2016-03-09 02:22:58 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-03-09 02:22:58 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-03-09 02:22:58 ----AH---- C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-03-09 02:22:58 ----AH---- C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-03-09 02:22:58 ----A---- C:\windows\SYSWOW64\user.exe
2016-03-09 02:22:58 ----A---- C:\windows\SYSWOW64\instnm.exe
2016-03-09 02:22:57 ----A---- C:\windows\SYSWOW64\msobjs.dll
2016-03-09 02:22:57 ----A---- C:\windows\SYSWOW64\msaudite.dll
2016-03-09 02:22:57 ----A---- C:\windows\SYSWOW64\adtschema.dll
2016-03-09 02:22:57 ----A---- C:\windows\system32\msobjs.dll
2016-03-09 02:22:57 ----A---- C:\windows\system32\msaudite.dll
2016-03-09 02:22:57 ----A---- C:\windows\system32\adtschema.dll
2016-03-09 02:21:49 ----A---- C:\windows\SYSWOW64\mfds.dll
2016-03-09 02:21:49 ----A---- C:\windows\system32\mfds.dll
2016-03-09 02:21:47 ----A---- C:\windows\SYSWOW64\fontsub.dll
2016-03-09 02:21:47 ----A---- C:\windows\SYSWOW64\atmfd.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\lpk.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\fontsub.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\dciman32.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\atmlib.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\atmfd.dll
2016-03-09 02:21:46 ----A---- C:\windows\SYSWOW64\lpk.dll
2016-03-09 02:21:46 ----A---- C:\windows\SYSWOW64\dciman32.dll
2016-03-09 02:21:46 ----A---- C:\windows\SYSWOW64\atmlib.dll
2016-03-09 02:21:44 ----A---- C:\windows\system32\seclogon.dll
2016-03-09 02:21:42 ----A---- C:\windows\system32\wmp.dll
2016-03-09 02:21:40 ----A---- C:\windows\SYSWOW64\wmp.dll
2016-03-09 02:21:39 ----A---- C:\windows\system32\spwmp.dll
2016-03-09 02:21:39 ----A---- C:\windows\system32\dxmasf.dll
2016-03-09 02:21:38 ----A---- C:\windows\SYSWOW64\wmploc.DLL
2016-03-09 02:21:38 ----A---- C:\windows\SYSWOW64\spwmp.dll
2016-03-09 02:21:38 ----A---- C:\windows\SYSWOW64\dxmasf.dll
2016-03-09 02:21:37 ----A---- C:\windows\system32\wmploc.DLL
2016-03-09 02:21:33 ----A---- C:\windows\system32\generaltel.dll
2016-03-09 02:21:33 ----A---- C:\windows\system32\appraiser.dll
2016-03-09 02:21:32 ----A---- C:\windows\system32\invagent.dll
2016-03-09 02:21:32 ----A---- C:\windows\system32\devinv.dll
2016-03-09 02:21:32 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-03-09 02:21:32 ----A---- C:\windows\system32\aeinv.dll
2016-03-09 02:21:32 ----A---- C:\windows\system32\acmigration.dll

======List of files/folders modified in the last 1 month======

2016-03-28 21:03:13 ----D---- C:\windows\Temp
2016-03-28 21:03:09 ----D---- C:\Program Files
2016-03-28 20:58:40 ----D---- C:\windows\System32
2016-03-28 20:58:40 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-03-28 20:58:39 ----D---- C:\windows\inf
2016-03-28 20:57:54 ----D---- C:\Users\PB\AppData\Roaming\Seznam.cz
2016-03-28 20:55:31 ----D---- C:\Users\PB\AppData\Roaming\Skype
2016-03-28 20:55:06 ----A---- C:\windows\SYSWOW64\log.txt
2016-03-28 20:54:51 ----D---- C:\windows\system32\Tasks
2016-03-28 20:53:19 ----D---- C:\windows\system32\config
2016-03-28 20:39:29 ----D---- C:\windows\Microsoft.NET
2016-03-28 20:39:11 ----SHD---- C:\windows\Installer
2016-03-28 20:39:11 ----SHD---- C:\Config.Msi
2016-03-28 20:31:30 ----SHD---- C:\System Volume Information
2016-03-28 20:20:11 ----D---- C:\Windows
2016-03-28 19:55:19 ----D---- C:\windows\Panther
2016-03-28 19:55:18 ----D---- C:\windows\Logs
2016-03-28 19:55:18 ----D---- C:\windows\debug
2016-03-28 19:30:11 ----D---- C:\windows\Prefetch
2016-03-28 19:28:55 ----RD---- C:\Program Files (x86)
2016-03-28 19:28:55 ----D---- C:\ProgramData\McAfee
2016-03-28 19:28:55 ----D---- C:\Program Files\Common Files\mcafee
2016-03-27 21:13:35 ----D---- C:\Users\PB\AppData\Roaming\SoftGrid Client
2016-03-27 21:05:11 ----D---- C:\windows\SysWOW64
2016-03-27 21:05:11 ----A---- C:\windows\SYSWOW64\PerfStringBackup.INI
2016-03-27 21:02:50 ----D---- C:\windows\system32\drivers
2016-03-23 20:52:12 ----D---- C:\windows\winsxs
2016-03-23 20:52:04 ----SD---- C:\windows\SYSWOW64\GWX
2016-03-23 20:52:04 ----SD---- C:\windows\system32\GWX
2016-03-23 20:11:58 ----D---- C:\windows\system32\wdi
2016-03-22 12:35:04 ----D---- C:\windows\rescache
2016-03-22 11:59:15 ----RSD---- C:\windows\assembly
2016-03-21 04:28:50 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-03-21 04:28:47 ----D---- C:\windows\system32\cs-CZ
2016-03-21 04:28:25 ----D---- C:\Program Files\Internet Explorer
2016-03-21 04:28:09 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-21 04:28:02 ----D---- C:\windows\SYSWOW64\pl-PL
2016-03-21 04:27:59 ----D---- C:\windows\SYSWOW64\hu-HU
2016-03-21 04:27:56 ----D---- C:\windows\SYSWOW64\el-GR
2016-03-21 04:27:53 ----D---- C:\windows\SYSWOW64\sk-SK
2016-03-21 04:27:48 ----D---- C:\windows\SYSWOW64\en-US
2016-03-21 04:27:28 ----D---- C:\windows\system32\pl-PL
2016-03-21 04:27:27 ----D---- C:\windows\system32\hu-HU
2016-03-21 04:27:25 ----D---- C:\windows\system32\el-GR
2016-03-21 04:27:24 ----D---- C:\windows\system32\sk-SK
2016-03-21 04:27:21 ----D---- C:\windows\system32\en-US
2016-03-21 04:26:28 ----D---- C:\windows\AppPatch
2016-03-21 04:26:13 ----D---- C:\Program Files (x86)\Windows Media Player
2016-03-21 04:26:08 ----D---- C:\Program Files\Windows Media Player
2016-03-11 00:39:07 ----D---- C:\windows\system32\DriverStore
2016-03-09 10:49:01 ----D---- C:\windows\system32\appraiser
2016-03-09 02:18:04 ----D---- C:\windows\system32\catroot2
2016-03-02 14:52:28 ----SHD---- C:\$RECYCLE.BIN

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2015-07-01 65736]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2015-07-01 272248]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-05-20 557848]
R0 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2014-03-17 783864]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\windows\system32\drivers\mfewfpk.sys [2014-03-17 345456]
R0 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\windows\system32\DRIVERS\TVALZ_O.SYS [2009-07-14 26840]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2015-07-01 93528]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2015-07-01 1047320]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2015-07-02 442264]
R1 Tosrfcom;Bluetooth RFCOMM; C:\windows\System32\Drivers\tosrfcom.sys [2010-11-29 82224]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2015-07-01 29168]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2015-07-01 89944]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2015-07-01 137288]
R2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver; C:\windows\system32\DRIVERS\TVALZFL.sys [2009-06-19 14472]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2010-12-17 2675712]
R3 BtFilter;Bluetooth LowerFilter Class Filter Driver; C:\windows\system32\DRIVERS\btfilter.sys [2010-10-18 42096]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2011-01-27 1577088]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2011-04-04 12262624]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x64.sys [2010-11-08 76912]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-19 56344]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\windows\system32\drivers\mfeavfk.sys [2014-03-17 311600]
R3 mfefirek;McAfee Inc. mfefirek; C:\windows\system32\drivers\mfefirek.sys [2014-03-17 522360]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\windows\system32\DRIVERS\nusb3xhc.sys [2010-12-10 181248]
R3 PGEffect;Pangu effect driver; C:\windows\system32\DRIVERS\pgeffect.sys [2011-02-08 38096]
R3 QIOMem;Generic IO & Memory Access; C:\windows\system32\drivers\QIOMem.sys [2009-06-15 12800]
R3 Sftfs;Sftfs; C:\windows\system32\DRIVERS\Sftfslh.sys [2009-12-02 721768]
R3 Sftplay;Sftplay; C:\windows\system32\DRIVERS\Sftplaylh.sys [2009-12-02 269672]
R3 Sftredir;Sftredir; C:\windows\system32\DRIVERS\Sftredirlh.sys [2009-12-02 25960]
R3 Sftvol;Sftvol; C:\windows\system32\DRIVERS\Sftvollh.sys [2009-12-02 22376]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2011-02-03 1413680]
R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\windows\system32\DRIVERS\tdcmdpst.sys [2009-07-30 27784]
R3 tosporte;Bluetooth COM Port; C:\windows\system32\DRIVERS\tosporte.sys [2009-06-17 54664]
R3 tosrfbd;Bluetooth RFBUS; C:\windows\system32\DRIVERS\tosrfbd.sys [2011-01-20 291120]
R3 tosrfec;Bluetooth ACPI; C:\windows\system32\DRIVERS\tosrfec.sys [2010-06-18 18872]
R3 Tosrfhid;Bluetooth RFHID; C:\windows\system32\DRIVERS\Tosrfhid.sys [2010-08-30 94528]
R3 Tosrfusb;Bluetooth USB Controller; C:\windows\system32\DRIVERS\tosrfusb.sys [2011-01-27 67384]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 cfwids;McAfee Inc. cfwids; C:\windows\system32\drivers\cfwids.sys [2014-03-17 70592]
S3 mfeapfk;McAfee Inc. mfeapfk; C:\windows\system32\drivers\mfeapfk.sys [2014-03-17 180272]
S3 mfeavfk01;McAfee Inc.; C:\windows\system32\drivers\mfeavfk01.sys []
S3 mferkdet;McAfee Inc. mferkdet; C:\windows\system32\drivers\mferkdet.sys [2011-03-13 98728]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2010-12-01 250984]
S3 RSUSBVSTOR;RTSUVSTOR.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RTSUVSTOR.sys [2011-07-08 307304]
S3 tosrfbnp;Bluetooth RFBNEP; C:\windows\System32\Drivers\tosrfbnp.sys [2010-11-11 50864]
S3 tosrfnds;Bluetooth Personal Area Network; C:\windows\system32\DRIVERS\tosrfnds.sys [2009-07-24 26472]
S3 TosRfSnd;Bluetooth Audio; C:\windows\system32\drivers\tosrfsnd.sys [2010-04-26 63488]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 WinUsb;WinUsb; C:\windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-14 82128]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-07-01 343336]
R2 BBSvc;BingBar Service; C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe [2012-02-13 193816]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2016-01-08 1433216]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2016-01-08 1773696]
R2 cfWiMAXService;ConfigFree WiMAX Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [2010-01-28 249200]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112]
R2 ConfigFree Service;ConfigFree Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2010-02-28 821664]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2011-03-01 27648]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2014-05-27 2139328]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-20 325656]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2011-03-13 197960]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2014-03-17 219752]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [2014-03-17 185792]
R2 NAUpdate;@c:\Program Files (x86)\Nero\Update\NASvc.exe,-200; c:\Program Files (x86)\Nero\Update\NASvc.exe [2011-03-29 598312]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2009-12-02 483688]
R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\windows\system32\TODDSrv.exe [2010-10-20 138656]
R2 TosCoSrv;TOSHIBA Power Saver; C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe [2010-12-09 489384]
R2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service; C:\Program Files\TOSHIBA\TECO\TecoService.exe [2011-03-02 266680]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-20 2656280]
R3 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe [2012-02-13 240408]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2009-12-02 209768]
R3 TMachInfo;TMachInfo; C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2010-11-29 54136]
R3 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2010-04-12 196976]
R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-12-08 137632]
R3 TPCHSrv;TPCH Service; C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe [2011-07-01 828856]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-03-28 194032]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2016-02-08 114688]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2009-11-19 4925184]
S3 Partner Service;Partner Service; C:\ProgramData\Partner\Partner.exe [2011-08-03 332272]
S3 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO); C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [2011-02-10 112080]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2014-04-01 1255736]
S4 aspnet_state;ASP.NET State Service; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: po nějaké době mi začne blbnout kurzor a nejde psát

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

bajer1991
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 28 bře 2016 20:00

Re: po nějaké době mi začne blbnout kurzor a nejde psát

#3 Příspěvek od bajer1991 »

# AdwCleaner v5.107 - Log soubor vytvořen 29/03/2016 o 21:35:09
# Aktualizováno 28/03/2016 by Xplode
# Databáze : 2016-03-28.2 [Server]
# Operační systém : Windows 7 Home Premium Service Pack 1 (x64)
# Jméno uživatele : PB - PB-TOSH
# Spuštěno z : C:\Users\PB\Desktop\adwcleaner_5.107.exe
# Volba : Čištění
# Podpora : http://toolslib.net/forum

***** [ Služby ] *****

[-] Služba Smazáno : Partner Service

***** [ Složky ] *****

[-] Složka Smazáno : C:\Program Files (x86)\ASP
[-] Složka Smazáno : C:\ProgramData\Partner
[-] Složka Smazáno : C:\ProgramData\Systweak
[-] Složka Smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System~Protector
[-] Složka Smazáno : C:\Users\PB\AppData\Local\Systweak
[-] Složka Smazáno : C:\Users\PB\AppData\Roaming\ASP
[-] Složka Smazáno : C:\Users\PB\AppData\Roaming\OpenCandy
[-] Složka Smazáno : C:\Users\PB\AppData\Roaming\RHEng
[-] Složka Smazáno : C:\Users\PB\AppData\Roaming\Systweak
[#] Složka Smazáno : C:\windows\SysNative\Tasks\Advanced System~Protector

***** [ Soubory ] *****

[-] Soubor Smazáno : C:\Users\Public\Desktop\Advanced System~Protector.lnk
[-] Soubor Smazáno : C:\windows\SysNative\roboot64.exe
[-] Soubor Smazáno : C:\windows\SysNative\sasnative64.exe

***** [ DLLs ] *****


***** [ Zástupci ] *****


***** [ Naplánované úkoly ] *****

[-] Úkol Smazáno : Advanced System~Protector
[-] Úkol Smazáno : Advanced System~Protector_startup

***** [ Registr ] *****

[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\AppID\kt_bho_dll.dll
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\00212D92-C5D8-4ff4-AE50-B20F0F85C40A_Systweak_Ad~9338DF9D_is1
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\kt_bho.KettleBho
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\kt_bho.KettleBho.1
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\protector_dll.Protector
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\protector_dll.Protector.1
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\AppID\{28A88B70-D874-4F73-BBBA-9B2B222FB7D6}
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\CLSID\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{86676E13-D6D8-4652-9FCF-F2047F1FB000}
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Klávesa Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Klávesa Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}
[-] Klávesa Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{54739D49-AC03-4C57-9264-C5195596B3A1}
[-] Klávesa Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Klávesa Smazáno : [x64] HKLM\SOFTWARE\Classes\CLSID\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Klávesa Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Klávesa Smazáno : HKCU\Software\Linkey
[-] Klávesa Smazáno : HKLM\SOFTWARE\SmdmF
[-] Klávesa Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}
[-] Klávesa Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}

***** [ Webové prohlížeče ] *****

[-] [C:\Users\PB\AppData\Local\Comodo\Dragon\User Data\Default\Web Data] [Search Provider] Smazáno : ask.com

*************************

:: "Tracing" odstraněných kláves
:: Nastavení Winsock odstraněno

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [6212 bytes] - [29/03/2016 21:35:09]
C:\AdwCleaner\AdwCleaner[S1].txt - [6284 bytes] - [29/03/2016 21:30:38]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [6358 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: po nějaké době mi začne blbnout kurzor a nejde psát

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

bajer1991
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 28 bře 2016 20:00

Re: po nějaké době mi začne blbnout kurzor a nejde psát

#5 Příspěvek od bajer1991 »

Logfile of random's system information tool 1.10 (written by random/random)
Run by PB at 2016-03-30 19:48:14
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 465 GB (78%) free of 594 GB
Total RAM: 4044 MB (51% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:48:18, on 30.3.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18231)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Users\PB\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\PB.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13014
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll" (file missing)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [NBAgent] "c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [TSleepSrv] %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
O4 - HKLM\..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe /STARTUP
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\PB\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\PB\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'Default user')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user')
O4 - Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe
O4 - Global Startup: Bluetooth Manager.lnk = ?
O4 - Global Startup: Toshiba Places Icon Utility.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Přidat do aplikace TOSHIBA Bulletin Board - res://C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @c:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13319 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\system32\WLANExt.exe 30810704
\??\C:\windows\system32\conhost.exe "17499871981818993346-1147179572764870528-665019171195446433-83771032-1965532301
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
C:\windows\System32\spoolsv.exe
"taskhost.exe"
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
C:\windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
"C:\Windows\system32\mfevtps.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system32\TODDSrv.exe
"C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe"
C:\windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
WLIDSvcM.exe 2868
"C:\Program Files\TOSHIBA\TECO\TecoService.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\wbem\wmiprvse.exe
"C:\windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe"
"C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe"
"C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe"
"C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\TOSHIBA\TECO\Teco.exe" /r
taskeng.exe {74401B8B-49F3-4D0B-842D-191F3570FADC}
"C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe"
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe" /STARTUP
C:\windows\system32\igfxext.exe -Embedding
szndesktop.exe default start
"C:\Users\PB\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\windows\system32\conhost.exe "637155909-11452579821528121522666507691953258650-302152667-624345153-27460012
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\SearchIndexer.exe /Embedding
C:\windows\system32\igfxsrvc.exe -Embedding
C:\windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe"
"C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe"
"C:\windows\system32\NOTEPAD.EXE" C:\AdwCleaner\AdwCleaner[C1].txt
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe"
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosA2dp.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHid.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHsp.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe"
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\tosBtProc.exe"
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe"
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe"
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe"
"C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe"
"C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe"
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe"
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"c:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\PB\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0xd8
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3820.0.163562303\582987402" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,9,11,16,25,54 --disable-accelerated-video-decode --gpu-vendor-id=0x8086 --gpu-device-id=0x0106 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2353 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/*MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A9_Stable_R2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_39/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-accelerated-video-decode --channel="3820.2.1835123727\594997217" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/*MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A9_Stable_R2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_39/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-accelerated-video-decode --channel="3820.4.596435152\68562058" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/*MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A9_Stable_R2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_39/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-accelerated-video-decode --channel="3820.6.668440121\1435121981" /prefetch:1
"C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe"

"C:\program files (x86)\toshiba\wireless lan indicator\tosindicator.exe" /a
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
taskhost.exe $(Arg0)
"C:\windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
"C:\program files (x86)\toshiba\wireless lan indicator\tosindicator.exe" /a
taskeng.exe {B908875B-E1E5-4D3E-8478-0946BA84F4D4}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
wmiadap.exe /R /T
"C:\Users\PB\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA1cf4e3fdd6c3421.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-01 662672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20 256456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08 2134656]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-01 565304]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20 194504]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08 1725056]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13 1307928]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-08-03 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20 256456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13 1307928]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20 194504]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Toshiba TEMPRO"=C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [2011-02-10 1546720]
"TosNC"=C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [2011-03-03 597928]
"TosReelTimeMonitor"=C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [2010-12-14 38304]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-04-07 167256]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-04-07 391000]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-04-07 418136]
"TPwrMain"=C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [2011-03-02 566696]
"HSON"=C:\Program Files\TOSHIBA\TBS\HSON.exe [2010-09-25 296824]
"TCrdMain"=C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [2010-12-15 973176]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe [2010-12-14 316032]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-02-03 2679592]
"Teco"=C:\Program Files\TOSHIBA\TECO\Teco.exe [2011-03-02 1520552]
"TosSENotify"=C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [2010-12-08 710040]
"TosWaitSrv"=C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [2011-07-01 712096]
"TosVolRegulator"=C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [2009-11-11 24376]
"Toshiba Registration"=C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe [2011-08-03 150992]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"TOPI.EXE"=C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe [2011-05-16 846936]
"cz.seznam.software.autoupdate"=C:\Users\PB\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\PB\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-12-17 50385536]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-03-11 8686296]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"NBAgent"=c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe [2011-06-29 1409424]
"TSleepSrv"=C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe [2010-06-04 252792]
"ToshibaServiceStation"=C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [2010-11-29 1294712]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-07-02 5515496]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth Manager.lnk - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
Toshiba Places Icon Utility.lnk - C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe

C:\Users\PB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
TRDCReminder.lnk - C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-04-04 385024]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0
"NoFolderOptions"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera]
"Debugger="tasklist.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux3"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux4"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-03-29 21:30:13 ----D---- C:\AdwCleaner
2016-03-28 21:03:09 ----D---- C:\rsit
2016-03-28 21:03:09 ----D---- C:\Program Files\trend micro
2016-03-28 19:36:40 ----D---- C:\Program Files\CCleaner
2016-03-09 02:25:50 ----A---- C:\windows\system32\drivers\ntfs.sys
2016-03-09 02:25:49 ----A---- C:\windows\system32\ucrtbase.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\ucrtbase.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-03-09 02:25:46 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 02:25:46 ----A---- C:\windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 02:25:46 ----A---- C:\windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 02:25:46 ----A---- C:\windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 02:25:44 ----A---- C:\windows\system32\win32k.sys
2016-03-09 02:25:39 ----A---- C:\windows\system32\wucltux.dll
2016-03-09 02:25:39 ----A---- C:\windows\system32\wuaueng.dll
2016-03-09 02:25:39 ----A---- C:\windows\system32\wuapi.dll
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wuwebv.dll
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wups.dll
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wudriver.dll
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wuapp.exe
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wuapi.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wuwebv.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wups2.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wups.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wudriver.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wuauclt.exe
2016-03-09 02:25:38 ----A---- C:\windows\system32\wuapp.exe
2016-03-09 02:25:38 ----A---- C:\windows\system32\wu.upgrade.ps.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\WinSetupUI.dll
2016-03-09 02:25:32 ----A---- C:\windows\system32\drivers\USBSTOR.SYS
2016-03-09 02:25:31 ----A---- C:\windows\SYSWOW64\oleaut32.dll
2016-03-09 02:25:31 ----A---- C:\windows\system32\oleaut32.dll
2016-03-09 02:25:31 ----A---- C:\windows\system32\asycfilt.dll
2016-03-09 02:25:30 ----A---- C:\windows\SYSWOW64\asycfilt.dll
2016-03-09 02:25:24 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2016-03-09 02:25:24 ----A---- C:\windows\SYSWOW64\inseng.dll
2016-03-09 02:25:24 ----A---- C:\windows\SYSWOW64\iernonce.dll
2016-03-09 02:25:24 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2016-03-09 02:25:24 ----A---- C:\windows\system32\iertutil.dll
2016-03-09 02:25:24 ----A---- C:\windows\system32\iernonce.dll
2016-03-09 02:25:24 ----A---- C:\windows\system32\ieetwproxystub.dll
2016-03-09 02:25:24 ----A---- C:\windows\system32\ieetwcollector.exe
2016-03-09 02:25:23 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\occache.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2016-03-09 02:25:22 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2016-03-09 02:25:22 ----A---- C:\windows\system32\inseng.dll
2016-03-09 02:25:22 ----A---- C:\windows\system32\ie4uinit.exe
2016-03-09 02:25:21 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-03-09 02:25:19 ----A---- C:\windows\SYSWOW64\iesetup.dll
2016-03-09 02:25:19 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-03-09 02:25:18 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2016-03-09 02:25:18 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2016-03-09 02:25:18 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-03-09 02:25:18 ----A---- C:\windows\system32\urlmon.dll
2016-03-09 02:25:18 ----A---- C:\windows\system32\occache.dll
2016-03-09 02:25:18 ----A---- C:\windows\system32\ieetwcollectorres.dll
2016-03-09 02:25:18 ----A---- C:\windows\system32\iedkcs32.dll
2016-03-09 02:25:17 ----A---- C:\windows\SYSWOW64\ieui.dll
2016-03-09 02:25:17 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2016-03-09 02:25:17 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2016-03-09 02:25:17 ----A---- C:\windows\system32\msfeeds.dll
2016-03-09 02:25:17 ----A---- C:\windows\system32\dxtrans.dll
2016-03-09 02:25:16 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-03-09 02:25:15 ----A---- C:\windows\system32\iesetup.dll
2016-03-09 02:25:15 ----A---- C:\windows\system32\ieapfltr.dll
2016-03-09 02:25:13 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-03-09 02:25:13 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2016-03-09 02:25:13 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-03-09 02:25:13 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2016-03-09 02:25:13 ----A---- C:\windows\system32\vbscript.dll
2016-03-09 02:25:12 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-03-09 02:25:12 ----A---- C:\windows\SYSWOW64\msrating.dll
2016-03-09 02:25:12 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2016-03-09 02:25:12 ----A---- C:\windows\system32\jsproxy.dll
2016-03-09 02:25:11 ----A---- C:\windows\system32\ieui.dll
2016-03-09 02:25:11 ----A---- C:\windows\system32\dxtmsft.dll
2016-03-09 02:25:10 ----A---- C:\windows\system32\ieframe.dll
2016-03-09 02:25:09 ----A---- C:\windows\system32\mshtmled.dll
2016-03-09 02:25:08 ----A---- C:\windows\system32\webcheck.dll
2016-03-09 02:25:08 ----A---- C:\windows\system32\mshtmlmedia.dll
2016-03-09 02:25:08 ----A---- C:\windows\system32\ieUnatt.exe
2016-03-09 02:25:07 ----A---- C:\windows\system32\jscript9diag.dll
2016-03-09 02:25:07 ----A---- C:\windows\system32\jscript.dll
2016-03-09 02:25:06 ----A---- C:\windows\system32\wininet.dll
2016-03-09 02:25:06 ----A---- C:\windows\system32\jscript9.dll
2016-03-09 02:25:03 ----A---- C:\windows\system32\msrating.dll
2016-03-09 02:25:03 ----A---- C:\windows\system32\MshtmlDac.dll
2016-03-09 02:25:02 ----A---- C:\windows\system32\mshtml.dll
2016-03-09 02:23:18 ----A---- C:\windows\system32\ntoskrnl.exe
2016-03-09 02:23:18 ----A---- C:\windows\system32\ntdll.dll
2016-03-09 02:23:17 ----A---- C:\windows\system32\KernelBase.dll
2016-03-09 02:23:16 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2016-03-09 02:23:16 ----A---- C:\windows\SYSWOW64\ntdll.dll
2016-03-09 02:23:16 ----A---- C:\windows\system32\kerberos.dll
2016-03-09 02:23:14 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2016-03-09 02:23:12 ----A---- C:\windows\SYSWOW64\advapi32.dll
2016-03-09 02:23:12 ----A---- C:\windows\system32\kernel32.dll
2016-03-09 02:23:12 ----A---- C:\windows\system32\advapi32.dll
2016-03-09 02:23:11 ----A---- C:\windows\SYSWOW64\kerberos.dll
2016-03-09 02:23:11 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2016-03-09 02:23:10 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-03-09 02:23:10 ----A---- C:\windows\system32\drivers\ksecdd.sys
2016-03-09 02:23:09 ----A---- C:\windows\system32\rpcrt4.dll
2016-03-09 02:23:09 ----A---- C:\windows\system32\lsasrv.dll
2016-03-09 02:23:09 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-03-09 02:23:08 ----A---- C:\windows\SYSWOW64\rpcrt4.dll
2016-03-09 02:23:08 ----A---- C:\windows\system32\smss.exe
2016-03-09 02:23:08 ----A---- C:\windows\system32\schannel.dll
2016-03-09 02:23:08 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2016-03-09 02:23:07 ----A---- C:\windows\SYSWOW64\sspicli.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\wow64win.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\winsrv.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\wdigest.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\TSpkg.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\srcore.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\ncrypt.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\msv1_0.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\conhost.exe
2016-03-09 02:23:06 ----A---- C:\windows\SYSWOW64\wdigest.dll
2016-03-09 02:23:06 ----A---- C:\windows\SYSWOW64\schannel.dll
2016-03-09 02:23:06 ----A---- C:\windows\SYSWOW64\ncrypt.dll
2016-03-09 02:23:06 ----A---- C:\windows\SYSWOW64\msv1_0.dll
2016-03-09 02:23:06 ----A---- C:\windows\system32\wow64.dll
2016-03-09 02:23:06 ----A---- C:\windows\system32\sspicli.dll
2016-03-09 02:23:06 ----A---- C:\windows\system32\lsass.exe
2016-03-09 02:23:06 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-03-09 02:23:06 ----A---- C:\windows\system32\csrsrv.dll
2016-03-09 02:23:05 ----A---- C:\windows\SYSWOW64\TSpkg.dll
2016-03-09 02:23:05 ----A---- C:\windows\SYSWOW64\srclient.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\wow64cpu.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\sspisrv.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\srclient.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\secur32.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\rstrui.exe
2016-03-09 02:23:05 ----A---- C:\windows\system32\cryptbase.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\credssp.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\wow32.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\secur32.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\kernel32.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\cryptbase.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\credssp.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\auditpol.exe
2016-03-09 02:23:04 ----A---- C:\windows\system32\ntvdm64.dll
2016-03-09 02:23:04 ----A---- C:\windows\system32\auditpol.exe
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-03-09 02:22:59 ----A---- C:\windows\SYSWOW64\setup16.exe
2016-03-09 02:22:59 ----A---- C:\windows\SYSWOW64\apisetschema.dll
2016-03-09 02:22:59 ----A---- C:\windows\system32\apisetschema.dll
2016-03-09 02:22:58 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-03-09 02:22:58 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-03-09 02:22:58 ----AH---- C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-03-09 02:22:58 ----AH---- C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-03-09 02:22:58 ----A---- C:\windows\SYSWOW64\user.exe
2016-03-09 02:22:58 ----A---- C:\windows\SYSWOW64\instnm.exe
2016-03-09 02:22:57 ----A---- C:\windows\SYSWOW64\msobjs.dll
2016-03-09 02:22:57 ----A---- C:\windows\SYSWOW64\msaudite.dll
2016-03-09 02:22:57 ----A---- C:\windows\SYSWOW64\adtschema.dll
2016-03-09 02:22:57 ----A---- C:\windows\system32\msobjs.dll
2016-03-09 02:22:57 ----A---- C:\windows\system32\msaudite.dll
2016-03-09 02:22:57 ----A---- C:\windows\system32\adtschema.dll
2016-03-09 02:21:49 ----A---- C:\windows\SYSWOW64\mfds.dll
2016-03-09 02:21:49 ----A---- C:\windows\system32\mfds.dll
2016-03-09 02:21:47 ----A---- C:\windows\SYSWOW64\fontsub.dll
2016-03-09 02:21:47 ----A---- C:\windows\SYSWOW64\atmfd.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\lpk.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\fontsub.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\dciman32.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\atmlib.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\atmfd.dll
2016-03-09 02:21:46 ----A---- C:\windows\SYSWOW64\lpk.dll
2016-03-09 02:21:46 ----A---- C:\windows\SYSWOW64\dciman32.dll
2016-03-09 02:21:46 ----A---- C:\windows\SYSWOW64\atmlib.dll
2016-03-09 02:21:44 ----A---- C:\windows\system32\seclogon.dll
2016-03-09 02:21:42 ----A---- C:\windows\system32\wmp.dll
2016-03-09 02:21:40 ----A---- C:\windows\SYSWOW64\wmp.dll
2016-03-09 02:21:39 ----A---- C:\windows\system32\spwmp.dll
2016-03-09 02:21:39 ----A---- C:\windows\system32\dxmasf.dll
2016-03-09 02:21:38 ----A---- C:\windows\SYSWOW64\wmploc.DLL
2016-03-09 02:21:38 ----A---- C:\windows\SYSWOW64\spwmp.dll
2016-03-09 02:21:38 ----A---- C:\windows\SYSWOW64\dxmasf.dll
2016-03-09 02:21:37 ----A---- C:\windows\system32\wmploc.DLL
2016-03-09 02:21:33 ----A---- C:\windows\system32\generaltel.dll
2016-03-09 02:21:33 ----A---- C:\windows\system32\appraiser.dll
2016-03-09 02:21:32 ----A---- C:\windows\system32\invagent.dll
2016-03-09 02:21:32 ----A---- C:\windows\system32\devinv.dll
2016-03-09 02:21:32 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-03-09 02:21:32 ----A---- C:\windows\system32\aeinv.dll
2016-03-09 02:21:32 ----A---- C:\windows\system32\acmigration.dll

======List of files/folders modified in the last 1 month======

2016-03-30 19:48:15 ----D---- C:\windows\Temp
2016-03-30 19:47:19 ----D---- C:\Users\PB\AppData\Roaming\Skype
2016-03-30 19:46:21 ----D---- C:\windows\Microsoft.NET
2016-03-29 21:43:04 ----D---- C:\windows\System32
2016-03-29 21:43:04 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-03-29 21:43:03 ----D---- C:\windows\inf
2016-03-29 21:42:15 ----D---- C:\Users\PB\AppData\Roaming\Seznam.cz
2016-03-29 21:39:27 ----A---- C:\windows\SYSWOW64\log.txt
2016-03-29 21:37:21 ----D---- C:\windows\system32\config
2016-03-29 21:36:12 ----D---- C:\Windows
2016-03-29 21:35:14 ----D---- C:\windows\system32\Tasks
2016-03-29 21:35:12 ----HD---- C:\ProgramData
2016-03-29 21:35:10 ----RD---- C:\Program Files (x86)
2016-03-28 21:03:09 ----D---- C:\Program Files
2016-03-28 20:39:11 ----SHD---- C:\windows\Installer
2016-03-28 20:39:11 ----SHD---- C:\Config.Msi
2016-03-28 20:31:30 ----SHD---- C:\System Volume Information
2016-03-28 19:55:19 ----D---- C:\windows\Panther
2016-03-28 19:55:18 ----D---- C:\windows\Logs
2016-03-28 19:55:18 ----D---- C:\windows\debug
2016-03-28 19:30:11 ----D---- C:\windows\Prefetch
2016-03-28 19:28:55 ----D---- C:\ProgramData\McAfee
2016-03-28 19:28:55 ----D---- C:\Program Files\Common Files\mcafee
2016-03-27 21:13:35 ----D---- C:\Users\PB\AppData\Roaming\SoftGrid Client
2016-03-27 21:05:11 ----D---- C:\windows\SysWOW64
2016-03-27 21:05:11 ----A---- C:\windows\SYSWOW64\PerfStringBackup.INI
2016-03-27 21:02:50 ----D---- C:\windows\system32\drivers
2016-03-23 20:52:12 ----D---- C:\windows\winsxs
2016-03-23 20:52:04 ----SD---- C:\windows\SYSWOW64\GWX
2016-03-23 20:52:04 ----SD---- C:\windows\system32\GWX
2016-03-23 20:11:58 ----D---- C:\windows\system32\wdi
2016-03-22 12:35:04 ----D---- C:\windows\rescache
2016-03-22 11:59:15 ----RSD---- C:\windows\assembly
2016-03-21 04:28:50 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-03-21 04:28:47 ----D---- C:\windows\system32\cs-CZ
2016-03-21 04:28:25 ----D---- C:\Program Files\Internet Explorer
2016-03-21 04:28:09 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-21 04:28:02 ----D---- C:\windows\SYSWOW64\pl-PL
2016-03-21 04:27:59 ----D---- C:\windows\SYSWOW64\hu-HU
2016-03-21 04:27:56 ----D---- C:\windows\SYSWOW64\el-GR
2016-03-21 04:27:53 ----D---- C:\windows\SYSWOW64\sk-SK
2016-03-21 04:27:48 ----D---- C:\windows\SYSWOW64\en-US
2016-03-21 04:27:28 ----D---- C:\windows\system32\pl-PL
2016-03-21 04:27:27 ----D---- C:\windows\system32\hu-HU
2016-03-21 04:27:25 ----D---- C:\windows\system32\el-GR
2016-03-21 04:27:24 ----D---- C:\windows\system32\sk-SK
2016-03-21 04:27:21 ----D---- C:\windows\system32\en-US
2016-03-21 04:26:28 ----D---- C:\windows\AppPatch
2016-03-21 04:26:13 ----D---- C:\Program Files (x86)\Windows Media Player
2016-03-21 04:26:08 ----D---- C:\Program Files\Windows Media Player
2016-03-11 00:39:07 ----D---- C:\windows\system32\DriverStore
2016-03-09 10:49:01 ----D---- C:\windows\system32\appraiser
2016-03-09 02:18:04 ----D---- C:\windows\system32\catroot2
2016-03-02 14:52:28 ----SHD---- C:\$RECYCLE.BIN

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2015-07-01 65736]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2015-07-01 272248]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-05-20 557848]
R0 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2014-03-17 783864]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\windows\system32\drivers\mfewfpk.sys [2014-03-17 345456]
R0 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\windows\system32\DRIVERS\TVALZ_O.SYS [2009-07-14 26840]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2015-07-01 93528]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2015-07-01 1047320]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2015-07-02 442264]
R1 Tosrfcom;Bluetooth RFCOMM; C:\windows\System32\Drivers\tosrfcom.sys [2010-11-29 82224]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2015-07-01 29168]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2015-07-01 89944]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2015-07-01 137288]
R2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver; C:\windows\system32\DRIVERS\TVALZFL.sys [2009-06-19 14472]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2010-12-17 2675712]
R3 BtFilter;Bluetooth LowerFilter Class Filter Driver; C:\windows\system32\DRIVERS\btfilter.sys [2010-10-18 42096]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2011-01-27 1577088]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2011-04-04 12262624]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x64.sys [2010-11-08 76912]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-19 56344]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\windows\system32\drivers\mfeavfk.sys [2014-03-17 311600]
R3 mfefirek;McAfee Inc. mfefirek; C:\windows\system32\drivers\mfefirek.sys [2014-03-17 522360]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\windows\system32\DRIVERS\nusb3xhc.sys [2010-12-10 181248]
R3 PGEffect;Pangu effect driver; C:\windows\system32\DRIVERS\pgeffect.sys [2011-02-08 38096]
R3 QIOMem;Generic IO & Memory Access; C:\windows\system32\drivers\QIOMem.sys [2009-06-15 12800]
R3 Sftfs;Sftfs; C:\windows\system32\DRIVERS\Sftfslh.sys [2009-12-02 721768]
R3 Sftplay;Sftplay; C:\windows\system32\DRIVERS\Sftplaylh.sys [2009-12-02 269672]
R3 Sftredir;Sftredir; C:\windows\system32\DRIVERS\Sftredirlh.sys [2009-12-02 25960]
R3 Sftvol;Sftvol; C:\windows\system32\DRIVERS\Sftvollh.sys [2009-12-02 22376]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2011-02-03 1413680]
R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\windows\system32\DRIVERS\tdcmdpst.sys [2009-07-30 27784]
R3 tosporte;Bluetooth COM Port; C:\windows\system32\DRIVERS\tosporte.sys [2009-06-17 54664]
R3 tosrfbd;Bluetooth RFBUS; C:\windows\system32\DRIVERS\tosrfbd.sys [2011-01-20 291120]
R3 tosrfec;Bluetooth ACPI; C:\windows\system32\DRIVERS\tosrfec.sys [2010-06-18 18872]
R3 Tosrfhid;Bluetooth RFHID; C:\windows\system32\DRIVERS\Tosrfhid.sys [2010-08-30 94528]
R3 Tosrfusb;Bluetooth USB Controller; C:\windows\system32\DRIVERS\tosrfusb.sys [2011-01-27 67384]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 cfwids;McAfee Inc. cfwids; C:\windows\system32\drivers\cfwids.sys [2014-03-17 70592]
S3 mfeapfk;McAfee Inc. mfeapfk; C:\windows\system32\drivers\mfeapfk.sys [2014-03-17 180272]
S3 mfeavfk01;McAfee Inc.; C:\windows\system32\drivers\mfeavfk01.sys []
S3 mferkdet;McAfee Inc. mferkdet; C:\windows\system32\drivers\mferkdet.sys [2011-03-13 98728]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2010-12-01 250984]
S3 RSUSBVSTOR;RTSUVSTOR.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RTSUVSTOR.sys [2011-07-08 307304]
S3 tosrfbnp;Bluetooth RFBNEP; C:\windows\System32\Drivers\tosrfbnp.sys [2010-11-11 50864]
S3 tosrfnds;Bluetooth Personal Area Network; C:\windows\system32\DRIVERS\tosrfnds.sys [2009-07-24 26472]
S3 TosRfSnd;Bluetooth Audio; C:\windows\system32\drivers\tosrfsnd.sys [2010-04-26 63488]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 WinUsb;WinUsb; C:\windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-14 82128]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-07-01 343336]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2016-01-08 1433216]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2016-01-08 1773696]
R2 cfWiMAXService;ConfigFree WiMAX Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [2010-01-28 249200]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112]
R2 ConfigFree Service;ConfigFree Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2010-02-28 821664]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2011-03-01 27648]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2014-05-27 2139328]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-20 325656]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2011-03-13 197960]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2014-03-17 219752]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [2014-03-17 185792]
R2 NAUpdate;@c:\Program Files (x86)\Nero\Update\NASvc.exe,-200; c:\Program Files (x86)\Nero\Update\NASvc.exe [2011-03-29 598312]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2009-12-02 483688]
R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\windows\system32\TODDSrv.exe [2010-10-20 138656]
R2 TosCoSrv;TOSHIBA Power Saver; C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe [2010-12-09 489384]
R2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service; C:\Program Files\TOSHIBA\TECO\TecoService.exe [2011-03-02 266680]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-20 2656280]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 2292096]
R3 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe [2012-02-13 240408]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2009-12-02 209768]
R3 TMachInfo;TMachInfo; C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2010-11-29 54136]
R3 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2010-04-12 196976]
R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-12-08 137632]
R3 TPCHSrv;TPCH Service; C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe [2011-07-01 828856]
S2 BBSvc;BingBar Service; C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe [2012-02-13 193816]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-03-28 194032]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2016-02-08 114688]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2009-11-19 4925184]
S3 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO); C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [2011-02-10 112080]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2014-04-01 1255736]
S4 aspnet_state;ASP.NET State Service; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: po nějaké době mi začne blbnout kurzor a nejde psát

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files (x86)\Google\Google Toolbar
C:\Program Files (x86)\Skype\Toolbars
C:\Program Files (x86)\Microsoft\BingBar
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA1cf4e3fdd6c3421.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]/64

:services
c2cautoupdatesvc
c2cpnrsvc
BBUpdate
BBSvc

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

bajer1991
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 28 bře 2016 20:00

Re: po nějaké době mi začne blbnout kurzor a nejde psát

#7 Příspěvek od bajer1991 »

Logfile of random's system information tool 1.10 (written by random/random)
Run by PB at 2016-03-30 21:25:55
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 465 GB (78%) free of 594 GB
Total RAM: 4044 MB (60% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:26:14, on 30.3.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18231)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Users\PB\AppData\Roaming\Seznam.cz\szninstall.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Users\PB\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.87\Installer\setup.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files\trend micro\PB.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosSkypeApl.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13014
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [NBAgent] "c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [TSleepSrv] %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
O4 - HKLM\..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe /STARTUP
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\PB\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\PB\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'Default user')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user')
O4 - Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe
O4 - Global Startup: Bluetooth Manager.lnk = ?
O4 - Global Startup: Toshiba Places Icon Utility.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Přidat do aplikace TOSHIBA Bulletin Board - res://C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O9 - Extra button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @c:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12593 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs

C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 35694736
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
\??\C:\windows\system32\conhost.exe "6022437861203353237-15769670311393414532-1963006008-21080369181755844444-552292618
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
taskeng.exe {5256591D-67CD-4BBE-8FA7-16B2B8E25761}
C:\windows\System32\spoolsv.exe
"taskhost.exe"
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
"C:\Windows\system32\mfevtps.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system32\TODDSrv.exe
"C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe"
C:\windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
WLIDSvcM.exe 2804
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
"C:\Program Files\TOSHIBA\TECO\TecoService.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\windows\system32\GWX\GWX.exe"
C:\windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
taskeng.exe {ACAEAB18-2BAC-430D-86C0-4344D40E96F0}
"C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\system32\sppsvc.exe
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\servicing\TrustedInstaller.exe
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe"
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe"
"C:\windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"c:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\windows\notepad.exe" C:\_OTM\MovedFiles\03302016_211756.log
"C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe"
"C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe"
"C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe"
"C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\TOSHIBA\TECO\Teco.exe" /r
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe"
"C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe"
"C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe"
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe" /STARTUP
"C:\Users\PB\AppData\Roaming\Seznam.cz\szninstall.exe" -c
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe"
C:\windows\system32\igfxext.exe -Embedding
szndesktop.exe default start
C:\windows\system32\igfxsrvc.exe -Embedding
"C:\Users\PB\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\windows\system32\conhost.exe "2009473773-926850783-1477687075-1093957517-622082026-881540161-19672545743881445
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe"
"C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe"
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe"
taskeng.exe {AB004609-DB41-4620-A030-0049F32317AB}
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "--user-data-dir=C:\Users\PB\AppData\Roaming\Seznam.cz\bin\..\data\libchinst\chromeprofile" "http://software.seznam.cz/listicka?browser=chrome#auto"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe"
"C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.87\Installer\setup.exe" --show-eula="C:\windows\TEMP\C9D.tmp"
"C:\Users\PB\Desktop\RSITx64.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\System32\svchost.exe -k LocalServicePeerNet
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosA2dp.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHid.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHsp.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosSkypeApl.exe" W

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-01 662672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-01 565304]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-08-03 41760]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Toshiba TEMPRO"=C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [2011-02-10 1546720]
"TosNC"=C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [2011-03-03 597928]
"TosReelTimeMonitor"=C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [2010-12-14 38304]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-04-07 167256]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-04-07 391000]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-04-07 418136]
"TPwrMain"=C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [2011-03-02 566696]
"HSON"=C:\Program Files\TOSHIBA\TBS\HSON.exe [2010-09-25 296824]
"TCrdMain"=C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [2010-12-15 973176]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe [2010-12-14 316032]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-02-03 2679592]
"Teco"=C:\Program Files\TOSHIBA\TECO\Teco.exe [2011-03-02 1520552]
"TosSENotify"=C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [2010-12-08 710040]
"TosWaitSrv"=C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [2011-07-01 712096]
"TosVolRegulator"=C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [2009-11-11 24376]
"Toshiba Registration"=C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe [2011-08-03 150992]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"TOPI.EXE"=C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe [2011-05-16 846936]
"cz.seznam.software.autoupdate"=C:\Users\PB\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\PB\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-12-17 50385536]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-03-11 8686296]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"NBAgent"=c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe [2011-06-29 1409424]
"TSleepSrv"=C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe [2010-06-04 252792]
"ToshibaServiceStation"=C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [2010-11-29 1294712]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-07-02 5515496]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth Manager.lnk - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
Toshiba Places Icon Utility.lnk - C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe

C:\Users\PB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
TRDCReminder.lnk - C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-04-04 385024]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0
"NoFolderOptions"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera]
"Debugger="tasklist.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux3"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux4"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-03-30 21:17:56 ----D---- C:\_OTM
2016-03-29 21:30:13 ----D---- C:\AdwCleaner
2016-03-28 21:03:09 ----D---- C:\rsit
2016-03-28 21:03:09 ----D---- C:\Program Files\trend micro
2016-03-28 19:36:40 ----D---- C:\Program Files\CCleaner
2016-03-09 02:25:50 ----A---- C:\windows\system32\drivers\ntfs.sys
2016-03-09 02:25:49 ----A---- C:\windows\system32\ucrtbase.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\ucrtbase.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 02:25:48 ----A---- C:\windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 02:25:47 ----A---- C:\windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-03-09 02:25:46 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 02:25:46 ----A---- C:\windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 02:25:46 ----A---- C:\windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 02:25:46 ----A---- C:\windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 02:25:44 ----A---- C:\windows\system32\win32k.sys
2016-03-09 02:25:39 ----A---- C:\windows\system32\wucltux.dll
2016-03-09 02:25:39 ----A---- C:\windows\system32\wuaueng.dll
2016-03-09 02:25:39 ----A---- C:\windows\system32\wuapi.dll
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wuwebv.dll
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wups.dll
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wudriver.dll
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wuapp.exe
2016-03-09 02:25:38 ----A---- C:\windows\SYSWOW64\wuapi.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wuwebv.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wups2.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wups.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wudriver.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\wuauclt.exe
2016-03-09 02:25:38 ----A---- C:\windows\system32\wuapp.exe
2016-03-09 02:25:38 ----A---- C:\windows\system32\wu.upgrade.ps.dll
2016-03-09 02:25:38 ----A---- C:\windows\system32\WinSetupUI.dll
2016-03-09 02:25:32 ----A---- C:\windows\system32\drivers\USBSTOR.SYS
2016-03-09 02:25:31 ----A---- C:\windows\SYSWOW64\oleaut32.dll
2016-03-09 02:25:31 ----A---- C:\windows\system32\oleaut32.dll
2016-03-09 02:25:31 ----A---- C:\windows\system32\asycfilt.dll
2016-03-09 02:25:30 ----A---- C:\windows\SYSWOW64\asycfilt.dll
2016-03-09 02:25:24 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2016-03-09 02:25:24 ----A---- C:\windows\SYSWOW64\inseng.dll
2016-03-09 02:25:24 ----A---- C:\windows\SYSWOW64\iernonce.dll
2016-03-09 02:25:24 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2016-03-09 02:25:24 ----A---- C:\windows\system32\iertutil.dll
2016-03-09 02:25:24 ----A---- C:\windows\system32\iernonce.dll
2016-03-09 02:25:24 ----A---- C:\windows\system32\ieetwproxystub.dll
2016-03-09 02:25:24 ----A---- C:\windows\system32\ieetwcollector.exe
2016-03-09 02:25:23 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\occache.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-03-09 02:25:22 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2016-03-09 02:25:22 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2016-03-09 02:25:22 ----A---- C:\windows\system32\inseng.dll
2016-03-09 02:25:22 ----A---- C:\windows\system32\ie4uinit.exe
2016-03-09 02:25:21 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-03-09 02:25:19 ----A---- C:\windows\SYSWOW64\iesetup.dll
2016-03-09 02:25:19 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-03-09 02:25:18 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2016-03-09 02:25:18 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2016-03-09 02:25:18 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-03-09 02:25:18 ----A---- C:\windows\system32\urlmon.dll
2016-03-09 02:25:18 ----A---- C:\windows\system32\occache.dll
2016-03-09 02:25:18 ----A---- C:\windows\system32\ieetwcollectorres.dll
2016-03-09 02:25:18 ----A---- C:\windows\system32\iedkcs32.dll
2016-03-09 02:25:17 ----A---- C:\windows\SYSWOW64\ieui.dll
2016-03-09 02:25:17 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2016-03-09 02:25:17 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2016-03-09 02:25:17 ----A---- C:\windows\system32\msfeeds.dll
2016-03-09 02:25:17 ----A---- C:\windows\system32\dxtrans.dll
2016-03-09 02:25:16 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-03-09 02:25:15 ----A---- C:\windows\system32\iesetup.dll
2016-03-09 02:25:15 ----A---- C:\windows\system32\ieapfltr.dll
2016-03-09 02:25:13 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-03-09 02:25:13 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2016-03-09 02:25:13 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-03-09 02:25:13 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2016-03-09 02:25:13 ----A---- C:\windows\system32\vbscript.dll
2016-03-09 02:25:12 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-03-09 02:25:12 ----A---- C:\windows\SYSWOW64\msrating.dll
2016-03-09 02:25:12 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2016-03-09 02:25:12 ----A---- C:\windows\system32\jsproxy.dll
2016-03-09 02:25:11 ----A---- C:\windows\system32\ieui.dll
2016-03-09 02:25:11 ----A---- C:\windows\system32\dxtmsft.dll
2016-03-09 02:25:10 ----A---- C:\windows\system32\ieframe.dll
2016-03-09 02:25:09 ----A---- C:\windows\system32\mshtmled.dll
2016-03-09 02:25:08 ----A---- C:\windows\system32\webcheck.dll
2016-03-09 02:25:08 ----A---- C:\windows\system32\mshtmlmedia.dll
2016-03-09 02:25:08 ----A---- C:\windows\system32\ieUnatt.exe
2016-03-09 02:25:07 ----A---- C:\windows\system32\jscript9diag.dll
2016-03-09 02:25:07 ----A---- C:\windows\system32\jscript.dll
2016-03-09 02:25:06 ----A---- C:\windows\system32\wininet.dll
2016-03-09 02:25:06 ----A---- C:\windows\system32\jscript9.dll
2016-03-09 02:25:03 ----A---- C:\windows\system32\msrating.dll
2016-03-09 02:25:03 ----A---- C:\windows\system32\MshtmlDac.dll
2016-03-09 02:25:02 ----A---- C:\windows\system32\mshtml.dll
2016-03-09 02:23:18 ----A---- C:\windows\system32\ntoskrnl.exe
2016-03-09 02:23:18 ----A---- C:\windows\system32\ntdll.dll
2016-03-09 02:23:17 ----A---- C:\windows\system32\KernelBase.dll
2016-03-09 02:23:16 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2016-03-09 02:23:16 ----A---- C:\windows\SYSWOW64\ntdll.dll
2016-03-09 02:23:16 ----A---- C:\windows\system32\kerberos.dll
2016-03-09 02:23:14 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2016-03-09 02:23:12 ----A---- C:\windows\SYSWOW64\advapi32.dll
2016-03-09 02:23:12 ----A---- C:\windows\system32\kernel32.dll
2016-03-09 02:23:12 ----A---- C:\windows\system32\advapi32.dll
2016-03-09 02:23:11 ----A---- C:\windows\SYSWOW64\kerberos.dll
2016-03-09 02:23:11 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2016-03-09 02:23:10 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-03-09 02:23:10 ----A---- C:\windows\system32\drivers\ksecdd.sys
2016-03-09 02:23:09 ----A---- C:\windows\system32\rpcrt4.dll
2016-03-09 02:23:09 ----A---- C:\windows\system32\lsasrv.dll
2016-03-09 02:23:09 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-03-09 02:23:08 ----A---- C:\windows\SYSWOW64\rpcrt4.dll
2016-03-09 02:23:08 ----A---- C:\windows\system32\smss.exe
2016-03-09 02:23:08 ----A---- C:\windows\system32\schannel.dll
2016-03-09 02:23:08 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2016-03-09 02:23:07 ----A---- C:\windows\SYSWOW64\sspicli.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\wow64win.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\winsrv.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\wdigest.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\TSpkg.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\srcore.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\ncrypt.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\msv1_0.dll
2016-03-09 02:23:07 ----A---- C:\windows\system32\conhost.exe
2016-03-09 02:23:06 ----A---- C:\windows\SYSWOW64\wdigest.dll
2016-03-09 02:23:06 ----A---- C:\windows\SYSWOW64\schannel.dll
2016-03-09 02:23:06 ----A---- C:\windows\SYSWOW64\ncrypt.dll
2016-03-09 02:23:06 ----A---- C:\windows\SYSWOW64\msv1_0.dll
2016-03-09 02:23:06 ----A---- C:\windows\system32\wow64.dll
2016-03-09 02:23:06 ----A---- C:\windows\system32\sspicli.dll
2016-03-09 02:23:06 ----A---- C:\windows\system32\lsass.exe
2016-03-09 02:23:06 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-03-09 02:23:06 ----A---- C:\windows\system32\csrsrv.dll
2016-03-09 02:23:05 ----A---- C:\windows\SYSWOW64\TSpkg.dll
2016-03-09 02:23:05 ----A---- C:\windows\SYSWOW64\srclient.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\wow64cpu.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\sspisrv.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\srclient.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\secur32.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\rstrui.exe
2016-03-09 02:23:05 ----A---- C:\windows\system32\cryptbase.dll
2016-03-09 02:23:05 ----A---- C:\windows\system32\credssp.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\wow32.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\secur32.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\kernel32.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\cryptbase.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\credssp.dll
2016-03-09 02:23:04 ----A---- C:\windows\SYSWOW64\auditpol.exe
2016-03-09 02:23:04 ----A---- C:\windows\system32\ntvdm64.dll
2016-03-09 02:23:04 ----A---- C:\windows\system32\auditpol.exe
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-03-09 02:23:01 ----AH---- C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-03-09 02:23:00 ----AH---- C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-03-09 02:22:59 ----AH---- C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-03-09 02:22:59 ----A---- C:\windows\SYSWOW64\setup16.exe
2016-03-09 02:22:59 ----A---- C:\windows\SYSWOW64\apisetschema.dll
2016-03-09 02:22:59 ----A---- C:\windows\system32\apisetschema.dll
2016-03-09 02:22:58 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-03-09 02:22:58 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-03-09 02:22:58 ----AH---- C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-03-09 02:22:58 ----AH---- C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-03-09 02:22:58 ----A---- C:\windows\SYSWOW64\user.exe
2016-03-09 02:22:58 ----A---- C:\windows\SYSWOW64\instnm.exe
2016-03-09 02:22:57 ----A---- C:\windows\SYSWOW64\msobjs.dll
2016-03-09 02:22:57 ----A---- C:\windows\SYSWOW64\msaudite.dll
2016-03-09 02:22:57 ----A---- C:\windows\SYSWOW64\adtschema.dll
2016-03-09 02:22:57 ----A---- C:\windows\system32\msobjs.dll
2016-03-09 02:22:57 ----A---- C:\windows\system32\msaudite.dll
2016-03-09 02:22:57 ----A---- C:\windows\system32\adtschema.dll
2016-03-09 02:21:49 ----A---- C:\windows\SYSWOW64\mfds.dll
2016-03-09 02:21:49 ----A---- C:\windows\system32\mfds.dll
2016-03-09 02:21:47 ----A---- C:\windows\SYSWOW64\fontsub.dll
2016-03-09 02:21:47 ----A---- C:\windows\SYSWOW64\atmfd.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\lpk.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\fontsub.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\dciman32.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\atmlib.dll
2016-03-09 02:21:47 ----A---- C:\windows\system32\atmfd.dll
2016-03-09 02:21:46 ----A---- C:\windows\SYSWOW64\lpk.dll
2016-03-09 02:21:46 ----A---- C:\windows\SYSWOW64\dciman32.dll
2016-03-09 02:21:46 ----A---- C:\windows\SYSWOW64\atmlib.dll
2016-03-09 02:21:44 ----A---- C:\windows\system32\seclogon.dll
2016-03-09 02:21:42 ----A---- C:\windows\system32\wmp.dll
2016-03-09 02:21:40 ----A---- C:\windows\SYSWOW64\wmp.dll
2016-03-09 02:21:39 ----A---- C:\windows\system32\spwmp.dll
2016-03-09 02:21:39 ----A---- C:\windows\system32\dxmasf.dll
2016-03-09 02:21:38 ----A---- C:\windows\SYSWOW64\wmploc.DLL
2016-03-09 02:21:38 ----A---- C:\windows\SYSWOW64\spwmp.dll
2016-03-09 02:21:38 ----A---- C:\windows\SYSWOW64\dxmasf.dll
2016-03-09 02:21:37 ----A---- C:\windows\system32\wmploc.DLL
2016-03-09 02:21:33 ----A---- C:\windows\system32\generaltel.dll
2016-03-09 02:21:33 ----A---- C:\windows\system32\appraiser.dll
2016-03-09 02:21:32 ----A---- C:\windows\system32\invagent.dll
2016-03-09 02:21:32 ----A---- C:\windows\system32\devinv.dll
2016-03-09 02:21:32 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-03-09 02:21:32 ----A---- C:\windows\system32\aeinv.dll
2016-03-09 02:21:32 ----A---- C:\windows\system32\acmigration.dll

======List of files/folders modified in the last 1 month======

2016-03-30 21:26:13 ----D---- C:\Users\PB\AppData\Roaming\Skype
2016-03-30 21:26:08 ----D---- C:\windows\Temp
2016-03-30 21:25:13 ----A---- C:\windows\SYSWOW64\log.txt
2016-03-30 21:23:56 ----D---- C:\windows\system32\config
2016-03-30 21:19:45 ----D---- C:\Windows
2016-03-30 21:19:24 ----D---- C:\windows\Tasks
2016-03-30 21:19:16 ----D---- C:\Program Files (x86)\Microsoft
2016-03-30 21:17:57 ----RD---- C:\Program Files (x86)\Skype
2016-03-30 21:17:57 ----D---- C:\Program Files (x86)\Google
2016-03-30 20:04:00 ----D---- C:\windows\Microsoft.NET
2016-03-30 19:48:55 ----D---- C:\windows\System32
2016-03-30 19:48:55 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-03-30 19:48:54 ----D---- C:\windows\inf
2016-03-29 21:42:15 ----D---- C:\Users\PB\AppData\Roaming\Seznam.cz
2016-03-29 21:35:14 ----D---- C:\windows\system32\Tasks
2016-03-29 21:35:12 ----HD---- C:\ProgramData
2016-03-29 21:35:10 ----RD---- C:\Program Files (x86)
2016-03-28 21:03:09 ----D---- C:\Program Files
2016-03-28 20:39:11 ----SHD---- C:\windows\Installer
2016-03-28 20:39:11 ----SHD---- C:\Config.Msi
2016-03-28 20:31:30 ----SHD---- C:\System Volume Information
2016-03-28 19:55:19 ----D---- C:\windows\Panther
2016-03-28 19:55:18 ----D---- C:\windows\Logs
2016-03-28 19:55:18 ----D---- C:\windows\debug
2016-03-28 19:30:11 ----D---- C:\windows\Prefetch
2016-03-28 19:28:55 ----D---- C:\ProgramData\McAfee
2016-03-28 19:28:55 ----D---- C:\Program Files\Common Files\mcafee
2016-03-27 21:13:35 ----D---- C:\Users\PB\AppData\Roaming\SoftGrid Client
2016-03-27 21:05:11 ----D---- C:\windows\SysWOW64
2016-03-27 21:05:11 ----A---- C:\windows\SYSWOW64\PerfStringBackup.INI
2016-03-27 21:02:50 ----D---- C:\windows\system32\drivers
2016-03-23 20:52:12 ----D---- C:\windows\winsxs
2016-03-23 20:52:04 ----SD---- C:\windows\SYSWOW64\GWX
2016-03-23 20:52:04 ----SD---- C:\windows\system32\GWX
2016-03-23 20:11:58 ----D---- C:\windows\system32\wdi
2016-03-22 12:35:04 ----D---- C:\windows\rescache
2016-03-22 11:59:15 ----RSD---- C:\windows\assembly
2016-03-21 04:28:50 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-03-21 04:28:47 ----D---- C:\windows\system32\cs-CZ
2016-03-21 04:28:25 ----D---- C:\Program Files\Internet Explorer
2016-03-21 04:28:09 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-21 04:28:02 ----D---- C:\windows\SYSWOW64\pl-PL
2016-03-21 04:27:59 ----D---- C:\windows\SYSWOW64\hu-HU
2016-03-21 04:27:56 ----D---- C:\windows\SYSWOW64\el-GR
2016-03-21 04:27:53 ----D---- C:\windows\SYSWOW64\sk-SK
2016-03-21 04:27:48 ----D---- C:\windows\SYSWOW64\en-US
2016-03-21 04:27:28 ----D---- C:\windows\system32\pl-PL
2016-03-21 04:27:27 ----D---- C:\windows\system32\hu-HU
2016-03-21 04:27:25 ----D---- C:\windows\system32\el-GR
2016-03-21 04:27:24 ----D---- C:\windows\system32\sk-SK
2016-03-21 04:27:21 ----D---- C:\windows\system32\en-US
2016-03-21 04:26:28 ----D---- C:\windows\AppPatch
2016-03-21 04:26:13 ----D---- C:\Program Files (x86)\Windows Media Player
2016-03-21 04:26:08 ----D---- C:\Program Files\Windows Media Player
2016-03-11 00:39:07 ----D---- C:\windows\system32\DriverStore
2016-03-09 10:49:01 ----D---- C:\windows\system32\appraiser
2016-03-09 02:18:04 ----D---- C:\windows\system32\catroot2
2016-03-02 14:52:28 ----SHD---- C:\$RECYCLE.BIN

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2015-07-01 65736]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2015-07-01 272248]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-05-20 557848]
R0 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2014-03-17 783864]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\windows\system32\drivers\mfewfpk.sys [2014-03-17 345456]
R0 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\windows\system32\DRIVERS\TVALZ_O.SYS [2009-07-14 26840]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2015-07-01 93528]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2015-07-01 1047320]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2015-07-02 442264]
R1 Tosrfcom;Bluetooth RFCOMM; C:\windows\System32\Drivers\tosrfcom.sys [2010-11-29 82224]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2015-07-01 29168]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2015-07-01 89944]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2015-07-01 137288]
R2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver; C:\windows\system32\DRIVERS\TVALZFL.sys [2009-06-19 14472]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2010-12-17 2675712]
R3 BtFilter;Bluetooth LowerFilter Class Filter Driver; C:\windows\system32\DRIVERS\btfilter.sys [2010-10-18 42096]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2011-01-27 1577088]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2011-04-04 12262624]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x64.sys [2010-11-08 76912]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-19 56344]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\windows\system32\drivers\mfeavfk.sys [2014-03-17 311600]
R3 mfefirek;McAfee Inc. mfefirek; C:\windows\system32\drivers\mfefirek.sys [2014-03-17 522360]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\windows\system32\DRIVERS\nusb3xhc.sys [2010-12-10 181248]
R3 PGEffect;Pangu effect driver; C:\windows\system32\DRIVERS\pgeffect.sys [2011-02-08 38096]
R3 QIOMem;Generic IO & Memory Access; C:\windows\system32\drivers\QIOMem.sys [2009-06-15 12800]
R3 Sftfs;Sftfs; C:\windows\system32\DRIVERS\Sftfslh.sys [2009-12-02 721768]
R3 Sftplay;Sftplay; C:\windows\system32\DRIVERS\Sftplaylh.sys [2009-12-02 269672]
R3 Sftredir;Sftredir; C:\windows\system32\DRIVERS\Sftredirlh.sys [2009-12-02 25960]
R3 Sftvol;Sftvol; C:\windows\system32\DRIVERS\Sftvollh.sys [2009-12-02 22376]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2011-02-03 1413680]
R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\windows\system32\DRIVERS\tdcmdpst.sys [2009-07-30 27784]
R3 tosporte;Bluetooth COM Port; C:\windows\system32\DRIVERS\tosporte.sys [2009-06-17 54664]
R3 tosrfbd;Bluetooth RFBUS; C:\windows\system32\DRIVERS\tosrfbd.sys [2011-01-20 291120]
R3 tosrfec;Bluetooth ACPI; C:\windows\system32\DRIVERS\tosrfec.sys [2010-06-18 18872]
R3 Tosrfhid;Bluetooth RFHID; C:\windows\system32\DRIVERS\Tosrfhid.sys [2010-08-30 94528]
R3 Tosrfusb;Bluetooth USB Controller; C:\windows\system32\DRIVERS\tosrfusb.sys [2011-01-27 67384]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 cfwids;McAfee Inc. cfwids; C:\windows\system32\drivers\cfwids.sys [2014-03-17 70592]
S3 mfeapfk;McAfee Inc. mfeapfk; C:\windows\system32\drivers\mfeapfk.sys [2014-03-17 180272]
S3 mfeavfk01;McAfee Inc.; C:\windows\system32\drivers\mfeavfk01.sys []
S3 mferkdet;McAfee Inc. mferkdet; C:\windows\system32\drivers\mferkdet.sys [2011-03-13 98728]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2010-12-01 250984]
S3 RSUSBVSTOR;RTSUVSTOR.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RTSUVSTOR.sys [2011-07-08 307304]
S3 tosrfbnp;Bluetooth RFBNEP; C:\windows\System32\Drivers\tosrfbnp.sys [2010-11-11 50864]
S3 tosrfnds;Bluetooth Personal Area Network; C:\windows\system32\DRIVERS\tosrfnds.sys [2009-07-24 26472]
S3 TosRfSnd;Bluetooth Audio; C:\windows\system32\drivers\tosrfsnd.sys [2010-04-26 63488]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 WinUsb;WinUsb; C:\windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-14 82128]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-07-01 343336]
R2 cfWiMAXService;ConfigFree WiMAX Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [2010-01-28 249200]
R2 ConfigFree Service;ConfigFree Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2010-02-28 821664]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2011-03-01 27648]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2014-05-27 2139328]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-20 325656]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2011-03-13 197960]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2014-03-17 219752]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [2014-03-17 185792]
R2 NAUpdate;@c:\Program Files (x86)\Nero\Update\NASvc.exe,-200; c:\Program Files (x86)\Nero\Update\NASvc.exe [2011-03-29 598312]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2009-12-02 483688]
R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\windows\system32\TODDSrv.exe [2010-10-20 138656]
R2 TosCoSrv;TOSHIBA Power Saver; C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe [2010-12-09 489384]
R2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service; C:\Program Files\TOSHIBA\TECO\TecoService.exe [2011-03-02 266680]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 2292096]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2009-12-02 209768]
R3 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2010-04-12 196976]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-20 2656280]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-03-28 194032]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2016-02-08 114688]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2009-11-19 4925184]
S3 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO); C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [2011-02-10 112080]
S3 TMachInfo;TMachInfo; C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2010-11-29 54136]
S3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-12-08 137632]
S3 TPCHSrv;TPCH Service; C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe [2011-07-01 828856]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2014-04-01 1255736]
S4 aspnet_state;ASP.NET State Service; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: po nějaké době mi začne blbnout kurzor a nejde psát

#8 Příspěvek od Rudy »

Dvouklikem na soubor C:\Program Files\trend micro\PB.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

bajer1991
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 28 bře 2016 20:00

Re: po nějaké době mi začne blbnout kurzor a nejde psát

#9 Příspěvek od bajer1991 »

děkuji za pomoc

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: po nějaké době mi začne blbnout kurzor a nejde psát

#10 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět