
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Problem z Win10 - priečinky sa počas práce samy zatvárajú
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Problem z Win10 - priečinky sa počas práce samy zatvárajú
Problem z Win10 - priečinky sa počas práce (premenovanie priečikov, vymazavanie a presúvanie obsahu) samy vypínajú. Znova ich zapnem a po 10 - 30 min sa samy zasa vypnú.
Log z RSIT
Logfile of random's system information tool 1.10 (written by random/random)
Run by Tomas at 2016-04-29 15:50:44
Microsoft Windows 10 Home
System drive C: has 52 GB (53%) free of 99 GB
Total RAM: 8130 MB (71% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:50:50, on 29. 4. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner2.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\WINDOWS\SysWOW64\ctfmon.exe
C:\Program Files\trend micro\Tomas.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Raptr] "C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe" --startup
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Monitor Ink Alerts - HP Deskjet 1050 J410 series.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Defragmentation-Service (DfSdkS) - mst software GmbH, Germany - C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\DfsdkS64.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Ashampoo LiveTuner 2 Service (WO_LiveService2) - Unknown owner - C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTunerService.exe
--
End of file - 10286 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\atiesrxx.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-40441df5-87da-4e00-8fbc-5f62c51fb7bf -SystemEventPortName:HostProcess-e0e5aee3-c7c0-4121-947f-fc5f870726c6 -IoCancelEventPortName:HostProcess-7f93c59d-5843-4104-ad64-57781c43804c -NonStateChangingEventPortName:HostProcess-a06aab3f-eb66-41d6-b8c6-01ca6eea5f91 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:71ead060-89ef-4a5d-8473-64a09b6349f4 -DeviceGroupId:WpdFsGroup
atieclxx
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-1ee730ea-4825-4835-8d5d-b9c8b5727cef -SystemEventPortName:HostProcess-d953aa15-23da-4e2a-b707-f7594b7b2ca9 -IoCancelEventPortName:HostProcess-b429cad0-dac7-4d1b-ba51-f98671c52ad8 -NonStateChangingEventPortName:HostProcess-6123a2db-6062-43e1-8e61-d4ec0107f9cd -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:cff4b37b-5c1d-4f4a-a8dc-ba128c913c05 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
dashost.exe {6dd60e72-8c5f-44c7-9c72566bc4218a1f}
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\system32\wbem\wmiprvse.exe
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner2.exe" -TRAY
"C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe" atlogon
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTunerService.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=50.0.2661.94 --handshake-handle=0x1b4
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6780.0.1430887011\673214481" --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,12,24,53 --gpu-vendor-id=0x1002 --gpu-device-id=0x6810 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=16.150.2211.1001 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithModuleLoadAnalysis/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_57/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6780.1.1067233514\523527293" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithModuleLoadAnalysis/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_57/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6780.2.1052322299\1222247751" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithModuleLoadAnalysis/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_57/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6780.3.1744746002\174319039" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithModuleLoadAnalysis/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_57/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6780.4.89948896\2066040788" /prefetch:1
"C:\Users\Tomas\Downloads\RSITx64.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 604 608 616 8192 612
ctfmon.exe
"C:\Program Files\Windows Defender\MpCmdRun.exe" SignatureUpdate -ScheduleJob -RestrictPrivileges -Reinvoke
"C:\Program Files\Windows Defender\MpCmdRun.exe" SignaturesUpdateService -ScheduleJob -UnmanagedUpdate
\??\C:\WINDOWS\system32\conhost.exe 0x4
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\jnt2lee8.default
prefs.js - "browser.search.suggest.enabled" - false
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.213 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.213 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_213.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-09-29 219304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-02-14 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2015-10-29 886488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-29 2339032]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-02-14 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2015-10-29 712304]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2015-06-23 36352]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-06-12 8484056]
"Ashampoo WinOptimizer Live-Tuner2"=C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner2.exe [2015-08-07 3814768]
"StartCN"=C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [2016-04-04 5006536]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-03-11 8686296]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EaseUS EPM tray]
C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\EpmNews.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EaseUS EPM Tray Agent]
C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\TrayPopupE\TrayTipAgentE.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2015-06-23 36352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr]
C:\PROGRA~2\Raptr\RAPTRS~1.EXE --startup []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2013-04-26 292848]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-23 7139256]
"Raptr"=C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [2016-04-05 58640]
C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Monitor Ink Alerts - HP Deskjet 1050 J410 series.lnk - C:\WINDOWS\system32\RunDll32.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-25 18:05:47 ----D---- C:\Program Files (x86)\BitComet
2016-04-22 19:23:41 ----AD---- C:\Program Files (x86)\HD Tune
2016-04-22 16:02:03 ----D---- C:\WINDOWS\LastGood.Tmp
2016-04-17 10:43:14 ----AD---- C:\Program Files (x86)\Remove Empty Directories
2016-04-13 09:28:43 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2016-04-13 09:28:43 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-04-13 09:28:43 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-04-13 09:28:43 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-13 09:28:43 ----A---- C:\WINDOWS\system32\BFE.DLL
2016-04-13 09:28:43 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-04-13 09:28:43 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\system32\oleacchooks.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\system32\credprovhost.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\system32\samlib.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\system32\profsvc.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\system32\ncbservice.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-04-13 09:28:41 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-04-13 09:28:41 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2016-04-13 09:28:40 ----A---- C:\WINDOWS\system32\oleacc.dll
2016-04-13 09:28:40 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-04-13 09:28:40 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2016-04-13 09:28:40 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-04-13 09:28:39 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-04-13 09:28:39 ----A---- C:\WINDOWS\system32\msi.dll
2016-04-13 09:28:39 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2016-04-13 09:28:39 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2016-04-13 09:28:39 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-13 09:28:38 ----A---- C:\WINDOWS\system32\WSDApi.dll
2016-04-13 09:28:38 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-04-13 09:28:38 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-04-13 09:28:38 ----A---- C:\WINDOWS\system32\dnsapi.dll
2016-04-13 09:28:38 ----A---- C:\WINDOWS\system32\DAFWSD.dll
2016-04-13 09:28:38 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-13 09:28:38 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-04-13 09:28:37 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-04-13 09:28:37 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-04-13 09:28:37 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-04-13 09:28:37 ----A---- C:\WINDOWS\system32\esent.dll
2016-04-13 09:28:36 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-04-13 09:28:36 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-04-13 09:28:36 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-04-13 09:28:35 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-04-13 09:28:35 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-04-13 09:28:34 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2016-04-13 09:28:34 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-04-13 09:28:34 ----A---- C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-04-13 09:28:34 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2016-04-13 09:28:34 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-04-13 09:28:34 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2016-04-13 09:28:34 ----A---- C:\WINDOWS\system32\bdesvc.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\tbauth.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\policymanager.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\easwrt.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\dmcsps.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\AccountsRt.dll
2016-04-13 09:28:32 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-13 09:28:32 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-13 09:28:32 ----A---- C:\WINDOWS\system32\twinui.dll
2016-04-13 09:28:32 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-04-13 09:28:32 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-04-13 09:28:32 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-04-13 09:28:27 ----A---- C:\WINDOWS\system32\wininet.dll
2016-04-13 09:28:27 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-04-13 09:28:27 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-04-13 09:28:26 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-04-13 09:28:26 ----A---- C:\WINDOWS\system32\MTF.dll
2016-04-13 09:28:26 ----A---- C:\WINDOWS\system32\InputService.dll
2016-04-13 09:28:26 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-04-13 09:28:26 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-04-13 09:28:25 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-04-13 09:28:25 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-13 09:28:24 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-04-13 09:28:24 ----A---- C:\WINDOWS\system32\wups.dll
2016-04-13 09:28:24 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-04-13 09:28:24 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-04-13 09:28:23 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-04-13 09:28:23 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-04-13 09:28:23 ----A---- C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-13 09:28:23 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2016-04-13 09:28:23 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-04-13 09:28:22 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-04-13 09:28:22 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-13 09:28:22 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-04-13 09:28:22 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-13 09:28:22 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-04-13 09:28:22 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-13 09:28:21 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-04-13 09:28:20 ----A---- C:\WINDOWS\SYSWOW64\tbauth.dll
2016-04-13 09:28:20 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-04-13 09:28:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2016-04-13 09:28:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2016-04-13 09:28:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2016-04-13 09:28:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2016-04-13 09:28:19 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
2016-04-13 09:28:19 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2016-04-13 09:28:19 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-04-13 09:28:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2016-04-13 09:28:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2016-04-13 09:28:18 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll
2016-04-13 09:28:18 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-04-13 09:28:17 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-04-13 09:28:17 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\OnDemandConnRouteHelper.dll
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\NotificationObjFactory.dll
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\easwrt.dll
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2016-04-13 09:28:15 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-04-13 09:28:15 ----A---- C:\WINDOWS\system32\drivers\serial.sys
2016-04-13 09:28:14 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-13 09:28:14 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-04-13 09:28:14 ----A---- C:\WINDOWS\system32\iuilp.dll
2016-04-13 09:28:13 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-04-13 09:28:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-04-13 09:28:12 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-04-13 09:28:12 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-04-13 09:28:12 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-04-13 09:28:12 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-04-13 09:28:11 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-04-13 09:28:11 ----A---- C:\WINDOWS\system32\wsdchngr.dll
2016-04-13 09:28:11 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-04-13 09:28:11 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-04-13 09:28:10 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-04-13 09:28:10 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-13 09:28:10 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-13 09:28:10 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-04-13 09:28:10 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-04-13 09:28:10 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-04-13 09:28:09 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-04-13 09:28:09 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-04-13 09:28:09 ----A---- C:\WINDOWS\system32\SRH.dll
2016-04-13 09:28:09 ----A---- C:\WINDOWS\system32\LsaIso.exe
2016-04-13 09:28:09 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-04-13 09:28:09 ----A---- C:\WINDOWS\system32\drivers\ufx01000.sys
2016-04-13 09:28:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-04-13 09:28:08 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2016-04-13 09:28:08 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-04-13 09:28:08 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-04-13 09:28:08 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-04-13 09:28:08 ----A---- C:\WINDOWS\system32\fveui.dll
2016-04-13 09:28:08 ----A---- C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-13 09:28:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-04-13 09:28:07 ----A---- C:\WINDOWS\system32\winload.exe
2016-04-13 09:28:07 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-04-13 09:28:07 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-04-13 09:28:07 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-04-13 09:28:06 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-04-13 09:28:06 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-04-13 09:28:06 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-04-13 09:28:06 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-04-13 09:28:06 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-04-13 09:28:05 ----A---- C:\WINDOWS\system32\winresume.exe
2016-04-13 09:28:05 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-04-13 09:28:05 ----A---- C:\WINDOWS\system32\browser.dll
2016-04-13 09:28:04 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-04-13 09:28:04 ----A---- C:\WINDOWS\system32\omadmapi.dll
2016-04-13 09:28:04 ----A---- C:\WINDOWS\system32\mtxoci.dll
2016-04-13 09:28:04 ----A---- C:\WINDOWS\system32\FontProvider.dll
2016-04-13 09:28:03 ----A---- C:\WINDOWS\SYSWOW64\wsdchngr.dll
2016-04-13 09:28:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-04-13 09:28:03 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-04-13 09:28:03 ----A---- C:\WINDOWS\system32\fveskybackup.dll
2016-04-13 09:28:02 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-04-13 09:28:02 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-04-13 09:28:02 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-04-13 09:28:02 ----A---- C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-04-13 09:28:02 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-04-13 09:28:02 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-04-13 09:28:02 ----A---- C:\WINDOWS\system32\basesrv.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\SYSWOW64\AccountsRt.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\system32\wkscli.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\system32\srvcli.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\system32\netapi32.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\system32\browcli.dll
2016-04-13 09:28:00 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2016-04-13 09:28:00 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-04-13 09:28:00 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-04-13 09:27:59 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-04-13 09:27:59 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2016-04-13 09:27:59 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-13 09:27:59 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-04-13 09:27:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2016-04-13 09:27:58 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-04-13 09:27:58 ----A---- C:\WINDOWS\SYSWOW64\netapi32.dll
2016-04-13 09:27:58 ----A---- C:\WINDOWS\system32\easinvoker.exe
2016-04-13 09:27:57 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-04-13 09:27:57 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-04-13 09:27:57 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll
2016-04-13 09:27:57 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-04-13 09:27:57 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-04-13 09:27:57 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-04-13 09:27:55 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-04-13 09:27:55 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-04-13 09:27:54 ----A---- C:\WINDOWS\SYSWOW64\wkscli.dll
2016-04-13 09:27:54 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerCookies.exe
2016-04-13 09:27:54 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-04-13 09:27:54 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-04-13 09:27:54 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-04-13 09:27:54 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-04-13 09:27:53 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2016-04-13 09:27:53 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-04-13 09:27:53 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-04-13 09:27:53 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-04-13 09:27:53 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-04-13 09:27:52 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2016-04-13 09:27:52 ----A---- C:\WINDOWS\SYSWOW64\MTF.dll
2016-04-13 09:27:52 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-04-13 09:27:52 ----A---- C:\WINDOWS\system32\policymanagerprecheck.dll
2016-04-13 09:27:52 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-04-13 09:27:52 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2016-04-13 09:27:52 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2016-04-13 09:27:51 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-04-13 09:27:50 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-04-13 09:27:50 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-04-13 09:27:50 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2016-04-13 09:27:50 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-04-13 09:27:49 ----A---- C:\WINDOWS\SYSWOW64\srvcli.dll
2016-04-13 09:27:49 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-04-13 09:27:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Devices.dll
2016-04-13 09:27:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2016-04-13 09:27:48 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-04-13 09:27:47 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.dll
2016-04-13 09:27:47 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2016-04-13 09:27:47 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-04-13 09:27:47 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-04-13 09:27:46 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2016-04-13 09:27:46 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-04-13 09:27:46 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-04-13 09:27:46 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-04-13 09:27:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-13 09:27:44 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2016-04-13 09:27:44 ----A---- C:\WINDOWS\SYSWOW64\browcli.dll
2016-04-13 09:27:44 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-13 09:27:44 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2016-04-13 09:27:44 ----A---- C:\WINDOWS\system32\fvewiz.dll
2016-04-13 09:27:43 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-04-13 09:27:43 ----A---- C:\WINDOWS\SYSWOW64\msorcl32.dll
2016-04-13 09:27:43 ----A---- C:\WINDOWS\system32\fvecpl.dll
2016-04-13 09:27:42 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-04-13 09:27:42 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-04-13 09:27:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-04-13 09:27:41 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-04-13 09:27:41 ----A---- C:\WINDOWS\system32\moshost.dll
2016-04-13 09:27:41 ----A---- C:\WINDOWS\system32\mos.dll
2016-04-13 09:27:41 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-04-13 09:27:41 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-04-13 09:27:41 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2016-04-13 09:27:40 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.V2.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\SYSWOW64\oleacchooks.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\SYSWOW64\mtxoci.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-13 09:27:39 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-04-13 09:27:39 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-04-13 09:27:39 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-04-13 09:27:39 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-04-13 09:27:39 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-04-12 12:58:11 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-04-04 07:06:30 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2016-04-04 06:16:28 ----A---- C:\WINDOWS\system32\amdave64.dll
2016-04-04 06:16:26 ----A---- C:\WINDOWS\SYSWOW64\amdave32.dll
2016-04-04 06:16:24 ----A---- C:\WINDOWS\system32\amdmiracast.dll
2016-04-04 06:16:20 ----A---- C:\WINDOWS\system32\amdhcp64.dll
2016-04-04 06:16:18 ----A---- C:\WINDOWS\SYSWOW64\amdhcp32.dll
2016-04-04 06:16:16 ----A---- C:\WINDOWS\system32\atimpc64.dll
2016-04-04 06:16:14 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll
2016-04-04 06:16:06 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll
2016-04-04 06:16:06 ----A---- C:\WINDOWS\system32\amdpcom64.dll
2016-04-04 06:16:02 ----A---- C:\WINDOWS\SYSWOW64\atiuxpag.dll
2016-04-04 06:15:58 ----A---- C:\WINDOWS\system32\atiu9p64.dll
2016-04-04 06:15:56 ----A---- C:\WINDOWS\SYSWOW64\atiu9pag.dll
2016-04-04 06:15:50 ----A---- C:\WINDOWS\SYSWOW64\aticfx32.dll
2016-04-04 06:15:40 ----A---- C:\WINDOWS\SYSWOW64\atidxx32.dll
2016-04-04 06:15:32 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll
2016-04-04 06:15:24 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll
2016-04-04 06:15:12 ----A---- C:\WINDOWS\system32\atiumd64.dll
2016-04-04 06:12:54 ----A---- C:\WINDOWS\system32\drivers\amdacpksd.sys
2016-04-04 05:32:22 ----A---- C:\WINDOWS\system32\amdlvr64.dll
2016-04-04 05:30:40 ----A---- C:\WINDOWS\SYSWOW64\amdlvr32.dll
2016-04-04 05:29:04 ----A---- C:\WINDOWS\system32\mantle64.dll
2016-04-04 05:28:42 ----A---- C:\WINDOWS\SYSWOW64\mantle32.dll
2016-04-04 05:28:14 ----A---- C:\WINDOWS\system32\amdmantle64.dll
2016-04-04 05:27:14 ----A---- C:\WINDOWS\system32\clinfo.exe
2016-04-04 05:26:58 ----A---- C:\WINDOWS\system32\amdocl64.dll
2016-04-04 05:23:56 ----A---- C:\WINDOWS\SYSWOW64\amdocl.dll
2016-04-04 05:21:18 ----A---- C:\WINDOWS\system32\OpenCL.dll
2016-04-04 05:21:16 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2016-04-04 05:15:54 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll
2016-04-04 05:15:32 ----A---- C:\WINDOWS\SYSWOW64\amdocl12cl.dll
2016-04-04 05:11:16 ----A---- C:\WINDOWS\system32\amdvlk64.dll
2016-04-04 05:02:48 ----A---- C:\WINDOWS\SYSWOW64\amdmantle32.dll
2016-04-04 05:00:34 ----A---- C:\WINDOWS\SYSWOW64\amdvlk32.dll
2016-04-04 04:48:26 ----A---- C:\WINDOWS\system32\amdhdl64.dll
2016-04-04 04:48:24 ----A---- C:\WINDOWS\SYSWOW64\amdhdl32.dll
2016-04-04 04:47:06 ----A---- C:\WINDOWS\system32\atio6axx.dll
2016-04-04 04:41:24 ----A---- C:\WINDOWS\system32\mantleaxl64.dll
2016-04-04 04:41:14 ----A---- C:\WINDOWS\SYSWOW64\mantleaxl32.dll
2016-04-04 04:37:06 ----A---- C:\WINDOWS\system32\amdxc64.dll
2016-04-04 04:25:00 ----A---- C:\WINDOWS\SYSWOW64\atioglxx.dll
2016-04-04 04:22:44 ----A---- C:\WINDOWS\SYSWOW64\amdxc32.dll
2016-04-04 04:14:16 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2016-04-04 04:14:10 ----A---- C:\WINDOWS\system32\aticalrt64.dll
2016-04-04 04:14:08 ----A---- C:\WINDOWS\SYSWOW64\aticalrt.dll
2016-04-04 04:14:00 ----A---- C:\WINDOWS\system32\aticalcl64.dll
2016-04-04 04:13:58 ----A---- C:\WINDOWS\SYSWOW64\aticalcl.dll
2016-04-04 04:13:44 ----A---- C:\WINDOWS\system32\aticaldd64.dll
2016-04-04 04:10:42 ----A---- C:\WINDOWS\SYSWOW64\aticaldd.dll
2016-04-04 03:57:42 ----A---- C:\WINDOWS\system32\atidemgy.dll
2016-04-04 03:57:36 ----A---- C:\WINDOWS\system32\dgtrayicon.exe
2016-04-04 03:57:28 ----A---- C:\WINDOWS\system32\GameManager64.dll
2016-04-04 03:57:24 ----A---- C:\WINDOWS\SYSWOW64\GameManager32.dll
2016-04-04 03:57:20 ----A---- C:\WINDOWS\system32\atieah64.exe
2016-04-04 03:57:18 ----A---- C:\WINDOWS\SYSWOW64\atieah32.exe
2016-04-04 03:57:14 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll
2016-04-04 03:57:10 ----A---- C:\WINDOWS\SYSWOW64\amdgfxinfo32.dll
2016-04-04 03:57:06 ----A---- C:\WINDOWS\system32\atimuixx.dll
2016-04-04 03:57:02 ----A---- C:\WINDOWS\system32\atieclxx.exe
2016-04-04 03:56:14 ----A---- C:\WINDOWS\system32\atiesrxx.exe
2016-04-04 03:55:30 ----A---- C:\WINDOWS\system32\amdmmcl6.dll
2016-04-04 03:55:28 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll
2016-04-04 03:55:06 ----A---- C:\WINDOWS\system32\atitmm64.dll
2016-04-04 03:34:42 ----A---- C:\WINDOWS\system32\atisamu64.dll
2016-04-04 03:34:38 ----A---- C:\WINDOWS\SYSWOW64\atisamu32.dll
2016-04-04 03:32:50 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll
2016-04-04 03:32:50 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll
2016-04-04 03:32:34 ----A---- C:\WINDOWS\system32\atig6pxx.dll
2016-04-04 03:32:32 ----A---- C:\WINDOWS\SYSWOW64\atiglpxx.dll
2016-04-04 03:32:32 ----A---- C:\WINDOWS\system32\atiglpxx.dll
2016-04-04 03:32:28 ----A---- C:\WINDOWS\system32\atig6txx.dll
2016-04-04 03:32:10 ----A---- C:\WINDOWS\SYSWOW64\atigktxx.dll
2016-04-04 03:29:30 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll
2016-04-04 03:28:48 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll
2016-04-04 03:28:42 ----A---- C:\WINDOWS\SYSWOW64\hsa-thunk.dll
2016-04-03 13:18:06 ----D---- C:\Users\Tomas\AppData\Roaming\PlaysTV
2016-04-03 13:17:41 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo.exe
2016-04-03 13:17:41 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1.dll
2016-04-03 13:17:41 ----A---- C:\WINDOWS\system32\vulkaninfo.exe
2016-04-03 13:17:41 ----A---- C:\WINDOWS\system32\vulkan-1.dll
2016-04-03 13:17:39 ----D---- C:\Program Files (x86)\VulkanRT
2016-04-03 12:32:37 ----A---- C:\WINDOWS\system32\DfSdkBt.exe
2016-04-03 09:15:33 ----A---- C:\ProgramData\analyzeitems.txt
2016-04-01 00:38:48 ----A---- C:\WINDOWS\system32\SET8440.tmp
2016-04-01 00:38:48 ----A---- C:\WINDOWS\system32\coinst_16.15.dll
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_vi_nd.dat
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_vi.dat
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_stn_nd.dat
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_FJ_nd.dat
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_FJ.dat
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_el_nd.dat
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_cz_nd.dat
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_cik_nd.dat
2016-03-31 22:24:40 ----A---- C:\WINDOWS\system32\ativvaxy_cik.dat
2016-03-31 22:24:40 ----A---- C:\WINDOWS\system32\ativce03.dat
2016-03-31 22:22:46 ----A---- C:\WINDOWS\system32\amdicdxx.dat
2016-03-31 22:22:34 ----A---- C:\WINDOWS\system32\amde34b.dat
2016-03-31 22:22:34 ----A---- C:\WINDOWS\system32\amde34a.dat
2016-03-31 22:22:34 ----A---- C:\WINDOWS\system32\amde31a.dat
======List of files/folders modified in the last 1 month======
2016-04-29 15:50:47 ----D---- C:\WINDOWS\system32\drivers\etc
2016-04-29 15:50:47 ----D---- C:\Program Files\trend micro
2016-04-29 15:50:43 ----D---- C:\WINDOWS\Prefetch
2016-04-29 15:41:53 ----D---- C:\WINDOWS\System32
2016-04-29 15:41:53 ----D---- C:\WINDOWS\INF
2016-04-29 15:41:53 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-29 15:36:57 ----D---- C:\WINDOWS\Temp
2016-04-29 14:51:54 ----D---- C:\WINDOWS\system32\sru
2016-04-29 10:55:40 ----HD---- C:\Program Files\WindowsApps
2016-04-29 10:54:47 ----D---- C:\WINDOWS\AppReadiness
2016-04-28 22:51:39 ----D---- C:\WINDOWS\system32\config
2016-04-28 22:50:47 ----D---- C:\WINDOWS\Microsoft.NET
2016-04-26 15:19:15 ----D---- C:\Users\Tomas\AppData\Roaming\vlc
2016-04-25 18:05:47 ----RD---- C:\Program Files (x86)
2016-04-25 15:44:03 ----AD---- C:\Program Files\Recuva
2016-04-24 12:59:50 ----D---- C:\WINDOWS\debug
2016-04-23 22:33:28 ----D---- C:\Windows
2016-04-23 22:33:24 ----D---- C:\WINDOWS\SoftwareDistribution
2016-04-23 22:18:44 ----D---- C:\WINDOWS\Minidump
2016-04-23 19:34:12 ----D---- C:\WINDOWS\system32\Tasks
2016-04-22 16:03:51 ----D---- C:\WINDOWS\system32\drivers
2016-04-22 16:03:31 ----D---- C:\WINDOWS\system32\CatRoot
2016-04-22 16:03:21 ----D---- C:\Users\Tomas\AppData\Roaming\Raptr
2016-04-22 16:02:52 ----SHDC---- C:\WINDOWS\Installer
2016-04-22 16:02:52 ----SHD---- C:\Config.Msi
2016-04-22 16:02:49 ----AD---- C:\Program Files (x86)\AMD
2016-04-22 16:02:15 ----D---- C:\WINDOWS\SysWOW64
2016-04-22 16:02:00 ----D---- C:\WINDOWS\system32\DriverStore
2016-04-22 16:01:47 ----AD---- C:\Program Files\AMD
2016-04-22 16:00:21 ----D---- C:\AMD
2016-04-22 11:39:16 ----HD---- C:\ProgramData
2016-04-19 16:47:54 ----D---- C:\Nový priečinok
2016-04-15 23:01:35 ----D---- C:\WINDOWS\rescache
2016-04-14 07:29:57 ----RD---- C:\WINDOWS\assembly
2016-04-13 13:35:37 ----D---- C:\WINDOWS\WinSxS
2016-04-13 13:33:35 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2016-04-13 13:33:35 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-04-13 13:33:32 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-04-13 13:33:32 ----D---- C:\WINDOWS\system32\sk-SK
2016-04-13 13:33:31 ----D---- C:\WINDOWS\system32\en-US
2016-04-13 13:33:31 ----D---- C:\WINDOWS\system32\Boot
2016-04-13 13:33:31 ----D---- C:\WINDOWS\system32\appraiser
2016-04-13 13:33:29 ----D---- C:\WINDOWS\PolicyDefinitions
2016-04-13 13:33:28 ----D---- C:\WINDOWS\bcastdvr
2016-04-13 13:33:28 ----D---- C:\WINDOWS\AppPatch
2016-04-13 13:31:25 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-04-13 09:43:23 ----D---- C:\WINDOWS\CbsTemp
2016-04-13 09:42:06 ----D---- C:\WINDOWS\system32\MRT
2016-04-13 09:38:57 ----A---- C:\WINDOWS\system32\MRT.exe
2016-04-13 09:15:48 ----D---- C:\WINDOWS\system32\catroot2
2016-04-06 20:32:08 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-04-04 06:16:02 ----A---- C:\WINDOWS\system32\atiuxp64.dll
2016-04-04 06:15:54 ----A---- C:\WINDOWS\system32\aticfx64.dll
2016-04-04 06:15:44 ----A---- C:\WINDOWS\system32\atidxx64.dll
2016-04-04 06:15:16 ----A---- C:\WINDOWS\system32\atiumd6a.dll
2016-04-04 03:33:02 ----A---- C:\WINDOWS\system32\atiadlxx.dll
2016-04-03 12:35:27 ----DC---- C:\WINDOWS\Panther
2016-04-03 12:32:39 ----D---- C:\ProgramData\Ashampoo
2016-04-03 12:32:35 ----D---- C:\Program Files (x86)\Ashampoo
2016-04-03 09:16:08 ----D---- C:\Program Files (x86)\Raptr Inc
2016-04-01 00:46:48 ----A---- C:\WINDOWS\system32\SET7728.tmp
2016-04-01 00:45:58 ----A---- C:\WINDOWS\system32\SET68D8.tmp
2016-04-01 00:45:22 ----A---- C:\WINDOWS\system32\SET77B8.tmp
2016-04-01 00:35:34 ----A---- C:\WINDOWS\system32\drivers\SET76D6.tmp
2016-04-01 00:34:20 ----A---- C:\WINDOWS\system32\SET5E0D.tmp
2016-03-31 23:29:28 ----A---- C:\WINDOWS\system32\SET5D9B.tmp
2016-03-30 13:48:34 ----D---- C:\WINDOWS\system32\drivers\UMDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-02-14 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-02-14 287016]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2015-06-23 1455552]
R1 AsIO;AsIO; C:\WINDOWS\SysWow64\drivers\AsIO.sys [2015-04-26 15232]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2016-03-24 37144]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-02-14 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-03-10 1070904]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-02-23 463744]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-02-14 37656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-03-10 107792]
R2 LiveTuner2PM;Ashampoo LiveTuner 2 Driver; \??\C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner64.sys [2014-03-20 14320]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 npf;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2010-01-27 47632]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2016-04-04 26345472]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2016-04-04 676864]
R3 AtiHDAudioService;@oem32.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2016-01-25 111120]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-06-18 4496600]
R3 MEIx64;@oem12.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2015-01-06 129312]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-12-01 175616]
R3 rt640x64;@oem28.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-31 886528]
S0 amdkmafd;@oem33.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmafd.sys [2016-03-21 23240]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-02-14 165344]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-11-22 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2016-02-07 192216]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RTL8167;@oem3.inf,%rtl8167.Service.DispName%;Realtek 8167 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt64win7.sys [2014-06-05 936664]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-14 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2016-04-04 251392]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [2015-04-26 936728]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-02-14 237096]
R2 ClickToRunSvc;Služba Klikni a spusti balíka Microsoft Office; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2015-10-07 2780856]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2015-06-23 18856]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2015-01-06 158496]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2015-01-06 409376]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-12-01 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 OneSyncSvc_a031e;Sync Host_a031e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-30 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_29a209b;Sync Host_29a209b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_339eb;Sync Host_339eb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_383ae04;Sync Host_383ae04; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3975c;Sync Host_3975c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4097f;Sync Host_4097f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4c2a8;Sync Host_4c2a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4c300ff;Sync Host_4c300ff; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_52b8f;Sync Host_52b8f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_5462fcc;Sync Host_5462fcc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_9c9d02;Sync Host_9c9d02; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_c2ace;Sync Host_c2ace; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-04-08 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DfSdkS;Defragmentation-Service; C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\DfsdkS64.exe [2009-08-24 544768]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-30 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_29a209b;MessagingService_29a209b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_339eb;MessagingService_339eb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_383ae04;MessagingService_383ae04; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3975c;MessagingService_3975c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4097f;MessagingService_4097f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4c2a8;MessagingService_4c2a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4c300ff;MessagingService_4c300ff; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_52b8f;MessagingService_52b8f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5462fcc;MessagingService_5462fcc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_9c9d02;MessagingService_9c9d02; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_a031e;MessagingService_a031e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_c2ace;MessagingService_c2ace; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-04-12 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2015-03-31 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2015-03-31 5132888]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_29a209b;Kontaktné údaje_29a209b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_339eb;Kontaktné údaje_339eb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_383ae04;Kontaktné údaje_383ae04; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3975c;Kontaktné údaje_3975c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4097f;Kontaktné údaje_4097f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4c2a8;Kontaktné údaje_4c2a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4c300ff;Kontaktné údaje_4c300ff; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_52b8f;Kontaktné údaje_52b8f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_5462fcc;Kontaktné údaje_5462fcc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_9c9d02;Kontaktné údaje_9c9d02; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_a031e;Kontaktné údaje_a031e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_c2ace;Kontaktné údaje_c2ace; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Log z RSIT
Logfile of random's system information tool 1.10 (written by random/random)
Run by Tomas at 2016-04-29 15:50:44
Microsoft Windows 10 Home
System drive C: has 52 GB (53%) free of 99 GB
Total RAM: 8130 MB (71% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:50:50, on 29. 4. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner2.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\WINDOWS\SysWOW64\ctfmon.exe
C:\Program Files\trend micro\Tomas.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Raptr] "C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe" --startup
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Monitor Ink Alerts - HP Deskjet 1050 J410 series.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Defragmentation-Service (DfSdkS) - mst software GmbH, Germany - C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\DfsdkS64.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Ashampoo LiveTuner 2 Service (WO_LiveService2) - Unknown owner - C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTunerService.exe
--
End of file - 10286 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\atiesrxx.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-40441df5-87da-4e00-8fbc-5f62c51fb7bf -SystemEventPortName:HostProcess-e0e5aee3-c7c0-4121-947f-fc5f870726c6 -IoCancelEventPortName:HostProcess-7f93c59d-5843-4104-ad64-57781c43804c -NonStateChangingEventPortName:HostProcess-a06aab3f-eb66-41d6-b8c6-01ca6eea5f91 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:71ead060-89ef-4a5d-8473-64a09b6349f4 -DeviceGroupId:WpdFsGroup
atieclxx
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-1ee730ea-4825-4835-8d5d-b9c8b5727cef -SystemEventPortName:HostProcess-d953aa15-23da-4e2a-b707-f7594b7b2ca9 -IoCancelEventPortName:HostProcess-b429cad0-dac7-4d1b-ba51-f98671c52ad8 -NonStateChangingEventPortName:HostProcess-6123a2db-6062-43e1-8e61-d4ec0107f9cd -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:cff4b37b-5c1d-4f4a-a8dc-ba128c913c05 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
dashost.exe {6dd60e72-8c5f-44c7-9c72566bc4218a1f}
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\system32\wbem\wmiprvse.exe
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner2.exe" -TRAY
"C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe" atlogon
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTunerService.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=50.0.2661.94 --handshake-handle=0x1b4
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6780.0.1430887011\673214481" --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,12,24,53 --gpu-vendor-id=0x1002 --gpu-device-id=0x6810 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=16.150.2211.1001 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithModuleLoadAnalysis/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_57/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6780.1.1067233514\523527293" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithModuleLoadAnalysis/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_57/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6780.2.1052322299\1222247751" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithModuleLoadAnalysis/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_57/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6780.3.1744746002\174319039" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/Control/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithModuleLoadAnalysis/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/UpdateTime15m/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_57/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6780.4.89948896\2066040788" /prefetch:1
"C:\Users\Tomas\Downloads\RSITx64.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 604 608 616 8192 612
ctfmon.exe
"C:\Program Files\Windows Defender\MpCmdRun.exe" SignatureUpdate -ScheduleJob -RestrictPrivileges -Reinvoke
"C:\Program Files\Windows Defender\MpCmdRun.exe" SignaturesUpdateService -ScheduleJob -UnmanagedUpdate
\??\C:\WINDOWS\system32\conhost.exe 0x4
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\jnt2lee8.default
prefs.js - "browser.search.suggest.enabled" - false
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.213 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.213 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_213.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-09-29 219304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-02-14 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2015-10-29 886488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-29 2339032]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-02-14 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2015-10-29 712304]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2015-06-23 36352]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-06-12 8484056]
"Ashampoo WinOptimizer Live-Tuner2"=C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner2.exe [2015-08-07 3814768]
"StartCN"=C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [2016-04-04 5006536]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-03-11 8686296]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EaseUS EPM tray]
C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\EpmNews.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EaseUS EPM Tray Agent]
C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\TrayPopupE\TrayTipAgentE.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2015-06-23 36352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr]
C:\PROGRA~2\Raptr\RAPTRS~1.EXE --startup []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2013-04-26 292848]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-23 7139256]
"Raptr"=C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [2016-04-05 58640]
C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Monitor Ink Alerts - HP Deskjet 1050 J410 series.lnk - C:\WINDOWS\system32\RunDll32.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-25 18:05:47 ----D---- C:\Program Files (x86)\BitComet
2016-04-22 19:23:41 ----AD---- C:\Program Files (x86)\HD Tune
2016-04-22 16:02:03 ----D---- C:\WINDOWS\LastGood.Tmp
2016-04-17 10:43:14 ----AD---- C:\Program Files (x86)\Remove Empty Directories
2016-04-13 09:28:43 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2016-04-13 09:28:43 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-04-13 09:28:43 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-04-13 09:28:43 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-13 09:28:43 ----A---- C:\WINDOWS\system32\BFE.DLL
2016-04-13 09:28:43 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-04-13 09:28:43 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\system32\oleacchooks.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\system32\credprovhost.dll
2016-04-13 09:28:42 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\system32\samlib.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\system32\profsvc.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\system32\ncbservice.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-04-13 09:28:41 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-04-13 09:28:41 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-04-13 09:28:41 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2016-04-13 09:28:40 ----A---- C:\WINDOWS\system32\oleacc.dll
2016-04-13 09:28:40 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-04-13 09:28:40 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2016-04-13 09:28:40 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-04-13 09:28:39 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-04-13 09:28:39 ----A---- C:\WINDOWS\system32\msi.dll
2016-04-13 09:28:39 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2016-04-13 09:28:39 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2016-04-13 09:28:39 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-13 09:28:38 ----A---- C:\WINDOWS\system32\WSDApi.dll
2016-04-13 09:28:38 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-04-13 09:28:38 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-04-13 09:28:38 ----A---- C:\WINDOWS\system32\dnsapi.dll
2016-04-13 09:28:38 ----A---- C:\WINDOWS\system32\DAFWSD.dll
2016-04-13 09:28:38 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-13 09:28:38 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-04-13 09:28:37 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-04-13 09:28:37 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-04-13 09:28:37 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-04-13 09:28:37 ----A---- C:\WINDOWS\system32\esent.dll
2016-04-13 09:28:36 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-04-13 09:28:36 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-04-13 09:28:36 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-04-13 09:28:35 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-04-13 09:28:35 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-04-13 09:28:34 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2016-04-13 09:28:34 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-04-13 09:28:34 ----A---- C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-04-13 09:28:34 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2016-04-13 09:28:34 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-04-13 09:28:34 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2016-04-13 09:28:34 ----A---- C:\WINDOWS\system32\bdesvc.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\tbauth.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\policymanager.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\easwrt.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\dmcsps.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-04-13 09:28:33 ----A---- C:\WINDOWS\system32\AccountsRt.dll
2016-04-13 09:28:32 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-13 09:28:32 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-13 09:28:32 ----A---- C:\WINDOWS\system32\twinui.dll
2016-04-13 09:28:32 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-04-13 09:28:32 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-04-13 09:28:32 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-04-13 09:28:27 ----A---- C:\WINDOWS\system32\wininet.dll
2016-04-13 09:28:27 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-04-13 09:28:27 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-04-13 09:28:26 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-04-13 09:28:26 ----A---- C:\WINDOWS\system32\MTF.dll
2016-04-13 09:28:26 ----A---- C:\WINDOWS\system32\InputService.dll
2016-04-13 09:28:26 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-04-13 09:28:26 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-04-13 09:28:25 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-04-13 09:28:25 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-13 09:28:24 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-04-13 09:28:24 ----A---- C:\WINDOWS\system32\wups.dll
2016-04-13 09:28:24 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-04-13 09:28:24 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-04-13 09:28:23 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-04-13 09:28:23 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-04-13 09:28:23 ----A---- C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-13 09:28:23 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2016-04-13 09:28:23 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-04-13 09:28:22 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-04-13 09:28:22 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-13 09:28:22 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-04-13 09:28:22 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-13 09:28:22 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-04-13 09:28:22 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-13 09:28:21 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-04-13 09:28:20 ----A---- C:\WINDOWS\SYSWOW64\tbauth.dll
2016-04-13 09:28:20 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-04-13 09:28:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2016-04-13 09:28:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2016-04-13 09:28:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2016-04-13 09:28:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2016-04-13 09:28:19 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
2016-04-13 09:28:19 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2016-04-13 09:28:19 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-04-13 09:28:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2016-04-13 09:28:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2016-04-13 09:28:18 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll
2016-04-13 09:28:18 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-04-13 09:28:17 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-04-13 09:28:17 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\OnDemandConnRouteHelper.dll
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\NotificationObjFactory.dll
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\easwrt.dll
2016-04-13 09:28:16 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2016-04-13 09:28:15 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-04-13 09:28:15 ----A---- C:\WINDOWS\system32\drivers\serial.sys
2016-04-13 09:28:14 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-13 09:28:14 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-04-13 09:28:14 ----A---- C:\WINDOWS\system32\iuilp.dll
2016-04-13 09:28:13 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-04-13 09:28:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-04-13 09:28:12 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-04-13 09:28:12 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-04-13 09:28:12 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-04-13 09:28:12 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-04-13 09:28:11 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-04-13 09:28:11 ----A---- C:\WINDOWS\system32\wsdchngr.dll
2016-04-13 09:28:11 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-04-13 09:28:11 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-04-13 09:28:10 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-04-13 09:28:10 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-13 09:28:10 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-13 09:28:10 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-04-13 09:28:10 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-04-13 09:28:10 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-04-13 09:28:09 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-04-13 09:28:09 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-04-13 09:28:09 ----A---- C:\WINDOWS\system32\SRH.dll
2016-04-13 09:28:09 ----A---- C:\WINDOWS\system32\LsaIso.exe
2016-04-13 09:28:09 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-04-13 09:28:09 ----A---- C:\WINDOWS\system32\drivers\ufx01000.sys
2016-04-13 09:28:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-04-13 09:28:08 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2016-04-13 09:28:08 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-04-13 09:28:08 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-04-13 09:28:08 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-04-13 09:28:08 ----A---- C:\WINDOWS\system32\fveui.dll
2016-04-13 09:28:08 ----A---- C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-13 09:28:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-04-13 09:28:07 ----A---- C:\WINDOWS\system32\winload.exe
2016-04-13 09:28:07 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-04-13 09:28:07 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-04-13 09:28:07 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-04-13 09:28:06 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-04-13 09:28:06 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-04-13 09:28:06 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-04-13 09:28:06 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-04-13 09:28:06 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-04-13 09:28:05 ----A---- C:\WINDOWS\system32\winresume.exe
2016-04-13 09:28:05 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-04-13 09:28:05 ----A---- C:\WINDOWS\system32\browser.dll
2016-04-13 09:28:04 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-04-13 09:28:04 ----A---- C:\WINDOWS\system32\omadmapi.dll
2016-04-13 09:28:04 ----A---- C:\WINDOWS\system32\mtxoci.dll
2016-04-13 09:28:04 ----A---- C:\WINDOWS\system32\FontProvider.dll
2016-04-13 09:28:03 ----A---- C:\WINDOWS\SYSWOW64\wsdchngr.dll
2016-04-13 09:28:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-04-13 09:28:03 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-04-13 09:28:03 ----A---- C:\WINDOWS\system32\fveskybackup.dll
2016-04-13 09:28:02 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-04-13 09:28:02 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-04-13 09:28:02 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-04-13 09:28:02 ----A---- C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-04-13 09:28:02 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-04-13 09:28:02 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-04-13 09:28:02 ----A---- C:\WINDOWS\system32\basesrv.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\SYSWOW64\AccountsRt.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\system32\wkscli.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\system32\srvcli.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\system32\netapi32.dll
2016-04-13 09:28:01 ----A---- C:\WINDOWS\system32\browcli.dll
2016-04-13 09:28:00 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2016-04-13 09:28:00 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-04-13 09:28:00 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-04-13 09:27:59 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-04-13 09:27:59 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2016-04-13 09:27:59 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-13 09:27:59 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-04-13 09:27:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2016-04-13 09:27:58 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-04-13 09:27:58 ----A---- C:\WINDOWS\SYSWOW64\netapi32.dll
2016-04-13 09:27:58 ----A---- C:\WINDOWS\system32\easinvoker.exe
2016-04-13 09:27:57 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-04-13 09:27:57 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-04-13 09:27:57 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll
2016-04-13 09:27:57 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-04-13 09:27:57 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-04-13 09:27:57 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-04-13 09:27:55 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-04-13 09:27:55 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-04-13 09:27:54 ----A---- C:\WINDOWS\SYSWOW64\wkscli.dll
2016-04-13 09:27:54 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerCookies.exe
2016-04-13 09:27:54 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-04-13 09:27:54 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-04-13 09:27:54 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-04-13 09:27:54 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-04-13 09:27:53 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2016-04-13 09:27:53 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-04-13 09:27:53 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-04-13 09:27:53 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-04-13 09:27:53 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-04-13 09:27:52 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2016-04-13 09:27:52 ----A---- C:\WINDOWS\SYSWOW64\MTF.dll
2016-04-13 09:27:52 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-04-13 09:27:52 ----A---- C:\WINDOWS\system32\policymanagerprecheck.dll
2016-04-13 09:27:52 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-04-13 09:27:52 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2016-04-13 09:27:52 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2016-04-13 09:27:51 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-04-13 09:27:50 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-04-13 09:27:50 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-04-13 09:27:50 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2016-04-13 09:27:50 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-04-13 09:27:49 ----A---- C:\WINDOWS\SYSWOW64\srvcli.dll
2016-04-13 09:27:49 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-04-13 09:27:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Devices.dll
2016-04-13 09:27:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2016-04-13 09:27:48 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-04-13 09:27:47 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.dll
2016-04-13 09:27:47 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2016-04-13 09:27:47 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-04-13 09:27:47 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-04-13 09:27:46 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2016-04-13 09:27:46 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-04-13 09:27:46 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-04-13 09:27:46 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-04-13 09:27:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-13 09:27:44 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2016-04-13 09:27:44 ----A---- C:\WINDOWS\SYSWOW64\browcli.dll
2016-04-13 09:27:44 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-13 09:27:44 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2016-04-13 09:27:44 ----A---- C:\WINDOWS\system32\fvewiz.dll
2016-04-13 09:27:43 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-04-13 09:27:43 ----A---- C:\WINDOWS\SYSWOW64\msorcl32.dll
2016-04-13 09:27:43 ----A---- C:\WINDOWS\system32\fvecpl.dll
2016-04-13 09:27:42 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-04-13 09:27:42 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-04-13 09:27:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-04-13 09:27:41 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-04-13 09:27:41 ----A---- C:\WINDOWS\system32\moshost.dll
2016-04-13 09:27:41 ----A---- C:\WINDOWS\system32\mos.dll
2016-04-13 09:27:41 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-04-13 09:27:41 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-04-13 09:27:41 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2016-04-13 09:27:40 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.V2.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\SYSWOW64\oleacchooks.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\SYSWOW64\mtxoci.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-04-13 09:27:40 ----A---- C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-13 09:27:39 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-04-13 09:27:39 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-04-13 09:27:39 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-04-13 09:27:39 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-04-13 09:27:39 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-04-12 12:58:11 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-04-04 07:06:30 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2016-04-04 06:16:28 ----A---- C:\WINDOWS\system32\amdave64.dll
2016-04-04 06:16:26 ----A---- C:\WINDOWS\SYSWOW64\amdave32.dll
2016-04-04 06:16:24 ----A---- C:\WINDOWS\system32\amdmiracast.dll
2016-04-04 06:16:20 ----A---- C:\WINDOWS\system32\amdhcp64.dll
2016-04-04 06:16:18 ----A---- C:\WINDOWS\SYSWOW64\amdhcp32.dll
2016-04-04 06:16:16 ----A---- C:\WINDOWS\system32\atimpc64.dll
2016-04-04 06:16:14 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll
2016-04-04 06:16:06 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll
2016-04-04 06:16:06 ----A---- C:\WINDOWS\system32\amdpcom64.dll
2016-04-04 06:16:02 ----A---- C:\WINDOWS\SYSWOW64\atiuxpag.dll
2016-04-04 06:15:58 ----A---- C:\WINDOWS\system32\atiu9p64.dll
2016-04-04 06:15:56 ----A---- C:\WINDOWS\SYSWOW64\atiu9pag.dll
2016-04-04 06:15:50 ----A---- C:\WINDOWS\SYSWOW64\aticfx32.dll
2016-04-04 06:15:40 ----A---- C:\WINDOWS\SYSWOW64\atidxx32.dll
2016-04-04 06:15:32 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll
2016-04-04 06:15:24 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll
2016-04-04 06:15:12 ----A---- C:\WINDOWS\system32\atiumd64.dll
2016-04-04 06:12:54 ----A---- C:\WINDOWS\system32\drivers\amdacpksd.sys
2016-04-04 05:32:22 ----A---- C:\WINDOWS\system32\amdlvr64.dll
2016-04-04 05:30:40 ----A---- C:\WINDOWS\SYSWOW64\amdlvr32.dll
2016-04-04 05:29:04 ----A---- C:\WINDOWS\system32\mantle64.dll
2016-04-04 05:28:42 ----A---- C:\WINDOWS\SYSWOW64\mantle32.dll
2016-04-04 05:28:14 ----A---- C:\WINDOWS\system32\amdmantle64.dll
2016-04-04 05:27:14 ----A---- C:\WINDOWS\system32\clinfo.exe
2016-04-04 05:26:58 ----A---- C:\WINDOWS\system32\amdocl64.dll
2016-04-04 05:23:56 ----A---- C:\WINDOWS\SYSWOW64\amdocl.dll
2016-04-04 05:21:18 ----A---- C:\WINDOWS\system32\OpenCL.dll
2016-04-04 05:21:16 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2016-04-04 05:15:54 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll
2016-04-04 05:15:32 ----A---- C:\WINDOWS\SYSWOW64\amdocl12cl.dll
2016-04-04 05:11:16 ----A---- C:\WINDOWS\system32\amdvlk64.dll
2016-04-04 05:02:48 ----A---- C:\WINDOWS\SYSWOW64\amdmantle32.dll
2016-04-04 05:00:34 ----A---- C:\WINDOWS\SYSWOW64\amdvlk32.dll
2016-04-04 04:48:26 ----A---- C:\WINDOWS\system32\amdhdl64.dll
2016-04-04 04:48:24 ----A---- C:\WINDOWS\SYSWOW64\amdhdl32.dll
2016-04-04 04:47:06 ----A---- C:\WINDOWS\system32\atio6axx.dll
2016-04-04 04:41:24 ----A---- C:\WINDOWS\system32\mantleaxl64.dll
2016-04-04 04:41:14 ----A---- C:\WINDOWS\SYSWOW64\mantleaxl32.dll
2016-04-04 04:37:06 ----A---- C:\WINDOWS\system32\amdxc64.dll
2016-04-04 04:25:00 ----A---- C:\WINDOWS\SYSWOW64\atioglxx.dll
2016-04-04 04:22:44 ----A---- C:\WINDOWS\SYSWOW64\amdxc32.dll
2016-04-04 04:14:16 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2016-04-04 04:14:10 ----A---- C:\WINDOWS\system32\aticalrt64.dll
2016-04-04 04:14:08 ----A---- C:\WINDOWS\SYSWOW64\aticalrt.dll
2016-04-04 04:14:00 ----A---- C:\WINDOWS\system32\aticalcl64.dll
2016-04-04 04:13:58 ----A---- C:\WINDOWS\SYSWOW64\aticalcl.dll
2016-04-04 04:13:44 ----A---- C:\WINDOWS\system32\aticaldd64.dll
2016-04-04 04:10:42 ----A---- C:\WINDOWS\SYSWOW64\aticaldd.dll
2016-04-04 03:57:42 ----A---- C:\WINDOWS\system32\atidemgy.dll
2016-04-04 03:57:36 ----A---- C:\WINDOWS\system32\dgtrayicon.exe
2016-04-04 03:57:28 ----A---- C:\WINDOWS\system32\GameManager64.dll
2016-04-04 03:57:24 ----A---- C:\WINDOWS\SYSWOW64\GameManager32.dll
2016-04-04 03:57:20 ----A---- C:\WINDOWS\system32\atieah64.exe
2016-04-04 03:57:18 ----A---- C:\WINDOWS\SYSWOW64\atieah32.exe
2016-04-04 03:57:14 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll
2016-04-04 03:57:10 ----A---- C:\WINDOWS\SYSWOW64\amdgfxinfo32.dll
2016-04-04 03:57:06 ----A---- C:\WINDOWS\system32\atimuixx.dll
2016-04-04 03:57:02 ----A---- C:\WINDOWS\system32\atieclxx.exe
2016-04-04 03:56:14 ----A---- C:\WINDOWS\system32\atiesrxx.exe
2016-04-04 03:55:30 ----A---- C:\WINDOWS\system32\amdmmcl6.dll
2016-04-04 03:55:28 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll
2016-04-04 03:55:06 ----A---- C:\WINDOWS\system32\atitmm64.dll
2016-04-04 03:34:42 ----A---- C:\WINDOWS\system32\atisamu64.dll
2016-04-04 03:34:38 ----A---- C:\WINDOWS\SYSWOW64\atisamu32.dll
2016-04-04 03:32:50 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll
2016-04-04 03:32:50 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll
2016-04-04 03:32:34 ----A---- C:\WINDOWS\system32\atig6pxx.dll
2016-04-04 03:32:32 ----A---- C:\WINDOWS\SYSWOW64\atiglpxx.dll
2016-04-04 03:32:32 ----A---- C:\WINDOWS\system32\atiglpxx.dll
2016-04-04 03:32:28 ----A---- C:\WINDOWS\system32\atig6txx.dll
2016-04-04 03:32:10 ----A---- C:\WINDOWS\SYSWOW64\atigktxx.dll
2016-04-04 03:29:30 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll
2016-04-04 03:28:48 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll
2016-04-04 03:28:42 ----A---- C:\WINDOWS\SYSWOW64\hsa-thunk.dll
2016-04-03 13:18:06 ----D---- C:\Users\Tomas\AppData\Roaming\PlaysTV
2016-04-03 13:17:41 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo.exe
2016-04-03 13:17:41 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1.dll
2016-04-03 13:17:41 ----A---- C:\WINDOWS\system32\vulkaninfo.exe
2016-04-03 13:17:41 ----A---- C:\WINDOWS\system32\vulkan-1.dll
2016-04-03 13:17:39 ----D---- C:\Program Files (x86)\VulkanRT
2016-04-03 12:32:37 ----A---- C:\WINDOWS\system32\DfSdkBt.exe
2016-04-03 09:15:33 ----A---- C:\ProgramData\analyzeitems.txt
2016-04-01 00:38:48 ----A---- C:\WINDOWS\system32\SET8440.tmp
2016-04-01 00:38:48 ----A---- C:\WINDOWS\system32\coinst_16.15.dll
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_vi_nd.dat
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_vi.dat
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_stn_nd.dat
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_FJ_nd.dat
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_FJ.dat
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_el_nd.dat
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_cz_nd.dat
2016-03-31 22:24:42 ----A---- C:\WINDOWS\system32\ativvaxy_cik_nd.dat
2016-03-31 22:24:40 ----A---- C:\WINDOWS\system32\ativvaxy_cik.dat
2016-03-31 22:24:40 ----A---- C:\WINDOWS\system32\ativce03.dat
2016-03-31 22:22:46 ----A---- C:\WINDOWS\system32\amdicdxx.dat
2016-03-31 22:22:34 ----A---- C:\WINDOWS\system32\amde34b.dat
2016-03-31 22:22:34 ----A---- C:\WINDOWS\system32\amde34a.dat
2016-03-31 22:22:34 ----A---- C:\WINDOWS\system32\amde31a.dat
======List of files/folders modified in the last 1 month======
2016-04-29 15:50:47 ----D---- C:\WINDOWS\system32\drivers\etc
2016-04-29 15:50:47 ----D---- C:\Program Files\trend micro
2016-04-29 15:50:43 ----D---- C:\WINDOWS\Prefetch
2016-04-29 15:41:53 ----D---- C:\WINDOWS\System32
2016-04-29 15:41:53 ----D---- C:\WINDOWS\INF
2016-04-29 15:41:53 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-29 15:36:57 ----D---- C:\WINDOWS\Temp
2016-04-29 14:51:54 ----D---- C:\WINDOWS\system32\sru
2016-04-29 10:55:40 ----HD---- C:\Program Files\WindowsApps
2016-04-29 10:54:47 ----D---- C:\WINDOWS\AppReadiness
2016-04-28 22:51:39 ----D---- C:\WINDOWS\system32\config
2016-04-28 22:50:47 ----D---- C:\WINDOWS\Microsoft.NET
2016-04-26 15:19:15 ----D---- C:\Users\Tomas\AppData\Roaming\vlc
2016-04-25 18:05:47 ----RD---- C:\Program Files (x86)
2016-04-25 15:44:03 ----AD---- C:\Program Files\Recuva
2016-04-24 12:59:50 ----D---- C:\WINDOWS\debug
2016-04-23 22:33:28 ----D---- C:\Windows
2016-04-23 22:33:24 ----D---- C:\WINDOWS\SoftwareDistribution
2016-04-23 22:18:44 ----D---- C:\WINDOWS\Minidump
2016-04-23 19:34:12 ----D---- C:\WINDOWS\system32\Tasks
2016-04-22 16:03:51 ----D---- C:\WINDOWS\system32\drivers
2016-04-22 16:03:31 ----D---- C:\WINDOWS\system32\CatRoot
2016-04-22 16:03:21 ----D---- C:\Users\Tomas\AppData\Roaming\Raptr
2016-04-22 16:02:52 ----SHDC---- C:\WINDOWS\Installer
2016-04-22 16:02:52 ----SHD---- C:\Config.Msi
2016-04-22 16:02:49 ----AD---- C:\Program Files (x86)\AMD
2016-04-22 16:02:15 ----D---- C:\WINDOWS\SysWOW64
2016-04-22 16:02:00 ----D---- C:\WINDOWS\system32\DriverStore
2016-04-22 16:01:47 ----AD---- C:\Program Files\AMD
2016-04-22 16:00:21 ----D---- C:\AMD
2016-04-22 11:39:16 ----HD---- C:\ProgramData
2016-04-19 16:47:54 ----D---- C:\Nový priečinok
2016-04-15 23:01:35 ----D---- C:\WINDOWS\rescache
2016-04-14 07:29:57 ----RD---- C:\WINDOWS\assembly
2016-04-13 13:35:37 ----D---- C:\WINDOWS\WinSxS
2016-04-13 13:33:35 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2016-04-13 13:33:35 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-04-13 13:33:32 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-04-13 13:33:32 ----D---- C:\WINDOWS\system32\sk-SK
2016-04-13 13:33:31 ----D---- C:\WINDOWS\system32\en-US
2016-04-13 13:33:31 ----D---- C:\WINDOWS\system32\Boot
2016-04-13 13:33:31 ----D---- C:\WINDOWS\system32\appraiser
2016-04-13 13:33:29 ----D---- C:\WINDOWS\PolicyDefinitions
2016-04-13 13:33:28 ----D---- C:\WINDOWS\bcastdvr
2016-04-13 13:33:28 ----D---- C:\WINDOWS\AppPatch
2016-04-13 13:31:25 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-04-13 09:43:23 ----D---- C:\WINDOWS\CbsTemp
2016-04-13 09:42:06 ----D---- C:\WINDOWS\system32\MRT
2016-04-13 09:38:57 ----A---- C:\WINDOWS\system32\MRT.exe
2016-04-13 09:15:48 ----D---- C:\WINDOWS\system32\catroot2
2016-04-06 20:32:08 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-04-04 06:16:02 ----A---- C:\WINDOWS\system32\atiuxp64.dll
2016-04-04 06:15:54 ----A---- C:\WINDOWS\system32\aticfx64.dll
2016-04-04 06:15:44 ----A---- C:\WINDOWS\system32\atidxx64.dll
2016-04-04 06:15:16 ----A---- C:\WINDOWS\system32\atiumd6a.dll
2016-04-04 03:33:02 ----A---- C:\WINDOWS\system32\atiadlxx.dll
2016-04-03 12:35:27 ----DC---- C:\WINDOWS\Panther
2016-04-03 12:32:39 ----D---- C:\ProgramData\Ashampoo
2016-04-03 12:32:35 ----D---- C:\Program Files (x86)\Ashampoo
2016-04-03 09:16:08 ----D---- C:\Program Files (x86)\Raptr Inc
2016-04-01 00:46:48 ----A---- C:\WINDOWS\system32\SET7728.tmp
2016-04-01 00:45:58 ----A---- C:\WINDOWS\system32\SET68D8.tmp
2016-04-01 00:45:22 ----A---- C:\WINDOWS\system32\SET77B8.tmp
2016-04-01 00:35:34 ----A---- C:\WINDOWS\system32\drivers\SET76D6.tmp
2016-04-01 00:34:20 ----A---- C:\WINDOWS\system32\SET5E0D.tmp
2016-03-31 23:29:28 ----A---- C:\WINDOWS\system32\SET5D9B.tmp
2016-03-30 13:48:34 ----D---- C:\WINDOWS\system32\drivers\UMDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-02-14 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-02-14 287016]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2015-06-23 1455552]
R1 AsIO;AsIO; C:\WINDOWS\SysWow64\drivers\AsIO.sys [2015-04-26 15232]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2016-03-24 37144]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-02-14 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-03-10 1070904]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-02-23 463744]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-02-14 37656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-03-10 107792]
R2 LiveTuner2PM;Ashampoo LiveTuner 2 Driver; \??\C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner64.sys [2014-03-20 14320]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 npf;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2010-01-27 47632]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2016-04-04 26345472]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2016-04-04 676864]
R3 AtiHDAudioService;@oem32.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2016-01-25 111120]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-06-18 4496600]
R3 MEIx64;@oem12.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2015-01-06 129312]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-12-01 175616]
R3 rt640x64;@oem28.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-31 886528]
S0 amdkmafd;@oem33.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmafd.sys [2016-03-21 23240]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-02-14 165344]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-11-22 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2016-02-07 192216]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RTL8167;@oem3.inf,%rtl8167.Service.DispName%;Realtek 8167 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt64win7.sys [2014-06-05 936664]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-14 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2016-04-04 251392]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [2015-04-26 936728]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-02-14 237096]
R2 ClickToRunSvc;Služba Klikni a spusti balíka Microsoft Office; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2015-10-07 2780856]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2015-06-23 18856]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2015-01-06 158496]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2015-01-06 409376]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-12-01 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 OneSyncSvc_a031e;Sync Host_a031e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-30 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_29a209b;Sync Host_29a209b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_339eb;Sync Host_339eb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_383ae04;Sync Host_383ae04; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3975c;Sync Host_3975c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4097f;Sync Host_4097f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4c2a8;Sync Host_4c2a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4c300ff;Sync Host_4c300ff; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_52b8f;Sync Host_52b8f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_5462fcc;Sync Host_5462fcc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_9c9d02;Sync Host_9c9d02; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_c2ace;Sync Host_c2ace; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-04-08 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DfSdkS;Defragmentation-Service; C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\DfsdkS64.exe [2009-08-24 544768]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-30 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_29a209b;MessagingService_29a209b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_339eb;MessagingService_339eb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_383ae04;MessagingService_383ae04; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3975c;MessagingService_3975c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4097f;MessagingService_4097f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4c2a8;MessagingService_4c2a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4c300ff;MessagingService_4c300ff; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_52b8f;MessagingService_52b8f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5462fcc;MessagingService_5462fcc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_9c9d02;MessagingService_9c9d02; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_a031e;MessagingService_a031e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_c2ace;MessagingService_c2ace; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-04-12 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2015-03-31 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2015-03-31 5132888]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_29a209b;Kontaktné údaje_29a209b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_339eb;Kontaktné údaje_339eb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_383ae04;Kontaktné údaje_383ae04; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3975c;Kontaktné údaje_3975c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4097f;Kontaktné údaje_4097f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4c2a8;Kontaktné údaje_4c2a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4c300ff;Kontaktné údaje_4c300ff; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_52b8f;Kontaktné údaje_52b8f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_5462fcc;Kontaktné údaje_5462fcc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_9c9d02;Kontaktné údaje_9c9d02; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_a031e;Kontaktné údaje_a031e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_c2ace;Kontaktné údaje_c2ace; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Re: Problem z Win10 - priečinky sa počas práce samy zatváraj
Log z DDS:
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.10586.20
Run by Tomas at 15:53:35 on 2016-04-29
Microsoft Windows 10 Home 10.0.10586.0.1250.421.1051.18.8130.5627 [GMT 2:00]
.
AV: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\dwm.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\atiesrxx.exe
C:\Windows\System32\WUDFHost.exe
C:\WINDOWS\system32\atieclxx.exe
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\System32\WUDFHost.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\system32\mqsvc.exe
C:\Program Files\Intel\iCLS Client\HeciServer.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
C:\WINDOWS\system32\dashost.exe
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\taskhostw.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe
C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner2.exe
C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\WINDOWS\system32\fontdrvhost.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTunerService.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\WINDOWS\SysWOW64\ctfmon.exe
C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6769.40891.0_x64__8wekyb3d8bbwe\HxTsr.exe
C:\Program Files\Windows Defender\MpCmdRun.exe
svchost.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\WINDOWS\system32\SearchFilterHost.exe
C:\WINDOWS\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\URLREDIR.DLL
uRun: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
uRunOnce: [Uninstall C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] C:\WINDOWS\System32\cmd.exe /q /c rmdir /s /q "C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
mRun: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
mRun: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
mRun: [Raptr] "C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe" --startup
StartupFolder: C:\Users\Tomas\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\MONITO~1.LNK - C:\WINDOWS\System32\RunDll32.exe
mPolicies-System: DSCAutomationHostEnabled = dword:2
mPolicies-System: SoftwareSASGeneration = dword:1
IE: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
IE: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{fe2a0a42-6984-45f9-ba4c-255166833fe3} : DHCPNameServer = 192.168.1.1
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL
Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.94\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\windows.storage.dll
x64-BHO: Skype for Business Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll
x64-BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
x64-BHO: Microsoft SkyDrive Pro Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
x64-Run: [IAStorIcon] "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
x64-Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
x64-Run: [Ashampoo WinOptimizer Live-Tuner2] "C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner2.exe" -TRAY
x64-Run: [StartCN] "C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe" atlogon
x64-mPolicies-System: DSCAutomationHostEnabled = dword:2
x64-mPolicies-System: SoftwareSASGeneration = dword:1
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
x64-IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
x64-Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - <orphaned>
x64-Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\WINDOWS\System32\tbauth.dll
x64-Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\WINDOWS\System32\tbauth.dll
x64-SSODL: WebCheck - <orphaned>
x64-mASetup: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - /UserInstall
x64-mASetup: {89820200-ECBD-11cf-8B85-00AA005B4340} - U
x64-CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\windows.storage.dll
Hosts: 0.0.0.0 vortex.data.microsoft.com
Hosts: 0.0.0.0 vortex-win.data.microsoft.com
Hosts: 0.0.0.0 telecommand.telemetry.microsoft.com
Hosts: 0.0.0.0 telecommand.telemetry.microsoft.com.nsatc.net
Hosts: 0.0.0.0 oca.telemetry.microsoft.com
.
Note: multiple HOSTS entries found. Please refer to Attach.txt
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\jnt2lee8.default\
FF - plugin: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrlui.dll
FF - plugin: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL
FF - plugin: C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll
.
============= SERVICES / DRIVERS ===============
.
R0 aswRvrt;avast! Revert;C:\WINDOWS\System32\drivers\aswRvrt.sys [2015-4-28 74544]
R0 aswVmm;avast! VM Monitor;C:\WINDOWS\System32\drivers\aswvmm.sys [2015-4-28 287016]
R0 iaStorA;iaStorA;C:\WINDOWS\System32\drivers\iaStorA.sys [2013-8-7 1455552]
R0 WindowsTrustedRT;Windows Trusted Execution Environment Class Extension;C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [2015-10-30 106520]
R0 WindowsTrustedRTProxy;Microsoft Windows Trusted Runtime Secure Service;C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [2015-10-30 17944]
R0 Wof;Windows Overlay File System Filter Driver;C:\WINDOWS\System32\drivers\wof.sys [2015-10-30 199008]
R1 ahcache;Application Compatibility Cache;C:\WINDOWS\System32\drivers\ahcache.sys [2015-10-30 218624]
R1 aswKbd;aswKbd;C:\WINDOWS\System32\drivers\aswKbd.sys [2016-3-24 37144]
R1 aswSnx;aswSnx;C:\WINDOWS\System32\drivers\aswsnx.sys [2015-4-28 1070904]
R1 aswSP;aswSP;C:\WINDOWS\System32\drivers\aswsp.sys [2015-4-28 463744]
R1 FileCrypt;FileCrypt;C:\WINDOWS\System32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;GPU Energy Driver;C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 AMD External Events Utility;AMD External Events Utility;C:\WINDOWS\System32\atiesrxx.exe [2016-4-4 251392]
R2 asComSvc;ASUS Com Service;C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [2015-12-1 936728]
R2 aswHwid;avast! HardwareID;C:\WINDOWS\System32\drivers\aswHwid.sys [2015-4-28 37656]
R2 aswMonFlt;aswMonFlt;C:\WINDOWS\System32\drivers\aswmonflt.sys [2015-4-28 107792]
R2 avast! Antivirus;Avast Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-2-14 237096]
R2 ClickToRunSvc;Služba Klikni a spusti balíka Microsoft Office;C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe [2015-4-26 2780856]
R2 CoreMessagingRegistrar;CoreMessaging;C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork [2015-10-30 43944]
R2 DoSvc;Delivery Optimization;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2015-6-23 18856]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-8-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2015-1-6 158496]
R2 LiveTuner2PM;Ashampoo LiveTuner 2 Driver;C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner64.sys [2016-4-3 14320]
R2 storqosflt;Storage QoS Filter Driver;C:\WINDOWS\System32\drivers\storqosflt.sys [2015-10-30 78848]
R2 tiledatamodelsvc;Tile Data model server;C:\WINDOWS\System32\svchost.exe -k appmodel [2015-10-30 43944]
R2 UserManager;User Manager;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
R2 WO_LiveService2;Ashampoo LiveTuner 2 Service;C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTunerService.exe [2016-4-3 223600]
R3 AppXSvc;AppX Deployment Service (AppXSVC);C:\WINDOWS\System32\svchost.exe -k wsappx [2015-10-30 43944]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\WINDOWS\System32\drivers\AtihdWT6.sys [2015-5-28 111120]
R3 lfsvc;Geolocation Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
R3 NcbService;Network Connection Broker;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
R3 NdisVirtualBus;Microsoft Virtual Network Adapter Enumerator;C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [2015-10-30 20480]
R3 rt640x64;Realtek RT640 NT Driver;C:\WINDOWS\System32\drivers\rt640x64.sys [2015-12-1 886528]
R3 StateRepository;State Repository Service;C:\WINDOWS\System32\svchost.exe -k appmodel [2015-10-30 43944]
R3 UsoSvc;Update Orchestrator Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
R3 WdNisDrv;Ovládač technológie Windows Defender Network Inspection System;C:\WINDOWS\System32\drivers\WdNisDrv.sys [2015-10-30 118112]
R3 WdNisSvc;Windows Defender Network Inspection Service;C:\Program Files\Windows Defender\NisSrv.exe [2015-10-30 364464]
R3 WUDFWpdMtp;WUDFWpdMtp;C:\WINDOWS\System32\drivers\WUDFRd.sys [2015-10-30 216064]
S2 aswStm;aswStm;C:\WINDOWS\System32\drivers\aswStm.sys [2015-4-28 165344]
S2 MapsBroker;Správca stiahnutých máp;C:\WINDOWS\System32\svchost.exe -k NetworkService [2015-10-30 43944]
S3 ADP80XX;ADP80XX;C:\WINDOWS\System32\drivers\adp80xx.sys [2015-10-30 1135456]
S3 AJRouter;AllJoyn Router Service;C:\WINDOWS\System32\svchost.exe -k LocalService [2015-10-30 43944]
S3 amdkmafd;AMD Audio Bus Lower Filter;C:\WINDOWS\System32\drivers\amdkmafd.sys [2016-3-21 23240]
S3 AppReadiness;App Readiness;C:\WINDOWS\System32\svchost.exe -k AppReadiness [2015-10-30 43944]
S3 bcmfn;bcmfn Service;C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 bcmfn2;bcmfn2 Service;C:\WINDOWS\System32\drivers\bcmfn2.sys [2015-10-30 9728]
S3 BthHFSrv;Bluetooth Handsfree Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceAndNoImpersonation [2015-10-30 43944]
S3 buttonconverter;Service for Portable Device Control devices;C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;HID driver for CapImg touch screen;C:\WINDOWS\System32\drivers\capimg.sys [2015-12-3 117248]
S3 ClipSVC;Client License Service (ClipSVC);C:\WINDOWS\System32\svchost.exe -k wsappx [2015-10-30 43944]
S3 DcpSvc;DataCollectionPublishingService;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 DevQueryBroker;DevQuery Background Discovery Broker;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 DfSdkS;Defragmentation-Service;C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\DfSdkS64.exe [2016-4-3 544768]
S3 diagnosticshub.standardcollector.service;Microsoft (R) Diagnostics Hub Standard Collector Service;C:\WINDOWS\System32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;Device Management Enrollment Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 dmwappushservice;dmwappushsvc;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 DsSvc;Data Sharing Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 embeddedmode;embeddedmode;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 EntAppSvc;Enterprise App Management Service;C:\WINDOWS\System32\svchost.exe -k appmodel [2015-10-30 43944]
S3 genericusbfn;Generic USB Function Class;C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;Common Driver for HID Buttons implemented with interrupts;C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;Intel(R) Serial IO I2C Host Controller;C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;Intel(R) Serial IO I2C Driver v2;C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 iaLPSSi_GPIO;Intel(R) Serial IO GPIO Controller Driver;C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [2015-10-30 38128]
S3 iaLPSSi_I2C;Intel(R) Serial IO I2C Controller Driver;C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [2015-10-30 113152]
S3 iaStorAV;Intel(R) SATA RAID Controller Windows;C:\WINDOWS\System32\drivers\iaStorAV.sys [2015-10-30 673120]
S3 ibbus;Mellanox InfiniBand Bus/AL (Filter Driver);C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 icssvc;Služba poskytujúca hotspot pre Windows Mobile;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2015-10-30 43944]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\WINDOWS\System32\ieetwcollector.exe [2015-10-30 117760]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-8-27 828376]
S3 intelpep;Intel(R) Power Engine Plug-in Driver;C:\WINDOWS\System32\drivers\intelpep.sys [2015-10-30 46432]
S3 IoQos;IoQos;C:\WINDOWS\System32\drivers\ioqos.sys [2015-10-30 26624]
S3 LicenseManager;Windows License Manager Service;C:\WINDOWS\System32\svchost.exe -k LocalService [2015-10-30 43944]
S3 LSI_SAS2i;LSI_SAS2i;C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S3 LSI_SAS3i;LSI_SAS3i;C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S3 MBAMSwissArmy;MBAMSwissArmy;C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [2016-2-7 192216]
S3 mlx4_bus;Mellanox ConnectX Bus Enumerator;C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;NetworkDirect Service;C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 NetSetupSvc;Služba nastavenia siete;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 NgcCtnrSvc;Kontajner služby Microsoft Passport;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2015-10-30 43944]
S3 NgcSvc;Microsoft Passport;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 percsas2i;percsas2i;C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S3 percsas3i;percsas3i;C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 PhoneSvc;Telefónna služba;C:\WINDOWS\System32\svchost.exe -k LocalService [2015-10-30 43944]
S3 ReFSv1;ReFSv1;C:\WINDOWS\System32\drivers\refsv1.sys [2015-10-30 930656]
S3 RetailDemo;Retail Demo Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 RTL8167;Realtek 8167 NT Driver;C:\WINDOWS\System32\drivers\Rt64win7.sys [2015-4-26 936664]
S3 ScDeviceEnum;Smart Card Device Enumeration Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 SensorDataService;Sensor Data Service;C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;Sensor Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 SerCx2;Serial UART Support Library;C:\WINDOWS\System32\drivers\SerCx2.sys [2015-10-30 155488]
S3 smphost;Microsoft Storage Spaces SMP;C:\WINDOWS\System32\svchost.exe -k smphost [2015-10-30 43944]
S3 SmsRouter;Microsoft Windows SMS Router Service.;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 stornvme;Microsoft Standard NVM Express Driver;C:\WINDOWS\System32\drivers\stornvme.sys [2015-10-30 79200]
S3 storufs;Microsoft Universal Flash Storage (UFS) Driver;C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 TieringEngineService;Storage Tiers Management;C:\WINDOWS\System32\TieringEngineService.exe [2015-10-30 290304]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension;C:\WINDOWS\System32\drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;USB Connector Manager UCSI Client;C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library;C:\WINDOWS\System32\drivers\Udecx.sys [2015-10-30 45056]
S3 UEFI;Microsoft UEFI Driver;C:\WINDOWS\System32\drivers\uefi.sys [2015-10-30 28512]
S3 Ufx01000;USB Function Class Extension;C:\WINDOWS\System32\drivers\ufx01000.sys [2016-4-13 258912]
S3 UfxChipidea;USB Chipidea Controller;C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;USB Synopsys Controller;C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library;C:\WINDOWS\System32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;Chipidea USB Role-Switch Driver;C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;Synopsys USB Role-Switch Driver;C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
S3 vhf;Virtual HID Framework (VHF) Driver;C:\WINDOWS\System32\drivers\vhf.sys [2015-10-30 31744]
S3 vmicguestinterface;Hyper-V Guest Service Interface;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 vmicvmsession;Hyper-V VM Session Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 vmicheartbeat;Hyper-V Heartbeat Service;C:\WINDOWS\System32\svchost.exe -k ICService [2015-10-30 43944]
S3 w3logsvc;W3C Logging Service;C:\WINDOWS\System32\svchost.exe -k apphost [2015-10-30 43944]
S3 WalletService;WalletService;C:\WINDOWS\System32\svchost.exe -k appmodel [2015-10-30 43944]
S3 wdiwifi;WDI Driver Framework;C:\WINDOWS\System32\drivers\WdiWiFi.sys [2016-4-13 694784]
S3 WEPHOSTSVC;Windows Encryption Provider Host Service;C:\WINDOWS\System32\svchost.exe -k WepHostSvcGroup [2015-10-30 43944]
S3 WinMad;WinMad Service;C:\WINDOWS\System32\drivers\winmad.sys [2015-10-30 26976]
S3 WinVerbs;WinVerbs Service;C:\WINDOWS\System32\drivers\winverbs.sys [2015-10-30 59232]
S3 workfolderssvc;Work Folders;C:\WINDOWS\System32\svchost.exe -k LocalService [2015-10-30 43944]
S3 WpnService;Windows Push Notifications Service;C:\WINDOWS\System32\svchost.exe -k wswpnservice [2015-10-30 43944]
S3 XblAuthManager;Správca overení v službe Xbox Live;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 XblGameSave;Ukladanie údajov hier v službe Xbox Live;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 xboxgip;Xbox Game Input Protocol Driver;C:\WINDOWS\System32\drivers\xboxgip.sys [2016-3-3 238592]
S3 XboxNetApiSvc;Sieťová služba Xbox Live;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 xinputhid;XINPUT HID Filter Driver;C:\WINDOWS\System32\drivers\xinputhid.sys [2016-4-13 26112]
S4 CDPSvc;Connected Device Platform Service;C:\WINDOWS\System32\svchost.exe -k LocalService [2015-10-30 43944]
S4 DiagTrack;Connected User Experiences and Telemetry;C:\WINDOWS\System32\svchost.exe -k utcsvc [2015-10-30 43944]
S4 tzautoupdate;Auto Time Zone Updater;C:\WINDOWS\System32\svchost.exe -k LocalService [2015-10-30 43944]
.
=============== File Associations ===============
.
FileExt: .txt: txtfile=C:\WINDOWS\System32\NOTEPAD.EXE %1 [UserChoice]
ShellExec: SZBrowser.exe: open="C:\Program Files\AVAST Software\SZBrowser\Launcher.exe" "%1"
.
=============== Created Last 30 ================
.
2016-04-29 13:52:09 1190000 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\NisBackup\gapaengine.dll
2016-04-29 13:52:09 1190000 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{FC1EBEAD-9FCB-468F-B21D-4C6646611A99}\gapaengine.dll
2016-04-29 13:52:03 11695896 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0FD642B3-EB51-4268-BBAC-10C3440CAEEB}\mpengine.dll
2016-04-25 16:07:24 -------- d-----w- C:\Users\Tomas\AppData\Local\Battle for Wesnoth 1.12.5
2016-04-25 16:05:47 -------- d-----w- C:\Program Files (x86)\BitComet
2016-04-22 17:23:41 -------- d---a-w- C:\Program Files (x86)\HD Tune
2016-04-22 14:02:03 -------- d-----w- C:\WINDOWS\LastGood.Tmp
2016-04-17 08:44:13 -------- d-----w- C:\Users\Tomas\AppData\Local\Remove_Empty_Directories
2016-04-17 08:43:14 -------- d---a-w- C:\Program Files (x86)\Remove Empty Directories
2016-04-13 07:27:59 647680 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll
2016-04-12 10:58:11 970912 ----a-w- C:\Program Files (x86)\Mozilla Firefox\msvcr120.dll
2016-04-04 04:16:28 110880 ----a-w- C:\WINDOWS\System32\amdave64.dll
2016-04-04 04:16:26 102616 ----a-w- C:\WINDOWS\SysWow64\amdave32.dll
2016-04-04 04:16:24 458472 ----a-w- C:\WINDOWS\System32\amdmiracast.dll
2016-04-04 04:16:20 141792 ----a-w- C:\WINDOWS\System32\amdhcp64.dll
2016-04-04 04:16:18 128384 ----a-w- C:\WINDOWS\SysWow64\amdhcp32.dll
2016-04-04 04:16:16 78432 ----a-w- C:\WINDOWS\System32\atimpc64.dll
2016-04-04 04:16:14 71704 ----a-w- C:\WINDOWS\SysWow64\atimpc32.dll
2016-04-04 04:16:06 78432 ----a-w- C:\WINDOWS\System32\amdpcom64.dll
2016-04-04 04:16:06 71704 ----a-w- C:\WINDOWS\SysWow64\amdpcom32.dll
2016-04-04 04:16:02 133528 ----a-w- C:\WINDOWS\SysWow64\atiuxpag.dll
2016-04-04 04:15:58 120656 ----a-w- C:\WINDOWS\System32\atiu9p64.dll
2016-04-04 04:15:56 102616 ----a-w- C:\WINDOWS\SysWow64\atiu9pag.dll
2016-04-04 04:15:50 1245416 ----a-w- C:\WINDOWS\SysWow64\aticfx32.dll
2016-04-04 04:15:40 9583808 ----a-w- C:\WINDOWS\SysWow64\atidxx32.dll
2016-04-04 04:15:32 8585696 ----a-w- C:\WINDOWS\SysWow64\atiumdva.dll
2016-04-04 04:15:24 7392480 ----a-w- C:\WINDOWS\SysWow64\atiumdag.dll
2016-04-04 04:15:12 8843208 ----a-w- C:\WINDOWS\System32\atiumd64.dll
2016-04-04 04:12:54 296648 ----a-w- C:\WINDOWS\System32\drivers\amdacpksd.sys
2016-04-04 03:32:22 701440 ----a-w- C:\WINDOWS\System32\amdlvr64.dll
2016-04-04 03:30:40 580096 ----a-w- C:\WINDOWS\SysWow64\amdlvr32.dll
2016-04-04 03:29:04 127488 ----a-w- C:\WINDOWS\System32\mantle64.dll
2016-04-04 03:28:42 113664 ----a-w- C:\WINDOWS\SysWow64\mantle32.dll
2016-04-04 03:28:14 6884864 ----a-w- C:\WINDOWS\System32\amdmantle64.dll
2016-04-04 03:27:14 235008 ----a-w- C:\WINDOWS\System32\clinfo.exe
2016-04-04 03:26:58 48211968 ----a-w- C:\WINDOWS\System32\amdocl64.dll
2016-04-04 03:23:56 40126976 ----a-w- C:\WINDOWS\SysWow64\amdocl.dll
2016-04-04 03:21:18 65024 ----a-w- C:\WINDOWS\System32\OpenCL.dll
2016-04-04 03:21:16 59392 ----a-w- C:\WINDOWS\SysWow64\OpenCL.dll
2016-04-04 03:15:54 26887168 ----a-w- C:\WINDOWS\System32\amdocl12cl64.dll
2016-04-04 03:15:32 21730304 ----a-w- C:\WINDOWS\SysWow64\amdocl12cl.dll
2016-04-04 03:11:16 6956032 ----a-w- C:\WINDOWS\System32\amdvlk64.dll
2016-04-04 03:02:48 5398016 ----a-w- C:\WINDOWS\SysWow64\amdmantle32.dll
2016-04-04 03:00:34 5420032 ----a-w- C:\WINDOWS\SysWow64\amdvlk32.dll
2016-04-04 02:48:26 134656 ----a-w- C:\WINDOWS\System32\amdhdl64.dll
2016-04-04 02:48:24 123392 ----a-w- C:\WINDOWS\SysWow64\amdhdl32.dll
2016-04-04 02:47:06 30377984 ----a-w- C:\WINDOWS\System32\atio6axx.dll
2016-04-04 02:41:24 97280 ----a-w- C:\WINDOWS\System32\mantleaxl64.dll
2016-04-04 02:41:14 89600 ----a-w- C:\WINDOWS\SysWow64\mantleaxl32.dll
2016-04-04 02:37:06 8473088 ----a-w- C:\WINDOWS\System32\amdxc64.dll
2016-04-04 02:25:00 25069056 ----a-w- C:\WINDOWS\SysWow64\atioglxx.dll
2016-04-04 02:22:44 6667776 ----a-w- C:\WINDOWS\SysWow64\amdxc32.dll
2016-04-04 02:14:16 367104 ----a-w- C:\WINDOWS\System32\atiapfxx.exe
2016-04-04 02:14:10 62464 ----a-w- C:\WINDOWS\System32\aticalrt64.dll
2016-04-04 02:14:08 52224 ----a-w- C:\WINDOWS\SysWow64\aticalrt.dll
2016-04-04 02:14:00 55808 ----a-w- C:\WINDOWS\System32\aticalcl64.dll
2016-04-04 02:13:58 49152 ----a-w- C:\WINDOWS\SysWow64\aticalcl.dll
2016-04-04 02:13:44 15711744 ----a-w- C:\WINDOWS\System32\aticaldd64.dll
2016-04-04 02:10:42 14302208 ----a-w- C:\WINDOWS\SysWow64\aticaldd.dll
2016-04-04 01:57:42 442368 ----a-w- C:\WINDOWS\System32\atidemgy.dll
2016-04-04 01:57:36 224256 ----a-w- C:\WINDOWS\System32\dgtrayicon.exe
2016-04-04 01:57:28 209920 ----a-w- C:\WINDOWS\System32\GameManager64.dll
2016-04-04 01:57:24 186368 ----a-w- C:\WINDOWS\SysWow64\GameManager32.dll
2016-04-04 01:57:20 162304 ----a-w- C:\WINDOWS\System32\atieah64.exe
2016-04-04 01:57:18 145408 ----a-w- C:\WINDOWS\SysWow64\atieah32.exe
2016-04-04 01:57:14 204800 ----a-w- C:\WINDOWS\System32\amdgfxinfo64.dll
2016-04-04 01:57:10 189952 ----a-w- C:\WINDOWS\SysWow64\amdgfxinfo32.dll
2016-04-04 01:57:06 78336 ----a-w- C:\WINDOWS\System32\atimuixx.dll
2016-04-04 01:57:02 564736 ----a-w- C:\WINDOWS\System32\atieclxx.exe
2016-04-04 01:56:14 251392 ----a-w- C:\WINDOWS\System32\atiesrxx.exe
2016-04-04 01:55:30 50688 ----a-w- C:\WINDOWS\System32\amdmmcl6.dll
2016-04-04 01:55:28 39424 ----a-w- C:\WINDOWS\SysWow64\amdmmcl.dll
2016-04-04 01:55:06 190976 ----a-w- C:\WINDOWS\System32\atitmm64.dll
2016-04-04 01:34:42 89088 ----a-w- C:\WINDOWS\System32\atisamu64.dll
2016-04-04 01:34:38 80896 ----a-w- C:\WINDOWS\SysWow64\atisamu32.dll
2016-04-04 01:32:50 944640 ----a-w- C:\WINDOWS\SysWow64\atiadlxy.dll
2016-04-04 01:32:50 944640 ----a-w- C:\WINDOWS\SysWow64\atiadlxx.dll
2016-04-04 01:32:34 75776 ----a-w- C:\WINDOWS\System32\atig6pxx.dll
2016-04-04 01:32:32 70144 ----a-w- C:\WINDOWS\SysWow64\atiglpxx.dll
2016-04-04 01:32:32 70144 ----a-w- C:\WINDOWS\System32\atiglpxx.dll
2016-04-04 01:32:28 157696 ----a-w- C:\WINDOWS\System32\atig6txx.dll
2016-04-04 01:32:10 142336 ----a-w- C:\WINDOWS\SysWow64\atigktxx.dll
2016-04-04 01:29:30 43520 ----a-w- C:\WINDOWS\System32\drivers\ati2erec.dll
2016-04-04 01:28:48 195072 ----a-w- C:\WINDOWS\System32\hsa-thunk64.dll
2016-04-04 01:28:42 174592 ----a-w- C:\WINDOWS\SysWow64\hsa-thunk.dll
2016-04-03 11:18:06 -------- d-----w- C:\Users\Tomas\AppData\Roaming\PlaysTV
2016-04-03 11:17:41 45848 ----a-w- C:\WINDOWS\System32\vulkaninfo.exe
2016-04-03 11:17:41 42264 ----a-w- C:\WINDOWS\SysWow64\vulkaninfo.exe
2016-04-03 11:17:41 126232 ----a-w- C:\WINDOWS\System32\vulkan-1.dll
2016-04-03 11:17:41 125720 ----a-w- C:\WINDOWS\SysWow64\vulkan-1.dll
2016-04-03 11:17:39 -------- d-----w- C:\Program Files (x86)\VulkanRT
2016-04-03 10:32:37 34304 ----a-w- C:\WINDOWS\System32\DfSdkBt.exe
2016-03-31 22:38:48 874008 ----a-w- C:\WINDOWS\System32\SET8440.tmp
2016-03-31 22:38:48 865280 ----a-w- C:\WINDOWS\System32\coinst_16.15.dll
.
==================== Find3M ====================
.
2016-04-22 07:57:45 453288 ------w- C:\WINDOWS\System32\MpSigStub.exe
2016-04-06 18:32:08 829944 ----a-w- C:\WINDOWS\SysWow64\FlashPlayerApp.exe
2016-04-06 18:32:08 176632 ----a-w- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl
2016-04-04 04:16:02 152568 ----a-w- C:\WINDOWS\System32\atiuxp64.dll
2016-04-04 04:15:54 1517360 ----a-w- C:\WINDOWS\System32\aticfx64.dll
2016-04-04 04:15:44 11625784 ----a-w- C:\WINDOWS\System32\atidxx64.dll
2016-04-04 04:15:16 9526616 ----a-w- C:\WINDOWS\System32\atiumd6a.dll
2016-04-04 04:09:38 26345472 ----a-w- C:\WINDOWS\System32\drivers\atikmdag.sys
2016-04-04 01:33:02 1276416 ----a-w- C:\WINDOWS\System32\atiadlxx.dll
2016-04-04 01:31:54 676864 ----a-w- C:\WINDOWS\System32\drivers\atikmpag.sys
2016-04-02 04:13:14 369912 ----a-w- C:\WINDOWS\System32\audiodg.exe
2016-04-02 04:10:46 730344 ----a-w- C:\WINDOWS\System32\Windows.Internal.Shell.Broker.dll
2016-04-02 04:10:39 374008 ----a-w- C:\WINDOWS\System32\SystemSettingsAdminFlows.exe
2016-04-02 04:10:25 770640 ----a-w- C:\WINDOWS\System32\iuilp.dll
2016-04-02 03:30:16 151040 ----a-w- C:\WINDOWS\System32\VEStoreEventHandlers.dll
2016-04-02 03:29:38 127488 ----a-w- C:\WINDOWS\System32\VEDataLayerHelpers.dll
2016-04-02 03:29:29 83968 ----a-w- C:\WINDOWS\SysWow64\VEDataLayerHelpers.dll
2016-04-02 03:26:25 630272 ----a-w- C:\WINDOWS\System32\PhoneProviders.dll
2016-04-02 03:25:58 239104 ----a-w- C:\WINDOWS\SysWow64\NotificationObjFactory.dll
2016-04-02 03:25:42 278528 ----a-w- C:\WINDOWS\System32\NotificationObjFactory.dll
2016-04-02 03:23:44 219648 ----a-w- C:\WINDOWS\SysWow64\VEEventDispatcher.dll
2016-04-02 03:23:05 285696 ----a-w- C:\WINDOWS\System32\VEEventDispatcher.dll
2016-04-02 03:21:17 498688 ----a-w- C:\WINDOWS\System32\tileobjserver.dll
2016-04-02 03:19:00 1054208 ----a-w- C:\WINDOWS\System32\audiosrv.dll
2016-04-02 03:18:47 988160 ----a-w- C:\WINDOWS\System32\SharedStartModel.dll
2016-04-02 03:15:47 1090048 ----a-w- C:\WINDOWS\System32\RDXService.dll
2016-04-02 03:14:35 3994624 ----a-w- C:\WINDOWS\System32\SettingsHandlers_nt.dll
2016-04-02 03:09:17 1832448 ----a-w- C:\WINDOWS\System32\AppXDeploymentExtensions.dll
2016-04-02 03:08:48 2193408 ----a-w- C:\WINDOWS\SysWow64\actxprxy.dll
2016-04-02 03:07:41 2158592 ----a-w- C:\WINDOWS\System32\AppXDeploymentServer.dll
2016-04-02 03:07:22 3575296 ----a-w- C:\WINDOWS\System32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-02 03:03:52 4774912 ----a-w- C:\WINDOWS\System32\actxprxy.dll
2016-04-02 03:00:39 1390080 ----a-w- C:\WINDOWS\System32\Windows.UI.Shell.dll
2016-03-31 22:46:48 162784 ----a-w- C:\WINDOWS\System32\SET7728.tmp
2016-03-31 22:45:58 11735800 ----a-w- C:\WINDOWS\System32\SET68D8.tmp
2016-03-31 22:45:22 1539560 ----a-w- C:\WINDOWS\System32\SET77B8.tmp
2016-03-31 22:35:34 685592 ----a-w- C:\WINDOWS\System32\drivers\SET76D6.tmp
2016-03-31 22:34:20 1285136 ----a-w- C:\WINDOWS\System32\SET5E0D.tmp
2016-03-31 21:29:28 9618792 ----a-w- C:\WINDOWS\System32\SET5D9B.tmp
2016-03-29 10:23:38 277856 ----a-w- C:\WINDOWS\System32\drivers\sdbus.sys
2016-03-29 10:22:12 874968 ----a-w- C:\WINDOWS\System32\winresume.exe
2016-03-29 10:22:12 1030416 ----a-w- C:\WINDOWS\System32\winresume.efi
2016-03-29 10:20:20 7474016 ----a-w- C:\WINDOWS\System32\ntoskrnl.exe
2016-03-29 10:20:19 1317640 ----a-w- C:\WINDOWS\System32\winload.efi
2016-03-29 10:20:19 1141504 ----a-w- C:\WINDOWS\System32\winload.exe
2016-03-29 10:20:17 2656952 ----a-w- C:\WINDOWS\System32\CoreUIComponents.dll
2016-03-29 10:18:46 2152280 ----a-w- C:\WINDOWS\System32\drivers\ntfs.sys
2016-03-29 10:15:23 100232 ----a-w- C:\WINDOWS\System32\omadmapi.dll
2016-03-29 10:05:03 1152864 ----a-w- C:\WINDOWS\System32\drivers\ndis.sys
2016-03-29 10:02:09 989536 ----a-w- C:\WINDOWS\System32\SecConfig.efi
2016-03-29 10:02:02 334736 ----a-w- C:\WINDOWS\System32\policymanager.dll
2016-03-29 09:56:37 1297752 ----a-w- C:\WINDOWS\System32\LicenseManager.dll
2016-03-29 09:37:57 1862008 ----a-w- C:\WINDOWS\SysWow64\CoreUIComponents.dll
2016-03-29 09:28:18 115040 ----a-w- C:\WINDOWS\System32\NetSetupApi.dll
2016-03-29 09:28:16 696664 ----a-w- C:\WINDOWS\System32\NetSetupEngine.dll
2016-03-29 09:25:23 58400 ----a-w- C:\WINDOWS\System32\SensorsNativeApi.dll
2016-03-29 09:25:13 258912 ----a-w- C:\WINDOWS\System32\drivers\ufx01000.sys
2016-03-29 09:19:37 296488 ----a-w- C:\WINDOWS\SysWow64\policymanager.dll
2016-03-29 09:18:27 185184 ----a-w- C:\WINDOWS\System32\drivers\dumpsd.sys
2016-03-29 09:17:08 300104 ----a-w- C:\WINDOWS\System32\LockAppHost.exe
2016-03-29 09:13:11 986976 ----a-w- C:\WINDOWS\SysWow64\LicenseManager.dll
2016-03-29 09:11:53 605440 ----a-w- C:\WINDOWS\System32\drivers\cng.sys
2016-03-29 09:11:27 74424 ----a-w- C:\WINDOWS\System32\easinvoker.exe
2016-03-29 09:10:44 110584 ----a-w- C:\WINDOWS\System32\srvcli.dll
2016-03-29 09:09:54 78040 ----a-w- C:\WINDOWS\System32\wkscli.dll
2016-03-29 09:08:38 358752 ----a-w- C:\WINDOWS\System32\msv1_0.dll
2016-03-29 09:08:30 261376 ----a-w- C:\WINDOWS\System32\LsaIso.exe
2016-03-29 08:44:53 502104 ----a-w- C:\WINDOWS\SysWow64\NetSetupEngine.dll
2016-03-29 08:44:50 84832 ----a-w- C:\WINDOWS\SysWow64\NetSetupApi.dll
2016-03-29 08:41:44 51128 ----a-w- C:\WINDOWS\SysWow64\SensorsNativeApi.dll
2016-03-29 08:41:04 630632 ----a-w- C:\WINDOWS\System32\fontdrvhost.exe
2016-03-29 08:32:59 253088 ----a-w- C:\WINDOWS\SysWow64\LockAppHost.exe
2016-03-29 08:26:48 73872 ----a-w- C:\WINDOWS\SysWow64\srvcli.dll
2016-03-29 08:26:06 2403680 ----a-w- C:\WINDOWS\System32\drivers\tcpip.sys
2016-03-29 08:26:01 1089888 ----a-w- C:\WINDOWS\System32\drivers\http.sys
2016-03-29 08:25:44 56320 ----a-w- C:\WINDOWS\SysWow64\wkscli.dll
2016-03-29 08:24:25 294752 ----a-w- C:\WINDOWS\SysWow64\msv1_0.dll
2016-03-29 08:21:40 378208 ----a-w- C:\WINDOWS\System32\drivers\USBXHCI.SYS
2016-03-29 08:17:11 89088 ----a-w- C:\WINDOWS\System32\MapsCSP.dll
2016-03-29 08:16:55 26112 ----a-w- C:\WINDOWS\System32\drivers\xinputhid.sys
2016-03-29 08:07:26 92160 ----a-w- C:\WINDOWS\System32\policymanagerprecheck.dll
2016-03-29 08:07:14 92160 ----a-w- C:\WINDOWS\System32\SensorsNativeApi.V2.dll
2016-03-29 08:07:14 31232 ----a-w- C:\WINDOWS\System32\wsdchngr.dll
2016-03-29 08:07:09 34816 ----a-w- C:\WINDOWS\System32\dmenterprisediagnostics.dll
2016-03-29 08:06:14 12800 ----a-w- C:\WINDOWS\System32\oleacchooks.dll
2016-03-29 08:06:04 45568 ----a-w- C:\WINDOWS\System32\atmlib.dll
2016-03-29 08:05:52 38912 ----a-w- C:\WINDOWS\apppatch\apppatch64\AcWinRT.dll
2016-03-29 08:02:38 118272 ----a-w- C:\WINDOWS\System32\fontsub.dll
2016-03-29 08:01:15 541304 ----a-w- C:\WINDOWS\SysWow64\fontdrvhost.exe
2016-03-29 08:00:51 69632 ----a-w- C:\WINDOWS\System32\fveskybackup.dll
2016-03-29 08:00:40 28672 ----a-w- C:\WINDOWS\System32\mapsupdatetask.dll
2016-03-29 08:00:23 76800 ----a-w- C:\WINDOWS\System32\NetCfgNotifyObjectHost.exe
2016-03-29 07:59:20 27648 ----a-w- C:\WINDOWS\System32\LicenseManagerShellext.exe
2016-03-29 07:58:17 69632 ----a-w- C:\WINDOWS\System32\wininetlui.dll
2016-03-29 07:57:59 95744 ----a-w- C:\WINDOWS\System32\samlib.dll
2016-03-29 07:57:44 58368 ----a-w- C:\WINDOWS\System32\browcli.dll
2016-03-29 07:57:42 199168 ----a-w- C:\WINDOWS\System32\InstallAgent.exe
2016-03-29 07:57:22 74752 ----a-w- C:\WINDOWS\System32\MosStorage.dll
2016-03-29 07:55:34 36352 ----a-w- C:\WINDOWS\System32\tbauth.dll
2016-03-29 07:55:29 83968 ----a-w- C:\WINDOWS\System32\drivers\serial.sys
.
============= FINISH: 15:54:21,80 ===============
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.10586.20
Run by Tomas at 15:53:35 on 2016-04-29
Microsoft Windows 10 Home 10.0.10586.0.1250.421.1051.18.8130.5627 [GMT 2:00]
.
AV: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\dwm.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\atiesrxx.exe
C:\Windows\System32\WUDFHost.exe
C:\WINDOWS\system32\atieclxx.exe
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\System32\WUDFHost.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\system32\mqsvc.exe
C:\Program Files\Intel\iCLS Client\HeciServer.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
C:\WINDOWS\system32\dashost.exe
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\taskhostw.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe
C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner2.exe
C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\WINDOWS\system32\fontdrvhost.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTunerService.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\WINDOWS\SysWOW64\ctfmon.exe
C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6769.40891.0_x64__8wekyb3d8bbwe\HxTsr.exe
C:\Program Files\Windows Defender\MpCmdRun.exe
svchost.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\WINDOWS\system32\SearchFilterHost.exe
C:\WINDOWS\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\URLREDIR.DLL
uRun: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
uRunOnce: [Uninstall C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] C:\WINDOWS\System32\cmd.exe /q /c rmdir /s /q "C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
mRun: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
mRun: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
mRun: [Raptr] "C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe" --startup
StartupFolder: C:\Users\Tomas\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\MONITO~1.LNK - C:\WINDOWS\System32\RunDll32.exe
mPolicies-System: DSCAutomationHostEnabled = dword:2
mPolicies-System: SoftwareSASGeneration = dword:1
IE: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
IE: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{fe2a0a42-6984-45f9-ba4c-255166833fe3} : DHCPNameServer = 192.168.1.1
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL
Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.94\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\windows.storage.dll
x64-BHO: Skype for Business Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll
x64-BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
x64-BHO: Microsoft SkyDrive Pro Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
x64-Run: [IAStorIcon] "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
x64-Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
x64-Run: [Ashampoo WinOptimizer Live-Tuner2] "C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner2.exe" -TRAY
x64-Run: [StartCN] "C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe" atlogon
x64-mPolicies-System: DSCAutomationHostEnabled = dword:2
x64-mPolicies-System: SoftwareSASGeneration = dword:1
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
x64-IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
x64-Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - <orphaned>
x64-Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\WINDOWS\System32\tbauth.dll
x64-Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\WINDOWS\System32\tbauth.dll
x64-SSODL: WebCheck - <orphaned>
x64-mASetup: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - /UserInstall
x64-mASetup: {89820200-ECBD-11cf-8B85-00AA005B4340} - U
x64-CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\windows.storage.dll
Hosts: 0.0.0.0 vortex.data.microsoft.com
Hosts: 0.0.0.0 vortex-win.data.microsoft.com
Hosts: 0.0.0.0 telecommand.telemetry.microsoft.com
Hosts: 0.0.0.0 telecommand.telemetry.microsoft.com.nsatc.net
Hosts: 0.0.0.0 oca.telemetry.microsoft.com
.
Note: multiple HOSTS entries found. Please refer to Attach.txt
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\jnt2lee8.default\
FF - plugin: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrlui.dll
FF - plugin: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL
FF - plugin: C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll
.
============= SERVICES / DRIVERS ===============
.
R0 aswRvrt;avast! Revert;C:\WINDOWS\System32\drivers\aswRvrt.sys [2015-4-28 74544]
R0 aswVmm;avast! VM Monitor;C:\WINDOWS\System32\drivers\aswvmm.sys [2015-4-28 287016]
R0 iaStorA;iaStorA;C:\WINDOWS\System32\drivers\iaStorA.sys [2013-8-7 1455552]
R0 WindowsTrustedRT;Windows Trusted Execution Environment Class Extension;C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [2015-10-30 106520]
R0 WindowsTrustedRTProxy;Microsoft Windows Trusted Runtime Secure Service;C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [2015-10-30 17944]
R0 Wof;Windows Overlay File System Filter Driver;C:\WINDOWS\System32\drivers\wof.sys [2015-10-30 199008]
R1 ahcache;Application Compatibility Cache;C:\WINDOWS\System32\drivers\ahcache.sys [2015-10-30 218624]
R1 aswKbd;aswKbd;C:\WINDOWS\System32\drivers\aswKbd.sys [2016-3-24 37144]
R1 aswSnx;aswSnx;C:\WINDOWS\System32\drivers\aswsnx.sys [2015-4-28 1070904]
R1 aswSP;aswSP;C:\WINDOWS\System32\drivers\aswsp.sys [2015-4-28 463744]
R1 FileCrypt;FileCrypt;C:\WINDOWS\System32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;GPU Energy Driver;C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 AMD External Events Utility;AMD External Events Utility;C:\WINDOWS\System32\atiesrxx.exe [2016-4-4 251392]
R2 asComSvc;ASUS Com Service;C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [2015-12-1 936728]
R2 aswHwid;avast! HardwareID;C:\WINDOWS\System32\drivers\aswHwid.sys [2015-4-28 37656]
R2 aswMonFlt;aswMonFlt;C:\WINDOWS\System32\drivers\aswmonflt.sys [2015-4-28 107792]
R2 avast! Antivirus;Avast Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-2-14 237096]
R2 ClickToRunSvc;Služba Klikni a spusti balíka Microsoft Office;C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe [2015-4-26 2780856]
R2 CoreMessagingRegistrar;CoreMessaging;C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork [2015-10-30 43944]
R2 DoSvc;Delivery Optimization;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2015-6-23 18856]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-8-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2015-1-6 158496]
R2 LiveTuner2PM;Ashampoo LiveTuner 2 Driver;C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner64.sys [2016-4-3 14320]
R2 storqosflt;Storage QoS Filter Driver;C:\WINDOWS\System32\drivers\storqosflt.sys [2015-10-30 78848]
R2 tiledatamodelsvc;Tile Data model server;C:\WINDOWS\System32\svchost.exe -k appmodel [2015-10-30 43944]
R2 UserManager;User Manager;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
R2 WO_LiveService2;Ashampoo LiveTuner 2 Service;C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTunerService.exe [2016-4-3 223600]
R3 AppXSvc;AppX Deployment Service (AppXSVC);C:\WINDOWS\System32\svchost.exe -k wsappx [2015-10-30 43944]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\WINDOWS\System32\drivers\AtihdWT6.sys [2015-5-28 111120]
R3 lfsvc;Geolocation Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
R3 NcbService;Network Connection Broker;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
R3 NdisVirtualBus;Microsoft Virtual Network Adapter Enumerator;C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [2015-10-30 20480]
R3 rt640x64;Realtek RT640 NT Driver;C:\WINDOWS\System32\drivers\rt640x64.sys [2015-12-1 886528]
R3 StateRepository;State Repository Service;C:\WINDOWS\System32\svchost.exe -k appmodel [2015-10-30 43944]
R3 UsoSvc;Update Orchestrator Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
R3 WdNisDrv;Ovládač technológie Windows Defender Network Inspection System;C:\WINDOWS\System32\drivers\WdNisDrv.sys [2015-10-30 118112]
R3 WdNisSvc;Windows Defender Network Inspection Service;C:\Program Files\Windows Defender\NisSrv.exe [2015-10-30 364464]
R3 WUDFWpdMtp;WUDFWpdMtp;C:\WINDOWS\System32\drivers\WUDFRd.sys [2015-10-30 216064]
S2 aswStm;aswStm;C:\WINDOWS\System32\drivers\aswStm.sys [2015-4-28 165344]
S2 MapsBroker;Správca stiahnutých máp;C:\WINDOWS\System32\svchost.exe -k NetworkService [2015-10-30 43944]
S3 ADP80XX;ADP80XX;C:\WINDOWS\System32\drivers\adp80xx.sys [2015-10-30 1135456]
S3 AJRouter;AllJoyn Router Service;C:\WINDOWS\System32\svchost.exe -k LocalService [2015-10-30 43944]
S3 amdkmafd;AMD Audio Bus Lower Filter;C:\WINDOWS\System32\drivers\amdkmafd.sys [2016-3-21 23240]
S3 AppReadiness;App Readiness;C:\WINDOWS\System32\svchost.exe -k AppReadiness [2015-10-30 43944]
S3 bcmfn;bcmfn Service;C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 bcmfn2;bcmfn2 Service;C:\WINDOWS\System32\drivers\bcmfn2.sys [2015-10-30 9728]
S3 BthHFSrv;Bluetooth Handsfree Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceAndNoImpersonation [2015-10-30 43944]
S3 buttonconverter;Service for Portable Device Control devices;C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;HID driver for CapImg touch screen;C:\WINDOWS\System32\drivers\capimg.sys [2015-12-3 117248]
S3 ClipSVC;Client License Service (ClipSVC);C:\WINDOWS\System32\svchost.exe -k wsappx [2015-10-30 43944]
S3 DcpSvc;DataCollectionPublishingService;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 DevQueryBroker;DevQuery Background Discovery Broker;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 DfSdkS;Defragmentation-Service;C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\DfSdkS64.exe [2016-4-3 544768]
S3 diagnosticshub.standardcollector.service;Microsoft (R) Diagnostics Hub Standard Collector Service;C:\WINDOWS\System32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;Device Management Enrollment Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 dmwappushservice;dmwappushsvc;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 DsSvc;Data Sharing Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 embeddedmode;embeddedmode;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 EntAppSvc;Enterprise App Management Service;C:\WINDOWS\System32\svchost.exe -k appmodel [2015-10-30 43944]
S3 genericusbfn;Generic USB Function Class;C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;Common Driver for HID Buttons implemented with interrupts;C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;Intel(R) Serial IO I2C Host Controller;C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;Intel(R) Serial IO I2C Driver v2;C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 iaLPSSi_GPIO;Intel(R) Serial IO GPIO Controller Driver;C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [2015-10-30 38128]
S3 iaLPSSi_I2C;Intel(R) Serial IO I2C Controller Driver;C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [2015-10-30 113152]
S3 iaStorAV;Intel(R) SATA RAID Controller Windows;C:\WINDOWS\System32\drivers\iaStorAV.sys [2015-10-30 673120]
S3 ibbus;Mellanox InfiniBand Bus/AL (Filter Driver);C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 icssvc;Služba poskytujúca hotspot pre Windows Mobile;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2015-10-30 43944]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\WINDOWS\System32\ieetwcollector.exe [2015-10-30 117760]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-8-27 828376]
S3 intelpep;Intel(R) Power Engine Plug-in Driver;C:\WINDOWS\System32\drivers\intelpep.sys [2015-10-30 46432]
S3 IoQos;IoQos;C:\WINDOWS\System32\drivers\ioqos.sys [2015-10-30 26624]
S3 LicenseManager;Windows License Manager Service;C:\WINDOWS\System32\svchost.exe -k LocalService [2015-10-30 43944]
S3 LSI_SAS2i;LSI_SAS2i;C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S3 LSI_SAS3i;LSI_SAS3i;C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S3 MBAMSwissArmy;MBAMSwissArmy;C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [2016-2-7 192216]
S3 mlx4_bus;Mellanox ConnectX Bus Enumerator;C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;NetworkDirect Service;C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 NetSetupSvc;Služba nastavenia siete;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 NgcCtnrSvc;Kontajner služby Microsoft Passport;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2015-10-30 43944]
S3 NgcSvc;Microsoft Passport;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 percsas2i;percsas2i;C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S3 percsas3i;percsas3i;C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 PhoneSvc;Telefónna služba;C:\WINDOWS\System32\svchost.exe -k LocalService [2015-10-30 43944]
S3 ReFSv1;ReFSv1;C:\WINDOWS\System32\drivers\refsv1.sys [2015-10-30 930656]
S3 RetailDemo;Retail Demo Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 RTL8167;Realtek 8167 NT Driver;C:\WINDOWS\System32\drivers\Rt64win7.sys [2015-4-26 936664]
S3 ScDeviceEnum;Smart Card Device Enumeration Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 SensorDataService;Sensor Data Service;C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;Sensor Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 SerCx2;Serial UART Support Library;C:\WINDOWS\System32\drivers\SerCx2.sys [2015-10-30 155488]
S3 smphost;Microsoft Storage Spaces SMP;C:\WINDOWS\System32\svchost.exe -k smphost [2015-10-30 43944]
S3 SmsRouter;Microsoft Windows SMS Router Service.;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 stornvme;Microsoft Standard NVM Express Driver;C:\WINDOWS\System32\drivers\stornvme.sys [2015-10-30 79200]
S3 storufs;Microsoft Universal Flash Storage (UFS) Driver;C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 TieringEngineService;Storage Tiers Management;C:\WINDOWS\System32\TieringEngineService.exe [2015-10-30 290304]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension;C:\WINDOWS\System32\drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;USB Connector Manager UCSI Client;C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library;C:\WINDOWS\System32\drivers\Udecx.sys [2015-10-30 45056]
S3 UEFI;Microsoft UEFI Driver;C:\WINDOWS\System32\drivers\uefi.sys [2015-10-30 28512]
S3 Ufx01000;USB Function Class Extension;C:\WINDOWS\System32\drivers\ufx01000.sys [2016-4-13 258912]
S3 UfxChipidea;USB Chipidea Controller;C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;USB Synopsys Controller;C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library;C:\WINDOWS\System32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;Chipidea USB Role-Switch Driver;C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;Synopsys USB Role-Switch Driver;C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
S3 vhf;Virtual HID Framework (VHF) Driver;C:\WINDOWS\System32\drivers\vhf.sys [2015-10-30 31744]
S3 vmicguestinterface;Hyper-V Guest Service Interface;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 vmicvmsession;Hyper-V VM Session Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2015-10-30 43944]
S3 vmicheartbeat;Hyper-V Heartbeat Service;C:\WINDOWS\System32\svchost.exe -k ICService [2015-10-30 43944]
S3 w3logsvc;W3C Logging Service;C:\WINDOWS\System32\svchost.exe -k apphost [2015-10-30 43944]
S3 WalletService;WalletService;C:\WINDOWS\System32\svchost.exe -k appmodel [2015-10-30 43944]
S3 wdiwifi;WDI Driver Framework;C:\WINDOWS\System32\drivers\WdiWiFi.sys [2016-4-13 694784]
S3 WEPHOSTSVC;Windows Encryption Provider Host Service;C:\WINDOWS\System32\svchost.exe -k WepHostSvcGroup [2015-10-30 43944]
S3 WinMad;WinMad Service;C:\WINDOWS\System32\drivers\winmad.sys [2015-10-30 26976]
S3 WinVerbs;WinVerbs Service;C:\WINDOWS\System32\drivers\winverbs.sys [2015-10-30 59232]
S3 workfolderssvc;Work Folders;C:\WINDOWS\System32\svchost.exe -k LocalService [2015-10-30 43944]
S3 WpnService;Windows Push Notifications Service;C:\WINDOWS\System32\svchost.exe -k wswpnservice [2015-10-30 43944]
S3 XblAuthManager;Správca overení v službe Xbox Live;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 XblGameSave;Ukladanie údajov hier v službe Xbox Live;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 xboxgip;Xbox Game Input Protocol Driver;C:\WINDOWS\System32\drivers\xboxgip.sys [2016-3-3 238592]
S3 XboxNetApiSvc;Sieťová služba Xbox Live;C:\WINDOWS\System32\svchost.exe -k netsvcs [2015-10-30 43944]
S3 xinputhid;XINPUT HID Filter Driver;C:\WINDOWS\System32\drivers\xinputhid.sys [2016-4-13 26112]
S4 CDPSvc;Connected Device Platform Service;C:\WINDOWS\System32\svchost.exe -k LocalService [2015-10-30 43944]
S4 DiagTrack;Connected User Experiences and Telemetry;C:\WINDOWS\System32\svchost.exe -k utcsvc [2015-10-30 43944]
S4 tzautoupdate;Auto Time Zone Updater;C:\WINDOWS\System32\svchost.exe -k LocalService [2015-10-30 43944]
.
=============== File Associations ===============
.
FileExt: .txt: txtfile=C:\WINDOWS\System32\NOTEPAD.EXE %1 [UserChoice]
ShellExec: SZBrowser.exe: open="C:\Program Files\AVAST Software\SZBrowser\Launcher.exe" "%1"
.
=============== Created Last 30 ================
.
2016-04-29 13:52:09 1190000 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\NisBackup\gapaengine.dll
2016-04-29 13:52:09 1190000 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{FC1EBEAD-9FCB-468F-B21D-4C6646611A99}\gapaengine.dll
2016-04-29 13:52:03 11695896 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0FD642B3-EB51-4268-BBAC-10C3440CAEEB}\mpengine.dll
2016-04-25 16:07:24 -------- d-----w- C:\Users\Tomas\AppData\Local\Battle for Wesnoth 1.12.5
2016-04-25 16:05:47 -------- d-----w- C:\Program Files (x86)\BitComet
2016-04-22 17:23:41 -------- d---a-w- C:\Program Files (x86)\HD Tune
2016-04-22 14:02:03 -------- d-----w- C:\WINDOWS\LastGood.Tmp
2016-04-17 08:44:13 -------- d-----w- C:\Users\Tomas\AppData\Local\Remove_Empty_Directories
2016-04-17 08:43:14 -------- d---a-w- C:\Program Files (x86)\Remove Empty Directories
2016-04-13 07:27:59 647680 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll
2016-04-12 10:58:11 970912 ----a-w- C:\Program Files (x86)\Mozilla Firefox\msvcr120.dll
2016-04-04 04:16:28 110880 ----a-w- C:\WINDOWS\System32\amdave64.dll
2016-04-04 04:16:26 102616 ----a-w- C:\WINDOWS\SysWow64\amdave32.dll
2016-04-04 04:16:24 458472 ----a-w- C:\WINDOWS\System32\amdmiracast.dll
2016-04-04 04:16:20 141792 ----a-w- C:\WINDOWS\System32\amdhcp64.dll
2016-04-04 04:16:18 128384 ----a-w- C:\WINDOWS\SysWow64\amdhcp32.dll
2016-04-04 04:16:16 78432 ----a-w- C:\WINDOWS\System32\atimpc64.dll
2016-04-04 04:16:14 71704 ----a-w- C:\WINDOWS\SysWow64\atimpc32.dll
2016-04-04 04:16:06 78432 ----a-w- C:\WINDOWS\System32\amdpcom64.dll
2016-04-04 04:16:06 71704 ----a-w- C:\WINDOWS\SysWow64\amdpcom32.dll
2016-04-04 04:16:02 133528 ----a-w- C:\WINDOWS\SysWow64\atiuxpag.dll
2016-04-04 04:15:58 120656 ----a-w- C:\WINDOWS\System32\atiu9p64.dll
2016-04-04 04:15:56 102616 ----a-w- C:\WINDOWS\SysWow64\atiu9pag.dll
2016-04-04 04:15:50 1245416 ----a-w- C:\WINDOWS\SysWow64\aticfx32.dll
2016-04-04 04:15:40 9583808 ----a-w- C:\WINDOWS\SysWow64\atidxx32.dll
2016-04-04 04:15:32 8585696 ----a-w- C:\WINDOWS\SysWow64\atiumdva.dll
2016-04-04 04:15:24 7392480 ----a-w- C:\WINDOWS\SysWow64\atiumdag.dll
2016-04-04 04:15:12 8843208 ----a-w- C:\WINDOWS\System32\atiumd64.dll
2016-04-04 04:12:54 296648 ----a-w- C:\WINDOWS\System32\drivers\amdacpksd.sys
2016-04-04 03:32:22 701440 ----a-w- C:\WINDOWS\System32\amdlvr64.dll
2016-04-04 03:30:40 580096 ----a-w- C:\WINDOWS\SysWow64\amdlvr32.dll
2016-04-04 03:29:04 127488 ----a-w- C:\WINDOWS\System32\mantle64.dll
2016-04-04 03:28:42 113664 ----a-w- C:\WINDOWS\SysWow64\mantle32.dll
2016-04-04 03:28:14 6884864 ----a-w- C:\WINDOWS\System32\amdmantle64.dll
2016-04-04 03:27:14 235008 ----a-w- C:\WINDOWS\System32\clinfo.exe
2016-04-04 03:26:58 48211968 ----a-w- C:\WINDOWS\System32\amdocl64.dll
2016-04-04 03:23:56 40126976 ----a-w- C:\WINDOWS\SysWow64\amdocl.dll
2016-04-04 03:21:18 65024 ----a-w- C:\WINDOWS\System32\OpenCL.dll
2016-04-04 03:21:16 59392 ----a-w- C:\WINDOWS\SysWow64\OpenCL.dll
2016-04-04 03:15:54 26887168 ----a-w- C:\WINDOWS\System32\amdocl12cl64.dll
2016-04-04 03:15:32 21730304 ----a-w- C:\WINDOWS\SysWow64\amdocl12cl.dll
2016-04-04 03:11:16 6956032 ----a-w- C:\WINDOWS\System32\amdvlk64.dll
2016-04-04 03:02:48 5398016 ----a-w- C:\WINDOWS\SysWow64\amdmantle32.dll
2016-04-04 03:00:34 5420032 ----a-w- C:\WINDOWS\SysWow64\amdvlk32.dll
2016-04-04 02:48:26 134656 ----a-w- C:\WINDOWS\System32\amdhdl64.dll
2016-04-04 02:48:24 123392 ----a-w- C:\WINDOWS\SysWow64\amdhdl32.dll
2016-04-04 02:47:06 30377984 ----a-w- C:\WINDOWS\System32\atio6axx.dll
2016-04-04 02:41:24 97280 ----a-w- C:\WINDOWS\System32\mantleaxl64.dll
2016-04-04 02:41:14 89600 ----a-w- C:\WINDOWS\SysWow64\mantleaxl32.dll
2016-04-04 02:37:06 8473088 ----a-w- C:\WINDOWS\System32\amdxc64.dll
2016-04-04 02:25:00 25069056 ----a-w- C:\WINDOWS\SysWow64\atioglxx.dll
2016-04-04 02:22:44 6667776 ----a-w- C:\WINDOWS\SysWow64\amdxc32.dll
2016-04-04 02:14:16 367104 ----a-w- C:\WINDOWS\System32\atiapfxx.exe
2016-04-04 02:14:10 62464 ----a-w- C:\WINDOWS\System32\aticalrt64.dll
2016-04-04 02:14:08 52224 ----a-w- C:\WINDOWS\SysWow64\aticalrt.dll
2016-04-04 02:14:00 55808 ----a-w- C:\WINDOWS\System32\aticalcl64.dll
2016-04-04 02:13:58 49152 ----a-w- C:\WINDOWS\SysWow64\aticalcl.dll
2016-04-04 02:13:44 15711744 ----a-w- C:\WINDOWS\System32\aticaldd64.dll
2016-04-04 02:10:42 14302208 ----a-w- C:\WINDOWS\SysWow64\aticaldd.dll
2016-04-04 01:57:42 442368 ----a-w- C:\WINDOWS\System32\atidemgy.dll
2016-04-04 01:57:36 224256 ----a-w- C:\WINDOWS\System32\dgtrayicon.exe
2016-04-04 01:57:28 209920 ----a-w- C:\WINDOWS\System32\GameManager64.dll
2016-04-04 01:57:24 186368 ----a-w- C:\WINDOWS\SysWow64\GameManager32.dll
2016-04-04 01:57:20 162304 ----a-w- C:\WINDOWS\System32\atieah64.exe
2016-04-04 01:57:18 145408 ----a-w- C:\WINDOWS\SysWow64\atieah32.exe
2016-04-04 01:57:14 204800 ----a-w- C:\WINDOWS\System32\amdgfxinfo64.dll
2016-04-04 01:57:10 189952 ----a-w- C:\WINDOWS\SysWow64\amdgfxinfo32.dll
2016-04-04 01:57:06 78336 ----a-w- C:\WINDOWS\System32\atimuixx.dll
2016-04-04 01:57:02 564736 ----a-w- C:\WINDOWS\System32\atieclxx.exe
2016-04-04 01:56:14 251392 ----a-w- C:\WINDOWS\System32\atiesrxx.exe
2016-04-04 01:55:30 50688 ----a-w- C:\WINDOWS\System32\amdmmcl6.dll
2016-04-04 01:55:28 39424 ----a-w- C:\WINDOWS\SysWow64\amdmmcl.dll
2016-04-04 01:55:06 190976 ----a-w- C:\WINDOWS\System32\atitmm64.dll
2016-04-04 01:34:42 89088 ----a-w- C:\WINDOWS\System32\atisamu64.dll
2016-04-04 01:34:38 80896 ----a-w- C:\WINDOWS\SysWow64\atisamu32.dll
2016-04-04 01:32:50 944640 ----a-w- C:\WINDOWS\SysWow64\atiadlxy.dll
2016-04-04 01:32:50 944640 ----a-w- C:\WINDOWS\SysWow64\atiadlxx.dll
2016-04-04 01:32:34 75776 ----a-w- C:\WINDOWS\System32\atig6pxx.dll
2016-04-04 01:32:32 70144 ----a-w- C:\WINDOWS\SysWow64\atiglpxx.dll
2016-04-04 01:32:32 70144 ----a-w- C:\WINDOWS\System32\atiglpxx.dll
2016-04-04 01:32:28 157696 ----a-w- C:\WINDOWS\System32\atig6txx.dll
2016-04-04 01:32:10 142336 ----a-w- C:\WINDOWS\SysWow64\atigktxx.dll
2016-04-04 01:29:30 43520 ----a-w- C:\WINDOWS\System32\drivers\ati2erec.dll
2016-04-04 01:28:48 195072 ----a-w- C:\WINDOWS\System32\hsa-thunk64.dll
2016-04-04 01:28:42 174592 ----a-w- C:\WINDOWS\SysWow64\hsa-thunk.dll
2016-04-03 11:18:06 -------- d-----w- C:\Users\Tomas\AppData\Roaming\PlaysTV
2016-04-03 11:17:41 45848 ----a-w- C:\WINDOWS\System32\vulkaninfo.exe
2016-04-03 11:17:41 42264 ----a-w- C:\WINDOWS\SysWow64\vulkaninfo.exe
2016-04-03 11:17:41 126232 ----a-w- C:\WINDOWS\System32\vulkan-1.dll
2016-04-03 11:17:41 125720 ----a-w- C:\WINDOWS\SysWow64\vulkan-1.dll
2016-04-03 11:17:39 -------- d-----w- C:\Program Files (x86)\VulkanRT
2016-04-03 10:32:37 34304 ----a-w- C:\WINDOWS\System32\DfSdkBt.exe
2016-03-31 22:38:48 874008 ----a-w- C:\WINDOWS\System32\SET8440.tmp
2016-03-31 22:38:48 865280 ----a-w- C:\WINDOWS\System32\coinst_16.15.dll
.
==================== Find3M ====================
.
2016-04-22 07:57:45 453288 ------w- C:\WINDOWS\System32\MpSigStub.exe
2016-04-06 18:32:08 829944 ----a-w- C:\WINDOWS\SysWow64\FlashPlayerApp.exe
2016-04-06 18:32:08 176632 ----a-w- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl
2016-04-04 04:16:02 152568 ----a-w- C:\WINDOWS\System32\atiuxp64.dll
2016-04-04 04:15:54 1517360 ----a-w- C:\WINDOWS\System32\aticfx64.dll
2016-04-04 04:15:44 11625784 ----a-w- C:\WINDOWS\System32\atidxx64.dll
2016-04-04 04:15:16 9526616 ----a-w- C:\WINDOWS\System32\atiumd6a.dll
2016-04-04 04:09:38 26345472 ----a-w- C:\WINDOWS\System32\drivers\atikmdag.sys
2016-04-04 01:33:02 1276416 ----a-w- C:\WINDOWS\System32\atiadlxx.dll
2016-04-04 01:31:54 676864 ----a-w- C:\WINDOWS\System32\drivers\atikmpag.sys
2016-04-02 04:13:14 369912 ----a-w- C:\WINDOWS\System32\audiodg.exe
2016-04-02 04:10:46 730344 ----a-w- C:\WINDOWS\System32\Windows.Internal.Shell.Broker.dll
2016-04-02 04:10:39 374008 ----a-w- C:\WINDOWS\System32\SystemSettingsAdminFlows.exe
2016-04-02 04:10:25 770640 ----a-w- C:\WINDOWS\System32\iuilp.dll
2016-04-02 03:30:16 151040 ----a-w- C:\WINDOWS\System32\VEStoreEventHandlers.dll
2016-04-02 03:29:38 127488 ----a-w- C:\WINDOWS\System32\VEDataLayerHelpers.dll
2016-04-02 03:29:29 83968 ----a-w- C:\WINDOWS\SysWow64\VEDataLayerHelpers.dll
2016-04-02 03:26:25 630272 ----a-w- C:\WINDOWS\System32\PhoneProviders.dll
2016-04-02 03:25:58 239104 ----a-w- C:\WINDOWS\SysWow64\NotificationObjFactory.dll
2016-04-02 03:25:42 278528 ----a-w- C:\WINDOWS\System32\NotificationObjFactory.dll
2016-04-02 03:23:44 219648 ----a-w- C:\WINDOWS\SysWow64\VEEventDispatcher.dll
2016-04-02 03:23:05 285696 ----a-w- C:\WINDOWS\System32\VEEventDispatcher.dll
2016-04-02 03:21:17 498688 ----a-w- C:\WINDOWS\System32\tileobjserver.dll
2016-04-02 03:19:00 1054208 ----a-w- C:\WINDOWS\System32\audiosrv.dll
2016-04-02 03:18:47 988160 ----a-w- C:\WINDOWS\System32\SharedStartModel.dll
2016-04-02 03:15:47 1090048 ----a-w- C:\WINDOWS\System32\RDXService.dll
2016-04-02 03:14:35 3994624 ----a-w- C:\WINDOWS\System32\SettingsHandlers_nt.dll
2016-04-02 03:09:17 1832448 ----a-w- C:\WINDOWS\System32\AppXDeploymentExtensions.dll
2016-04-02 03:08:48 2193408 ----a-w- C:\WINDOWS\SysWow64\actxprxy.dll
2016-04-02 03:07:41 2158592 ----a-w- C:\WINDOWS\System32\AppXDeploymentServer.dll
2016-04-02 03:07:22 3575296 ----a-w- C:\WINDOWS\System32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-02 03:03:52 4774912 ----a-w- C:\WINDOWS\System32\actxprxy.dll
2016-04-02 03:00:39 1390080 ----a-w- C:\WINDOWS\System32\Windows.UI.Shell.dll
2016-03-31 22:46:48 162784 ----a-w- C:\WINDOWS\System32\SET7728.tmp
2016-03-31 22:45:58 11735800 ----a-w- C:\WINDOWS\System32\SET68D8.tmp
2016-03-31 22:45:22 1539560 ----a-w- C:\WINDOWS\System32\SET77B8.tmp
2016-03-31 22:35:34 685592 ----a-w- C:\WINDOWS\System32\drivers\SET76D6.tmp
2016-03-31 22:34:20 1285136 ----a-w- C:\WINDOWS\System32\SET5E0D.tmp
2016-03-31 21:29:28 9618792 ----a-w- C:\WINDOWS\System32\SET5D9B.tmp
2016-03-29 10:23:38 277856 ----a-w- C:\WINDOWS\System32\drivers\sdbus.sys
2016-03-29 10:22:12 874968 ----a-w- C:\WINDOWS\System32\winresume.exe
2016-03-29 10:22:12 1030416 ----a-w- C:\WINDOWS\System32\winresume.efi
2016-03-29 10:20:20 7474016 ----a-w- C:\WINDOWS\System32\ntoskrnl.exe
2016-03-29 10:20:19 1317640 ----a-w- C:\WINDOWS\System32\winload.efi
2016-03-29 10:20:19 1141504 ----a-w- C:\WINDOWS\System32\winload.exe
2016-03-29 10:20:17 2656952 ----a-w- C:\WINDOWS\System32\CoreUIComponents.dll
2016-03-29 10:18:46 2152280 ----a-w- C:\WINDOWS\System32\drivers\ntfs.sys
2016-03-29 10:15:23 100232 ----a-w- C:\WINDOWS\System32\omadmapi.dll
2016-03-29 10:05:03 1152864 ----a-w- C:\WINDOWS\System32\drivers\ndis.sys
2016-03-29 10:02:09 989536 ----a-w- C:\WINDOWS\System32\SecConfig.efi
2016-03-29 10:02:02 334736 ----a-w- C:\WINDOWS\System32\policymanager.dll
2016-03-29 09:56:37 1297752 ----a-w- C:\WINDOWS\System32\LicenseManager.dll
2016-03-29 09:37:57 1862008 ----a-w- C:\WINDOWS\SysWow64\CoreUIComponents.dll
2016-03-29 09:28:18 115040 ----a-w- C:\WINDOWS\System32\NetSetupApi.dll
2016-03-29 09:28:16 696664 ----a-w- C:\WINDOWS\System32\NetSetupEngine.dll
2016-03-29 09:25:23 58400 ----a-w- C:\WINDOWS\System32\SensorsNativeApi.dll
2016-03-29 09:25:13 258912 ----a-w- C:\WINDOWS\System32\drivers\ufx01000.sys
2016-03-29 09:19:37 296488 ----a-w- C:\WINDOWS\SysWow64\policymanager.dll
2016-03-29 09:18:27 185184 ----a-w- C:\WINDOWS\System32\drivers\dumpsd.sys
2016-03-29 09:17:08 300104 ----a-w- C:\WINDOWS\System32\LockAppHost.exe
2016-03-29 09:13:11 986976 ----a-w- C:\WINDOWS\SysWow64\LicenseManager.dll
2016-03-29 09:11:53 605440 ----a-w- C:\WINDOWS\System32\drivers\cng.sys
2016-03-29 09:11:27 74424 ----a-w- C:\WINDOWS\System32\easinvoker.exe
2016-03-29 09:10:44 110584 ----a-w- C:\WINDOWS\System32\srvcli.dll
2016-03-29 09:09:54 78040 ----a-w- C:\WINDOWS\System32\wkscli.dll
2016-03-29 09:08:38 358752 ----a-w- C:\WINDOWS\System32\msv1_0.dll
2016-03-29 09:08:30 261376 ----a-w- C:\WINDOWS\System32\LsaIso.exe
2016-03-29 08:44:53 502104 ----a-w- C:\WINDOWS\SysWow64\NetSetupEngine.dll
2016-03-29 08:44:50 84832 ----a-w- C:\WINDOWS\SysWow64\NetSetupApi.dll
2016-03-29 08:41:44 51128 ----a-w- C:\WINDOWS\SysWow64\SensorsNativeApi.dll
2016-03-29 08:41:04 630632 ----a-w- C:\WINDOWS\System32\fontdrvhost.exe
2016-03-29 08:32:59 253088 ----a-w- C:\WINDOWS\SysWow64\LockAppHost.exe
2016-03-29 08:26:48 73872 ----a-w- C:\WINDOWS\SysWow64\srvcli.dll
2016-03-29 08:26:06 2403680 ----a-w- C:\WINDOWS\System32\drivers\tcpip.sys
2016-03-29 08:26:01 1089888 ----a-w- C:\WINDOWS\System32\drivers\http.sys
2016-03-29 08:25:44 56320 ----a-w- C:\WINDOWS\SysWow64\wkscli.dll
2016-03-29 08:24:25 294752 ----a-w- C:\WINDOWS\SysWow64\msv1_0.dll
2016-03-29 08:21:40 378208 ----a-w- C:\WINDOWS\System32\drivers\USBXHCI.SYS
2016-03-29 08:17:11 89088 ----a-w- C:\WINDOWS\System32\MapsCSP.dll
2016-03-29 08:16:55 26112 ----a-w- C:\WINDOWS\System32\drivers\xinputhid.sys
2016-03-29 08:07:26 92160 ----a-w- C:\WINDOWS\System32\policymanagerprecheck.dll
2016-03-29 08:07:14 92160 ----a-w- C:\WINDOWS\System32\SensorsNativeApi.V2.dll
2016-03-29 08:07:14 31232 ----a-w- C:\WINDOWS\System32\wsdchngr.dll
2016-03-29 08:07:09 34816 ----a-w- C:\WINDOWS\System32\dmenterprisediagnostics.dll
2016-03-29 08:06:14 12800 ----a-w- C:\WINDOWS\System32\oleacchooks.dll
2016-03-29 08:06:04 45568 ----a-w- C:\WINDOWS\System32\atmlib.dll
2016-03-29 08:05:52 38912 ----a-w- C:\WINDOWS\apppatch\apppatch64\AcWinRT.dll
2016-03-29 08:02:38 118272 ----a-w- C:\WINDOWS\System32\fontsub.dll
2016-03-29 08:01:15 541304 ----a-w- C:\WINDOWS\SysWow64\fontdrvhost.exe
2016-03-29 08:00:51 69632 ----a-w- C:\WINDOWS\System32\fveskybackup.dll
2016-03-29 08:00:40 28672 ----a-w- C:\WINDOWS\System32\mapsupdatetask.dll
2016-03-29 08:00:23 76800 ----a-w- C:\WINDOWS\System32\NetCfgNotifyObjectHost.exe
2016-03-29 07:59:20 27648 ----a-w- C:\WINDOWS\System32\LicenseManagerShellext.exe
2016-03-29 07:58:17 69632 ----a-w- C:\WINDOWS\System32\wininetlui.dll
2016-03-29 07:57:59 95744 ----a-w- C:\WINDOWS\System32\samlib.dll
2016-03-29 07:57:44 58368 ----a-w- C:\WINDOWS\System32\browcli.dll
2016-03-29 07:57:42 199168 ----a-w- C:\WINDOWS\System32\InstallAgent.exe
2016-03-29 07:57:22 74752 ----a-w- C:\WINDOWS\System32\MosStorage.dll
2016-03-29 07:55:34 36352 ----a-w- C:\WINDOWS\System32\tbauth.dll
2016-03-29 07:55:29 83968 ----a-w- C:\WINDOWS\System32\drivers\serial.sys
.
============= FINISH: 15:54:21,80 ===============
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Problem z Win10 - priečinky sa počas práce samy zatváraj
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Problem z Win10 - priečinky sa počas práce samy zatváraj
# AdwCleaner v5.019 - Logfile created 10/11/2015 at 21:31:35
# Updated 08/11/2015 by Xplode
# Database : 2015-11-09.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Tomas - TOMAS-PC
# Running from : C:\Users\Tomas\Desktop\adwcleaner_5.019.exe
# Option : Scan
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ DLL ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [588 bytes] ##########
# AdwCleaner v5.114 - Logfile created 29/04/2016 at 18:48:15
# Updated 27/04/2016 by Xplode
# Database : 2016-04-27.1 [Server]
# Operating system : Windows 10 Home (X64)
# Username : Tomas - TOMAS-PC
# Running from : C:\Users\Tomas\Desktop\adwcleaner_5.114.exe
# Option : Scan
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
Folder Found : C:\Users\Tomas\AppData\Local\Uninstaller
***** [ Files ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [758 bytes] - [10/11/2015 22:33:46]
C:\AdwCleaner\AdwCleaner[S1].txt - [1418 bytes] - [10/11/2015 22:31:35]
C:\AdwCleaner\AdwCleaner[S2].txt - [666 bytes] - [10/11/2015 22:33:11]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1563 bytes] ##########
# Updated 08/11/2015 by Xplode
# Database : 2015-11-09.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Tomas - TOMAS-PC
# Running from : C:\Users\Tomas\Desktop\adwcleaner_5.019.exe
# Option : Scan
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ DLL ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [588 bytes] ##########
# AdwCleaner v5.114 - Logfile created 29/04/2016 at 18:48:15
# Updated 27/04/2016 by Xplode
# Database : 2016-04-27.1 [Server]
# Operating system : Windows 10 Home (X64)
# Username : Tomas - TOMAS-PC
# Running from : C:\Users\Tomas\Desktop\adwcleaner_5.114.exe
# Option : Scan
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
Folder Found : C:\Users\Tomas\AppData\Local\Uninstaller
***** [ Files ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [758 bytes] - [10/11/2015 22:33:46]
C:\AdwCleaner\AdwCleaner[S1].txt - [1418 bytes] - [10/11/2015 22:31:35]
C:\AdwCleaner\AdwCleaner[S2].txt - [666 bytes] - [10/11/2015 22:33:11]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1563 bytes] ##########
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Problem z Win10 - priečinky sa počas práce samy zatváraj
Neklikl jste na >cleaning<. Zkuste ještě jednou.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Problem z Win10 - priečinky sa počas práce samy zatváraj
Pardon.
# AdwCleaner v5.019 - Logfile created 10/11/2015 at 21:33:46
# Updated 08/11/2015 by Xplode
# Database : 2015-11-09.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Tomas - TOMAS-PC
# Running from : C:\Users\Tomas\Desktop\adwcleaner_5.019.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [680 bytes] ##########
# AdwCleaner v5.114 - Logfile created 30/04/2016 at 20:40:46
# Updated 27/04/2016 by Xplode
# Database : 2016-04-27.1 [Server]
# Operating system : Windows 10 Home (X64)
# Username : Tomas - TOMAS-PC
# Running from : C:\Users\Tomas\Desktop\adwcleaner_5.114.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Users\Tomas\AppData\Local\Uninstaller
***** [ Files ] *****
***** [ DLLs ] *****
***** [ WMI ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKCU\Software\Classes\Applications\updater.exe
***** [ Web browsers ] *****
*************************
:: "Tracing" keys deleted
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [1599 bytes] - [10/11/2015 22:33:46]
C:\AdwCleaner\AdwCleaner[S1].txt - [1642 bytes] - [10/11/2015 22:31:35]
C:\AdwCleaner\AdwCleaner[S2].txt - [1703 bytes] - [10/11/2015 22:33:11]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1818 bytes] ##########
# AdwCleaner v5.019 - Logfile created 10/11/2015 at 21:33:46
# Updated 08/11/2015 by Xplode
# Database : 2015-11-09.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Tomas - TOMAS-PC
# Running from : C:\Users\Tomas\Desktop\adwcleaner_5.019.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [680 bytes] ##########
# AdwCleaner v5.114 - Logfile created 30/04/2016 at 20:40:46
# Updated 27/04/2016 by Xplode
# Database : 2016-04-27.1 [Server]
# Operating system : Windows 10 Home (X64)
# Username : Tomas - TOMAS-PC
# Running from : C:\Users\Tomas\Desktop\adwcleaner_5.114.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Users\Tomas\AppData\Local\Uninstaller
***** [ Files ] *****
***** [ DLLs ] *****
***** [ WMI ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKCU\Software\Classes\Applications\updater.exe
***** [ Web browsers ] *****
*************************
:: "Tracing" keys deleted
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [1599 bytes] - [10/11/2015 22:33:46]
C:\AdwCleaner\AdwCleaner[S1].txt - [1642 bytes] - [10/11/2015 22:31:35]
C:\AdwCleaner\AdwCleaner[S2].txt - [1703 bytes] - [10/11/2015 22:33:11]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1818 bytes] ##########
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Problem z Win10 - priečinky sa počas práce samy zatváraj
Teď dejte log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Problem z Win10 - priečinky sa počas práce samy zatváraj
Nemohol som dať log z First laucheru lebo mi google ukazuje že je tam vír. Prosím o nový link na tento súbor.
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Problem z Win10 - priečinky sa počas práce samy zatváraj
On se s ním nesnáší, ale virus to není, je to odkaz na výrobce té utility. Zkuste stáhnout pomocí IE.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Problem z Win10 - priečinky sa počas práce samy zatváraj
Subor First.txt
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:14-05-2016
Ran by Tomas (administrator) on TOMAS-PC (15-05-2016 12:27:31)
Running from C:\Users\Tomas\Desktop
Loaded Profiles: Tomas (Available Profiles: Tomas & Mama & DefaultAppPool)
Platform: Windows 10 Home Version 1511 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
() C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-23] (Intel Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8484056 2015-06-12] (Realtek Semiconductor)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [5009096 2016-04-29] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7400576 2016-05-13] (AVAST Software)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58640 2016-04-27] (Raptr, Inc)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
HKU\S-1-5-21-1110698291-3134169923-3196150024-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8698584 2016-04-15] (Piriform Ltd)
HKU\S-1-5-21-1110698291-3134169923-3196150024-1000\...\RunOnce: [Uninstall C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
HKU\S-1-5-21-1110698291-3134169923-3196150024-1000\...\MountPoints2: {3a950cdc-f65c-11e5-850d-e03f49115983} - "F:\LG_PC_Programs.exe"
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-05-13] (AVAST Software)
Startup: C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - HP Deskjet 1050 J410 series.lnk [2016-02-28]
ShortcutTarget: Monitor Ink Alerts - HP Deskjet 1050 J410 series.lnk -> C:\Program Files\HP\HP Deskjet 1050 J410 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{fe2a0a42-6984-45f9-ba4c-255166833fe3}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-09-29] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2015-10-29] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-29] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2015-10-29] (Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-04-26] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\jnt2lee8.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_213.dll [2016-04-08] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll [2016-04-08] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-01-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-01-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-01-06] (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-04-26] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-03] (Adobe Systems Inc.)
FF Extension: WebFilter - The content filtering addon! - C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\jnt2lee8.default\extensions\info@cloudacl.com.xpi [2016-04-27]
FF Extension: Adblock Plus - C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\jnt2lee8.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-04-28]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-05-13]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
Chrome:
=======
CHR Profile: C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-30]
CHR Extension: (Dokumenty Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-30]
CHR Extension: (Disk Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-30]
CHR Extension: (YouTube) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-30]
CHR Extension: (Vyhledávání Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-30]
CHR Extension: (Tabulky Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-30]
CHR Extension: (Dokumenty Google offline) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-18]
CHR Extension: (Avast Online Security) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-04-14]
CHR Extension: (YouTube To MP3!) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgdohmjplligggendhbmghhmpphabopi [2016-02-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-03]
CHR Extension: (Gmail) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-30]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-05-13]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728 2015-04-26] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [243296 2016-05-13] (AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2780856 2015-10-07] (Microsoft Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-06-23] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [158496 2015-01-06] (Intel Corporation)
S3 PDF Architect 4; C:\Program Files\PDF Architect 4\ws.exe [2417376 2016-01-15] (pdfforge GmbH)
S3 PDF Architect 4 CrashHandler; C:\Program Files\PDF Architect 4\crash-handler-ws.exe [1038048 2016-01-15] (pdfforge GmbH)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [23240 2016-03-21] (Advanced Micro Devices, Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2015-04-26] ()
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-05-13] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-05-13] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [107792 2016-05-13] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-05-13] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-05-13] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1070904 2016-05-13] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [465792 2016-05-13] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [166432 2016-05-13] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [287528 2016-05-13] (AVAST Software)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [111120 2016-01-25] (Advanced Micro Devices)
S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-02-07] (Malwarebytes)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [129312 2015-01-06] (Intel Corporation)
R2 npf; C:\Windows\System32\drivers\npf.sys [47632 2010-01-27] (CACE Technologies, Inc.)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [886528 2015-10-31] (Realtek )
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
U3 idsvc; no ImagePath
S2 LiveTuner2PM; \??\C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner64.sys [X]
U3 wpcsvc; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-05-15 12:27 - 2016-05-15 12:27 - 00015152 _____ C:\Users\Tomas\Desktop\FRST.txt
2016-05-15 12:27 - 2016-05-15 12:27 - 00000000 ____D C:\FRST
2016-05-15 12:26 - 2016-05-15 12:27 - 02382336 _____ (Farbar) C:\Users\Tomas\Desktop\FRST64.exe
2016-05-15 12:25 - 2016-05-15 12:25 - 00029696 _____ C:\Users\Tomas\AppData\Local\MSGBOX.EXE
2016-05-15 12:25 - 2016-05-15 12:25 - 00015327 _____ C:\Users\Tomas\Desktop\LM.bat
2016-05-15 12:24 - 2016-05-15 12:25 - 00112640 _____ (forum.viry.cz) C:\Users\Tomas\Desktop\FRSTLauncher.exe
2016-05-14 22:11 - 2016-05-14 22:11 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\com.adobe.amp
2016-05-13 17:05 - 2016-05-13 17:05 - 00003606 _____ C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-Tomas-PC-Tomas
2016-05-13 16:22 - 2016-05-14 22:14 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2016-05-13 16:21 - 2016-05-13 16:21 - 00001120 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS5 (64 Bit).lnk
2016-05-13 16:21 - 2016-05-13 16:21 - 00000000 ____D C:\Program Files\Adobe
2016-05-13 16:20 - 2016-05-13 16:21 - 00000000 ____D C:\Program Files\Common Files\Adobe
2016-05-13 16:20 - 2016-05-13 16:20 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS5.lnk
2016-05-13 16:20 - 2016-05-13 16:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
2016-05-13 16:20 - 2016-05-13 16:20 - 00000000 ____D C:\Program Files (x86)\Adobe Media Player
2016-05-13 16:18 - 2016-05-13 16:18 - 00001070 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
2016-05-13 16:18 - 2016-05-13 16:18 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2016-05-13 16:18 - 2016-05-13 16:18 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2016-05-13 16:12 - 2016-05-13 16:13 - 00000000 ____D C:\Users\Tomas\Downloads\Photoshop_12_LS1
2016-05-13 16:03 - 2016-05-13 16:08 - 1027080672 _____ C:\Users\Tomas\Downloads\Photoshop_12_LS1.zip
2016-05-13 14:27 - 2016-05-13 14:27 - 00000844 _____ C:\Users\Tomas\AppData\Local\recently-used.xbel
2016-05-13 14:06 - 2016-05-13 14:06 - 00398152 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2016-05-13 14:06 - 2016-05-13 14:06 - 00052184 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2016-05-13 09:35 - 2016-05-13 09:35 - 00000000 _____ C:\Users\Tomas\Desktop\18-19.txt
2016-05-11 15:28 - 2016-04-23 07:26 - 00707608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2016-05-11 15:28 - 2016-04-23 07:24 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-05-11 15:28 - 2016-04-23 07:22 - 01161120 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-05-11 15:28 - 2016-04-23 07:01 - 00619296 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2016-05-11 15:28 - 2016-04-23 07:01 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2016-05-11 15:28 - 2016-04-23 07:00 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-05-11 15:28 - 2016-04-23 07:00 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-05-11 15:28 - 2016-04-23 06:30 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-05-11 15:28 - 2016-04-23 06:28 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-05-11 15:28 - 2016-04-23 06:21 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-05-11 15:28 - 2016-04-23 06:19 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-05-11 15:28 - 2016-04-23 06:19 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-05-11 15:28 - 2016-04-23 06:18 - 24604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-05-11 15:28 - 2016-04-23 06:18 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-05-11 15:28 - 2016-04-23 06:18 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-05-11 15:28 - 2016-04-23 06:15 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-05-11 15:28 - 2016-04-23 06:06 - 06974464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-05-11 15:28 - 2016-04-23 05:45 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-05-11 15:27 - 2016-05-06 06:53 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys
2016-05-11 15:27 - 2016-05-06 06:05 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-05-11 15:27 - 2016-05-06 06:03 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-05-11 15:27 - 2016-05-06 05:53 - 00351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-05-11 15:27 - 2016-05-06 05:49 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-05-11 15:27 - 2016-05-06 05:44 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-05-11 15:27 - 2016-05-06 05:43 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-05-11 15:27 - 2016-05-06 05:23 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-05-11 15:27 - 2016-04-30 08:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-05-11 15:27 - 2016-04-30 08:31 - 03591168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-05-11 15:27 - 2016-04-23 08:12 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-05-11 15:27 - 2016-04-23 08:12 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-05-11 15:27 - 2016-04-23 08:12 - 00713920 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-05-11 15:27 - 2016-04-23 08:12 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-05-11 15:27 - 2016-04-23 08:12 - 00294592 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-05-11 15:27 - 2016-04-23 08:12 - 00190144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-05-11 15:27 - 2016-04-23 08:12 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-05-11 15:27 - 2016-04-23 08:12 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-05-11 15:27 - 2016-04-23 07:28 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-05-11 15:27 - 2016-04-23 07:28 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-05-11 15:27 - 2016-04-23 07:24 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-05-11 15:27 - 2016-04-23 07:24 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-05-11 15:27 - 2016-04-23 07:24 - 01819208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-05-11 15:27 - 2016-04-23 07:24 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-05-11 15:27 - 2016-04-23 07:24 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-05-11 15:27 - 2016-04-23 07:24 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-05-11 15:27 - 2016-04-23 07:18 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-05-11 15:27 - 2016-04-23 07:13 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-05-11 15:27 - 2016-04-23 07:13 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2016-05-11 15:27 - 2016-04-23 07:13 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-05-11 15:27 - 2016-04-23 07:12 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-05-11 15:27 - 2016-04-23 07:12 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-05-11 15:27 - 2016-04-23 07:12 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-05-11 15:27 - 2016-04-23 07:11 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-05-11 15:27 - 2016-04-23 07:11 - 00696672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-05-11 15:27 - 2016-04-23 07:11 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-05-11 15:27 - 2016-04-23 07:11 - 00390496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-05-11 15:27 - 2016-04-23 07:11 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-05-11 15:27 - 2016-04-23 07:11 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-05-11 15:27 - 2016-04-23 07:10 - 03673424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-05-11 15:27 - 2016-04-23 07:10 - 02919832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-05-11 15:27 - 2016-04-23 07:10 - 00330072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-05-11 15:27 - 2016-04-23 07:09 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-05-11 15:27 - 2016-04-23 07:09 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-05-11 15:27 - 2016-04-23 07:09 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-05-11 15:27 - 2016-04-23 07:09 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-05-11 15:27 - 2016-04-23 07:09 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2016-05-11 15:27 - 2016-04-23 07:09 - 00565600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-05-11 15:27 - 2016-04-23 07:09 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-05-11 15:27 - 2016-04-23 07:09 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-05-11 15:27 - 2016-04-23 07:09 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-05-11 15:27 - 2016-04-23 07:08 - 06605504 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-05-11 15:27 - 2016-04-23 07:08 - 04515256 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-05-11 15:27 - 2016-04-23 07:08 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-05-11 15:27 - 2016-04-23 07:07 - 01848072 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-05-11 15:27 - 2016-04-23 07:07 - 01536088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2016-05-11 15:27 - 2016-04-23 07:07 - 00204048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2016-05-11 15:27 - 2016-04-23 07:07 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2016-05-11 15:27 - 2016-04-23 07:06 - 00291360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2016-05-11 15:27 - 2016-04-23 07:02 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-05-11 15:27 - 2016-04-23 07:01 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-05-11 15:27 - 2016-04-23 07:01 - 00650304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-05-11 15:27 - 2016-04-23 07:01 - 00577368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-05-11 15:27 - 2016-04-23 07:01 - 00522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-05-11 15:27 - 2016-04-23 07:01 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-05-11 15:27 - 2016-04-23 07:01 - 00217440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-05-11 15:27 - 2016-04-23 07:00 - 01594920 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-05-11 15:27 - 2016-04-23 07:00 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-05-11 15:27 - 2016-04-23 07:00 - 01372304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-05-11 15:27 - 2016-04-23 07:00 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-05-11 15:27 - 2016-04-23 07:00 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-05-11 15:27 - 2016-04-23 07:00 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2016-05-11 15:27 - 2016-04-23 07:00 - 00058208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll
2016-05-11 15:27 - 2016-04-23 06:56 - 00534872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-05-11 15:27 - 2016-04-23 06:39 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-05-11 15:27 - 2016-04-23 06:35 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-05-11 15:27 - 2016-04-23 06:34 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-05-11 15:27 - 2016-04-23 06:34 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2016-05-11 15:27 - 2016-04-23 06:34 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-05-11 15:27 - 2016-04-23 06:33 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-05-11 15:27 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-05-11 15:27 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2016-05-11 15:27 - 2016-04-23 06:33 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-05-11 15:27 - 2016-04-23 06:32 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-05-11 15:27 - 2016-04-23 06:32 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-05-11 15:27 - 2016-04-23 06:32 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-05-11 15:27 - 2016-04-23 06:31 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-05-11 15:27 - 2016-04-23 06:31 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-05-11 15:27 - 2016-04-23 06:30 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-05-11 15:27 - 2016-04-23 06:30 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-05-11 15:27 - 2016-04-23 06:29 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-05-11 15:27 - 2016-04-23 06:29 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-05-11 15:27 - 2016-04-23 06:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys
2016-05-11 15:27 - 2016-04-23 06:29 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-05-11 15:27 - 2016-04-23 06:29 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-05-11 15:27 - 2016-04-23 06:29 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll
2016-05-11 15:27 - 2016-04-23 06:29 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe
2016-05-11 15:27 - 2016-04-23 06:29 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2016-05-11 15:27 - 2016-04-23 06:28 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-05-11 15:27 - 2016-04-23 06:28 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-05-11 15:27 - 2016-04-23 06:28 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-05-11 15:27 - 2016-04-23 06:28 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-05-11 15:27 - 2016-04-23 06:28 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2016-05-11 15:27 - 2016-04-23 06:27 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-05-11 15:27 - 2016-04-23 06:27 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2016-05-11 15:27 - 2016-04-23 06:26 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-05-11 15:27 - 2016-04-23 06:26 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2016-05-11 15:27 - 2016-04-23 06:26 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-05-11 15:27 - 2016-04-23 06:25 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-05-11 15:27 - 2016-04-23 06:25 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-05-11 15:27 - 2016-04-23 06:25 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-05-11 15:27 - 2016-04-23 06:25 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-05-11 15:27 - 2016-04-23 06:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-05-11 15:27 - 2016-04-23 06:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-05-11 15:27 - 2016-04-23 06:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-05-11 15:27 - 2016-04-23 06:24 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-05-11 15:27 - 2016-04-23 06:24 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-05-11 15:27 - 2016-04-23 06:24 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2016-05-11 15:27 - 2016-04-23 06:24 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2016-05-11 15:27 - 2016-04-23 06:24 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2016-05-11 15:27 - 2016-04-23 06:23 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-05-11 15:27 - 2016-04-23 06:23 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-05-11 15:27 - 2016-04-23 06:23 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-05-11 15:27 - 2016-04-23 06:23 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll
2016-05-11 15:27 - 2016-04-23 06:23 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2016-05-11 15:27 - 2016-04-23 06:22 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-05-11 15:27 - 2016-04-23 06:22 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-05-11 15:27 - 2016-04-23 06:22 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-05-11 15:27 - 2016-04-23 06:21 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2016-05-11 15:27 - 2016-04-23 06:19 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-05-11 15:27 - 2016-04-23 06:19 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-05-11 15:27 - 2016-04-23 06:19 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-05-11 15:27 - 2016-04-23 06:19 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlansec.dll
2016-05-11 15:27 - 2016-04-23 06:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BrowserSettingSync.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00804352 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-05-11 15:27 - 2016-04-23 06:18 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-05-11 15:27 - 2016-04-23 06:17 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-05-11 15:27 - 2016-04-23 06:17 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-05-11 15:27 - 2016-04-23 06:17 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-05-11 15:27 - 2016-04-23 06:17 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2016-05-11 15:27 - 2016-04-23 06:16 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-05-11 15:27 - 2016-04-23 06:16 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-05-11 15:27 - 2016-04-23 06:16 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-05-11 15:27 - 2016-04-23 06:15 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-05-11 15:27 - 2016-04-23 06:15 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-05-11 15:27 - 2016-04-23 06:15 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-05-11 15:27 - 2016-04-23 06:15 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-05-11 15:27 - 2016-04-23 06:15 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-05-11 15:27 - 2016-04-23 06:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 13383168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-05-11 15:27 - 2016-04-23 06:13 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-05-11 15:27 - 2016-04-23 06:13 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-05-11 15:27 - 2016-04-23 06:13 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-05-11 15:27 - 2016-04-23 06:13 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-05-11 15:27 - 2016-04-23 06:13 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-05-11 15:27 - 2016-04-23 06:12 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-05-11 15:27 - 2016-04-23 06:10 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-05-11 15:27 - 2016-04-23 06:10 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-05-11 15:27 - 2016-04-23 06:09 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-05-11 15:27 - 2016-04-23 06:09 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-05-11 15:27 - 2016-04-23 06:08 - 05324288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-05-11 15:27 - 2016-04-23 06:08 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-05-11 15:27 - 2016-04-23 06:07 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-05-11 15:27 - 2016-04-23 06:07 - 02598912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-05-11 15:27 - 2016-04-23 06:07 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-05-11 15:27 - 2016-04-23 06:07 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 05502976 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2016-05-11 15:27 - 2016-04-23 06:04 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-05-11 15:27 - 2016-04-23 06:04 - 01731072 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-05-11 15:27 - 2016-04-23 06:03 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-05-11 15:27 - 2016-04-23 06:03 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-05-11 15:27 - 2016-04-23 06:03 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-05-11 15:27 - 2016-04-23 06:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-05-11 15:27 - 2016-04-23 06:03 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-05-11 15:27 - 2016-04-23 06:03 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-05-11 15:27 - 2016-04-23 06:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-05-11 15:27 - 2016-04-23 06:02 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-05-11 15:27 - 2016-04-23 06:02 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-05-11 15:27 - 2016-04-23 06:01 - 04775424 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-05-11 15:27 - 2016-04-23 06:00 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-05-11 15:27 - 2016-04-23 06:00 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-05-11 15:27 - 2016-04-23 04:10 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-05-11 15:27 - 2016-04-23 04:10 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2016-05-11 15:27 - 2016-04-19 00:30 - 00002186 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml
2016-05-05 19:55 - 2016-05-05 19:56 - 00000000 ___RD C:\Users\Tomas\Documents\Casti_poviedok
2016-05-04 13:02 - 2016-05-04 19:48 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-05-03 19:15 - 2016-05-03 19:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2016-05-03 19:15 - 2016-05-03 19:15 - 00000000 ____D C:\Program Files\7-Zip
2016-05-03 17:09 - 2016-05-03 17:09 - 01371668 _____ (Igor Pavlov) C:\Users\Tomas\Downloads\7z1514-x64.exe
2016-05-03 17:09 - 2016-05-03 17:09 - 01098961 _____ (Igor Pavlov) C:\Users\Tomas\Downloads\7z1514.exe
2016-05-02 20:56 - 2016-05-11 21:41 - 00000000 ____D C:\Users\Tomas\Downloads\Nový priečinok2
2016-05-02 20:56 - 2016-05-02 20:56 - 00000000 ___RD C:\Users\Tomas\Downloads\Disk_2
2016-04-30 20:04 - 2016-04-30 20:04 - 00000000 _____ C:\Users\Tomas\Desktop\210.txt
2016-04-29 21:49 - 2016-04-29 21:49 - 00458472 _____ C:\WINDOWS\system32\amdmiracast.dll
2016-04-29 21:49 - 2016-04-29 21:49 - 00141792 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2016-04-29 21:49 - 2016-04-29 21:49 - 00128384 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2016-04-29 21:49 - 2016-04-29 21:49 - 00110880 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2016-04-29 21:49 - 2016-04-29 21:49 - 00102616 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2016-04-29 21:49 - 2016-04-29 21:49 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 09588416 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 08585696 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 07394016 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 01248000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 00133528 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 00120656 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 00102616 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2016-04-29 21:47 - 2016-04-29 21:47 - 08844232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2016-04-29 21:45 - 2016-04-29 21:45 - 00296648 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys
2016-04-29 21:36 - 2016-04-29 21:36 - 08978944 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdvlk64.dll
2016-04-29 21:32 - 2016-04-29 21:32 - 48211968 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2016-04-29 21:32 - 2016-04-29 21:32 - 06984704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdvlk32.dll
2016-04-29 21:32 - 2016-04-29 21:32 - 00235008 _____ C:\WINDOWS\system32\clinfo.exe
2016-04-29 21:31 - 2016-04-29 21:31 - 40126976 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2016-04-29 21:30 - 2016-04-29 21:30 - 00065024 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2016-04-29 21:30 - 2016-04-29 21:30 - 00059392 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2016-04-29 21:28 - 2016-04-29 21:28 - 26887168 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2016-04-29 21:28 - 2016-04-29 21:28 - 21730304 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll
2016-04-29 21:07 - 2016-04-29 21:07 - 00701440 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2016-04-29 21:07 - 2016-04-29 21:07 - 00580096 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2016-04-29 21:07 - 2016-04-29 21:07 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2016-04-29 21:07 - 2016-04-29 21:07 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2016-04-29 21:06 - 2016-04-29 21:06 - 30380032 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2016-04-29 21:06 - 2016-04-29 21:06 - 06884864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2016-04-29 21:06 - 2016-04-29 21:06 - 00134656 _____ C:\WINDOWS\system32\amdhdl64.dll
2016-04-29 21:06 - 2016-04-29 21:06 - 00123392 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll
2016-04-29 21:02 - 2016-04-29 21:02 - 05398016 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll
2016-04-29 21:02 - 2016-04-29 21:02 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2016-04-29 21:02 - 2016-04-29 21:02 - 00039424 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2016-04-29 21:00 - 2016-04-29 21:00 - 25070080 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2016-04-29 21:00 - 2016-04-29 21:00 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2016-04-29 20:59 - 2016-04-29 20:59 - 00097280 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2016-04-29 20:59 - 2016-04-29 20:59 - 00089600 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2016-04-29 20:58 - 2016-04-29 20:58 - 08510464 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2016-04-29 20:58 - 2016-04-29 20:58 - 00698776 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2016-04-29 20:58 - 2016-04-29 20:58 - 00698776 _____ C:\WINDOWS\system32\atiapfxx.blb
2016-04-29 20:57 - 2016-04-29 20:57 - 15711744 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2016-04-29 20:57 - 2016-04-29 20:57 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2016-04-29 20:57 - 2016-04-29 20:57 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2016-04-29 20:57 - 2016-04-29 20:57 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2016-04-29 20:57 - 2016-04-29 20:57 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2016-04-29 20:57 - 2016-04-29 20:57 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2016-04-29 20:56 - 2016-04-29 20:56 - 14302208 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2016-04-29 20:56 - 2016-04-29 20:56 - 06701056 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2016-04-29 20:55 - 2016-04-29 20:55 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2016-04-29 20:53 - 2016-04-29 20:53 - 00564736 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2016-04-29 20:53 - 2016-04-29 20:53 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2016-04-29 20:53 - 2016-04-29 20:53 - 00251392 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2016-04-29 20:53 - 2016-04-29 20:53 - 00224256 _____ C:\WINDOWS\system32\dgtrayicon.exe
2016-04-29 20:53 - 2016-04-29 20:53 - 00209920 _____ C:\WINDOWS\system32\GameManager64.dll
2016-04-29 20:53 - 2016-04-29 20:53 - 00204800 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2016-04-29 20:53 - 2016-04-29 20:53 - 00190976 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2016-04-29 20:53 - 2016-04-29 20:53 - 00189952 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2016-04-29 20:53 - 2016-04-29 20:53 - 00186368 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2016-04-29 20:53 - 2016-04-29 20:53 - 00162304 _____ C:\WINDOWS\system32\atieah64.exe
2016-04-29 20:53 - 2016-04-29 20:53 - 00145408 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2016-04-29 20:53 - 2016-04-29 20:53 - 00078336 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2016-04-29 20:50 - 2016-04-29 20:50 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2016-04-29 20:50 - 2016-04-29 20:50 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00944640 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00944640 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00157696 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00142336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00075776 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00070144 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00070144 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2016-04-29 20:48 - 2016-04-29 20:48 - 00195072 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2016-04-29 20:48 - 2016-04-29 20:48 - 00174592 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll
2016-04-29 16:44 - 2016-04-29 16:44 - 00002856 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2016-04-29 16:44 - 2016-04-29 16:44 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-04-29 16:44 - 2016-04-29 16:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-04-29 16:44 - 2016-04-29 16:44 - 00000000 ____D C:\Program Files\CCleaner
2016-04-29 16:40 - 2016-04-29 16:40 - 00001859 _____ C:\Users\Tomas\Desktop\PDF Architect 4.lnk
2016-04-29 16:36 - 2016-04-29 16:36 - 00000877 _____ C:\Users\Public\Desktop\PDFCreator.lnk
2016-04-29 16:36 - 2016-04-29 16:36 - 00000000 ____D C:\Users\Tomas\Documents\PDF Architect
2016-04-29 16:36 - 2016-04-29 16:36 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\PDF Architect 4
2016-04-29 16:36 - 2016-04-29 16:36 - 00000000 ____D C:\Users\Tomas\AppData\Local\PDFCreator
2016-04-29 16:36 - 2016-04-29 16:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
2016-04-29 16:36 - 2016-04-29 16:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 4
2016-04-29 16:36 - 2016-04-29 16:36 - 00000000 ____D C:\Program Files\PDF Architect 4
2016-04-29 16:33 - 2016-04-29 16:36 - 00120072 _____ (pdfforge GmbH) C:\WINDOWS\system32\pdfcmon.dll
2016-04-29 16:33 - 2016-04-29 16:33 - 00000000 ____D C:\ProgramData\PDF Architect 4
2016-04-29 16:29 - 2016-04-29 16:29 - 00000000 ____D C:\Users\Tomas\AppData\Local\pdfforge
2016-04-29 16:15 - 2016-04-29 16:20 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\BitComet
2016-04-25 18:08 - 2016-04-25 18:08 - 00000000 ___SD C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Battle for Wesnoth 1.12.5
2016-04-25 18:07 - 2016-05-15 00:13 - 00000000 ____D C:\Users\Tomas\AppData\Local\Battle for Wesnoth 1.12.5
2016-04-22 19:23 - 2016-04-22 19:23 - 00000999 _____ C:\Users\Tomas\Desktop\HD Tune.lnk
2016-04-22 19:23 - 2016-04-22 19:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune
2016-04-22 19:23 - 2016-04-22 19:23 - 00000000 ____D C:\Program Files (x86)\HD Tune
2016-04-18 08:48 - 2016-04-18 08:48 - 00001296 _____ C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings.lnk
2016-04-17 11:19 - 2016-05-09 14:13 - 00000000 ___RD C:\Users\Tomas\Downloads\USB
2016-04-17 11:18 - 2016-04-17 11:18 - 00000000 ___RD C:\Users\Tomas\Downloads\Knihy
2016-04-17 10:44 - 2016-04-17 10:44 - 00000000 ____D C:\Users\Tomas\AppData\Local\Remove_Empty_Directories
2016-04-17 10:43 - 2016-04-17 10:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remove Empty Directories
2016-04-17 10:43 - 2016-04-17 10:43 - 00000000 ____D C:\Program Files (x86)\Remove Empty Directories
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-05-15 12:23 - 2015-12-30 14:40 - 00000958 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-05-15 12:15 - 2015-12-01 22:24 - 01010096 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-05-15 12:15 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-05-15 12:09 - 2015-12-01 22:34 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-05-15 11:17 - 2015-10-30 08:28 - 00786432 ___SH C:\WINDOWS\system32\config\BBI
2016-05-15 11:02 - 2015-12-30 14:40 - 00000962 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-05-15 10:03 - 2015-12-01 22:37 - 00000000 ____D C:\Users\Tomas\AppData\Local\Packages
2016-05-15 09:31 - 2015-12-30 14:38 - 00004198 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{F426DECD-298E-4959-8964-B806C280F5FB}
2016-05-15 09:17 - 2015-04-28 14:32 - 00004280 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2016-05-14 23:33 - 2015-05-01 14:08 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\vlc
2016-05-14 22:11 - 2015-12-01 22:24 - 00000000 ____D C:\Users\Tomas
2016-05-14 16:04 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-05-14 16:02 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-05-14 15:56 - 2015-04-29 13:14 - 00000000 ____D C:\ProgramData\Adobe
2016-05-14 15:53 - 2016-04-04 07:06 - 04813456 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-05-13 18:27 - 2016-04-11 19:21 - 00000000 ____D C:\Users\Tomas\Desktop\Nový priečinok
2016-05-13 17:07 - 2015-04-29 13:14 - 00000000 ____D C:\Users\Tomas\AppData\Local\Adobe
2016-05-13 17:05 - 2015-04-26 19:45 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Adobe
2016-05-13 16:38 - 2015-04-29 13:15 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-05-13 14:08 - 2016-03-24 15:59 - 00004040 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1458827961
2016-05-13 14:08 - 2016-03-24 15:59 - 00001082 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-05-13 14:06 - 2016-03-24 15:59 - 00037144 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2016-05-13 14:06 - 2015-04-28 14:32 - 00465792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2016-05-13 14:06 - 2015-04-28 14:32 - 00287528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2016-05-13 14:06 - 2015-04-28 14:32 - 00166432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2016-05-13 14:06 - 2015-04-28 14:31 - 01070904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2016-05-13 14:06 - 2015-04-28 14:31 - 00107792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2016-05-13 14:06 - 2015-04-28 14:31 - 00103064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2016-05-13 14:06 - 2015-04-28 14:31 - 00074544 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2016-05-13 14:06 - 2015-04-28 14:31 - 00037656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2016-05-13 14:06 - 2015-04-26 17:07 - 00000000 ____D C:\Users\Tomas\AppData\Local\VirtualStore
2016-05-13 10:03 - 2015-12-30 14:40 - 00002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-05-13 10:03 - 2015-12-30 14:40 - 00002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-05-13 09:23 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-05-12 23:23 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-05-12 08:36 - 2015-12-01 22:37 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-05-11 23:20 - 2015-10-30 20:02 - 00000000 ____D C:\Program Files\Windows Journal
2016-05-11 23:20 - 2015-10-30 09:24 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-05-11 23:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-05-11 23:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-05-11 23:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Provisioning
2016-05-11 23:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-05-11 21:57 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-05-11 21:57 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-05-11 19:48 - 2015-04-26 18:18 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-05-11 19:43 - 2015-04-26 18:18 - 139319312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-05-11 10:57 - 2015-12-30 14:40 - 00004020 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-05-11 10:57 - 2015-12-30 14:40 - 00003788 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-05-10 15:48 - 2015-04-29 13:15 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2016-05-10 15:48 - 2015-04-29 13:15 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-05-07 22:43 - 2015-05-01 14:08 - 00001143 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-05-07 07:48 - 2015-08-30 22:28 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Raptr
2016-05-07 07:47 - 2016-04-03 13:18 - 00002096 _____ C:\Users\Public\Desktop\Raptr.lnk
2016-05-07 07:47 - 2016-04-03 13:17 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2016-05-07 07:47 - 2015-12-04 14:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2016-05-07 07:47 - 2015-05-12 09:34 - 00000000 ____D C:\Program Files (x86)\AMD
2016-05-07 07:46 - 2015-12-01 22:21 - 00000000 ____D C:\Program Files\AMD
2016-05-07 07:44 - 2015-04-26 17:16 - 00000000 ____D C:\AMD
2016-05-04 19:48 - 2015-04-26 17:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-05-03 16:21 - 2015-12-02 15:38 - 00000000 ____D C:\Users\Mama\AppData\Local\Packages
2016-04-29 21:48 - 2015-10-21 03:10 - 11631488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2016-04-29 21:48 - 2015-10-21 03:10 - 01519920 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2016-04-29 21:48 - 2015-10-21 03:10 - 00152568 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2016-04-29 21:47 - 2015-10-21 03:10 - 09526616 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2016-04-29 21:42 - 2015-10-21 03:11 - 26345984 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2016-04-29 21:03 - 2016-04-01 00:38 - 00865280 _____ (AMD) C:\WINDOWS\system32\coinst_16.15.dll
2016-04-29 20:49 - 2016-02-03 17:11 - 01276416 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2016-04-29 20:49 - 2015-10-21 03:11 - 00676864 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2016-04-29 18:48 - 2015-11-10 22:31 - 00000000 ____D C:\AdwCleaner
2016-04-29 18:24 - 2015-12-01 22:40 - 00002371 _____ C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-04-29 18:24 - 2015-04-26 19:50 - 00000000 ___RD C:\Users\Tomas\OneDrive
2016-04-29 17:00 - 2015-04-28 14:04 - 00000000 ____D C:\Program Files (x86)\Ashampoo
2016-04-29 16:58 - 2015-04-28 14:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2016-04-29 16:46 - 2015-04-27 22:00 - 00000000 ____D C:\Program Files\PDFCreator
2016-04-29 16:25 - 2015-05-11 19:12 - 00000000 ____D C:\Users\Tomas\AppData\Local\0ad
2016-04-29 15:51 - 2015-11-10 00:35 - 00000000 ____D C:\rsit
2016-04-29 15:50 - 2015-11-10 00:35 - 00000000 ____D C:\Program Files\trend micro
2016-04-25 18:08 - 2015-04-28 21:11 - 00000000 ____D C:\Users\Tomas\Documents\My Games
2016-04-25 15:44 - 2015-05-24 23:34 - 00000000 ____D C:\Program Files\Recuva
2016-04-24 11:27 - 2015-12-02 15:41 - 00002368 _____ C:\Users\Mama\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-04-24 11:27 - 2015-12-02 15:41 - 00000000 ___RD C:\Users\Mama\OneDrive
2016-04-23 22:18 - 2015-12-01 22:30 - 00000000 ____D C:\WINDOWS\Minidump
2016-04-22 09:57 - 2010-11-21 05:27 - 00453288 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-04-19 16:47 - 2016-02-26 20:51 - 00000000 ____D C:\Nový priečinok
2016-04-16 08:12 - 2016-04-12 18:22 - 00000000 ___RD C:\Users\Tomas\Desktop\ProjektFinal
==================== Files in the root of some directories =======
2015-09-03 15:58 - 2015-08-27 16:48 - 0444283 _____ () C:\Program Files\Common Files\WinPcapNmap.exe
2016-05-15 12:25 - 2016-05-15 12:25 - 0029696 _____ () C:\Users\Tomas\AppData\Local\MSGBOX.EXE
2016-05-13 14:27 - 2016-05-13 14:27 - 0000844 _____ () C:\Users\Tomas\AppData\Local\recently-used.xbel
2015-04-26 21:28 - 2015-04-26 21:28 - 0000057 _____ () C:\ProgramData\Ament.ini
2016-04-03 09:15 - 2016-04-03 09:15 - 0051744 _____ () C:\ProgramData\analyzeitems.txt
2015-12-01 22:21 - 2015-12-01 22:21 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-05-13 09:15
==================== End of FRST.txt ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:14-05-2016
Ran by Tomas (administrator) on TOMAS-PC (15-05-2016 12:27:31)
Running from C:\Users\Tomas\Desktop
Loaded Profiles: Tomas (Available Profiles: Tomas & Mama & DefaultAppPool)
Platform: Windows 10 Home Version 1511 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
() C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-23] (Intel Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8484056 2015-06-12] (Realtek Semiconductor)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [5009096 2016-04-29] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7400576 2016-05-13] (AVAST Software)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58640 2016-04-27] (Raptr, Inc)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
HKU\S-1-5-21-1110698291-3134169923-3196150024-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8698584 2016-04-15] (Piriform Ltd)
HKU\S-1-5-21-1110698291-3134169923-3196150024-1000\...\RunOnce: [Uninstall C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
HKU\S-1-5-21-1110698291-3134169923-3196150024-1000\...\MountPoints2: {3a950cdc-f65c-11e5-850d-e03f49115983} - "F:\LG_PC_Programs.exe"
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-05-13] (AVAST Software)
Startup: C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - HP Deskjet 1050 J410 series.lnk [2016-02-28]
ShortcutTarget: Monitor Ink Alerts - HP Deskjet 1050 J410 series.lnk -> C:\Program Files\HP\HP Deskjet 1050 J410 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{fe2a0a42-6984-45f9-ba4c-255166833fe3}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-09-29] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2015-10-29] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-29] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2015-10-29] (Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-04-26] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\jnt2lee8.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_213.dll [2016-04-08] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll [2016-04-08] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-01-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-01-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-01-06] (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-04-26] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-03] (Adobe Systems Inc.)
FF Extension: WebFilter - The content filtering addon! - C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\jnt2lee8.default\extensions\info@cloudacl.com.xpi [2016-04-27]
FF Extension: Adblock Plus - C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\jnt2lee8.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-04-28]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-05-13]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
Chrome:
=======
CHR Profile: C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-30]
CHR Extension: (Dokumenty Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-30]
CHR Extension: (Disk Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-30]
CHR Extension: (YouTube) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-30]
CHR Extension: (Vyhledávání Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-30]
CHR Extension: (Tabulky Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-30]
CHR Extension: (Dokumenty Google offline) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-18]
CHR Extension: (Avast Online Security) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-04-14]
CHR Extension: (YouTube To MP3!) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgdohmjplligggendhbmghhmpphabopi [2016-02-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-03]
CHR Extension: (Gmail) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-30]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-05-13]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728 2015-04-26] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [243296 2016-05-13] (AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2780856 2015-10-07] (Microsoft Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-06-23] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [158496 2015-01-06] (Intel Corporation)
S3 PDF Architect 4; C:\Program Files\PDF Architect 4\ws.exe [2417376 2016-01-15] (pdfforge GmbH)
S3 PDF Architect 4 CrashHandler; C:\Program Files\PDF Architect 4\crash-handler-ws.exe [1038048 2016-01-15] (pdfforge GmbH)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [23240 2016-03-21] (Advanced Micro Devices, Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2015-04-26] ()
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-05-13] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-05-13] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [107792 2016-05-13] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-05-13] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-05-13] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1070904 2016-05-13] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [465792 2016-05-13] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [166432 2016-05-13] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [287528 2016-05-13] (AVAST Software)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [111120 2016-01-25] (Advanced Micro Devices)
S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-02-07] (Malwarebytes)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [129312 2015-01-06] (Intel Corporation)
R2 npf; C:\Windows\System32\drivers\npf.sys [47632 2010-01-27] (CACE Technologies, Inc.)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [886528 2015-10-31] (Realtek )
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
U3 idsvc; no ImagePath
S2 LiveTuner2PM; \??\C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner64.sys [X]
U3 wpcsvc; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-05-15 12:27 - 2016-05-15 12:27 - 00015152 _____ C:\Users\Tomas\Desktop\FRST.txt
2016-05-15 12:27 - 2016-05-15 12:27 - 00000000 ____D C:\FRST
2016-05-15 12:26 - 2016-05-15 12:27 - 02382336 _____ (Farbar) C:\Users\Tomas\Desktop\FRST64.exe
2016-05-15 12:25 - 2016-05-15 12:25 - 00029696 _____ C:\Users\Tomas\AppData\Local\MSGBOX.EXE
2016-05-15 12:25 - 2016-05-15 12:25 - 00015327 _____ C:\Users\Tomas\Desktop\LM.bat
2016-05-15 12:24 - 2016-05-15 12:25 - 00112640 _____ (forum.viry.cz) C:\Users\Tomas\Desktop\FRSTLauncher.exe
2016-05-14 22:11 - 2016-05-14 22:11 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\com.adobe.amp
2016-05-13 17:05 - 2016-05-13 17:05 - 00003606 _____ C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-Tomas-PC-Tomas
2016-05-13 16:22 - 2016-05-14 22:14 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2016-05-13 16:21 - 2016-05-13 16:21 - 00001120 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS5 (64 Bit).lnk
2016-05-13 16:21 - 2016-05-13 16:21 - 00000000 ____D C:\Program Files\Adobe
2016-05-13 16:20 - 2016-05-13 16:21 - 00000000 ____D C:\Program Files\Common Files\Adobe
2016-05-13 16:20 - 2016-05-13 16:20 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS5.lnk
2016-05-13 16:20 - 2016-05-13 16:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
2016-05-13 16:20 - 2016-05-13 16:20 - 00000000 ____D C:\Program Files (x86)\Adobe Media Player
2016-05-13 16:18 - 2016-05-13 16:18 - 00001070 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
2016-05-13 16:18 - 2016-05-13 16:18 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2016-05-13 16:18 - 2016-05-13 16:18 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2016-05-13 16:12 - 2016-05-13 16:13 - 00000000 ____D C:\Users\Tomas\Downloads\Photoshop_12_LS1
2016-05-13 16:03 - 2016-05-13 16:08 - 1027080672 _____ C:\Users\Tomas\Downloads\Photoshop_12_LS1.zip
2016-05-13 14:27 - 2016-05-13 14:27 - 00000844 _____ C:\Users\Tomas\AppData\Local\recently-used.xbel
2016-05-13 14:06 - 2016-05-13 14:06 - 00398152 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2016-05-13 14:06 - 2016-05-13 14:06 - 00052184 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2016-05-13 09:35 - 2016-05-13 09:35 - 00000000 _____ C:\Users\Tomas\Desktop\18-19.txt
2016-05-11 15:28 - 2016-04-23 07:26 - 00707608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2016-05-11 15:28 - 2016-04-23 07:24 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-05-11 15:28 - 2016-04-23 07:22 - 01161120 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-05-11 15:28 - 2016-04-23 07:01 - 00619296 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2016-05-11 15:28 - 2016-04-23 07:01 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2016-05-11 15:28 - 2016-04-23 07:00 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-05-11 15:28 - 2016-04-23 07:00 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-05-11 15:28 - 2016-04-23 06:30 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-05-11 15:28 - 2016-04-23 06:28 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-05-11 15:28 - 2016-04-23 06:21 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-05-11 15:28 - 2016-04-23 06:19 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-05-11 15:28 - 2016-04-23 06:19 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-05-11 15:28 - 2016-04-23 06:18 - 24604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-05-11 15:28 - 2016-04-23 06:18 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-05-11 15:28 - 2016-04-23 06:18 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-05-11 15:28 - 2016-04-23 06:15 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-05-11 15:28 - 2016-04-23 06:06 - 06974464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-05-11 15:28 - 2016-04-23 05:45 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-05-11 15:27 - 2016-05-06 06:53 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys
2016-05-11 15:27 - 2016-05-06 06:05 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-05-11 15:27 - 2016-05-06 06:03 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-05-11 15:27 - 2016-05-06 05:53 - 00351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-05-11 15:27 - 2016-05-06 05:49 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-05-11 15:27 - 2016-05-06 05:44 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-05-11 15:27 - 2016-05-06 05:43 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-05-11 15:27 - 2016-05-06 05:23 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-05-11 15:27 - 2016-04-30 08:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-05-11 15:27 - 2016-04-30 08:31 - 03591168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-05-11 15:27 - 2016-04-23 08:12 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-05-11 15:27 - 2016-04-23 08:12 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-05-11 15:27 - 2016-04-23 08:12 - 00713920 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-05-11 15:27 - 2016-04-23 08:12 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-05-11 15:27 - 2016-04-23 08:12 - 00294592 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-05-11 15:27 - 2016-04-23 08:12 - 00190144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-05-11 15:27 - 2016-04-23 08:12 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-05-11 15:27 - 2016-04-23 08:12 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-05-11 15:27 - 2016-04-23 07:28 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-05-11 15:27 - 2016-04-23 07:28 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-05-11 15:27 - 2016-04-23 07:24 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-05-11 15:27 - 2016-04-23 07:24 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-05-11 15:27 - 2016-04-23 07:24 - 01819208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-05-11 15:27 - 2016-04-23 07:24 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-05-11 15:27 - 2016-04-23 07:24 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-05-11 15:27 - 2016-04-23 07:24 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-05-11 15:27 - 2016-04-23 07:18 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-05-11 15:27 - 2016-04-23 07:13 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-05-11 15:27 - 2016-04-23 07:13 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2016-05-11 15:27 - 2016-04-23 07:13 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-05-11 15:27 - 2016-04-23 07:12 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-05-11 15:27 - 2016-04-23 07:12 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-05-11 15:27 - 2016-04-23 07:12 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-05-11 15:27 - 2016-04-23 07:11 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-05-11 15:27 - 2016-04-23 07:11 - 00696672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-05-11 15:27 - 2016-04-23 07:11 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-05-11 15:27 - 2016-04-23 07:11 - 00390496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-05-11 15:27 - 2016-04-23 07:11 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-05-11 15:27 - 2016-04-23 07:11 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-05-11 15:27 - 2016-04-23 07:10 - 03673424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-05-11 15:27 - 2016-04-23 07:10 - 02919832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-05-11 15:27 - 2016-04-23 07:10 - 00330072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-05-11 15:27 - 2016-04-23 07:09 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-05-11 15:27 - 2016-04-23 07:09 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-05-11 15:27 - 2016-04-23 07:09 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-05-11 15:27 - 2016-04-23 07:09 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-05-11 15:27 - 2016-04-23 07:09 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2016-05-11 15:27 - 2016-04-23 07:09 - 00565600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-05-11 15:27 - 2016-04-23 07:09 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-05-11 15:27 - 2016-04-23 07:09 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-05-11 15:27 - 2016-04-23 07:09 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-05-11 15:27 - 2016-04-23 07:08 - 06605504 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-05-11 15:27 - 2016-04-23 07:08 - 04515256 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-05-11 15:27 - 2016-04-23 07:08 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-05-11 15:27 - 2016-04-23 07:07 - 01848072 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-05-11 15:27 - 2016-04-23 07:07 - 01536088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2016-05-11 15:27 - 2016-04-23 07:07 - 00204048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2016-05-11 15:27 - 2016-04-23 07:07 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2016-05-11 15:27 - 2016-04-23 07:06 - 00291360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2016-05-11 15:27 - 2016-04-23 07:02 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-05-11 15:27 - 2016-04-23 07:01 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-05-11 15:27 - 2016-04-23 07:01 - 00650304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-05-11 15:27 - 2016-04-23 07:01 - 00577368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-05-11 15:27 - 2016-04-23 07:01 - 00522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-05-11 15:27 - 2016-04-23 07:01 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-05-11 15:27 - 2016-04-23 07:01 - 00217440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-05-11 15:27 - 2016-04-23 07:00 - 01594920 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-05-11 15:27 - 2016-04-23 07:00 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-05-11 15:27 - 2016-04-23 07:00 - 01372304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-05-11 15:27 - 2016-04-23 07:00 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-05-11 15:27 - 2016-04-23 07:00 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-05-11 15:27 - 2016-04-23 07:00 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2016-05-11 15:27 - 2016-04-23 07:00 - 00058208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll
2016-05-11 15:27 - 2016-04-23 06:56 - 00534872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-05-11 15:27 - 2016-04-23 06:39 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-05-11 15:27 - 2016-04-23 06:35 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-05-11 15:27 - 2016-04-23 06:34 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-05-11 15:27 - 2016-04-23 06:34 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2016-05-11 15:27 - 2016-04-23 06:34 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-05-11 15:27 - 2016-04-23 06:33 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-05-11 15:27 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-05-11 15:27 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2016-05-11 15:27 - 2016-04-23 06:33 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-05-11 15:27 - 2016-04-23 06:32 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-05-11 15:27 - 2016-04-23 06:32 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-05-11 15:27 - 2016-04-23 06:32 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-05-11 15:27 - 2016-04-23 06:31 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-05-11 15:27 - 2016-04-23 06:31 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-05-11 15:27 - 2016-04-23 06:30 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-05-11 15:27 - 2016-04-23 06:30 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-05-11 15:27 - 2016-04-23 06:29 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-05-11 15:27 - 2016-04-23 06:29 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-05-11 15:27 - 2016-04-23 06:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys
2016-05-11 15:27 - 2016-04-23 06:29 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-05-11 15:27 - 2016-04-23 06:29 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-05-11 15:27 - 2016-04-23 06:29 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll
2016-05-11 15:27 - 2016-04-23 06:29 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe
2016-05-11 15:27 - 2016-04-23 06:29 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2016-05-11 15:27 - 2016-04-23 06:28 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-05-11 15:27 - 2016-04-23 06:28 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-05-11 15:27 - 2016-04-23 06:28 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-05-11 15:27 - 2016-04-23 06:28 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-05-11 15:27 - 2016-04-23 06:28 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2016-05-11 15:27 - 2016-04-23 06:27 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-05-11 15:27 - 2016-04-23 06:27 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2016-05-11 15:27 - 2016-04-23 06:26 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-05-11 15:27 - 2016-04-23 06:26 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2016-05-11 15:27 - 2016-04-23 06:26 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-05-11 15:27 - 2016-04-23 06:25 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-05-11 15:27 - 2016-04-23 06:25 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-05-11 15:27 - 2016-04-23 06:25 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-05-11 15:27 - 2016-04-23 06:25 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-05-11 15:27 - 2016-04-23 06:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-05-11 15:27 - 2016-04-23 06:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-05-11 15:27 - 2016-04-23 06:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-05-11 15:27 - 2016-04-23 06:24 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-05-11 15:27 - 2016-04-23 06:24 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-05-11 15:27 - 2016-04-23 06:24 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2016-05-11 15:27 - 2016-04-23 06:24 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2016-05-11 15:27 - 2016-04-23 06:24 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2016-05-11 15:27 - 2016-04-23 06:23 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-05-11 15:27 - 2016-04-23 06:23 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-05-11 15:27 - 2016-04-23 06:23 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-05-11 15:27 - 2016-04-23 06:23 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll
2016-05-11 15:27 - 2016-04-23 06:23 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2016-05-11 15:27 - 2016-04-23 06:22 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-05-11 15:27 - 2016-04-23 06:22 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-05-11 15:27 - 2016-04-23 06:22 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-05-11 15:27 - 2016-04-23 06:21 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-05-11 15:27 - 2016-04-23 06:20 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2016-05-11 15:27 - 2016-04-23 06:19 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-05-11 15:27 - 2016-04-23 06:19 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-05-11 15:27 - 2016-04-23 06:19 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-05-11 15:27 - 2016-04-23 06:19 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlansec.dll
2016-05-11 15:27 - 2016-04-23 06:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BrowserSettingSync.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00804352 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-05-11 15:27 - 2016-04-23 06:18 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-05-11 15:27 - 2016-04-23 06:18 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-05-11 15:27 - 2016-04-23 06:17 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-05-11 15:27 - 2016-04-23 06:17 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-05-11 15:27 - 2016-04-23 06:17 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-05-11 15:27 - 2016-04-23 06:17 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2016-05-11 15:27 - 2016-04-23 06:16 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-05-11 15:27 - 2016-04-23 06:16 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-05-11 15:27 - 2016-04-23 06:16 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-05-11 15:27 - 2016-04-23 06:15 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-05-11 15:27 - 2016-04-23 06:15 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-05-11 15:27 - 2016-04-23 06:15 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-05-11 15:27 - 2016-04-23 06:15 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-05-11 15:27 - 2016-04-23 06:15 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-05-11 15:27 - 2016-04-23 06:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 13383168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-05-11 15:27 - 2016-04-23 06:14 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-05-11 15:27 - 2016-04-23 06:13 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-05-11 15:27 - 2016-04-23 06:13 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-05-11 15:27 - 2016-04-23 06:13 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-05-11 15:27 - 2016-04-23 06:13 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-05-11 15:27 - 2016-04-23 06:13 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-05-11 15:27 - 2016-04-23 06:12 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-05-11 15:27 - 2016-04-23 06:10 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-05-11 15:27 - 2016-04-23 06:10 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-05-11 15:27 - 2016-04-23 06:09 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-05-11 15:27 - 2016-04-23 06:09 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-05-11 15:27 - 2016-04-23 06:08 - 05324288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-05-11 15:27 - 2016-04-23 06:08 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-05-11 15:27 - 2016-04-23 06:07 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-05-11 15:27 - 2016-04-23 06:07 - 02598912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-05-11 15:27 - 2016-04-23 06:07 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-05-11 15:27 - 2016-04-23 06:07 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 05502976 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-05-11 15:27 - 2016-04-23 06:05 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2016-05-11 15:27 - 2016-04-23 06:04 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-05-11 15:27 - 2016-04-23 06:04 - 01731072 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-05-11 15:27 - 2016-04-23 06:03 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-05-11 15:27 - 2016-04-23 06:03 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-05-11 15:27 - 2016-04-23 06:03 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-05-11 15:27 - 2016-04-23 06:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-05-11 15:27 - 2016-04-23 06:03 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-05-11 15:27 - 2016-04-23 06:03 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-05-11 15:27 - 2016-04-23 06:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-05-11 15:27 - 2016-04-23 06:02 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-05-11 15:27 - 2016-04-23 06:02 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-05-11 15:27 - 2016-04-23 06:01 - 04775424 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-05-11 15:27 - 2016-04-23 06:00 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-05-11 15:27 - 2016-04-23 06:00 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-05-11 15:27 - 2016-04-23 04:10 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-05-11 15:27 - 2016-04-23 04:10 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2016-05-11 15:27 - 2016-04-19 00:30 - 00002186 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml
2016-05-05 19:55 - 2016-05-05 19:56 - 00000000 ___RD C:\Users\Tomas\Documents\Casti_poviedok
2016-05-04 13:02 - 2016-05-04 19:48 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-05-03 19:15 - 2016-05-03 19:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2016-05-03 19:15 - 2016-05-03 19:15 - 00000000 ____D C:\Program Files\7-Zip
2016-05-03 17:09 - 2016-05-03 17:09 - 01371668 _____ (Igor Pavlov) C:\Users\Tomas\Downloads\7z1514-x64.exe
2016-05-03 17:09 - 2016-05-03 17:09 - 01098961 _____ (Igor Pavlov) C:\Users\Tomas\Downloads\7z1514.exe
2016-05-02 20:56 - 2016-05-11 21:41 - 00000000 ____D C:\Users\Tomas\Downloads\Nový priečinok2
2016-05-02 20:56 - 2016-05-02 20:56 - 00000000 ___RD C:\Users\Tomas\Downloads\Disk_2
2016-04-30 20:04 - 2016-04-30 20:04 - 00000000 _____ C:\Users\Tomas\Desktop\210.txt
2016-04-29 21:49 - 2016-04-29 21:49 - 00458472 _____ C:\WINDOWS\system32\amdmiracast.dll
2016-04-29 21:49 - 2016-04-29 21:49 - 00141792 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2016-04-29 21:49 - 2016-04-29 21:49 - 00128384 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2016-04-29 21:49 - 2016-04-29 21:49 - 00110880 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2016-04-29 21:49 - 2016-04-29 21:49 - 00102616 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2016-04-29 21:49 - 2016-04-29 21:49 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 09588416 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 08585696 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 07394016 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 01248000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 00133528 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 00120656 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 00102616 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2016-04-29 21:48 - 2016-04-29 21:48 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2016-04-29 21:47 - 2016-04-29 21:47 - 08844232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2016-04-29 21:45 - 2016-04-29 21:45 - 00296648 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys
2016-04-29 21:36 - 2016-04-29 21:36 - 08978944 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdvlk64.dll
2016-04-29 21:32 - 2016-04-29 21:32 - 48211968 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2016-04-29 21:32 - 2016-04-29 21:32 - 06984704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdvlk32.dll
2016-04-29 21:32 - 2016-04-29 21:32 - 00235008 _____ C:\WINDOWS\system32\clinfo.exe
2016-04-29 21:31 - 2016-04-29 21:31 - 40126976 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2016-04-29 21:30 - 2016-04-29 21:30 - 00065024 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2016-04-29 21:30 - 2016-04-29 21:30 - 00059392 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2016-04-29 21:28 - 2016-04-29 21:28 - 26887168 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2016-04-29 21:28 - 2016-04-29 21:28 - 21730304 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll
2016-04-29 21:07 - 2016-04-29 21:07 - 00701440 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2016-04-29 21:07 - 2016-04-29 21:07 - 00580096 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2016-04-29 21:07 - 2016-04-29 21:07 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2016-04-29 21:07 - 2016-04-29 21:07 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2016-04-29 21:06 - 2016-04-29 21:06 - 30380032 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2016-04-29 21:06 - 2016-04-29 21:06 - 06884864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2016-04-29 21:06 - 2016-04-29 21:06 - 00134656 _____ C:\WINDOWS\system32\amdhdl64.dll
2016-04-29 21:06 - 2016-04-29 21:06 - 00123392 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll
2016-04-29 21:02 - 2016-04-29 21:02 - 05398016 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll
2016-04-29 21:02 - 2016-04-29 21:02 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2016-04-29 21:02 - 2016-04-29 21:02 - 00039424 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2016-04-29 21:00 - 2016-04-29 21:00 - 25070080 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2016-04-29 21:00 - 2016-04-29 21:00 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2016-04-29 20:59 - 2016-04-29 20:59 - 00097280 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2016-04-29 20:59 - 2016-04-29 20:59 - 00089600 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2016-04-29 20:58 - 2016-04-29 20:58 - 08510464 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2016-04-29 20:58 - 2016-04-29 20:58 - 00698776 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2016-04-29 20:58 - 2016-04-29 20:58 - 00698776 _____ C:\WINDOWS\system32\atiapfxx.blb
2016-04-29 20:57 - 2016-04-29 20:57 - 15711744 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2016-04-29 20:57 - 2016-04-29 20:57 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2016-04-29 20:57 - 2016-04-29 20:57 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2016-04-29 20:57 - 2016-04-29 20:57 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2016-04-29 20:57 - 2016-04-29 20:57 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2016-04-29 20:57 - 2016-04-29 20:57 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2016-04-29 20:56 - 2016-04-29 20:56 - 14302208 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2016-04-29 20:56 - 2016-04-29 20:56 - 06701056 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2016-04-29 20:55 - 2016-04-29 20:55 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2016-04-29 20:53 - 2016-04-29 20:53 - 00564736 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2016-04-29 20:53 - 2016-04-29 20:53 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2016-04-29 20:53 - 2016-04-29 20:53 - 00251392 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2016-04-29 20:53 - 2016-04-29 20:53 - 00224256 _____ C:\WINDOWS\system32\dgtrayicon.exe
2016-04-29 20:53 - 2016-04-29 20:53 - 00209920 _____ C:\WINDOWS\system32\GameManager64.dll
2016-04-29 20:53 - 2016-04-29 20:53 - 00204800 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2016-04-29 20:53 - 2016-04-29 20:53 - 00190976 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2016-04-29 20:53 - 2016-04-29 20:53 - 00189952 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2016-04-29 20:53 - 2016-04-29 20:53 - 00186368 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2016-04-29 20:53 - 2016-04-29 20:53 - 00162304 _____ C:\WINDOWS\system32\atieah64.exe
2016-04-29 20:53 - 2016-04-29 20:53 - 00145408 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2016-04-29 20:53 - 2016-04-29 20:53 - 00078336 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2016-04-29 20:50 - 2016-04-29 20:50 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2016-04-29 20:50 - 2016-04-29 20:50 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00944640 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00944640 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00157696 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00142336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00075776 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00070144 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00070144 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2016-04-29 20:49 - 2016-04-29 20:49 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2016-04-29 20:48 - 2016-04-29 20:48 - 00195072 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2016-04-29 20:48 - 2016-04-29 20:48 - 00174592 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll
2016-04-29 16:44 - 2016-04-29 16:44 - 00002856 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2016-04-29 16:44 - 2016-04-29 16:44 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-04-29 16:44 - 2016-04-29 16:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-04-29 16:44 - 2016-04-29 16:44 - 00000000 ____D C:\Program Files\CCleaner
2016-04-29 16:40 - 2016-04-29 16:40 - 00001859 _____ C:\Users\Tomas\Desktop\PDF Architect 4.lnk
2016-04-29 16:36 - 2016-04-29 16:36 - 00000877 _____ C:\Users\Public\Desktop\PDFCreator.lnk
2016-04-29 16:36 - 2016-04-29 16:36 - 00000000 ____D C:\Users\Tomas\Documents\PDF Architect
2016-04-29 16:36 - 2016-04-29 16:36 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\PDF Architect 4
2016-04-29 16:36 - 2016-04-29 16:36 - 00000000 ____D C:\Users\Tomas\AppData\Local\PDFCreator
2016-04-29 16:36 - 2016-04-29 16:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
2016-04-29 16:36 - 2016-04-29 16:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 4
2016-04-29 16:36 - 2016-04-29 16:36 - 00000000 ____D C:\Program Files\PDF Architect 4
2016-04-29 16:33 - 2016-04-29 16:36 - 00120072 _____ (pdfforge GmbH) C:\WINDOWS\system32\pdfcmon.dll
2016-04-29 16:33 - 2016-04-29 16:33 - 00000000 ____D C:\ProgramData\PDF Architect 4
2016-04-29 16:29 - 2016-04-29 16:29 - 00000000 ____D C:\Users\Tomas\AppData\Local\pdfforge
2016-04-29 16:15 - 2016-04-29 16:20 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\BitComet
2016-04-25 18:08 - 2016-04-25 18:08 - 00000000 ___SD C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Battle for Wesnoth 1.12.5
2016-04-25 18:07 - 2016-05-15 00:13 - 00000000 ____D C:\Users\Tomas\AppData\Local\Battle for Wesnoth 1.12.5
2016-04-22 19:23 - 2016-04-22 19:23 - 00000999 _____ C:\Users\Tomas\Desktop\HD Tune.lnk
2016-04-22 19:23 - 2016-04-22 19:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune
2016-04-22 19:23 - 2016-04-22 19:23 - 00000000 ____D C:\Program Files (x86)\HD Tune
2016-04-18 08:48 - 2016-04-18 08:48 - 00001296 _____ C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings.lnk
2016-04-17 11:19 - 2016-05-09 14:13 - 00000000 ___RD C:\Users\Tomas\Downloads\USB
2016-04-17 11:18 - 2016-04-17 11:18 - 00000000 ___RD C:\Users\Tomas\Downloads\Knihy
2016-04-17 10:44 - 2016-04-17 10:44 - 00000000 ____D C:\Users\Tomas\AppData\Local\Remove_Empty_Directories
2016-04-17 10:43 - 2016-04-17 10:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remove Empty Directories
2016-04-17 10:43 - 2016-04-17 10:43 - 00000000 ____D C:\Program Files (x86)\Remove Empty Directories
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-05-15 12:23 - 2015-12-30 14:40 - 00000958 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-05-15 12:15 - 2015-12-01 22:24 - 01010096 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-05-15 12:15 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-05-15 12:09 - 2015-12-01 22:34 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-05-15 11:17 - 2015-10-30 08:28 - 00786432 ___SH C:\WINDOWS\system32\config\BBI
2016-05-15 11:02 - 2015-12-30 14:40 - 00000962 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-05-15 10:03 - 2015-12-01 22:37 - 00000000 ____D C:\Users\Tomas\AppData\Local\Packages
2016-05-15 09:31 - 2015-12-30 14:38 - 00004198 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{F426DECD-298E-4959-8964-B806C280F5FB}
2016-05-15 09:17 - 2015-04-28 14:32 - 00004280 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2016-05-14 23:33 - 2015-05-01 14:08 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\vlc
2016-05-14 22:11 - 2015-12-01 22:24 - 00000000 ____D C:\Users\Tomas
2016-05-14 16:04 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-05-14 16:02 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-05-14 15:56 - 2015-04-29 13:14 - 00000000 ____D C:\ProgramData\Adobe
2016-05-14 15:53 - 2016-04-04 07:06 - 04813456 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-05-13 18:27 - 2016-04-11 19:21 - 00000000 ____D C:\Users\Tomas\Desktop\Nový priečinok
2016-05-13 17:07 - 2015-04-29 13:14 - 00000000 ____D C:\Users\Tomas\AppData\Local\Adobe
2016-05-13 17:05 - 2015-04-26 19:45 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Adobe
2016-05-13 16:38 - 2015-04-29 13:15 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-05-13 14:08 - 2016-03-24 15:59 - 00004040 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1458827961
2016-05-13 14:08 - 2016-03-24 15:59 - 00001082 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-05-13 14:06 - 2016-03-24 15:59 - 00037144 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2016-05-13 14:06 - 2015-04-28 14:32 - 00465792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2016-05-13 14:06 - 2015-04-28 14:32 - 00287528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2016-05-13 14:06 - 2015-04-28 14:32 - 00166432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2016-05-13 14:06 - 2015-04-28 14:31 - 01070904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2016-05-13 14:06 - 2015-04-28 14:31 - 00107792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2016-05-13 14:06 - 2015-04-28 14:31 - 00103064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2016-05-13 14:06 - 2015-04-28 14:31 - 00074544 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2016-05-13 14:06 - 2015-04-28 14:31 - 00037656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2016-05-13 14:06 - 2015-04-26 17:07 - 00000000 ____D C:\Users\Tomas\AppData\Local\VirtualStore
2016-05-13 10:03 - 2015-12-30 14:40 - 00002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-05-13 10:03 - 2015-12-30 14:40 - 00002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-05-13 09:23 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-05-12 23:23 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-05-12 08:36 - 2015-12-01 22:37 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-05-11 23:20 - 2015-10-30 20:02 - 00000000 ____D C:\Program Files\Windows Journal
2016-05-11 23:20 - 2015-10-30 09:24 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-05-11 23:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-05-11 23:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-05-11 23:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Provisioning
2016-05-11 23:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-05-11 21:57 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-05-11 21:57 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-05-11 19:48 - 2015-04-26 18:18 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-05-11 19:43 - 2015-04-26 18:18 - 139319312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-05-11 10:57 - 2015-12-30 14:40 - 00004020 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-05-11 10:57 - 2015-12-30 14:40 - 00003788 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-05-10 15:48 - 2015-04-29 13:15 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2016-05-10 15:48 - 2015-04-29 13:15 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-05-07 22:43 - 2015-05-01 14:08 - 00001143 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-05-07 07:48 - 2015-08-30 22:28 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Raptr
2016-05-07 07:47 - 2016-04-03 13:18 - 00002096 _____ C:\Users\Public\Desktop\Raptr.lnk
2016-05-07 07:47 - 2016-04-03 13:17 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2016-05-07 07:47 - 2015-12-04 14:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2016-05-07 07:47 - 2015-05-12 09:34 - 00000000 ____D C:\Program Files (x86)\AMD
2016-05-07 07:46 - 2015-12-01 22:21 - 00000000 ____D C:\Program Files\AMD
2016-05-07 07:44 - 2015-04-26 17:16 - 00000000 ____D C:\AMD
2016-05-04 19:48 - 2015-04-26 17:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-05-03 16:21 - 2015-12-02 15:38 - 00000000 ____D C:\Users\Mama\AppData\Local\Packages
2016-04-29 21:48 - 2015-10-21 03:10 - 11631488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2016-04-29 21:48 - 2015-10-21 03:10 - 01519920 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2016-04-29 21:48 - 2015-10-21 03:10 - 00152568 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2016-04-29 21:47 - 2015-10-21 03:10 - 09526616 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2016-04-29 21:42 - 2015-10-21 03:11 - 26345984 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2016-04-29 21:03 - 2016-04-01 00:38 - 00865280 _____ (AMD) C:\WINDOWS\system32\coinst_16.15.dll
2016-04-29 20:49 - 2016-02-03 17:11 - 01276416 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2016-04-29 20:49 - 2015-10-21 03:11 - 00676864 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2016-04-29 18:48 - 2015-11-10 22:31 - 00000000 ____D C:\AdwCleaner
2016-04-29 18:24 - 2015-12-01 22:40 - 00002371 _____ C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-04-29 18:24 - 2015-04-26 19:50 - 00000000 ___RD C:\Users\Tomas\OneDrive
2016-04-29 17:00 - 2015-04-28 14:04 - 00000000 ____D C:\Program Files (x86)\Ashampoo
2016-04-29 16:58 - 2015-04-28 14:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2016-04-29 16:46 - 2015-04-27 22:00 - 00000000 ____D C:\Program Files\PDFCreator
2016-04-29 16:25 - 2015-05-11 19:12 - 00000000 ____D C:\Users\Tomas\AppData\Local\0ad
2016-04-29 15:51 - 2015-11-10 00:35 - 00000000 ____D C:\rsit
2016-04-29 15:50 - 2015-11-10 00:35 - 00000000 ____D C:\Program Files\trend micro
2016-04-25 18:08 - 2015-04-28 21:11 - 00000000 ____D C:\Users\Tomas\Documents\My Games
2016-04-25 15:44 - 2015-05-24 23:34 - 00000000 ____D C:\Program Files\Recuva
2016-04-24 11:27 - 2015-12-02 15:41 - 00002368 _____ C:\Users\Mama\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-04-24 11:27 - 2015-12-02 15:41 - 00000000 ___RD C:\Users\Mama\OneDrive
2016-04-23 22:18 - 2015-12-01 22:30 - 00000000 ____D C:\WINDOWS\Minidump
2016-04-22 09:57 - 2010-11-21 05:27 - 00453288 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-04-19 16:47 - 2016-02-26 20:51 - 00000000 ____D C:\Nový priečinok
2016-04-16 08:12 - 2016-04-12 18:22 - 00000000 ___RD C:\Users\Tomas\Desktop\ProjektFinal
==================== Files in the root of some directories =======
2015-09-03 15:58 - 2015-08-27 16:48 - 0444283 _____ () C:\Program Files\Common Files\WinPcapNmap.exe
2016-05-15 12:25 - 2016-05-15 12:25 - 0029696 _____ () C:\Users\Tomas\AppData\Local\MSGBOX.EXE
2016-05-13 14:27 - 2016-05-13 14:27 - 0000844 _____ () C:\Users\Tomas\AppData\Local\recently-used.xbel
2015-04-26 21:28 - 2015-04-26 21:28 - 0000057 _____ () C:\ProgramData\Ament.ini
2016-04-03 09:15 - 2016-04-03 09:15 - 0051744 _____ () C:\ProgramData\analyzeitems.txt
2015-12-01 22:21 - 2015-12-01 22:21 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-05-13 09:15
==================== End of FRST.txt ============================
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Problem z Win10 - priečinky sa počas práce samy zatváraj
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
HKU\S-1-5-21-1110698291-3134169923-3196150024-1000\...\MountPoints2: {3a950cdc-f65c-11e5-850d-e03f49115983} - "F:\LG_PC_Programs.exe"
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\ProgramData\DP45977C.lfl
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Problem z Win10 - priečinky sa počas práce samy zatváraj
Fix result of Farbar Recovery Scan Tool (x64) Version:14-05-2016
Ran by Tomas (2016-05-15 14:26:49) Run:1
Running from C:\Users\Tomas\Desktop
Loaded Profiles: Tomas (Available Profiles: Tomas & Mama & DefaultAppPool)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKU\S-1-5-21-1110698291-3134169923-3196150024-1000\...\MountPoints2: {3a950cdc-f65c-11e5-850d-e03f49115983} - "F:\LG_PC_Programs.exe"
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\ProgramData\DP45977C.lfl
End
*****************
"HKU\S-1-5-21-1110698291-3134169923-3196150024-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3a950cdc-f65c-11e5-850d-e03f49115983}" => key removed successfully
HKCR\CLSID\{3a950cdc-f65c-11e5-850d-e03f49115983} => key not found.
idsvc => service removed successfully
wpcsvc => service removed successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
C:\ProgramData\DP45977C.lfl => moved successfully
==== End of Fixlog 14:26:49 ====
Ran by Tomas (2016-05-15 14:26:49) Run:1
Running from C:\Users\Tomas\Desktop
Loaded Profiles: Tomas (Available Profiles: Tomas & Mama & DefaultAppPool)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKU\S-1-5-21-1110698291-3134169923-3196150024-1000\...\MountPoints2: {3a950cdc-f65c-11e5-850d-e03f49115983} - "F:\LG_PC_Programs.exe"
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\ProgramData\DP45977C.lfl
End
*****************
"HKU\S-1-5-21-1110698291-3134169923-3196150024-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3a950cdc-f65c-11e5-850d-e03f49115983}" => key removed successfully
HKCR\CLSID\{3a950cdc-f65c-11e5-850d-e03f49115983} => key not found.
idsvc => service removed successfully
wpcsvc => service removed successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
C:\ProgramData\DP45977C.lfl => moved successfully
==== End of Fixlog 14:26:49 ====
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Problem z Win10 - priečinky sa počas práce samy zatváraj
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?