Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Sinpa
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 29 kvě 2014 06:09

Prosím o kontrolu logu

#1 Příspěvek od Sinpa »

Prosím o kontrolu logu.
Na PC mi během práce"občas problikne okno s příkazovým řádkem (a bohužel vždy na popředí, takže to shodí to na čem zrovna dělám) + po se nemohu v outlooku připojit na email vedený v na outlook.com - furt chce heslo. Seznam a volný jde OK.

Logfile of random's system information tool 1.10 (written by random/random)
Run by sinpa at 2016-05-04 08:54:51
Microsoft Windows 10 Pro
System drive C: has 72 GB (63%) free of 114 GB
Total RAM: 16329 MB (78% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:54:51, on 04.05.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Users\sinpa\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera_crashreporter.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe
C:\Program Files\trend micro\sinpa.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.cz/?gfe_rd=cr&ei=-VW ... gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: LastPass Vault - {95D9ECF5-2A4D-4550-BE49-70D42F71296E} - C:\Program Files (x86)\LastPass\LPToolbar.dll
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O3 - Toolbar: LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKCU\..\Run: [OneDrive] "C:\Users\sinpa\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [AceStream] C:\Users\sinpa\AppData\Roaming\ACEStream\engine\ace_engine.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: Install LastPass IE RunOnce.lnk = C:\Program Files (x86)\Common Files\lpuninstall.exe
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~1\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: LastPass - file://C:\Users\sinpa\AppData\LocalLow\LastPass\context.html?cmd=lastpass
O8 - Extra context menu item: LastPass Vyplňování formulářů - file://C:\Users\sinpa\AppData\LocalLow\LastPass\context.html?cmd=fillforms
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Poslat do On&eNotu - res://C:\PROGRA~1\MICROS~1\Office16\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: LastPass - {43699cd0-e34f-11de-8a39-0800200c9a66} - C:\Program Files (x86)\LastPass\LPToolbar.dll
O9 - Extra 'Tools' menuitem: LastPass - {43699cd0-e34f-11de-8a39-0800200c9a66} - C:\Program Files (x86)\LastPass\LPToolbar.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @oem4.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\Windows\system32\ibtsiva (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\Windows\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\Windows\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: UsbClientService - Unknown owner - C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11029 bytes

======Listing Processes======







C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-2d13317c-46bf-42ed-9c08-0f3940d97f91 -SystemEventPortName:HostProcess-616aefd8-a960-4b32-af6e-c634d355d0a4 -IoCancelEventPortName:HostProcess-0521d8e1-60ac-426d-8fd6-d30b4770ac91 -NonStateChangingEventPortName:HostProcess-6e1e4232-2fef-4aca-8982-761d2a76474e -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:7ec5132c-9a96-4413-abda-b05eb5ebbad2 -DeviceGroupId:WpdFsGroup
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\ibtsiva
"C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"

C:\Windows\System32\WinLogon.exe -SpecialSession
"dwm.exe"

atieclxx
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\Explorer.EXE
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe" atlogon
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
KHALMNPR.EXE /API
"C:\Users\sinpa\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\Windows\System32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe" /AUTOHIDE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\Windows\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\CreativeMobile.NitroNationbeta_3.9.7.0_x64__ewn699wwxwmvy\Nitro Nation.exe" -ServerName:App.AppXggftashe85y05h9mxpnksc09nvmjed8s.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6868.40731.0_x64__8wekyb3d8bbwe\HxMail.exe" -ServerName:microsoft.windowslive.mail.AppX7fgs1v31b27fq9zen50wdw83aappcatm.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6868.40731.0_x64__8wekyb3d8bbwe\HxTsr.exe" -ServerName:Hx.IPC.Server
"C:\Program Files\WindowsApps\Microsoft.Office.OneNote_17.6868.57811.0_x64__8wekyb3d8bbwe\onenoteim.exe" -ServerName:microsoft.onenoteim.AppXxqb9ypsz6cs1w07e1pmjy4ww4dy9tpqr.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6868.40731.0_x64__8wekyb3d8bbwe\HxCalendarAppImm.exe" -ServerName:microsoft.windowslive.calendar.AppXg9pag83k0brz0hvt3yj6hxda2h2y7w14.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"D:\Záloha\appdata-local\JDownloader v2.0\JDownloader2.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --ran-launcher
"C:\Program Files (x86)\Opera\36.0.2130.65\opera_crashreporter.exe" --ran-launcher --crash-reporter-parent-id=7076
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=gpu-process --channel="7076.0.1551214448\1296165397" --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,14,31,60 --gpu-vendor-id=0x1002 --gpu-device-id=0x6811 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=16.150.2401.0 --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --ignored=" --type=renderer "
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.3.1597300361\1330274954"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.4.63830331\1418979082"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.5.1867551516\411943644"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.6.410536514\1702429111"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.7.1119640294\1798379851"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.8.859779315\946287087"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.9.1515624478\744888259"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.10.417944821\43470976"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.11.1039829499\1781316603"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.12.1009732576\1074251996"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.13.1332961412\476774843"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.14.101001575\1431658352"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.15.1200761575\1821545385"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.16.122154378\416032731"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.17.2130727364\1793144652"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.19.342777511\1310198384"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.20.934393540\1865988568"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.23.1108371861\67700016"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=ppapi --channel="7076.29.1465966774\511780607" --ppapi-flash-args --lang=cs --device-scale-factor=1 --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --ignored=" --type=renderer "
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.32.873233515\867003819"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.35.1833698356\1551487556"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.40.1376432671\1749150303"
"C:\Program Files (x86)\Opera\36.0.2130.65\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --enable-features=DownloadResumption --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=5308 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7076.45.140159211\1769150781"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe12_ Global\UsGthrCtrlFltPipeMssGthrPipe12 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 624 628 636 8192 632
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\sinpa\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll [2016-04-23 553024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95D9ECF5-2A4D-4550-BE49-70D42F71296E}]
LastPass Vault - C:\Program Files (x86)\LastPass\LPToolbar_x64.dll [2016-04-23 3244568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-08-26 435320]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-04-23 214080]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95D9ECF5-2A4D-4550-BE49-70D42F71296E}]
LastPass Vault - C:\Program Files (x86)\LastPass\LPToolbar.dll [2016-04-23 2386968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-08-26 366200]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - LastPass Toolbar - C:\Program Files (x86)\LastPass\LPToolbar_x64.dll [2016-04-23 3244568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - LastPass Toolbar - C:\Program Files (x86)\LastPass\LPToolbar.dll [2016-04-23 2386968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 3933496]
"StartCN"=C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [2016-04-15 5009096]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2015-08-26 3113592]
"AutoKMS"=C:\Windows\AutoKMS.exe [2016-04-23 615936]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-09-19 557768]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\sinpa\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-04-26 554176]
"AceStream"=C:\Users\sinpa\AppData\Roaming\ACEStream\engine\ace_engine.exe [2015-12-18 27000]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-04-01 596504]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Install LastPass IE RunOnce.lnk - C:\Program Files (x86)\Common Files\lpuninstall.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2015-07-02 65992]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"DSCAutomationHostEnabled"=2
"PromptOnSecureDesktop"=0
"EnableLinkedConnections"=1
"NoConnectedUser"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-05-04 08:50:58 ----D---- C:\rsit
2016-05-04 08:50:58 ----D---- C:\Program Files\trend micro
2016-05-03 07:50:42 ----D---- C:\Windows\LastGood.Tmp
2016-05-01 14:10:45 ----D---- C:\Users\sinpa\AppData\Roaming\.ACEStream
2016-05-01 14:10:24 ----D---- C:\Users\sinpa\AppData\Roaming\ACEStream
2016-04-28 01:12:56 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
2016-04-28 01:12:42 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
2016-04-28 01:12:16 ----A---- C:\Windows\system32\atiumd64.dll
2016-04-28 01:12:02 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
2016-04-28 01:11:54 ----A---- C:\Windows\system32\atiu9p64.dll
2016-04-28 01:11:48 ----A---- C:\Windows\system32\atimpc64.dll
2016-04-28 01:11:44 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
2016-04-28 01:10:52 ----A---- C:\Windows\system32\amdxc64.dll
2016-04-28 01:10:42 ----A---- C:\Windows\SYSWOW64\amdxc32.dll
2016-04-28 01:10:18 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
2016-04-28 01:10:16 ----A---- C:\Windows\system32\amdmiracast.dll
2016-04-28 01:10:12 ----A---- C:\Windows\system32\amdhcp64.dll
2016-04-28 01:09:38 ----A---- C:\Windows\system32\amdave64.dll
2016-04-28 01:09:20 ----A---- C:\Windows\SYSWOW64\amdave32.dll
2016-04-28 01:04:52 ----A---- C:\Windows\system32\mantleaxl64.dll
2016-04-28 01:04:48 ----A---- C:\Windows\SYSWOW64\mantleaxl32.dll
2016-04-28 01:04:46 ----A---- C:\Windows\system32\mantle64.dll
2016-04-28 01:04:44 ----A---- C:\Windows\SYSWOW64\mantle32.dll
2016-04-28 01:04:42 ----A---- C:\Windows\SYSWOW64\hsa-thunk.dll
2016-04-28 01:04:42 ----A---- C:\Windows\system32\hsa-thunk64.dll
2016-04-28 01:04:40 ----A---- C:\Windows\system32\GameManager64.dll
2016-04-28 01:04:38 ----A---- C:\Windows\SYSWOW64\GameManager32.dll
2016-04-28 01:04:34 ----A---- C:\Windows\system32\dgtrayicon.exe
2016-04-28 01:04:34 ----A---- C:\Windows\system32\detoured.dll
2016-04-28 01:04:32 ----A---- C:\Windows\SYSWOW64\detoured.dll
2016-04-28 01:04:26 ----A---- C:\Windows\system32\clinfo.exe
2016-04-28 01:03:08 ----A---- C:\Windows\system32\atitmm64.dll
2016-04-28 01:03:06 ----A---- C:\Windows\SYSWOW64\atisamu32.dll
2016-04-28 01:03:06 ----A---- C:\Windows\system32\atisamu64.dll
2016-04-28 01:03:00 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
2016-04-28 01:00:18 ----A---- C:\Windows\system32\amdocl64.dll
2016-04-28 00:59:46 ----A---- C:\Windows\system32\amdocl12cl64.dll
2016-04-28 00:59:22 ----A---- C:\Windows\SYSWOW64\amdocl12cl.dll
2016-04-28 00:59:00 ----A---- C:\Windows\SYSWOW64\amdocl.dll
2016-04-28 00:58:40 ----A---- C:\Windows\system32\amdmmcl6.dll
2016-04-28 00:58:38 ----A---- C:\Windows\SYSWOW64\amdmmcl.dll
2016-04-28 00:58:32 ----A---- C:\Windows\system32\amdmantle64.dll
2016-04-28 00:58:16 ----A---- C:\Windows\SYSWOW64\amdmantle32.dll
2016-04-28 00:58:08 ----A---- C:\Windows\system32\amdlvr64.dll
2016-04-28 00:58:04 ----A---- C:\Windows\SYSWOW64\amdlvr32.dll
2016-04-28 00:57:52 ----A---- C:\Windows\SYSWOW64\amdhdl32.dll
2016-04-28 00:57:52 ----A---- C:\Windows\system32\amdhdl64.dll
2016-04-28 00:57:48 ----A---- C:\Windows\SYSWOW64\amdgfxinfo32.dll
2016-04-28 00:57:48 ----A---- C:\Windows\system32\amdgfxinfo64.dll
2016-04-28 00:57:46 ----A---- C:\Windows\system32\drivers\amdacpksd.sys
2016-04-28 00:57:42 ----A---- C:\Windows\system32\OpenCL.dll
2016-04-28 00:57:40 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2016-04-28 00:56:32 ----A---- C:\Windows\system32\amdpcom64.dll
2016-04-28 00:56:30 ----A---- C:\Windows\SYSWOW64\amdhcp32.dll
2016-04-28 00:48:38 ----A---- C:\Windows\system32\atio6axx.dll
2016-04-28 00:48:36 ----A---- C:\Windows\system32\ATIODE.exe
2016-04-28 00:48:36 ----A---- C:\Windows\system32\ATIODCLI.exe
2016-04-28 00:48:36 ----A---- C:\Windows\system32\aticaldd64.dll
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\atieah32.exe
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\atiadlxx.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atimuixx.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atiglpxx.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atig6txx.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atig6pxx.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atiesrxx.exe
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atieclxx.exe
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atieah64.exe
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atidemgy.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\aticalrt64.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\aticalcl64.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atiapfxx.exe
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atiadlxx.dll
2016-04-28 00:48:32 ----A---- C:\Windows\SYSWOW64\amdvlk32.dll
2016-04-28 00:48:32 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2016-04-28 00:48:32 ----A---- C:\Windows\system32\amdvlk64.dll
2016-04-26 18:59:55 ----D---- C:\Windows\PCHEALTH
2016-04-24 19:31:57 ----D---- C:\ProgramData\AMD
2016-04-24 13:41:07 ----D---- C:\Windows\system32\SleepStudy
2016-04-24 12:38:14 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2016-04-24 12:38:08 ----D---- C:\Program Files (x86)\Microsoft Sync Framework
2016-04-24 12:38:08 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2016-04-24 12:35:56 ----AD---- C:\Program Files (x86)\Microsoft Visual Studio 8
2016-04-23 18:01:42 ----D---- C:\ProgramData\acer
2016-04-23 18:00:40 ----D---- C:\ProgramData\updater2
2016-04-23 18:00:39 ----D---- C:\oem
2016-04-23 17:45:43 ----D---- C:\Windows\oem
2016-04-23 17:23:21 ----SHD---- C:\Config.Msi
2016-04-23 17:22:14 ----D---- C:\Users\sinpa\AppData\Roaming\ATI
2016-04-23 17:22:14 ----D---- C:\ProgramData\ATI
2016-04-23 17:01:19 ----D---- C:\Program Files\Synaptics
2016-04-23 17:01:07 ----A---- C:\Windows\system32\WdfCoInstaller01011.dll
2016-04-23 17:01:07 ----A---- C:\Windows\system32\drivers\Smb_driver_Intel.sys
2016-04-23 17:00:15 ----D---- C:\ProgramData\DriverSetupUtility
2016-04-23 17:00:14 ----D---- C:\Program Files\DriverSetupUtility
2016-04-23 16:57:19 ----A---- C:\Windows\system32\RtNicProp64.dll
2016-04-23 16:57:19 ----A---- C:\Windows\system32\drivers\rt640x64.sys
2016-04-23 16:57:16 ----D---- C:\Program Files (x86)\Realtek
2016-04-23 16:57:03 ----D---- C:\ProgramData\SlimWare Utilities, Inc
2016-04-23 16:52:45 ----A---- C:\Windows\system32\drivers\SWDUMon.sys
2016-04-23 16:52:39 ----D---- C:\Program Files (x86)\SlimDrivers
2016-04-23 16:49:26 ----D---- C:\Users\sinpa\AppData\Roaming\Zoner
2016-04-23 16:49:26 ----D---- C:\ProgramData\Zoner
2016-04-23 16:33:29 ----A---- C:\Windows\SECOH-QAD.exe
2016-04-23 16:33:29 ----A---- C:\Windows\SECOH-QAD.dll
2016-04-23 16:33:26 ----D---- C:\Program Files\KMSpico
2016-04-23 16:30:52 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2016-04-23 16:30:45 ----AD---- C:\Program Files (x86)\Microsoft Office
2016-04-23 16:30:44 ----D---- C:\Program Files\Microsoft Office
2016-04-23 16:30:42 ----RHD---- C:\MSOCache
2016-04-23 16:18:41 ----D---- C:\Program Files\Zoner
2016-04-23 16:18:26 ----D---- C:\Windows\system32\appmgmt
2016-04-23 16:07:23 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2016-04-23 15:52:07 ----D---- C:\Program Files\Common Files\Adobe
2016-04-23 15:51:49 ----AD---- C:\Program Files\Adobe
2016-04-23 15:13:20 ----D---- C:\Program Files (x86)\MSECache
2016-04-23 14:57:47 ----D---- C:\Users\sinpa\AppData\Roaming\Identities
2016-04-23 14:57:47 ----D---- C:\Users\sinpa\AppData\Roaming\ESET
2016-04-23 14:56:33 ----A---- C:\Windows\AutoKMS.ini
2016-04-23 14:56:33 ----A---- C:\Windows\AutoKMS.exe
2016-04-23 14:55:45 ----D---- C:\Windows\SYSWOW64\XPSViewer
2016-04-23 14:55:43 ----D---- C:\Program Files\Reference Assemblies
2016-04-23 14:55:43 ----D---- C:\Program Files\MSBuild
2016-04-23 14:55:43 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-04-23 14:55:19 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2016-04-23 14:55:19 ----A---- C:\Windows\SYSWOW64\PresentationNative_v0300.dll
2016-04-23 14:55:19 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-04-23 14:55:17 ----A---- C:\Windows\system32\TsWpfWrp.exe
2016-04-23 14:55:17 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2016-04-23 14:55:17 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2016-04-23 14:52:26 ----AD---- C:\Program Files (x86)\MSBuild
2016-04-23 14:49:45 ----D---- C:\ProgramData\Microsoft Help
2016-04-23 14:43:19 ----D---- C:\Users\sinpa\AppData\Roaming\vlc
2016-04-23 14:40:48 ----D---- C:\ProgramData\Synology
2016-04-23 14:40:47 ----D---- C:\Program Files (x86)\Synology
2016-04-23 14:35:15 ----AD---- C:\Program Files (x86)\LastPass
2016-04-23 14:33:47 ----D---- C:\Users\sinpa\AppData\Roaming\GHISLER
2016-04-23 14:33:47 ----D---- C:\totalcmd
2016-04-23 14:32:51 ----D---- C:\Windows\Panther
2016-04-23 14:30:28 ----D---- C:\ProgramData\Samsung
2016-04-23 14:30:28 ----D---- C:\Program Files (x86)\Samsung
2016-04-23 14:29:45 ----D---- C:\Program Files (x86)\Sony
2016-04-23 14:29:37 ----D---- C:\Users\sinpa\AppData\Roaming\InstallShield
2016-04-23 14:28:08 ----A---- C:\Windows\system32\drivers\LNonPnP.sys
2016-04-23 14:28:01 ----D---- C:\ProgramData\Logishrd
2016-04-23 14:27:58 ----D---- C:\Program Files\Logitech
2016-04-23 14:27:49 ----D---- C:\Program Files\Common Files\LogiShrd
2016-04-23 14:27:46 ----D---- C:\Users\sinpa\AppData\Roaming\Logitech
2016-04-23 14:27:46 ----D---- C:\Users\sinpa\AppData\Roaming\Logishrd
2016-04-23 14:26:31 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-04-23 14:26:31 ----D---- C:\Program Files\Alienware
2016-04-23 14:26:01 ----D---- C:\Users\sinpa\AppData\Roaming\WinRAR
2016-04-23 14:25:53 ----AD---- C:\Program Files\WinRAR
2016-04-23 14:22:42 ----AD---- C:\Program Files\MPC-HC
2016-04-23 14:22:18 ----D---- C:\Program Files (x86)\VideoLAN
2016-04-23 14:19:18 ----D---- C:\Users\sinpa\AppData\Roaming\VitySoft
2016-04-23 14:19:06 ----D---- C:\Users\sinpa\AppData\Roaming\Sun
2016-04-23 14:19:04 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2016-04-23 14:18:56 ----D---- C:\ProgramData\Oracle
2016-04-23 14:18:55 ----D---- C:\Program Files\Java
2016-04-23 14:15:33 ----D---- C:\ProgramData\ESET
2016-04-23 14:15:31 ----D---- C:\Program Files\ESET
2016-04-23 14:13:33 ----D---- C:\Program Files (x86)\Adobe
2016-04-23 14:13:27 ----D---- C:\ProgramData\Adobe
2016-04-23 14:00:58 ----D---- C:\Users\sinpa\AppData\Roaming\Opera Software
2016-04-23 14:00:44 ----AD---- C:\Program Files (x86)\Opera
2016-04-23 13:45:34 ----N---- C:\Windows\system32\MpSigStub.exe
2016-04-23 13:44:13 ----D---- C:\Windows\system32\MRT
2016-04-23 13:44:12 ----A---- C:\Windows\system32\MRT.exe
2016-04-23 13:44:02 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-04-23 13:44:02 ----A---- C:\Windows\SYSWOW64\edgehtml.dll
2016-04-23 13:44:01 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-04-23 13:44:01 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-04-23 13:44:01 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-04-23 13:44:01 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-04-23 13:44:01 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2016-04-23 13:44:00 ----A---- C:\Windows\SYSWOW64\wininetlui.dll
2016-04-23 13:44:00 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-04-23 13:44:00 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-04-23 13:44:00 ----A---- C:\Windows\system32\wininet.dll
2016-04-23 13:44:00 ----A---- C:\Windows\system32\kerberos.dll
2016-04-23 13:44:00 ----A---- C:\Windows\system32\dwmcore.dll
2016-04-23 13:44:00 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2016-04-23 13:43:59 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-04-23 13:43:59 ----A---- C:\Windows\SYSWOW64\Chakra.dll
2016-04-23 13:43:59 ----A---- C:\Windows\system32\wininetlui.dll
2016-04-23 13:43:59 ----A---- C:\Windows\system32\urlmon.dll
2016-04-23 13:43:59 ----A---- C:\Windows\system32\ntdll.dll
2016-04-23 13:43:59 ----A---- C:\Windows\system32\jscript9.dll
2016-04-23 13:43:58 ----A---- C:\Windows\system32\ieframe.dll
2016-04-23 13:43:58 ----A---- C:\Windows\system32\Chakradiag.dll
2016-04-23 13:43:58 ----A---- C:\Windows\system32\Chakra.dll
2016-04-23 13:43:58 ----A---- C:\Windows\system32\edgehtml.dll
2016-04-23 13:43:57 ----A---- C:\Windows\system32\wuaueng.dll
2016-04-23 13:43:57 ----A---- C:\Windows\system32\win32kfull.sys
2016-04-23 13:43:57 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-04-23 13:43:57 ----A---- C:\Windows\system32\mshtml.dll
2016-04-23 13:43:56 ----A---- C:\Windows\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-04-23 13:43:56 ----A---- C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2016-04-23 13:43:56 ----A---- C:\Windows\system32\AudioSes.dll
2016-04-23 13:43:56 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2016-04-23 13:43:56 ----A---- C:\Windows\system32\audiodg.exe
2016-04-23 13:43:55 ----A---- C:\Windows\SYSWOW64\twinui.dll
2016-04-23 13:43:55 ----A---- C:\Windows\system32\twinui.dll
2016-04-23 13:43:55 ----A---- C:\Windows\system32\audiosrv.dll
2016-04-23 13:43:54 ----A---- C:\Windows\SYSWOW64\windows.storage.dll
2016-04-23 13:43:54 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-04-23 13:43:53 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2016-04-23 13:43:53 ----A---- C:\Windows\system32\windows.storage.dll
2016-04-23 13:43:52 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2016-04-23 13:43:51 ----A---- C:\Windows\system32\wmp.dll
2016-04-23 13:43:51 ----A---- C:\Windows\system32\AUDIOKSE.dll
2016-04-23 13:43:50 ----A---- C:\Windows\system32\shell32.dll
2016-04-23 13:43:50 ----A---- C:\Windows\system32\lsasrv.dll
2016-04-23 13:43:50 ----A---- C:\Windows\system32\jsproxy.dll
2016-04-23 13:43:50 ----A---- C:\Windows\system32\ipnathlp.dll
2016-04-23 13:43:50 ----A---- C:\Windows\system32\invagent.dll
2016-04-23 13:43:50 ----A---- C:\Windows\system32\devinv.dll
2016-04-23 13:43:50 ----A---- C:\Windows\system32\aeinv.dll
2016-04-23 13:43:49 ----A---- C:\Windows\system32\WSService.dll
2016-04-23 13:43:49 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2016-04-23 13:43:48 ----A---- C:\Windows\SYSWOW64\TextInputFramework.dll
2016-04-23 13:43:48 ----A---- C:\Windows\SYSWOW64\InputService.dll
2016-04-23 13:43:48 ----A---- C:\Windows\system32\TextInputFramework.dll
2016-04-23 13:43:48 ----A---- C:\Windows\system32\mstscax.dll
2016-04-23 13:43:48 ----A---- C:\Windows\system32\InputService.dll
2016-04-23 13:43:47 ----A---- C:\Windows\SYSWOW64\wmp.dll
2016-04-23 13:43:47 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2016-04-23 13:43:47 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-04-23 13:43:46 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2016-04-23 13:43:46 ----A---- C:\Windows\system32\wifinetworkmanager.dll
2016-04-23 13:43:46 ----A---- C:\Windows\system32\SettingsHandlers_nt.dll
2016-04-23 13:43:45 ----A---- C:\Windows\SYSWOW64\mfsvr.dll
2016-04-23 13:43:45 ----A---- C:\Windows\SYSWOW64\BingMaps.dll
2016-04-23 13:43:45 ----A---- C:\Windows\system32\mfsvr.dll
2016-04-23 13:43:45 ----A---- C:\Windows\system32\MFMediaEngine.dll
2016-04-23 13:43:45 ----A---- C:\Windows\system32\mfcore.dll
2016-04-23 13:43:45 ----A---- C:\Windows\system32\CoreUIComponents.dll
2016-04-23 13:43:44 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2016-04-23 13:43:44 ----A---- C:\Windows\SYSWOW64\mfcore.dll
2016-04-23 13:43:44 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2016-04-23 13:43:44 ----A---- C:\Windows\SYSWOW64\CoreUIComponents.dll
2016-04-23 13:43:44 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2016-04-23 13:43:44 ----A---- C:\Windows\system32\SmsRouterSvc.dll
2016-04-23 13:43:44 ----A---- C:\Windows\system32\LicenseManager.dll
2016-04-23 13:43:44 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-04-23 13:43:44 ----A---- C:\Windows\system32\drivers\dxgmms2.sys
2016-04-23 13:43:44 ----A---- C:\Windows\system32\drivers\cng.sys
2016-04-23 13:43:44 ----A---- C:\Windows\system32\d3d11.dll
2016-04-23 13:43:44 ----A---- C:\Windows\system32\CertEnroll.dll
2016-04-23 13:43:43 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll
2016-04-23 13:43:43 ----A---- C:\Windows\SYSWOW64\LicenseManager.dll
2016-04-23 13:43:43 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-04-23 13:43:43 ----A---- C:\Windows\SYSWOW64\ActiveSyncProvider.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\XblGameSave.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\Windows.UI.Logon.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\win32kbase.sys
2016-04-23 13:43:43 ----A---- C:\Windows\system32\UserDataService.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\StorSvc.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\schedsvc.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\mfmp4srcsnk.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\enterprisecsps.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-04-23 13:43:43 ----A---- C:\Windows\system32\AppXDeploymentServer.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\ActiveSyncProvider.dll
2016-04-23 13:43:42 ----A---- C:\Windows\SYSWOW64\mfsrcsnk.dll
2016-04-23 13:43:42 ----A---- C:\Windows\SYSWOW64\mfasfsrcsnk.dll
2016-04-23 13:43:42 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\wwansvc.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\Windows.AccountsControl.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\SRHInproc.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\mfsrcsnk.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\mfmpeg2srcsnk.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\iertutil.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\esent.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\DisplayManager.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\BingMaps.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\Windows.Media.Audio.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\Windows.AccountsControl.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\UIAutomationCore.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\SRHInproc.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\mfmpeg2srcsnk.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\esent.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\DisplayManager.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\XblAuthManager.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\Windows.Media.Audio.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\UIAutomationCore.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\SRH.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\SettingSyncCore.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\mfasfsrcsnk.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\localspl.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\KernelBase.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\dosvc.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\diagtrack.dll
2016-04-23 13:43:40 ----A---- C:\Windows\SYSWOW64\WWAHost.exe
2016-04-23 13:43:40 ----A---- C:\Windows\SYSWOW64\Windows.UI.Logon.dll
2016-04-23 13:43:40 ----A---- C:\Windows\SYSWOW64\Unistore.dll
2016-04-23 13:43:40 ----A---- C:\Windows\SYSWOW64\SRH.dll
2016-04-23 13:43:40 ----A---- C:\Windows\SYSWOW64\SettingSyncCore.dll
2016-04-23 13:43:40 ----A---- C:\Windows\SYSWOW64\MapControlCore.dll
2016-04-23 13:43:40 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\WWAHost.exe
2016-04-23 13:43:40 ----A---- C:\Windows\system32\Windows.UI.Shell.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\Windows.UI.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\Unistore.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\uDWM.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\RemoteNaturalLanguage.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\PhoneProviders.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\ole32.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\ngcsvc.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\ngckeyenum.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\MapsStore.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\MapControlCore.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\ContactApis.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\AppXDeploymentExtensions.dll
2016-04-23 13:43:39 ----A---- C:\Windows\SYSWOW64\WMPDMC.exe
2016-04-23 13:43:39 ----A---- C:\Windows\SYSWOW64\Windows.UI.dll
2016-04-23 13:43:39 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-04-23 13:43:39 ----A---- C:\Windows\SYSWOW64\mfds.dll
2016-04-23 13:43:39 ----A---- C:\Windows\SYSWOW64\ContactApis.dll
2016-04-23 13:43:39 ----A---- C:\Windows\SYSWOW64\AppointmentApis.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\wlansvc.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\Windows.UI.Cred.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\Windows.Media.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\wcmsvc.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\vaultsvc.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\SMSRouter.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\SettingSync.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\RDXService.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\MFCaptureEngine.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\MCRecvSrc.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\dxgi.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\AppointmentApis.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\Windows.Web.Http.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\Windows.Media.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\StoreAgent.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\MFCaptureEngine.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\MCRecvSrc.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\wuuhext.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\wlansec.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\Windows.UI.Core.TextInput.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\Windows.Media.Speech.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\Windows.Media.MediaControl.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\Windows.Internal.Bluetooth.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\usbmon.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\tileobjserver.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\StoreAgent.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\spoolsv.exe
2016-04-23 13:43:38 ----A---- C:\Windows\system32\SensorService.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\QuickActionsDataModel.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\NetSetupShim.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\NetSetupEngine.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\netlogon.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\msv1_0.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\modernexecserver.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\mfds.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\MapConfiguration.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\generaltel.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\fveapi.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\fontdrvhost.exe
2016-04-23 13:43:38 ----A---- C:\Windows\system32\ClipSVC.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\AppxPackaging.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\Windows.Media.MediaControl.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\wer.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\RemoteNaturalLanguage.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\NetSetupShim.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\msvproc.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\MSFlacDecoder.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\mfmkvsrcsnk.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\MessagingDataModel2.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\MapConfiguration.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\LockAppHost.exe
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\LaunchWinApp.exe
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\fontdrvhost.exe
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\deviceaccess.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\CredProvDataModel.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\AppxPackaging.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\AccountsRt.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\wer.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\TokenBroker.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\TimeBrokerServer.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\NMAA.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\NetSetupSvc.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\msxml3.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\MsSpellCheckingFacility.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\MessagingDataModel2.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\MDEServer.exe
2016-04-23 13:43:37 ----A---- C:\Windows\system32\LockAppHost.exe
2016-04-23 13:43:37 ----A---- C:\Windows\system32\drivers\http.sys
2016-04-23 13:43:37 ----A---- C:\Windows\system32\dmenrollengine.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\deviceaccess.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\AccountsRt.dll
2016-04-23 13:43:36 ----A---- C:\Windows\SYSWOW64\Windows.UI.Cred.dll
2016-04-23 13:43:36 ----A---- C:\Windows\SYSWOW64\PackageStateRoaming.dll
2016-04-23 13:43:36 ----A---- C:\Windows\SYSWOW64\NetSetupEngine.dll
2016-04-23 13:43:36 ----A---- C:\Windows\SYSWOW64\JpMapControl.dll
2016-04-23 13:43:36 ----A---- C:\Windows\SYSWOW64\AppXDeploymentClient.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\Windows.Web.Http.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\Windows.Internal.Shell.Broker.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\Windows.Devices.Bluetooth.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\wifiprofilessettinghandler.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\storewuauth.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\SharedStartModel.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\RDXTaskFactory.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\msvproc.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\MSFlacDecoder.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\moshostcore.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\mfmkvsrcsnk.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\JpMapControl.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\drivers\xboxgip.sys
2016-04-23 13:43:36 ----A---- C:\Windows\system32\drivers\acpi.sys
2016-04-23 13:43:36 ----A---- C:\Windows\system32\DeviceCensus.exe
2016-04-23 13:43:36 ----A---- C:\Windows\system32\AppXDeploymentClient.dll
2016-04-23 13:43:35 ----A---- C:\Windows\SYSWOW64\WiFiDisplay.dll
2016-04-23 13:43:35 ----A---- C:\Windows\SYSWOW64\TokenBroker.dll
2016-04-23 13:43:35 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2016-04-23 13:43:35 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2016-04-23 13:43:35 ----A---- C:\Windows\SYSWOW64\msi.dll
2016-04-23 13:43:35 ----A---- C:\Windows\SYSWOW64\ChatApis.dll
2016-04-23 13:43:35 ----A---- C:\Windows\SYSWOW64\AppxAllUserStore.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\wuapi.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\WMPDMC.exe
2016-04-23 13:43:35 ----A---- C:\Windows\system32\winresume.exe
2016-04-23 13:43:35 ----A---- C:\Windows\system32\winload.exe
2016-04-23 13:43:35 ----A---- C:\Windows\system32\Windows.Networking.Connectivity.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\WiFiDisplay.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\werui.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\taskschd.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\psmsrv.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\mdmmigrator.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\InstallAgent.exe
2016-04-23 13:43:35 ----A---- C:\Windows\system32\enrollmentapi.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-04-23 13:43:35 ----A---- C:\Windows\system32\drivers\rfcomm.sys
2016-04-23 13:43:35 ----A---- C:\Windows\system32\DeviceEnroller.exe
2016-04-23 13:43:35 ----A---- C:\Windows\system32\CredProvDataModel.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\CallHistoryClient.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\bdesvc.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\atmfd.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\AppxAllUserStore.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\Windows.Web.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\Windows.UI.Input.Inking.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\Windows.Media.Speech.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\policymanager.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\MsSpellCheckingFacility.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\InstallAgent.exe
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\FirewallAPI.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\Windows.Web.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\Windows.UI.Input.Inking.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\VEDataLayerHelpers.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\vaultcli.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\thumbcache.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\PsmServiceExtHost.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\profsvc.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\msi.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\MPSSVC.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\MDMAppInstaller.exe
2016-04-23 13:43:34 ----A---- C:\Windows\system32\LsaIso.exe
2016-04-23 13:43:34 ----A---- C:\Windows\system32\LaunchWinApp.exe
2016-04-23 13:43:34 ----A---- C:\Windows\system32\ChatApis.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\flvprophandler.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\EmailApis.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\drivers\USBXHCI.SYS
2016-04-23 13:43:34 ----A---- C:\Windows\system32\drivers\ufx01000.sys
2016-04-23 13:43:34 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-04-23 13:43:34 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2016-04-23 13:43:34 ----A---- C:\Windows\system32\drivers\bridge.sys
2016-04-23 13:43:34 ----A---- C:\Windows\system32\dnsapi.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\configurationclient.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\bisrv.dll
2016-04-23 13:43:33 ----A---- C:\Windows\SYSWOW64\Windows.Networking.Connectivity.dll
2016-04-23 13:43:33 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-04-23 13:43:33 ----A---- C:\Windows\SYSWOW64\MosStorage.dll
2016-04-23 13:43:33 ----A---- C:\Windows\SYSWOW64\EmailApis.dll
2016-04-23 13:43:33 ----A---- C:\Windows\SYSWOW64\cemapi.dll
2016-04-23 13:43:33 ----A---- C:\Windows\SYSWOW64\AppointmentActivation.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\Windows.Media.Devices.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\VCardParser.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\sqmapi.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\sharemediacpl.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\policymanagerprecheck.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\policymanager.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\PackageStateRoaming.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\ncbservice.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\MosStorage.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\mdmregistration.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\fveui.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\drivers\ndis.sys
2016-04-23 13:43:33 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-04-23 13:43:33 ----A---- C:\Windows\system32\drivers\dfsc.sys
2016-04-23 13:43:33 ----A---- C:\Windows\system32\drivers\bthport.sys
2016-04-23 13:43:33 ----A---- C:\Windows\system32\domgmt.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\dafBth.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\AuthBroker.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\accountaccessor.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\AboveLockAppHost.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Bluetooth.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\VEDataLayerHelpers.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\PhoneCallHistoryApis.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\mdmregistration.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\fwbase.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\AboveLockAppHost.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\wlanmsm.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\wkscli.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\Windows.Networking.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\UserDataAccountApis.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe
2016-04-23 13:43:32 ----A---- C:\Windows\system32\SyncController.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\srvcli.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\samsrv.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\PimIndexMaintenance.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\omadmapi.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\NetSetupApi.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\netapi32.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\drivers\appid.sys
2016-04-23 13:43:32 ----A---- C:\Windows\system32\cemapi.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\Windows.Networking.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\Windows.Media.Devices.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Scanners.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\wermgr.exe
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\VCardParser.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\SyncController.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\SensorsNativeApi.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\NetSetupApi.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\AppxSip.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\wsqmcons.exe
2016-04-23 13:43:31 ----A---- C:\Windows\system32\wsdchngr.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\wlanapi.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\win32spl.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\wermgr.exe
2016-04-23 13:43:31 ----A---- C:\Windows\system32\UserDataPlatformHelperUtil.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\SensorsNativeApi.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\provpackageapidll.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\PhoneCallHistoryApis.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\oleacc.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\iuilp.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\ieproxy.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\easinvoker.exe
2016-04-23 13:43:31 ----A---- C:\Windows\system32\drivers\WdiWiFi.sys
2016-04-23 13:43:31 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-04-23 13:43:31 ----A---- C:\Windows\system32\drivers\USBHUB3.SYS
2016-04-23 13:43:31 ----A---- C:\Windows\system32\drivers\sdbus.sys
2016-04-23 13:43:31 ----A---- C:\Windows\system32\drivers\nwifi.sys
2016-04-23 13:43:31 ----A---- C:\Windows\system32\drivers\dumpsd.sys
2016-04-23 13:43:31 ----A---- C:\Windows\system32\drivers\bthenum.sys
2016-04-23 13:43:31 ----A---- C:\Windows\system32\DAFWSD.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\BitLockerDeviceEncryption.exe
2016-04-23 13:43:31 ----A---- C:\Windows\system32\AuthHost.exe
2016-04-23 13:43:31 ----A---- C:\Windows\system32\asycfilt.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\AppxSysprep.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\AppointmentActivation.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\werui.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\VEEventDispatcher.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\UserDataTimeUtil.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\UserDataAccountApis.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\POSyncServices.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\NotificationObjFactory.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\ieproxy.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\ExtrasXmlParser.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\ExSMime.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\credprovhost.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\CallHistoryClient.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\browcli.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\wuautoappupdate.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\WSDApi.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\wpninprc.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\wlansvcpal.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\Windows.Devices.Scanners.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\WiFiConfigSP.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\wfapigp.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\VEStoreEventHandlers.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\VEEventDispatcher.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\UserDataLanguageUtil.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\tzautoupdate.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\seclogon.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\scapi.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\POSyncServices.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\PimIndexMaintenanceClient.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\OnDemandConnRouteHelper.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\NotificationObjFactory.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\MBMediaManager.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\LicenseManagerShellext.exe
2016-04-23 13:43:30 ----A---- C:\Windows\system32\IKEEXT.DLL
2016-04-23 13:43:30 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2016-04-23 13:43:30 ----A---- C:\Windows\system32\fwbase.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\fvewiz.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\FirewallAPI.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\ExSMime.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\easwrt.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\dssvc.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\dnsrslvr.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\dmcsps.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\credprovhost.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\browserbroker.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\browser.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\browcli.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\basesrv.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\AppxSip.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\actxprxy.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\UserDataTypeHelperUtil.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\UserDataLanguageUtil.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\TokenBrokerCookies.exe
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\tbauth.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\profext.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\PimIndexMaintenanceClient.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\mos.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\easwrt.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\wups.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\wfdprov.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\UserDataTypeHelperUtil.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\UserDataTimeUtil.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\TokenBrokerCookies.exe
2016-04-23 13:43:29 ----A---- C:\Windows\system32\TimeBrokerClient.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\tbauth.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\srpapi.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\SensorsNativeApi.V2.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\samlib.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\profext.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\NetCfgNotifyObjectHost.exe
2016-04-23 13:43:29 ----A---- C:\Windows\system32\moshost.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\mos.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\mapsupdatetask.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\MapsCSP.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\MapsBtSvc.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\irmon.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\fwpolicyiomgr.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\fveskybackup.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\fvecpl.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\FontProvider.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\ExtrasXmlParser.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\drivers\serial.sys
2016-04-23 13:43:29 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2016-04-23 13:43:29 ----A---- C:\Windows\system32\drivers\portcls.sys
2016-04-23 13:43:29 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2016-04-23 13:43:29 ----A---- C:\Windows\system32\drivers\BthLEEnum.sys
2016-04-23 13:43:29 ----A---- C:\Windows\system32\dmenterprisediagnostics.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\BFE.DLL
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\wfapigp.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\TimeBrokerClient.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\SensorsNativeApi.V2.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\samlib.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\OnDemandConnRouteHelper.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\oleacchooks.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\NMAA.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\MTF.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\MapsBtSvc.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\InputLocaleManager.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\fwpolicyiomgr.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\oleacchooks.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\mtxoci.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\MTF.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\InputLocaleManager.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\fveapibase.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\fontsub.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\drivers\xinputhid.sys
2016-04-23 13:43:28 ----A---- C:\Windows\system32\BdeHdCfgLib.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\bcastdvr.exe
2016-04-23 13:43:28 ----A---- C:\Windows\system32\atmlib.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\AppCapture.dll
2016-04-23 13:42:37 ----D---- C:\Users\sinpa\AppData\Roaming\Macromedia
2016-04-23 13:40:00 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-04-23 13:39:25 ----AD---- C:\Program Files (x86)\AMD
2016-04-23 13:39:15 ----D---- C:\ProgramData\Package Cache
2016-04-23 13:39:04 ----D---- C:\AMD
2016-04-23 13:39:02 ----D---- C:\Program Files\Common Files\ATI Technologies
2016-04-23 13:38:59 ----AD---- C:\Program Files\AMD
2016-04-23 13:37:09 ----A---- C:\Windows\SYSWOW64\NlsLexicons0009.dll
2016-04-23 13:37:09 ----A---- C:\Windows\SYSWOW64\NlsData0009.dll
2016-04-23 13:37:09 ----A---- C:\Windows\system32\prm0009.dll
2016-04-23 13:37:09 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2016-04-23 13:37:09 ----A---- C:\Windows\system32\NlsData0009.dll
2016-04-23 13:36:36 ----D---- C:\Users\sinpa\AppData\Roaming\Adobe
2016-04-23 13:36:13 ----SD---- C:\Users\sinpa\AppData\Roaming\Microsoft
2016-04-23 13:34:52 ----D---- C:\Windows\CSC
2016-04-23 13:34:46 ----SHD---- C:\Recovery
2016-04-23 13:34:46 ----SHD---- C:\ProgramData\Šablony
2016-04-23 13:34:46 ----SHD---- C:\ProgramData\Plocha
2016-04-23 13:34:46 ----SHD---- C:\ProgramData\Nabídka Start
2016-04-23 13:34:46 ----SHD---- C:\ProgramData\Dokumenty
2016-04-23 13:34:46 ----SHD---- C:\ProgramData\Data aplikací
2016-04-23 13:34:46 ----SHD---- C:\Documents and Settings
2016-04-23 13:34:40 ----ASH---- C:\hiberfil.sys
2016-04-23 13:34:22 ----D---- C:\Windows\SoftwareDistribution
2016-04-23 13:33:22 ----D---- C:\Windows\Prefetch
2016-04-23 13:33:08 ----SHD---- C:\System Volume Information
2016-04-23 13:33:08 ----ASH---- C:\swapfile.sys
2016-04-23 13:33:08 ----ASH---- C:\pagefile.sys
2016-04-22 17:52:36 ----A---- C:\Windows\system32\drivers\SETC4CE.tmp
2016-04-22 17:52:36 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2016-04-22 17:52:34 ----A---- C:\Windows\system32\drivers\SETDBCE.tmp
2016-04-22 17:52:34 ----A---- C:\Windows\system32\drivers\SET97B0.tmp
2016-04-22 17:52:34 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2016-04-22 17:50:34 ----A---- C:\Windows\SYSWOW64\SETE6B2.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\SYSWOW64\SETD673.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\SYSWOW64\SETA513.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\SYSWOW64\SET8E11.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
2016-04-22 17:50:34 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
2016-04-22 17:50:34 ----A---- C:\Windows\system32\SETDBF0.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\system32\SETD128.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\system32\SETC669.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\system32\SET97C3.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\system32\SET874F.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\system32\SET7889.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\system32\atiuxp64.dll
2016-04-22 17:50:34 ----A---- C:\Windows\system32\atiumd6a.dll
2016-04-22 17:50:34 ----A---- C:\Windows\system32\atidxx64.dll
2016-04-22 17:50:32 ----A---- C:\Windows\SYSWOW64\SETDD30.tmp
2016-04-22 17:50:32 ----A---- C:\Windows\SYSWOW64\SET9970.tmp
2016-04-22 17:50:32 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
2016-04-22 17:50:32 ----A---- C:\Windows\system32\SETDC33.tmp
2016-04-22 17:50:32 ----A---- C:\Windows\system32\SET9824.tmp
2016-04-22 17:50:32 ----A---- C:\Windows\system32\aticfx64.dll

======List of files/folders modified in the last 1 month======

2016-05-04 08:50:58 ----RD---- C:\Program Files
2016-05-04 08:50:35 ----D---- C:\Windows\Temp
2016-05-04 08:31:00 ----D---- C:\Windows\system32\sru
2016-05-04 08:21:00 ----HD---- C:\Windows\system32\GroupPolicy
2016-05-04 08:17:12 ----SHD---- C:\Windows\Installer
2016-05-04 07:53:50 ----D---- C:\Windows\system32\config
2016-05-04 07:53:28 ----D---- C:\Windows\Microsoft.NET
2016-05-04 07:34:53 ----HD---- C:\Program Files\WindowsApps
2016-05-04 07:34:53 ----D---- C:\Windows\AppReadiness
2016-05-03 08:14:13 ----D---- C:\Windows\system32\DriverStore
2016-05-03 08:14:13 ----D---- C:\Windows\INF
2016-05-03 07:56:32 ----D---- C:\Windows\System32
2016-05-03 07:51:47 ----HD---- C:\ProgramData
2016-05-03 07:51:37 ----D---- C:\Windows\system32\drivers
2016-05-03 07:51:36 ----D---- C:\Windows
2016-05-03 07:50:55 ----D---- C:\Windows\SysWOW64
2016-05-03 07:50:41 ----D---- C:\Windows\system32\CatRoot
2016-05-01 14:05:18 ----D---- C:\Windows\Tasks
2016-05-01 14:05:18 ----D---- C:\Windows\system32\Tasks
2016-05-01 11:10:10 ----D---- C:\Windows\WinSxS
2016-05-01 10:14:01 ----D---- C:\Windows\CbsTemp
2016-04-28 18:15:41 ----RD---- C:\Windows\assembly
2016-04-28 18:14:59 ----A---- C:\Windows\win.ini
2016-04-28 18:14:04 ----D---- C:\Program Files (x86)\Common Files
2016-04-28 01:04:30 ----A---- C:\Windows\system32\coinst_16.15.dll
2016-04-26 19:01:24 ----D---- C:\Windows\rescache
2016-04-26 19:00:17 ----D---- C:\Windows\Logs
2016-04-25 17:22:21 ----SHD---- C:\$Recycle.Bin
2016-04-24 18:43:12 ----D---- C:\Windows\system32\drivers\UMDF
2016-04-24 12:57:40 ----D---- C:\Windows\ShellNew
2016-04-24 12:57:39 ----RSD---- C:\Windows\Fonts
2016-04-24 12:44:25 ----AD---- C:\Program Files\Common Files\microsoft shared
2016-04-24 12:44:19 ----RD---- C:\Program Files (x86)
2016-04-24 12:44:16 ----D---- C:\Program Files\Common Files
2016-04-24 12:44:16 ----D---- C:\Program Files (x86)\Microsoft.NET
2016-04-24 12:44:15 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2016-04-24 12:43:51 ----D---- C:\Program Files\Common Files\System
2016-04-24 12:38:08 ----SD---- C:\ProgramData\Microsoft
2016-04-24 12:32:05 ----D---- C:\Windows\appcompat
2016-04-23 17:01:19 ----D---- C:\Windows\system32\catroot2
2016-04-23 16:40:42 ----D---- C:\Windows\system32\drivers\etc
2016-04-23 16:18:56 ----D---- C:\Windows\debug
2016-04-23 15:50:37 ----D---- C:\Windows\system32\WDI
2016-04-23 14:55:45 ----D---- C:\Windows\SYSWOW64\MUI
2016-04-23 14:55:45 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-04-23 14:55:45 ----D---- C:\Windows\system32\MUI
2016-04-23 14:55:45 ----D---- C:\Windows\system32\cs-CZ
2016-04-23 14:15:56 ----HD---- C:\Windows\ELAMBKUP
2016-04-23 13:50:32 ----RD---- C:\Users
2016-04-23 13:49:03 ----D---- C:\Windows\SYSWOW64\migration
2016-04-23 13:49:03 ----D---- C:\Windows\SYSWOW64\Dism
2016-04-23 13:49:03 ----D---- C:\Windows\system32\WinBioPlugIns
2016-04-23 13:49:03 ----D---- C:\Windows\system32\wbem
2016-04-23 13:49:03 ----D---- C:\Windows\system32\SystemResetPlatform
2016-04-23 13:49:03 ----D---- C:\Windows\system32\migration
2016-04-23 13:49:03 ----D---- C:\Windows\system32\Dism
2016-04-23 13:49:03 ----D---- C:\Windows\system32\Boot
2016-04-23 13:49:03 ----D---- C:\Windows\system32\appraiser
2016-04-23 13:49:02 ----RSD---- C:\Windows\Media
2016-04-23 13:49:02 ----RD---- C:\Windows\PurchaseDialog
2016-04-23 13:49:02 ----D---- C:\Windows\PolicyDefinitions
2016-04-23 13:49:02 ----D---- C:\Windows\bcastdvr
2016-04-23 13:49:02 ----D---- C:\Windows\AppPatch
2016-04-23 13:49:02 ----D---- C:\Program Files\Windows Portable Devices
2016-04-23 13:49:02 ----D---- C:\Program Files\Windows Multimedia Platform
2016-04-23 13:49:02 ----D---- C:\Program Files\Windows Media Player
2016-04-23 13:49:02 ----D---- C:\Program Files\Windows Journal
2016-04-23 13:49:02 ----D---- C:\Program Files\Internet Explorer
2016-04-23 13:49:02 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-04-23 13:49:02 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-04-23 13:49:02 ----D---- C:\Program Files (x86)\Internet Explorer
2016-04-23 13:45:39 ----D---- C:\Windows\system32\CodeIntegrity
2016-04-23 13:37:10 ----D---- C:\Windows\OCR
2016-04-23 13:36:16 ----D---- C:\Windows\system32\WinBioDatabase
2016-04-23 13:34:46 ----D---- C:\Program Files\Windows NT
2016-04-23 13:33:51 ----D---- C:\Windows\system32\Recovery
2016-04-23 13:33:50 ----D---- C:\Windows\system32\Sysprep
2016-04-06 20:32:08 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe

Sinpa
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 29 kvě 2014 06:09

Re: Prosím o kontrolu logu

#2 Příspěvek od Sinpa »

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2016-02-09 84800]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2016-02-09 264552]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2016-02-09 186784]
R1 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2016-02-09 198096]
R1 EpfwLWF;@oem13.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2016-02-09 53384]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\Windows\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\Windows\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 ekbdflt;ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [2016-02-09 142976]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\Windows\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\Windows\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2016-04-28 26354200]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2016-04-28 685584]
R3 AtiHDAudioService;@oem32.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdWT6.sys [2016-04-04 102400]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\Windows\System32\drivers\BthEnum.sys [2016-03-29 112640]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\Windows\System32\drivers\BthLEEnum.sys [2016-03-29 245760]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\System32\drivers\bthpan.sys [2015-10-30 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\drivers\BTHUSB.sys [2016-03-29 84992]
R3 busenum;@oem25.inf,%busenum.SVCDESC%;Synology Virtual USB Hub; C:\Windows\System32\drivers\busenum.sys [2012-08-03 57824]
R3 ibtusb;@oem4.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\Windows\system32\DRIVERS\ibtusb.sys [2015-12-18 299280]
R3 LEqdUsb;@oem18.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF USB Filter; C:\Windows\system32\DRIVERS\LEqdUsb.Sys [2015-06-18 87696]
R3 LHidEqd;@oem19.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF HID Filter; C:\Windows\system32\DRIVERS\LHidEqd.Sys [2015-06-18 23184]
R3 LHidFilt;@oem21.inf,%LHidFilt.SvcDesc%;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2015-06-18 86672]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2016-03-29 181248]
R3 rt640x64;@oem27.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\Windows\System32\drivers\rt640x64.sys [2000-01-01 886528]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2000-01-01 33960]
S0 amdkmafd;@oem33.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\Windows\System32\drivers\amdkmafd.sys [2015-07-28 40720]
S0 eelam;eelam; C:\Windows\system32\DRIVERS\eelam.sys [2016-02-09 14976]
S0 LSI_SAS2i;LSI_SAS2i; C:\Windows\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\Windows\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\Windows\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\Windows\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\Windows\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\Windows\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\Windows\System32\drivers\BTHport.sys [2016-03-29 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\Windows\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\Windows\System32\drivers\capimg.sys [2016-02-13 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\Windows\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\Windows\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\Windows\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\Windows\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\Windows\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\Windows\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\Windows\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\Windows\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 NETwNb64;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\Windows\System32\drivers\Netwbw02.sys [2015-10-30 3485696]
S3 ReFSv1;ReFSv1; C:\Windows\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 SWDUMon;SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [2016-04-23 16056]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\Windows\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\Windows\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\Windows\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\Windows\system32\drivers\ufx01000.sys [2016-03-29 258912]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\Windows\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\Windows\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\Windows\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\Windows\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\Windows\System32\drivers\urssynopsys.sys [2015-10-30 27488]
S3 usbser;@usbser.inf,%UsbSerial.DriverDesc%;Microsoft USB Serial Driver; C:\Windows\System32\drivers\usbser.sys [2016-02-13 67072]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2016-04-28 260120]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\Windows\system32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\Windows\system32\svchost.exe [2015-10-30 43944]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2016-02-22 2521440]
R2 ibtsiva;@oem4.inf,%SERVICE_NAME%;Intel Bluetooth Service; C:\Windows\system32\ibtsiva []
R2 OneSyncSvc_17322c7;Hostitel synchronizace_17322c7; C:\Windows\system32\svchost.exe [2015-10-30 43944]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\Windows\system32\svchost.exe [2015-10-30 43944]
R2 UsbClientService;UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [2016-03-18 248840]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\Windows\System32\svchost.exe [2015-10-30 43944]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\Windows\System32\svchost.exe [2015-10-30 43944]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 PimIndexMaintenanceSvc_17322c7;Data kontaktů_17322c7; C:\Windows\system32\svchost.exe [2015-10-30 43944]
R3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\Windows\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\Windows\system32\svchost.exe [2015-10-30 43944]
R3 UnistoreSvc_17322c7;Úložiště uživatelských dat_17322c7; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_477a7;Hostitel synchronizace_477a7; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-05-01 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2015-07-02 356808]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_17322c7;Služba zasílání zpráv_17322c7; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\Windows\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\Windows\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S4 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S4 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\Windows\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o kontrolu logu

#3 Příspěvek od Roli »

Zdravím,

za prvé : log odstraněn z CODE pro lepší čitelnost

za druhé : co uděláme s tím nelegálním produktem od Microsoftu ?
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Sinpa
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 29 kvě 2014 06:09

Re: Prosím o kontrolu logu

#4 Příspěvek od Sinpa »

Win jsou legal - přechod z 8.1
S office bojuju a dokud nebude fungovat v office outlooku jejich poštovní server outlook.com, tak na to nehodlám nic měnit - v aplikaci pošta jde.

Edit: je-li to nutné, tak jsem ochoten jej odstranit...

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o kontrolu logu

#5 Příspěvek od Roli »

Sinpa píše:Edit: je-li to nutné, tak jsem ochoten jej odstranit...
Ano odstraň nelegální produkt Microsoftu a pak mi sem dej aktuální log.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Sinpa
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 29 kvě 2014 06:09

Re: Prosím o kontrolu logu

#6 Příspěvek od Sinpa »

Logfile of random's system information tool 1.10 (written by random/random)
Run by sinpa at 2016-05-06 08:21:24
Microsoft Windows 10 Pro
System drive C: has 74 GB (65%) free of 114 GB
Total RAM: 16329 MB (92% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:21:25, on 06.05.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Users\sinpa\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files\trend micro\sinpa.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.cz/?gfe_rd=cr&ei=-VW ... gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: LastPass Vault - {95D9ECF5-2A4D-4550-BE49-70D42F71296E} - C:\Program Files (x86)\LastPass\LPToolbar.dll
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O3 - Toolbar: LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\sinpa\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [AceStream] C:\Users\sinpa\AppData\Roaming\ACEStream\engine\ace_engine.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: Install LastPass IE RunOnce.lnk = C:\Program Files (x86)\Common Files\lpuninstall.exe
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: LastPass - file://C:\Users\sinpa\AppData\LocalLow\LastPass\context.html?cmd=lastpass
O8 - Extra context menu item: LastPass Vyplňování formulářů - file://C:\Users\sinpa\AppData\LocalLow\LastPass\context.html?cmd=fillforms
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: Poslat do On&eNotu - res://C:\PROGRA~1\MICROS~1\Office16\ONBttnIE.dll/105
O9 - Extra button: LastPass - {43699cd0-e34f-11de-8a39-0800200c9a66} - C:\Program Files (x86)\LastPass\LPToolbar.dll
O9 - Extra 'Tools' menuitem: LastPass - {43699cd0-e34f-11de-8a39-0800200c9a66} - C:\Program Files (x86)\LastPass\LPToolbar.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @oem4.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\Windows\system32\ibtsiva (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\Windows\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\Windows\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 8326 bytes

======Listing Processes======







winlogon.exe

C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\Windows\System32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-f8739f8e-2f84-46a2-a576-46879de1ef02 -SystemEventPortName:HostProcess-e5d91077-fc05-420b-b9ee-376c9fec51d0 -IoCancelEventPortName:HostProcess-863c2d08-bb2d-448e-ab66-62a5112f44a5 -NonStateChangingEventPortName:HostProcess-edd3e36c-e58f-4b3d-b263-c81a12087c68 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:09b03249-c1dd-47c0-ba37-c9cde34d2aa0 -DeviceGroupId:WpdFsGroup
C:\Windows\system32\atiesrxx.exe
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k WbioSvcGroup
C:\Windows\system32\ibtsiva
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k appmodel
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\Windows\system32\SettingSyncHost.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\Explorer.EXE
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
"C:\Users\sinpa\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-3852169517-945285321-1182633789-10011_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-3852169517-945285321-1182633789-10011 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Windows\system32\SearchFilterHost.exe" 0 616 620 628 8192 624
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\sinpa\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll [2016-04-23 553024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95D9ECF5-2A4D-4550-BE49-70D42F71296E}]
LastPass Vault - C:\Program Files (x86)\LastPass\LPToolbar_x64.dll [2016-04-23 3244568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-08-26 435320]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-04-23 214080]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95D9ECF5-2A4D-4550-BE49-70D42F71296E}]
LastPass Vault - C:\Program Files (x86)\LastPass\LPToolbar.dll [2016-04-23 2386968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-08-26 366200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - LastPass Toolbar - C:\Program Files (x86)\LastPass\LPToolbar_x64.dll [2016-04-23 3244568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - LastPass Toolbar - C:\Program Files (x86)\LastPass\LPToolbar.dll [2016-04-23 2386968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 3933496]
"StartCN"=C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe atlogon []
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2015-08-26 3113592]
"AutoKMS"=C:\Windows\AutoKMS.exe [2016-04-23 615936]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-09-19 557768]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\sinpa\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-04-26 554176]
"AceStream"=C:\Users\sinpa\AppData\Roaming\ACEStream\engine\ace_engine.exe [2015-12-18 27000]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-04-01 596504]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Install LastPass IE RunOnce.lnk - C:\Program Files (x86)\Common Files\lpuninstall.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2015-07-02 65992]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"DSCAutomationHostEnabled"=2
"PromptOnSecureDesktop"=0
"EnableLinkedConnections"=1
"NoConnectedUser"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SppExtComObj.exe]
"Debugger="C:\Windows\SECOH-QAD.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-05-04 08:50:58 ----D---- C:\rsit
2016-05-04 08:50:58 ----D---- C:\Program Files\trend micro
2016-05-03 07:50:42 ----D---- C:\Windows\LastGood.Tmp
2016-05-01 14:10:45 ----D---- C:\Users\sinpa\AppData\Roaming\.ACEStream
2016-05-01 14:10:24 ----D---- C:\Users\sinpa\AppData\Roaming\ACEStream
2016-04-28 01:12:56 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
2016-04-28 01:12:42 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
2016-04-28 01:12:16 ----A---- C:\Windows\system32\atiumd64.dll
2016-04-28 01:12:02 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
2016-04-28 01:11:54 ----A---- C:\Windows\system32\atiu9p64.dll
2016-04-28 01:11:48 ----A---- C:\Windows\system32\atimpc64.dll
2016-04-28 01:11:44 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
2016-04-28 01:10:52 ----A---- C:\Windows\system32\amdxc64.dll
2016-04-28 01:10:42 ----A---- C:\Windows\SYSWOW64\amdxc32.dll
2016-04-28 01:10:18 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
2016-04-28 01:10:16 ----A---- C:\Windows\system32\amdmiracast.dll
2016-04-28 01:10:12 ----A---- C:\Windows\system32\amdhcp64.dll
2016-04-28 01:09:38 ----A---- C:\Windows\system32\amdave64.dll
2016-04-28 01:09:20 ----A---- C:\Windows\SYSWOW64\amdave32.dll
2016-04-28 01:04:52 ----A---- C:\Windows\system32\mantleaxl64.dll
2016-04-28 01:04:48 ----A---- C:\Windows\SYSWOW64\mantleaxl32.dll
2016-04-28 01:04:46 ----A---- C:\Windows\system32\mantle64.dll
2016-04-28 01:04:44 ----A---- C:\Windows\SYSWOW64\mantle32.dll
2016-04-28 01:04:42 ----A---- C:\Windows\SYSWOW64\hsa-thunk.dll
2016-04-28 01:04:42 ----A---- C:\Windows\system32\hsa-thunk64.dll
2016-04-28 01:04:40 ----A---- C:\Windows\system32\GameManager64.dll
2016-04-28 01:04:38 ----A---- C:\Windows\SYSWOW64\GameManager32.dll
2016-04-28 01:04:34 ----A---- C:\Windows\system32\dgtrayicon.exe
2016-04-28 01:04:34 ----A---- C:\Windows\system32\detoured.dll
2016-04-28 01:04:32 ----A---- C:\Windows\SYSWOW64\detoured.dll
2016-04-28 01:04:26 ----A---- C:\Windows\system32\clinfo.exe
2016-04-28 01:03:08 ----A---- C:\Windows\system32\atitmm64.dll
2016-04-28 01:03:06 ----A---- C:\Windows\SYSWOW64\atisamu32.dll
2016-04-28 01:03:06 ----A---- C:\Windows\system32\atisamu64.dll
2016-04-28 01:03:00 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
2016-04-28 01:00:18 ----A---- C:\Windows\system32\amdocl64.dll
2016-04-28 00:59:46 ----A---- C:\Windows\system32\amdocl12cl64.dll
2016-04-28 00:59:22 ----A---- C:\Windows\SYSWOW64\amdocl12cl.dll
2016-04-28 00:59:00 ----A---- C:\Windows\SYSWOW64\amdocl.dll
2016-04-28 00:58:40 ----A---- C:\Windows\system32\amdmmcl6.dll
2016-04-28 00:58:38 ----A---- C:\Windows\SYSWOW64\amdmmcl.dll
2016-04-28 00:58:32 ----A---- C:\Windows\system32\amdmantle64.dll
2016-04-28 00:58:16 ----A---- C:\Windows\SYSWOW64\amdmantle32.dll
2016-04-28 00:58:08 ----A---- C:\Windows\system32\amdlvr64.dll
2016-04-28 00:58:04 ----A---- C:\Windows\SYSWOW64\amdlvr32.dll
2016-04-28 00:57:52 ----A---- C:\Windows\SYSWOW64\amdhdl32.dll
2016-04-28 00:57:52 ----A---- C:\Windows\system32\amdhdl64.dll
2016-04-28 00:57:48 ----A---- C:\Windows\SYSWOW64\amdgfxinfo32.dll
2016-04-28 00:57:48 ----A---- C:\Windows\system32\amdgfxinfo64.dll
2016-04-28 00:57:46 ----A---- C:\Windows\system32\drivers\amdacpksd.sys
2016-04-28 00:57:42 ----A---- C:\Windows\system32\OpenCL.dll
2016-04-28 00:57:40 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2016-04-28 00:56:32 ----A---- C:\Windows\system32\amdpcom64.dll
2016-04-28 00:56:30 ----A---- C:\Windows\SYSWOW64\amdhcp32.dll
2016-04-28 00:48:38 ----A---- C:\Windows\system32\atio6axx.dll
2016-04-28 00:48:36 ----A---- C:\Windows\system32\ATIODE.exe
2016-04-28 00:48:36 ----A---- C:\Windows\system32\ATIODCLI.exe
2016-04-28 00:48:36 ----A---- C:\Windows\system32\aticaldd64.dll
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\atieah32.exe
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
2016-04-28 00:48:34 ----A---- C:\Windows\SYSWOW64\atiadlxx.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atimuixx.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atiglpxx.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atig6txx.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atig6pxx.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atiesrxx.exe
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atieclxx.exe
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atieah64.exe
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atidemgy.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\aticalrt64.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\aticalcl64.dll
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atiapfxx.exe
2016-04-28 00:48:34 ----A---- C:\Windows\system32\atiadlxx.dll
2016-04-28 00:48:32 ----A---- C:\Windows\SYSWOW64\amdvlk32.dll
2016-04-28 00:48:32 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2016-04-28 00:48:32 ----A---- C:\Windows\system32\amdvlk64.dll
2016-04-24 19:31:57 ----D---- C:\ProgramData\AMD
2016-04-24 13:41:07 ----D---- C:\Windows\system32\SleepStudy
2016-04-23 18:01:42 ----D---- C:\ProgramData\acer
2016-04-23 18:00:40 ----D---- C:\ProgramData\updater2
2016-04-23 18:00:39 ----D---- C:\oem
2016-04-23 17:45:43 ----D---- C:\Windows\oem
2016-04-23 17:23:21 ----SHD---- C:\Config.Msi
2016-04-23 17:22:14 ----D---- C:\Users\sinpa\AppData\Roaming\ATI
2016-04-23 17:22:14 ----D---- C:\ProgramData\ATI
2016-04-23 17:01:19 ----D---- C:\Program Files\Synaptics
2016-04-23 17:01:07 ----A---- C:\Windows\system32\WdfCoInstaller01011.dll
2016-04-23 17:01:07 ----A---- C:\Windows\system32\drivers\Smb_driver_Intel.sys
2016-04-23 16:57:19 ----A---- C:\Windows\system32\RtNicProp64.dll
2016-04-23 16:57:19 ----A---- C:\Windows\system32\drivers\rt640x64.sys
2016-04-23 16:57:16 ----D---- C:\Program Files (x86)\Realtek
2016-04-23 16:57:03 ----D---- C:\ProgramData\SlimWare Utilities, Inc
2016-04-23 16:52:45 ----A---- C:\Windows\system32\drivers\SWDUMon.sys
2016-04-23 16:52:39 ----D---- C:\Program Files (x86)\SlimDrivers
2016-04-23 16:49:26 ----D---- C:\Users\sinpa\AppData\Roaming\Zoner
2016-04-23 16:49:26 ----D---- C:\ProgramData\Zoner
2016-04-23 16:33:29 ----A---- C:\Windows\SECOH-QAD.exe
2016-04-23 16:33:29 ----A---- C:\Windows\SECOH-QAD.dll
2016-04-23 16:33:26 ----D---- C:\Program Files\KMSpico
2016-04-23 16:30:45 ----AD---- C:\Program Files (x86)\Microsoft Office
2016-04-23 16:30:44 ----D---- C:\Program Files\Microsoft Office
2016-04-23 16:18:41 ----D---- C:\Program Files\Zoner
2016-04-23 16:18:26 ----D---- C:\Windows\system32\appmgmt
2016-04-23 16:07:23 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2016-04-23 15:52:07 ----D---- C:\Program Files\Common Files\Adobe
2016-04-23 15:51:49 ----AD---- C:\Program Files\Adobe
2016-04-23 15:13:20 ----D---- C:\Program Files (x86)\MSECache
2016-04-23 14:57:47 ----D---- C:\Users\sinpa\AppData\Roaming\Identities
2016-04-23 14:57:47 ----D---- C:\Users\sinpa\AppData\Roaming\ESET
2016-04-23 14:56:33 ----A---- C:\Windows\AutoKMS.ini
2016-04-23 14:56:33 ----A---- C:\Windows\AutoKMS.exe
2016-04-23 14:55:45 ----D---- C:\Windows\SYSWOW64\XPSViewer
2016-04-23 14:55:43 ----D---- C:\Program Files\Reference Assemblies
2016-04-23 14:55:43 ----D---- C:\Program Files\MSBuild
2016-04-23 14:55:43 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-04-23 14:55:19 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2016-04-23 14:55:19 ----A---- C:\Windows\SYSWOW64\PresentationNative_v0300.dll
2016-04-23 14:55:19 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-04-23 14:55:17 ----A---- C:\Windows\system32\TsWpfWrp.exe
2016-04-23 14:55:17 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2016-04-23 14:55:17 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2016-04-23 14:52:26 ----AD---- C:\Program Files (x86)\MSBuild
2016-04-23 14:49:45 ----D---- C:\ProgramData\Microsoft Help
2016-04-23 14:43:19 ----D---- C:\Users\sinpa\AppData\Roaming\vlc
2016-04-23 14:40:47 ----D---- C:\Program Files (x86)\Synology
2016-04-23 14:35:15 ----AD---- C:\Program Files (x86)\LastPass
2016-04-23 14:33:47 ----D---- C:\Users\sinpa\AppData\Roaming\GHISLER
2016-04-23 14:33:47 ----D---- C:\totalcmd
2016-04-23 14:32:51 ----D---- C:\Windows\Panther
2016-04-23 14:29:45 ----D---- C:\Program Files (x86)\Sony
2016-04-23 14:29:37 ----D---- C:\Users\sinpa\AppData\Roaming\InstallShield
2016-04-23 14:28:08 ----A---- C:\Windows\system32\drivers\LNonPnP.sys
2016-04-23 14:28:01 ----D---- C:\ProgramData\Logishrd
2016-04-23 14:27:58 ----D---- C:\Program Files\Logitech
2016-04-23 14:27:49 ----D---- C:\Program Files\Common Files\LogiShrd
2016-04-23 14:27:46 ----D---- C:\Users\sinpa\AppData\Roaming\Logitech
2016-04-23 14:27:46 ----D---- C:\Users\sinpa\AppData\Roaming\Logishrd
2016-04-23 14:26:31 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-04-23 14:26:31 ----D---- C:\Program Files\Alienware
2016-04-23 14:26:01 ----D---- C:\Users\sinpa\AppData\Roaming\WinRAR
2016-04-23 14:25:53 ----AD---- C:\Program Files\WinRAR
2016-04-23 14:22:42 ----AD---- C:\Program Files\MPC-HC
2016-04-23 14:22:18 ----D---- C:\Program Files (x86)\VideoLAN
2016-04-23 14:19:18 ----D---- C:\Users\sinpa\AppData\Roaming\VitySoft
2016-04-23 14:19:06 ----D---- C:\Users\sinpa\AppData\Roaming\Sun
2016-04-23 14:19:04 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2016-04-23 14:18:56 ----D---- C:\ProgramData\Oracle
2016-04-23 14:18:55 ----D---- C:\Program Files\Java
2016-04-23 14:15:33 ----D---- C:\ProgramData\ESET
2016-04-23 14:15:31 ----D---- C:\Program Files\ESET
2016-04-23 14:13:33 ----D---- C:\Program Files (x86)\Adobe
2016-04-23 14:13:27 ----D---- C:\ProgramData\Adobe
2016-04-23 14:00:58 ----D---- C:\Users\sinpa\AppData\Roaming\Opera Software
2016-04-23 14:00:44 ----AD---- C:\Program Files (x86)\Opera
2016-04-23 13:45:34 ----N---- C:\Windows\system32\MpSigStub.exe
2016-04-23 13:44:13 ----D---- C:\Windows\system32\MRT
2016-04-23 13:44:12 ----A---- C:\Windows\system32\MRT.exe
2016-04-23 13:44:02 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-04-23 13:44:02 ----A---- C:\Windows\SYSWOW64\edgehtml.dll
2016-04-23 13:44:01 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-04-23 13:44:01 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-04-23 13:44:01 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-04-23 13:44:01 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-04-23 13:44:01 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2016-04-23 13:44:00 ----A---- C:\Windows\SYSWOW64\wininetlui.dll
2016-04-23 13:44:00 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-04-23 13:44:00 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-04-23 13:44:00 ----A---- C:\Windows\system32\wininet.dll
2016-04-23 13:44:00 ----A---- C:\Windows\system32\kerberos.dll
2016-04-23 13:44:00 ----A---- C:\Windows\system32\dwmcore.dll
2016-04-23 13:44:00 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2016-04-23 13:43:59 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-04-23 13:43:59 ----A---- C:\Windows\SYSWOW64\Chakra.dll
2016-04-23 13:43:59 ----A---- C:\Windows\system32\wininetlui.dll
2016-04-23 13:43:59 ----A---- C:\Windows\system32\urlmon.dll
2016-04-23 13:43:59 ----A---- C:\Windows\system32\ntdll.dll
2016-04-23 13:43:59 ----A---- C:\Windows\system32\jscript9.dll
2016-04-23 13:43:58 ----A---- C:\Windows\system32\ieframe.dll
2016-04-23 13:43:58 ----A---- C:\Windows\system32\Chakradiag.dll
2016-04-23 13:43:58 ----A---- C:\Windows\system32\Chakra.dll
2016-04-23 13:43:58 ----A---- C:\Windows\system32\edgehtml.dll
2016-04-23 13:43:57 ----A---- C:\Windows\system32\wuaueng.dll
2016-04-23 13:43:57 ----A---- C:\Windows\system32\win32kfull.sys
2016-04-23 13:43:57 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-04-23 13:43:57 ----A---- C:\Windows\system32\mshtml.dll
2016-04-23 13:43:56 ----A---- C:\Windows\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-04-23 13:43:56 ----A---- C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2016-04-23 13:43:56 ----A---- C:\Windows\system32\AudioSes.dll
2016-04-23 13:43:56 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2016-04-23 13:43:56 ----A---- C:\Windows\system32\audiodg.exe
2016-04-23 13:43:55 ----A---- C:\Windows\SYSWOW64\twinui.dll
2016-04-23 13:43:55 ----A---- C:\Windows\system32\twinui.dll
2016-04-23 13:43:55 ----A---- C:\Windows\system32\audiosrv.dll
2016-04-23 13:43:54 ----A---- C:\Windows\SYSWOW64\windows.storage.dll
2016-04-23 13:43:54 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-04-23 13:43:53 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2016-04-23 13:43:53 ----A---- C:\Windows\system32\windows.storage.dll
2016-04-23 13:43:52 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2016-04-23 13:43:51 ----A---- C:\Windows\system32\wmp.dll
2016-04-23 13:43:51 ----A---- C:\Windows\system32\AUDIOKSE.dll
2016-04-23 13:43:50 ----A---- C:\Windows\system32\shell32.dll
2016-04-23 13:43:50 ----A---- C:\Windows\system32\lsasrv.dll
2016-04-23 13:43:50 ----A---- C:\Windows\system32\jsproxy.dll
2016-04-23 13:43:50 ----A---- C:\Windows\system32\ipnathlp.dll
2016-04-23 13:43:50 ----A---- C:\Windows\system32\invagent.dll
2016-04-23 13:43:50 ----A---- C:\Windows\system32\devinv.dll
2016-04-23 13:43:50 ----A---- C:\Windows\system32\aeinv.dll
2016-04-23 13:43:49 ----A---- C:\Windows\system32\WSService.dll
2016-04-23 13:43:49 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2016-04-23 13:43:48 ----A---- C:\Windows\SYSWOW64\TextInputFramework.dll
2016-04-23 13:43:48 ----A---- C:\Windows\SYSWOW64\InputService.dll
2016-04-23 13:43:48 ----A---- C:\Windows\system32\TextInputFramework.dll
2016-04-23 13:43:48 ----A---- C:\Windows\system32\mstscax.dll
2016-04-23 13:43:48 ----A---- C:\Windows\system32\InputService.dll
2016-04-23 13:43:47 ----A---- C:\Windows\SYSWOW64\wmp.dll
2016-04-23 13:43:47 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2016-04-23 13:43:47 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-04-23 13:43:46 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2016-04-23 13:43:46 ----A---- C:\Windows\system32\wifinetworkmanager.dll
2016-04-23 13:43:46 ----A---- C:\Windows\system32\SettingsHandlers_nt.dll
2016-04-23 13:43:45 ----A---- C:\Windows\SYSWOW64\mfsvr.dll
2016-04-23 13:43:45 ----A---- C:\Windows\SYSWOW64\BingMaps.dll
2016-04-23 13:43:45 ----A---- C:\Windows\system32\mfsvr.dll
2016-04-23 13:43:45 ----A---- C:\Windows\system32\MFMediaEngine.dll
2016-04-23 13:43:45 ----A---- C:\Windows\system32\mfcore.dll
2016-04-23 13:43:45 ----A---- C:\Windows\system32\CoreUIComponents.dll
2016-04-23 13:43:44 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2016-04-23 13:43:44 ----A---- C:\Windows\SYSWOW64\mfcore.dll
2016-04-23 13:43:44 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2016-04-23 13:43:44 ----A---- C:\Windows\SYSWOW64\CoreUIComponents.dll
2016-04-23 13:43:44 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2016-04-23 13:43:44 ----A---- C:\Windows\system32\SmsRouterSvc.dll
2016-04-23 13:43:44 ----A---- C:\Windows\system32\LicenseManager.dll
2016-04-23 13:43:44 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-04-23 13:43:44 ----A---- C:\Windows\system32\drivers\dxgmms2.sys
2016-04-23 13:43:44 ----A---- C:\Windows\system32\drivers\cng.sys
2016-04-23 13:43:44 ----A---- C:\Windows\system32\d3d11.dll
2016-04-23 13:43:44 ----A---- C:\Windows\system32\CertEnroll.dll
2016-04-23 13:43:43 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll
2016-04-23 13:43:43 ----A---- C:\Windows\SYSWOW64\LicenseManager.dll
2016-04-23 13:43:43 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-04-23 13:43:43 ----A---- C:\Windows\SYSWOW64\ActiveSyncProvider.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\XblGameSave.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\Windows.UI.Logon.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\win32kbase.sys
2016-04-23 13:43:43 ----A---- C:\Windows\system32\UserDataService.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\StorSvc.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\schedsvc.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\mfmp4srcsnk.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\enterprisecsps.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-04-23 13:43:43 ----A---- C:\Windows\system32\AppXDeploymentServer.dll
2016-04-23 13:43:43 ----A---- C:\Windows\system32\ActiveSyncProvider.dll
2016-04-23 13:43:42 ----A---- C:\Windows\SYSWOW64\mfsrcsnk.dll
2016-04-23 13:43:42 ----A---- C:\Windows\SYSWOW64\mfasfsrcsnk.dll
2016-04-23 13:43:42 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\wwansvc.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\Windows.AccountsControl.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\SRHInproc.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\mfsrcsnk.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\mfmpeg2srcsnk.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\iertutil.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\esent.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\DisplayManager.dll
2016-04-23 13:43:42 ----A---- C:\Windows\system32\BingMaps.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\Windows.Media.Audio.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\Windows.AccountsControl.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\UIAutomationCore.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\SRHInproc.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\mfmpeg2srcsnk.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\esent.dll
2016-04-23 13:43:41 ----A---- C:\Windows\SYSWOW64\DisplayManager.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\XblAuthManager.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\Windows.Media.Audio.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\UIAutomationCore.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\SRH.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\SettingSyncCore.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\mfasfsrcsnk.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\localspl.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\KernelBase.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\dosvc.dll
2016-04-23 13:43:41 ----A---- C:\Windows\system32\diagtrack.dll
2016-04-23 13:43:40 ----A---- C:\Windows\SYSWOW64\WWAHost.exe
2016-04-23 13:43:40 ----A---- C:\Windows\SYSWOW64\Windows.UI.Logon.dll
2016-04-23 13:43:40 ----A---- C:\Windows\SYSWOW64\Unistore.dll
2016-04-23 13:43:40 ----A---- C:\Windows\SYSWOW64\SRH.dll
2016-04-23 13:43:40 ----A---- C:\Windows\SYSWOW64\SettingSyncCore.dll
2016-04-23 13:43:40 ----A---- C:\Windows\SYSWOW64\MapControlCore.dll
2016-04-23 13:43:40 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\WWAHost.exe
2016-04-23 13:43:40 ----A---- C:\Windows\system32\Windows.UI.Shell.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\Windows.UI.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\Unistore.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\uDWM.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\RemoteNaturalLanguage.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\PhoneProviders.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\ole32.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\ngcsvc.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\ngckeyenum.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\MapsStore.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\MapControlCore.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\ContactApis.dll
2016-04-23 13:43:40 ----A---- C:\Windows\system32\AppXDeploymentExtensions.dll
2016-04-23 13:43:39 ----A---- C:\Windows\SYSWOW64\WMPDMC.exe
2016-04-23 13:43:39 ----A---- C:\Windows\SYSWOW64\Windows.UI.dll
2016-04-23 13:43:39 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-04-23 13:43:39 ----A---- C:\Windows\SYSWOW64\mfds.dll
2016-04-23 13:43:39 ----A---- C:\Windows\SYSWOW64\ContactApis.dll
2016-04-23 13:43:39 ----A---- C:\Windows\SYSWOW64\AppointmentApis.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\wlansvc.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\Windows.UI.Cred.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\Windows.Media.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\wcmsvc.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\vaultsvc.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\SMSRouter.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\SettingSync.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\RDXService.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\MFCaptureEngine.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\MCRecvSrc.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\dxgi.dll
2016-04-23 13:43:39 ----A---- C:\Windows\system32\AppointmentApis.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\Windows.Web.Http.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\Windows.Media.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\StoreAgent.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\MFCaptureEngine.dll
2016-04-23 13:43:38 ----A---- C:\Windows\SYSWOW64\MCRecvSrc.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\wuuhext.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\wlansec.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\Windows.UI.Core.TextInput.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\Windows.Media.Speech.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\Windows.Media.MediaControl.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\Windows.Internal.Bluetooth.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\usbmon.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\tileobjserver.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\StoreAgent.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\spoolsv.exe
2016-04-23 13:43:38 ----A---- C:\Windows\system32\SensorService.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\QuickActionsDataModel.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\NetSetupShim.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\NetSetupEngine.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\netlogon.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\msv1_0.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\modernexecserver.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\mfds.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\MapConfiguration.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\generaltel.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\fveapi.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\fontdrvhost.exe
2016-04-23 13:43:38 ----A---- C:\Windows\system32\ClipSVC.dll
2016-04-23 13:43:38 ----A---- C:\Windows\system32\AppxPackaging.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\Windows.Media.MediaControl.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\wer.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\RemoteNaturalLanguage.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\NetSetupShim.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\msvproc.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\MSFlacDecoder.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\mfmkvsrcsnk.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\MessagingDataModel2.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\MapConfiguration.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\LockAppHost.exe
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\LaunchWinApp.exe
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\fontdrvhost.exe
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\deviceaccess.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\CredProvDataModel.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\AppxPackaging.dll
2016-04-23 13:43:37 ----A---- C:\Windows\SYSWOW64\AccountsRt.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\wer.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\TokenBroker.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\TimeBrokerServer.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\NMAA.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\NetSetupSvc.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\msxml3.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\MsSpellCheckingFacility.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\MessagingDataModel2.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\MDEServer.exe
2016-04-23 13:43:37 ----A---- C:\Windows\system32\LockAppHost.exe
2016-04-23 13:43:37 ----A---- C:\Windows\system32\drivers\http.sys
2016-04-23 13:43:37 ----A---- C:\Windows\system32\dmenrollengine.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\deviceaccess.dll
2016-04-23 13:43:37 ----A---- C:\Windows\system32\AccountsRt.dll
2016-04-23 13:43:36 ----A---- C:\Windows\SYSWOW64\Windows.UI.Cred.dll
2016-04-23 13:43:36 ----A---- C:\Windows\SYSWOW64\PackageStateRoaming.dll
2016-04-23 13:43:36 ----A---- C:\Windows\SYSWOW64\NetSetupEngine.dll
2016-04-23 13:43:36 ----A---- C:\Windows\SYSWOW64\JpMapControl.dll
2016-04-23 13:43:36 ----A---- C:\Windows\SYSWOW64\AppXDeploymentClient.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\Windows.Web.Http.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\Windows.Internal.Shell.Broker.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\Windows.Devices.Bluetooth.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\wifiprofilessettinghandler.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\storewuauth.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\SharedStartModel.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\RDXTaskFactory.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\msvproc.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\MSFlacDecoder.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\moshostcore.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\mfmkvsrcsnk.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\JpMapControl.dll
2016-04-23 13:43:36 ----A---- C:\Windows\system32\drivers\xboxgip.sys
2016-04-23 13:43:36 ----A---- C:\Windows\system32\drivers\acpi.sys
2016-04-23 13:43:36 ----A---- C:\Windows\system32\DeviceCensus.exe
2016-04-23 13:43:36 ----A---- C:\Windows\system32\AppXDeploymentClient.dll
2016-04-23 13:43:35 ----A---- C:\Windows\SYSWOW64\WiFiDisplay.dll
2016-04-23 13:43:35 ----A---- C:\Windows\SYSWOW64\TokenBroker.dll
2016-04-23 13:43:35 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2016-04-23 13:43:35 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2016-04-23 13:43:35 ----A---- C:\Windows\SYSWOW64\msi.dll
2016-04-23 13:43:35 ----A---- C:\Windows\SYSWOW64\ChatApis.dll
2016-04-23 13:43:35 ----A---- C:\Windows\SYSWOW64\AppxAllUserStore.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\wuapi.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\WMPDMC.exe
2016-04-23 13:43:35 ----A---- C:\Windows\system32\winresume.exe
2016-04-23 13:43:35 ----A---- C:\Windows\system32\winload.exe
2016-04-23 13:43:35 ----A---- C:\Windows\system32\Windows.Networking.Connectivity.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\WiFiDisplay.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\werui.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\taskschd.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\psmsrv.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\mdmmigrator.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\InstallAgent.exe
2016-04-23 13:43:35 ----A---- C:\Windows\system32\enrollmentapi.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-04-23 13:43:35 ----A---- C:\Windows\system32\drivers\rfcomm.sys
2016-04-23 13:43:35 ----A---- C:\Windows\system32\DeviceEnroller.exe
2016-04-23 13:43:35 ----A---- C:\Windows\system32\CredProvDataModel.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\CallHistoryClient.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\bdesvc.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\atmfd.dll
2016-04-23 13:43:35 ----A---- C:\Windows\system32\AppxAllUserStore.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\Windows.Web.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\Windows.UI.Input.Inking.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\Windows.Media.Speech.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\policymanager.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\MsSpellCheckingFacility.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\InstallAgent.exe
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\FirewallAPI.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2016-04-23 13:43:34 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\Windows.Web.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\Windows.UI.Input.Inking.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\VEDataLayerHelpers.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\vaultcli.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\thumbcache.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\PsmServiceExtHost.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\profsvc.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\msi.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\MPSSVC.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\MDMAppInstaller.exe
2016-04-23 13:43:34 ----A---- C:\Windows\system32\LsaIso.exe
2016-04-23 13:43:34 ----A---- C:\Windows\system32\LaunchWinApp.exe
2016-04-23 13:43:34 ----A---- C:\Windows\system32\ChatApis.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\flvprophandler.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\EmailApis.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\drivers\USBXHCI.SYS
2016-04-23 13:43:34 ----A---- C:\Windows\system32\drivers\ufx01000.sys
2016-04-23 13:43:34 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-04-23 13:43:34 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2016-04-23 13:43:34 ----A---- C:\Windows\system32\drivers\bridge.sys
2016-04-23 13:43:34 ----A---- C:\Windows\system32\dnsapi.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\configurationclient.dll
2016-04-23 13:43:34 ----A---- C:\Windows\system32\bisrv.dll
2016-04-23 13:43:33 ----A---- C:\Windows\SYSWOW64\Windows.Networking.Connectivity.dll
2016-04-23 13:43:33 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-04-23 13:43:33 ----A---- C:\Windows\SYSWOW64\MosStorage.dll
2016-04-23 13:43:33 ----A---- C:\Windows\SYSWOW64\EmailApis.dll
2016-04-23 13:43:33 ----A---- C:\Windows\SYSWOW64\cemapi.dll
2016-04-23 13:43:33 ----A---- C:\Windows\SYSWOW64\AppointmentActivation.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\Windows.Media.Devices.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\VCardParser.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\sqmapi.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\sharemediacpl.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\policymanagerprecheck.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\policymanager.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\PackageStateRoaming.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\ncbservice.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\MosStorage.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\mdmregistration.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\fveui.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\drivers\ndis.sys
2016-04-23 13:43:33 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-04-23 13:43:33 ----A---- C:\Windows\system32\drivers\dfsc.sys
2016-04-23 13:43:33 ----A---- C:\Windows\system32\drivers\bthport.sys
2016-04-23 13:43:33 ----A---- C:\Windows\system32\domgmt.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\dafBth.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\AuthBroker.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\accountaccessor.dll
2016-04-23 13:43:33 ----A---- C:\Windows\system32\AboveLockAppHost.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Bluetooth.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\VEDataLayerHelpers.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\PhoneCallHistoryApis.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\mdmregistration.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\fwbase.dll
2016-04-23 13:43:32 ----A---- C:\Windows\SYSWOW64\AboveLockAppHost.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\wlanmsm.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\wkscli.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\Windows.Networking.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\UserDataAccountApis.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe
2016-04-23 13:43:32 ----A---- C:\Windows\system32\SyncController.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\srvcli.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\samsrv.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\PimIndexMaintenance.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\omadmapi.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\NetSetupApi.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\netapi32.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-04-23 13:43:32 ----A---- C:\Windows\system32\drivers\appid.sys
2016-04-23 13:43:32 ----A---- C:\Windows\system32\cemapi.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\Windows.Networking.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\Windows.Media.Devices.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Scanners.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\wermgr.exe
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\VCardParser.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\SyncController.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\SensorsNativeApi.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\NetSetupApi.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2016-04-23 13:43:31 ----A---- C:\Windows\SYSWOW64\AppxSip.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\wsqmcons.exe
2016-04-23 13:43:31 ----A---- C:\Windows\system32\wsdchngr.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\wlanapi.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\win32spl.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\wermgr.exe
2016-04-23 13:43:31 ----A---- C:\Windows\system32\UserDataPlatformHelperUtil.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\SensorsNativeApi.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\provpackageapidll.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\PhoneCallHistoryApis.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\oleacc.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\iuilp.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\ieproxy.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\easinvoker.exe
2016-04-23 13:43:31 ----A---- C:\Windows\system32\drivers\WdiWiFi.sys
2016-04-23 13:43:31 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-04-23 13:43:31 ----A---- C:\Windows\system32\drivers\USBHUB3.SYS
2016-04-23 13:43:31 ----A---- C:\Windows\system32\drivers\sdbus.sys
2016-04-23 13:43:31 ----A---- C:\Windows\system32\drivers\nwifi.sys
2016-04-23 13:43:31 ----A---- C:\Windows\system32\drivers\dumpsd.sys
2016-04-23 13:43:31 ----A---- C:\Windows\system32\drivers\bthenum.sys
2016-04-23 13:43:31 ----A---- C:\Windows\system32\DAFWSD.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\BitLockerDeviceEncryption.exe
2016-04-23 13:43:31 ----A---- C:\Windows\system32\AuthHost.exe
2016-04-23 13:43:31 ----A---- C:\Windows\system32\asycfilt.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\AppxSysprep.dll
2016-04-23 13:43:31 ----A---- C:\Windows\system32\AppointmentActivation.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\werui.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\VEEventDispatcher.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\UserDataTimeUtil.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\UserDataAccountApis.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\POSyncServices.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\NotificationObjFactory.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\ieproxy.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\ExtrasXmlParser.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\ExSMime.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\credprovhost.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\CallHistoryClient.dll
2016-04-23 13:43:30 ----A---- C:\Windows\SYSWOW64\browcli.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\wuautoappupdate.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\WSDApi.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\wpninprc.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\wlansvcpal.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\Windows.Devices.Scanners.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\WiFiConfigSP.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\wfapigp.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\VEStoreEventHandlers.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\VEEventDispatcher.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\UserDataLanguageUtil.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\tzautoupdate.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\seclogon.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\scapi.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\POSyncServices.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\PimIndexMaintenanceClient.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\OnDemandConnRouteHelper.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\NotificationObjFactory.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\MBMediaManager.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\LicenseManagerShellext.exe
2016-04-23 13:43:30 ----A---- C:\Windows\system32\IKEEXT.DLL
2016-04-23 13:43:30 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2016-04-23 13:43:30 ----A---- C:\Windows\system32\fwbase.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\fvewiz.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\FirewallAPI.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\ExSMime.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\easwrt.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\dssvc.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\dnsrslvr.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\dmcsps.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\credprovhost.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\browserbroker.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\browser.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\browcli.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\basesrv.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\AppxSip.dll
2016-04-23 13:43:30 ----A---- C:\Windows\system32\actxprxy.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\UserDataTypeHelperUtil.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\UserDataLanguageUtil.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\TokenBrokerCookies.exe
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\tbauth.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\profext.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\PimIndexMaintenanceClient.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\mos.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\easwrt.dll
2016-04-23 13:43:29 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\wups.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\wfdprov.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\UserDataTypeHelperUtil.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\UserDataTimeUtil.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\TokenBrokerCookies.exe
2016-04-23 13:43:29 ----A---- C:\Windows\system32\TimeBrokerClient.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\tbauth.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\srpapi.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\SensorsNativeApi.V2.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\samlib.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\profext.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\NetCfgNotifyObjectHost.exe
2016-04-23 13:43:29 ----A---- C:\Windows\system32\moshost.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\mos.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\mapsupdatetask.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\MapsCSP.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\MapsBtSvc.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\irmon.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\fwpolicyiomgr.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\fveskybackup.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\fvecpl.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\FontProvider.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\ExtrasXmlParser.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\drivers\serial.sys
2016-04-23 13:43:29 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2016-04-23 13:43:29 ----A---- C:\Windows\system32\drivers\portcls.sys
2016-04-23 13:43:29 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2016-04-23 13:43:29 ----A---- C:\Windows\system32\drivers\BthLEEnum.sys
2016-04-23 13:43:29 ----A---- C:\Windows\system32\dmenterprisediagnostics.dll
2016-04-23 13:43:29 ----A---- C:\Windows\system32\BFE.DLL
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\wfapigp.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\TimeBrokerClient.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\SensorsNativeApi.V2.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\samlib.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\OnDemandConnRouteHelper.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\oleacchooks.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\NMAA.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\MTF.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\MapsBtSvc.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\InputLocaleManager.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\fwpolicyiomgr.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2016-04-23 13:43:28 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\oleacchooks.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\mtxoci.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\MTF.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\InputLocaleManager.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\fveapibase.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\fontsub.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\drivers\xinputhid.sys
2016-04-23 13:43:28 ----A---- C:\Windows\system32\BdeHdCfgLib.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\bcastdvr.exe
2016-04-23 13:43:28 ----A---- C:\Windows\system32\atmlib.dll
2016-04-23 13:43:28 ----A---- C:\Windows\system32\AppCapture.dll
2016-04-23 13:42:37 ----D---- C:\Users\sinpa\AppData\Roaming\Macromedia
2016-04-23 13:40:00 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-04-23 13:39:25 ----AD---- C:\Program Files (x86)\AMD
2016-04-23 13:39:15 ----D---- C:\ProgramData\Package Cache
2016-04-23 13:39:04 ----D---- C:\AMD
2016-04-23 13:39:02 ----D---- C:\Program Files\Common Files\ATI Technologies
2016-04-23 13:38:59 ----AD---- C:\Program Files\AMD
2016-04-23 13:37:09 ----A---- C:\Windows\SYSWOW64\NlsLexicons0009.dll
2016-04-23 13:37:09 ----A---- C:\Windows\SYSWOW64\NlsData0009.dll
2016-04-23 13:37:09 ----A---- C:\Windows\system32\prm0009.dll
2016-04-23 13:37:09 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2016-04-23 13:37:09 ----A---- C:\Windows\system32\NlsData0009.dll
2016-04-23 13:36:36 ----D---- C:\Users\sinpa\AppData\Roaming\Adobe
2016-04-23 13:36:13 ----SD---- C:\Users\sinpa\AppData\Roaming\Microsoft
2016-04-23 13:34:52 ----D---- C:\Windows\CSC
2016-04-23 13:34:46 ----SHD---- C:\Recovery
2016-04-23 13:34:46 ----SHD---- C:\ProgramData\Šablony
2016-04-23 13:34:46 ----SHD---- C:\ProgramData\Plocha
2016-04-23 13:34:46 ----SHD---- C:\ProgramData\Nabídka Start
2016-04-23 13:34:46 ----SHD---- C:\ProgramData\Dokumenty
2016-04-23 13:34:46 ----SHD---- C:\ProgramData\Data aplikací
2016-04-23 13:34:46 ----SHD---- C:\Documents and Settings
2016-04-23 13:34:40 ----ASH---- C:\hiberfil.sys
2016-04-23 13:34:22 ----D---- C:\Windows\SoftwareDistribution
2016-04-23 13:33:22 ----D---- C:\Windows\Prefetch
2016-04-23 13:33:08 ----SHD---- C:\System Volume Information
2016-04-23 13:33:08 ----ASH---- C:\swapfile.sys
2016-04-23 13:33:08 ----ASH---- C:\pagefile.sys
2016-04-22 17:52:36 ----A---- C:\Windows\system32\drivers\SETC4CE.tmp
2016-04-22 17:52:36 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2016-04-22 17:52:34 ----A---- C:\Windows\system32\drivers\SETDBCE.tmp
2016-04-22 17:52:34 ----A---- C:\Windows\system32\drivers\SET97B0.tmp
2016-04-22 17:52:34 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2016-04-22 17:50:34 ----A---- C:\Windows\SYSWOW64\SETE6B2.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\SYSWOW64\SETD673.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\SYSWOW64\SETA513.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\SYSWOW64\SET8E11.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
2016-04-22 17:50:34 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
2016-04-22 17:50:34 ----A---- C:\Windows\system32\SETDBF0.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\system32\SETD128.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\system32\SETC669.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\system32\SET97C3.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\system32\SET874F.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\system32\SET7889.tmp
2016-04-22 17:50:34 ----A---- C:\Windows\system32\atiuxp64.dll
2016-04-22 17:50:34 ----A---- C:\Windows\system32\atiumd6a.dll
2016-04-22 17:50:34 ----A---- C:\Windows\system32\atidxx64.dll
2016-04-22 17:50:32 ----A---- C:\Windows\SYSWOW64\SETDD30.tmp
2016-04-22 17:50:32 ----A---- C:\Windows\SYSWOW64\SET9970.tmp
2016-04-22 17:50:32 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
2016-04-22 17:50:32 ----A---- C:\Windows\system32\SETDC33.tmp
2016-04-22 17:50:32 ----A---- C:\Windows\system32\SET9824.tmp
2016-04-22 17:50:32 ----A---- C:\Windows\system32\aticfx64.dll

======List of files/folders modified in the last 1 month======

2016-05-06 08:20:24 ----D---- C:\Windows\Temp
2016-05-06 08:20:08 ----D---- C:\Windows\system32\sru
2016-05-06 08:19:59 ----SHD---- C:\Windows\Installer
2016-05-06 08:19:51 ----RD---- C:\Windows\assembly
2016-05-06 08:19:51 ----D---- C:\Windows\Microsoft.NET
2016-05-06 08:19:45 ----RD---- C:\Program Files (x86)
2016-05-06 08:19:45 ----D---- C:\Windows
2016-05-06 08:19:38 ----RSD---- C:\Windows\Fonts
2016-05-06 08:19:33 ----D---- C:\Windows\SysWOW64
2016-05-06 08:19:33 ----D---- C:\Program Files (x86)\Common Files
2016-05-06 08:19:32 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2016-05-06 08:19:04 ----A---- C:\Windows\win.ini
2016-05-06 08:19:01 ----D---- C:\Windows\ShellNew
2016-05-06 08:16:18 ----D---- C:\Windows\system32\config
2016-05-06 08:16:17 ----SD---- C:\ProgramData\Microsoft
2016-05-06 08:15:53 ----D---- C:\Windows\system32\Tasks
2016-05-06 08:15:53 ----D---- C:\Windows\System32
2016-05-06 08:00:10 ----D---- C:\Windows\AppReadiness
2016-05-06 08:00:09 ----HD---- C:\Program Files\WindowsApps
2016-05-05 12:45:19 ----D---- C:\Windows\INF
2016-05-05 12:44:37 ----RD---- C:\Program Files
2016-05-05 12:44:37 ----HD---- C:\ProgramData
2016-05-04 11:32:42 ----D---- C:\Windows\system32\drivers\etc
2016-05-04 10:26:13 ----D---- C:\Program Files (x86)\Microsoft.NET
2016-05-04 10:24:41 ----D---- C:\Windows\system32\DriverStore
2016-05-04 10:24:39 ----AD---- C:\Program Files\Common Files\microsoft shared
2016-05-04 08:21:00 ----HD---- C:\Windows\system32\GroupPolicy
2016-05-03 07:51:37 ----D---- C:\Windows\system32\drivers
2016-05-03 07:50:41 ----D---- C:\Windows\system32\CatRoot
2016-05-01 14:05:18 ----D---- C:\Windows\Tasks
2016-05-01 11:10:10 ----D---- C:\Windows\WinSxS
2016-05-01 10:14:01 ----D---- C:\Windows\CbsTemp
2016-04-28 01:04:30 ----A---- C:\Windows\system32\coinst_16.15.dll
2016-04-26 19:01:24 ----D---- C:\Windows\rescache
2016-04-26 19:00:17 ----D---- C:\Windows\Logs
2016-04-25 17:22:21 ----SHD---- C:\$Recycle.Bin
2016-04-24 18:43:12 ----D---- C:\Windows\system32\drivers\UMDF
2016-04-24 12:44:16 ----D---- C:\Program Files\Common Files
2016-04-24 12:43:51 ----D---- C:\Program Files\Common Files\System
2016-04-24 12:32:05 ----D---- C:\Windows\appcompat
2016-04-23 17:01:19 ----D---- C:\Windows\system32\catroot2
2016-04-23 16:18:56 ----D---- C:\Windows\debug
2016-04-23 15:50:37 ----D---- C:\Windows\system32\WDI
2016-04-23 14:55:45 ----D---- C:\Windows\SYSWOW64\MUI
2016-04-23 14:55:45 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-04-23 14:55:45 ----D---- C:\Windows\system32\MUI
2016-04-23 14:55:45 ----D---- C:\Windows\system32\cs-CZ
2016-04-23 14:15:56 ----HD---- C:\Windows\ELAMBKUP
2016-04-23 13:50:32 ----RD---- C:\Users
2016-04-23 13:49:03 ----D---- C:\Windows\SYSWOW64\migration
2016-04-23 13:49:03 ----D---- C:\Windows\SYSWOW64\Dism
2016-04-23 13:49:03 ----D---- C:\Windows\system32\WinBioPlugIns
2016-04-23 13:49:03 ----D---- C:\Windows\system32\wbem
2016-04-23 13:49:03 ----D---- C:\Windows\system32\SystemResetPlatform
2016-04-23 13:49:03 ----D---- C:\Windows\system32\migration
2016-04-23 13:49:03 ----D---- C:\Windows\system32\Dism
2016-04-23 13:49:03 ----D---- C:\Windows\system32\Boot
2016-04-23 13:49:03 ----D---- C:\Windows\system32\appraiser
2016-04-23 13:49:02 ----RSD---- C:\Windows\Media
2016-04-23 13:49:02 ----RD---- C:\Windows\PurchaseDialog
2016-04-23 13:49:02 ----D---- C:\Windows\PolicyDefinitions
2016-04-23 13:49:02 ----D---- C:\Windows\bcastdvr
2016-04-23 13:49:02 ----D---- C:\Windows\AppPatch
2016-04-23 13:49:02 ----D---- C:\Program Files\Windows Portable Devices
2016-04-23 13:49:02 ----D---- C:\Program Files\Windows Multimedia Platform
2016-04-23 13:49:02 ----D---- C:\Program Files\Windows Media Player
2016-04-23 13:49:02 ----D---- C:\Program Files\Windows Journal
2016-04-23 13:49:02 ----D---- C:\Program Files\Internet Explorer
2016-04-23 13:49:02 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-04-23 13:49:02 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-04-23 13:49:02 ----D---- C:\Program Files (x86)\Internet Explorer
2016-04-23 13:45:39 ----D---- C:\Windows\system32\CodeIntegrity
2016-04-23 13:37:10 ----D---- C:\Windows\OCR
2016-04-23 13:36:16 ----D---- C:\Windows\system32\WinBioDatabase
2016-04-23 13:34:46 ----D---- C:\Program Files\Windows NT
2016-04-23 13:33:51 ----D---- C:\Windows\system32\Recovery
2016-04-23 13:33:50 ----D---- C:\Windows\system32\Sysprep

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2016-02-09 84800]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2016-02-09 264552]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2016-02-09 186784]
R1 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2016-02-09 198096]
R1 EpfwLWF;@oem13.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2016-02-09 53384]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\Windows\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\Windows\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 ekbdflt;ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [2016-02-09 142976]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\Windows\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\Windows\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2016-04-28 26354200]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2016-04-28 685584]
R3 AtiHDAudioService;@oem32.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdWT6.sys [2016-04-04 102400]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\Windows\System32\drivers\BthEnum.sys [2016-03-29 112640]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\Windows\System32\drivers\BthLEEnum.sys [2016-03-29 245760]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\System32\drivers\bthpan.sys [2015-10-30 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\drivers\BTHUSB.sys [2016-03-29 84992]
R3 busenum;@oem25.inf,%busenum.SVCDESC%;Synology Virtual USB Hub; C:\Windows\System32\drivers\busenum.sys [2012-08-03 57824]
R3 ibtusb;@oem4.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\Windows\system32\DRIVERS\ibtusb.sys [2015-12-18 299280]
R3 LEqdUsb;@oem18.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF USB Filter; C:\Windows\system32\DRIVERS\LEqdUsb.Sys [2015-06-18 87696]
R3 LHidEqd;@oem19.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF HID Filter; C:\Windows\system32\DRIVERS\LHidEqd.Sys [2015-06-18 23184]
R3 LHidFilt;@oem21.inf,%LHidFilt.SvcDesc%;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2015-06-18 86672]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2016-03-29 181248]
R3 rt640x64;@oem27.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\Windows\System32\drivers\rt640x64.sys [2000-01-01 886528]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2000-01-01 33960]
S0 amdkmafd;@oem33.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\Windows\System32\drivers\amdkmafd.sys [2015-07-28 40720]
S0 eelam;eelam; C:\Windows\system32\DRIVERS\eelam.sys [2016-02-09 14976]
S0 LSI_SAS2i;LSI_SAS2i; C:\Windows\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\Windows\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\Windows\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\Windows\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\Windows\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\Windows\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\Windows\System32\drivers\BTHport.sys [2016-03-29 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\Windows\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\Windows\System32\drivers\capimg.sys [2016-02-13 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\Windows\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\Windows\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\Windows\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\Windows\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\Windows\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\Windows\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\Windows\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\Windows\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 NETwNb64;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\Windows\System32\drivers\Netwbw02.sys [2015-10-30 3485696]
S3 ReFSv1;ReFSv1; C:\Windows\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 SWDUMon;SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [2016-04-23 16056]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\Windows\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\Windows\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\Windows\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\Windows\system32\drivers\ufx01000.sys [2016-03-29 258912]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\Windows\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\Windows\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\Windows\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\Windows\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\Windows\System32\drivers\urssynopsys.sys [2015-10-30 27488]
S3 usbser;@usbser.inf,%UsbSerial.DriverDesc%;Microsoft USB Serial Driver; C:\Windows\System32\drivers\usbser.sys [2016-02-13 67072]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2016-04-28 260120]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\Windows\system32\svchost.exe [2015-10-30 43944]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2016-02-22 2521440]
R2 ibtsiva;@oem4.inf,%SERVICE_NAME%;Intel Bluetooth Service; C:\Windows\system32\ibtsiva []
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\Windows\system32\svchost.exe [2015-10-30 43944]
R2 UserManager;@%systemroot%\system32\usermgr.dll,-100; C:\Windows\system32\svchost.exe [2015-10-30 43944]
R3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\Windows\System32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2a50d;Hostitel synchronizace_2a50d; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_477a7;Hostitel synchronizace_477a7; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-05-01 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2015-07-02 356808]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2a50d;Služba zasílání zpráv_2a50d; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2a50d;Data kontaktů_2a50d; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\Windows\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\Windows\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_2a50d;Úložiště uživatelských dat_2a50d; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S3 UserDataSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-14001; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 UserDataSvc_2a50d;Přístup k uživatelským datům_2a50d; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 UsoSvc;@%systemroot%\system32\usocore.dll,-102; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S4 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\Windows\System32\svchost.exe [2015-10-30 43944]
S4 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\Windows\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o kontrolu logu

#7 Příspěvek od Roli »

Stáhni a spusť OTMoveIt

do levého okna aplikace pod Paste Instructions for Items to be Moved zkopíruj tento text:

Kód: Vybrat vše

:processes
explorer.exe       

:files
C:\Windows\AutoKMS.exe
C:\Program Files\KMSpico
C:\Windows\AutoKMS.ini

:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AutoKMS"=-

:commands
[purity]
[emptytemp]
[start explorer]
klikni na MoveIt! a v pravém zeleném okně aplikace se Ti objeví info o provedene akci, obsah okna zkopíruj sem,

pokud aplikace bude požadovat restart, klikni na YES

v tom případě sem zkopíruj obsah logu uloženého na C:\_OTMoveIt\MovedFiles\


Smaž nepotřebné soubory

pomocí CCleaneru

návod :

Čistič - tady vyčistíš PC od nepotřebných souborů a vysypeš Koš

Registry - tady vyčistíš registry (před použitím doporučuji udělat jejich zálohu kterou CCleaner nabízí)

čištění registru je třeba několikrát zopakovat !

Nástroje - tady lze odinstalovat programy, upravit co se spustí po Startu systému a obnovit systém


Použij Mbam z mého podpisu a dej mi sem z něj log po smazání nepořádku.


Stáhni a spusť AdwCleaner,

ukonči všechny programy včetně prohlížeče a dvojklikem jej spusť,

objeví se okno kde vlevo nahoře klikni na Scan.

Po dokončení skenu klikni na Clean,

proběhne restart PC kdy dojde ke smazání nepořádku.

Po té mi sem zkopíruj Report.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Sinpa
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 29 kvě 2014 06:09

Re: Prosím o kontrolu logu

#8 Příspěvek od Sinpa »

[quote="Roli"]Stáhni a spusť OTMoveIt

do levého okna aplikace pod Paste Instructions for Items to be Moved zkopíruj tento text:

Kód: Vybrat vše

:processes
explorer.exe       

:files
C:\Windows\AutoKMS.exe
C:\Program Files\KMSpico
C:\Windows\AutoKMS.ini

:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AutoKMS"=-

:commands
[purity]
[emptytemp]
[start explorer]
klikni na MoveIt! a v pravém zeleném okně aplikace se Ti objeví info o provedene akci, obsah okna zkopíruj sem,

pokud aplikace bude požadovat restart, klikni na YES

v tom případě sem zkopíruj obsah logu uloženého na C:\_OTMoveIt\MovedFiles\


All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
========== FILES ==========
C:\Windows\AutoKMS.exe moved successfully.
C:\Program Files\KMSpico\TokensBackup\Windows\cache folder moved successfully.
C:\Program Files\KMSpico\TokensBackup\Windows folder moved successfully.
C:\Program Files\KMSpico\TokensBackup folder moved successfully.
C:\Program Files\KMSpico folder moved successfully.
C:\Windows\AutoKMS.ini moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\AutoKMS not found.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public

User: sinpa
->Temp folder emptied: 87716747 bytes
->Temporary Internet Files folder emptied: 44027252 bytes
->Java cache emptied: 0 bytes
->Flash cache emptied: 773 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 369290544 bytes
%systemroot%\System32 .tmp files removed: 23366960 bytes
%systemroot%\System32 (64bit) .tmp files removed: 47788584 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 19125562 bytes
RecycleBin emptied: 4696378882 bytes

Total Files Cleaned = 5 043,00 mb


OTM by OldTimer - Version 3.1.21.0 log created on 05072016_093850

Files moved on Reboot...
C:\Users\sinpa\AppData\Local\Temp\CProgram Files (x86)Opera37.0.2178.32opera_autoupdate.metrics.lock moved successfully.
File C:\Users\sinpa\AppData\Local\Temp\etilqs_hK46t8zGMg7O4fi not found!
File C:\Users\sinpa\AppData\Local\Temp\etilqs_oOJt4B5leDYr7hW not found!
File C:\Users\sinpa\AppData\Local\Temp\etilqs_rmo7wTLec3uHHsa not found!
C:\Users\sinpa\AppData\Local\Temp\opera_crashreporter.log moved successfully.
File move failed. C:\Users\sinpa\AppData\Local\Microsoft\Windows\INetCache\counters.dat scheduled to be moved on reboot.
C:\Windows\temp\DESKTOP-SPMOS5R-20160506-1146.log moved successfully.
File C:\Windows\temp\officeclicktorun.exe_streamserver(20160506114614DC).log not found!

Registry entries deleted on Reboot...

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o kontrolu logu

#9 Příspěvek od Roli »

Ještě si počkám na ten AdwCleaner.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Odpovědět