Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

antivirus.exe

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
pedro3
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 04 srp 2016 18:16

antivirus.exe

#1 Příspěvek od pedro3 »

Dobrý den, neustále mi v počítači běží program antivirus.exe a vytěžuje mi procesor na 95%, mohli by jste mi prosím poradit. Velice děkuji. Můj log z RSIT:

Logfile of random's system information tool 1.10 (written by random/random)
Run by ... at 2016-08-04 19:20:12
Microsoft Windows 8.1
System drive C: has 804 GB (89%) free of 904 GB
Total RAM: 8048 MB (57% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:20:13, on 4. 8. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
?:\Users\Public\Desktop\avast_free_antivirus_setup_online.exe
C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a05324\instup.exe
C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe
C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe
C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
C:\Users\Skala\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\w10memchk.exe
C:\Users\Skala\AppData\Roaming\Microsoft\Antivirus\windefender.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Skala\AppData\Local\Autodesk\.AdskAppManager\R1\AdAppMgr.exe
?:\Users\Skala\Downloads\avast_free_antivirus_setup_online.exe
C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a03208\instup.exe
?:\Users\Skala\Downloads\avast_free_antivirus_setup_online.exe
C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a01356\instup.exe
?:\Users\Skala\Downloads\avast_free_antivirus_setup_online (1).exe
C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a07464\instup.exe
?:\Users\Skala\Downloads\avast_free_antivirus_setup_online (1).exe
C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a04736\instup.exe
C:\Program Files\trend micro\Skala.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.yahoo.com/?fr=vmn&type=vmn_ ... 0718__yaie
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
O4 - HKLM\..\Run: [ADSKAppManager] "C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe" -showminimized -checkautorun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Web Companion] C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\_PROGRAMY_\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-21-1375698676-891907955-1815033883-1001\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'UpdatusUser')
O4 - Startup: w10memchk.exe
O4 - Global Startup: CodeMeter Control Center.lnk = C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
O4 - Global Startup: Network Server.lnk = C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe
O8 - Extra context menu item: Odeslat do Bluetooth - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O9 - Extra button: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O10 - Unknown file in Winsock LSP: c:\windows\system32\lavasofttcpservice.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\lavasofttcpservice.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\lavasofttcpservice.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\lavasofttcpservice.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\lavasofttcpservice.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.webcompanion.com
O23 - Service: Autodesk Application Manager Service (AdAppMgrSvc) - Autodesk Inc. - C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) - WIBU-SYSTEMS AG - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\_PROGRAMY_\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FlexNet Licensing Service 64 - Flexera Software LLC - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LavasoftTcpService - Lavasoft Limited - C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe
O23 - Service: Lobiphghqocult Center (LbpCntAtapole.exe) - Unknown owner - C:\Program Files (x86)\Gititysabpy\LbpCntAtapole.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: WC Assistant (WCAssistantService) - Unknown owner - C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 12372 bytes

======Listing Processes======






wininit.exe
winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"C:\windows\system32\nvvsvc.exe"
"dwm.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\WLANExt.exe 801210279408
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
taskhostex.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-bbf2652d-5f58-42d9-bd40-c70a01f8daac -SystemEventPortName:HostProcess-0eca2c0a-3ffc-4eed-b479-17682a89cad1 -IoCancelEventPortName:HostProcess-cf9fabfa-aa9f-47a1-a54a-6fd0673fc86b -NonStateChangingEventPortName:HostProcess-f41f8d01-c8d2-4f42-a288-fcf5095f4bc9 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:3a972d86-e064-4f4b-ae03-6dfd8cf12d5d -DeviceGroupId:WudfDefaultDevicePool
"C:\Windows\RTFTrack.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe" /m
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Users\Public\Desktop\avast_free_antivirus_setup_online.exe"
"C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe" -start
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a05324\instup.exe" /edition:1 /ga_clientid:8a7276c3-59ed-47a5-9bfd-0b9a5cd8be90 /guid:9e8872fa-77d0-49f9-98ee-21dcd23455a2 /prod:ais /sfx:lite /sfxstorage:C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a05324
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe" --minimize
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe"
"C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
"C:\_PROGRAMY_\DAEMON Tools Lite\DiscSoftBusServiceLite.exe"
"C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe"
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
"C:\Users\Skala\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\w10memchk.exe"
"C:\Users\Skala\AppData\Roaming\Microsoft\Antivirus\windefender.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Users\Skala\AppData\Local\Autodesk\.AdskAppManager\R1\AdAppMgr.exe" -showminimized -checkautorun -peruser
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Users\Skala\Downloads\avast_free_antivirus_setup_online.exe"
"C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a03208\instup.exe" /edition:1 /ga_clientid:c026f31c-db7d-4628-8047-5228c2f2c8d0 /guid:e29ba8e3-7b18-4ec2-bae2-6ffa647b5f52 /prod:ais /sfx:lite /sfxstorage:C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a03208
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Skala\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=51.0.2704.106 --handshake-handle=0x134
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/DisallowFetchForDocWrittenScriptsInMainFrame/Default/EnableMediaRouter/Enabled/ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledMaxBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/SafeBrowsingIncidentReportingService/Default/SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --type=gpu-process --channel="2564.0.808254011\773189760" --disable-direct-composition --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,12,13,25,46,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.2932 --mojo-platform-channel-handle=1132 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledMaxBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=7F3D18A341BD891F8DDCBD5DBB6C5EA6 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="2564.1.156657688\1935407894" --mojo-platform-channel-handle=2308 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledMaxBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=8B886495C1DD83ACB3CA3A0B16F3903A --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="2564.3.894762949\44574177" --mojo-platform-channel-handle=2776 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledMaxBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=FF3A1CF675AD41A6337795AE2CE2C7A5 --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="2564.4.1613085177\1879812099" --mojo-platform-channel-handle=2572 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledMaxBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=9AD0A1D43D0350FD2C7C95AE1B05FAC5 --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="2564.5.1877120540\1793251123" --mojo-platform-channel-handle=3012 /prefetch:1
"C:\Users\Skala\Downloads\avast_free_antivirus_setup_online.exe"
"C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a01356\instup.exe" /edition:1 /ga_clientid:37c4681e-6df2-432d-9150-34fb196c11d0 /guid:cd57909b-95d0-4202-8d71-cb47d7455548 /prod:ais /sfx:lite /sfxstorage:C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a01356
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledMaxBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=991B01190F723B31E2AB743B847A28D0 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="2564.19.776901525\360586769" --mojo-platform-channel-handle=4704 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledMaxBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=14447E545BB9B832FCD0BF69E3AB7B6C --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="2564.23.1466923223\1821168286" --mojo-platform-channel-handle=5204 /prefetch:1
"C:\Users\Skala\Downloads\avast_free_antivirus_setup_online (1).exe"
"C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a07464\instup.exe" /edition:1 /ga_clientid:23e32f0e-6b53-4819-8cee-9addfc0cab48 /guid:e6b12305-1120-44a2-bf67-7fef6fc263b0 /prod:ais /sfx:lite /sfxstorage:C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a07464
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledMaxBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=9AA39E21EF88F21A8F010B5DC4A572A4 --lang=cs --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="2564.28.1517443356\887265151" --mojo-platform-channel-handle=7296 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledMaxBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=55B30C665EA523E4E71161C71E8207A3 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="2564.29.1227076658\392395929" --mojo-platform-channel-handle=1948 /prefetch:1
"C:\Users\Skala\Downloads\avast_free_antivirus_setup_online (1).exe"
"C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a04736\instup.exe" /edition:1 /ga_clientid:28f05fd7-d0d8-4fc6-84ba-ad9a43df2446 /guid:dc969026-544b-43a0-a2ca-ddfaf4736f82 /prod:ais /sfx:lite /sfxstorage:C:\Users\Skala\AppData\Local\Temp\_av_iup.tm~a04736
"C:\Users\Skala\AppData\Roaming\Microsoft\Antivirus\antivirus.exe" -a skein -o stratum+tcp://stratum.dgb.theblocksfactory.com:9002 -u Dadas.owner -p x
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\WINDOWS\System32\Taskmgr.exe" /3
"C:\WINDOWS\system32\mspaint.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*OutOfProcessPac/Default/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/*PasswordSmartBubble/Default/*QUIC/EnabledMaxBandwidthResumption/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=5EF0330EF3C60E19F15E59968269975B --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="2564.32.1289561944\1917741771" --mojo-platform-channel-handle=7184 /prefetch:1

"C:\WINDOWS\system32\NOTEPAD.EXE" C:\rsit\info.txt
"C:\Program Files\CCleaner\CCleaner.exe" /uac
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1375698676-891907955-1815033883-10024_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1375698676-891907955-1815033883-10024 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 580 584 592 65536 588
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Skala\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-08-02 473152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-08-02 186944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtsFT"=C:\WINDOWS\RTFTrack.exe [2012-10-17 6334096]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-12-07 13262480]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-12-03 1256080]
"SynLenovoGestureMgr"=C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [2013-03-25 677104]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2012-08-27 11577216]
"OnekeyStudio"=C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [2012-09-15 4196432]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2013-05-24 17080376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2013-05-24 191544]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-03-25 3049712]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2012-12-19 172168]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2012-12-19 400008]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2012-12-19 441992]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Web Companion"=C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [2016-07-18 1732368]
"DAEMON Tools Lite Automount"=C:\_PROGRAMY_\DAEMON Tools Lite\DTAgent.exe [2016-05-30 4299968]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-01-15 8619224]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [2012-10-31 168464]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2012-04-19 217088]
"RemoteControl10"=C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
"Intel AppUp(SM) center"=C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2012-07-12 155488]
"ADSKAppManager"=C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [2016-02-24 529480]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-06-22 598552]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
CodeMeter Control Center.lnk - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
Network Server.lnk - C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe

C:\Users\Skala\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
w10memchk.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2012-12-13 442880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{6710C780-E20E-4C49-A87D-321850ED3D7C}"=C:\Users\Skala\AppData\Local\Microsoft\Windows\INetCookies\anugily.dll [2016-07-29 374784]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe"="C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe:*:Enabled:CodeMeter Runtime Server"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe"="C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe:*:Enabled:CodeMeter Runtime Server"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\WINDOWS\system32\notepad.exe "%1"
.scr - install -
.scr - config -
Naposledy upravil(a) pedro3 dne 07 srp 2016 19:13, celkem upraveno 1 x.

pedro3
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 04 srp 2016 18:16

Re: antivirus.exe

#2 Příspěvek od pedro3 »

POKRAČOVÁNÍ LOGU:

======List of files/folders created in the last 1 month======

2016-08-04 19:15:34 ----D---- C:\rsit
2016-08-04 19:15:34 ----D---- C:\Program Files\trend micro
2016-08-02 22:44:07 ----D---- C:\ProgramData\Microsoft Help
2016-08-02 22:26:42 ----D---- C:\Users\Skala\AppData\Roaming\MAXON
2016-08-02 22:25:56 ----D---- C:\Users\Skala\AppData\Roaming\Graphisoft
2016-08-02 22:07:37 ----D---- C:\ProgramData\CodeMeter
2016-08-02 22:07:37 ----D---- C:\Program Files\CodeMeter
2016-08-02 22:07:37 ----D---- C:\Program Files (x86)\CodeMeter
2016-08-02 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\WkExt32.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\WibuXpm4J32.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\wibuKJni.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\system32\WkExt64.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\system32\WibuXpm4J64.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\system32\wibuKJni64.dll
2016-08-02 22:06:57 ----A---- C:\WINDOWS\system32\drivers\Wibukey2_64.sys
2016-08-02 22:06:55 ----A---- C:\WINDOWS\SYSWOW64\WkWin32.dll
2016-08-02 22:06:55 ----A---- C:\WINDOWS\system32\WkWin64.dll
2016-08-02 22:06:55 ----A---- C:\WINDOWS\system32\drivers\WibuKey64.sys
2016-08-02 22:06:48 ----D---- C:\Program Files\WIBU-SYSTEMS
2016-08-02 22:06:48 ----D---- C:\Program Files (x86)\WIBU-SYSTEMS
2016-08-02 22:06:48 ----D---- C:\Program Files (x86)\WIBUKEY
2016-08-02 22:01:30 ----D---- C:\Users\Skala\AppData\Roaming\Install.GS
2016-08-02 21:23:36 ----D---- C:\Program Files\CCleaner
2016-08-02 20:51:33 ----D---- C:\Users\Skala\AppData\Roaming\WinRAR
2016-08-02 18:20:33 ----D---- C:\Users\Skala\AppData\Roaming\VitySoft
2016-08-02 18:19:15 ----D---- C:\Users\Skala\AppData\Roaming\Sun
2016-08-02 18:19:11 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2016-08-02 18:18:50 ----D---- C:\ProgramData\Oracle
2016-08-02 18:18:45 ----D---- C:\Program Files (x86)\Java
2016-07-31 22:48:20 ----D---- C:\ProgramData\FLEXnet
2016-07-31 22:20:48 ----D---- C:\Program Files (x86)\Autodesk
2016-07-31 22:20:06 ----D---- C:\Program Files\Common Files\Macrovision Shared
2016-07-31 22:14:04 ----D---- C:\Program Files\Common Files\Autodesk Shared
2016-07-31 22:14:04 ----D---- C:\Program Files\Autodesk
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_7.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_5.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2016-07-31 22:03:03 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll
2016-07-31 22:03:03 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2016-07-31 22:03:03 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2016-07-31 22:03:03 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2016-07-31 22:03:01 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll
2016-07-31 22:03:01 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll
2016-07-31 22:03:01 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2016-07-31 22:03:01 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2016-07-31 22:02:51 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2016-07-31 22:02:51 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2016-07-31 21:57:26 ----D---- C:\Users\Skala\AppData\Roaming\Autodesk
2016-07-31 21:57:26 ----D---- C:\ProgramData\Autodesk
2016-07-31 21:37:31 ----HD---- C:\Program Files (x86)\vgyDC08
2016-07-31 21:37:02 ----D---- C:\extensions
2016-07-31 21:37:00 ----D---- C:\Program Files (x86)\Gititysabpy
2016-07-31 21:36:43 ----A---- C:\WINDOWS\system32\drivers\dtliteusbbus.sys
2016-07-31 21:36:24 ----D---- C:\Users\Skala\AppData\Roaming\DAEMON Tools Lite
2016-07-31 21:36:24 ----A---- C:\WINDOWS\system32\drivers\dtlitescsibus.sys
2016-07-31 21:33:00 ----D---- C:\ProgramData\DAEMON Tools Lite
2016-07-25 18:18:22 ----D---- C:\Users\Skala\AppData\Roaming\com.relax-gaming.skywalker
2016-07-22 07:52:24 ----D---- C:\ProgramData\Energy Management
2016-07-20 17:34:14 ----D---- C:\WINDOWS\EOONotify
2016-07-19 23:48:37 ----D---- C:\Program Files (x86)\Adobe
2016-07-19 23:48:27 ----D---- C:\ProgramData\Adobe
2016-07-18 23:17:24 ----D---- C:\Users\Skala\AppData\Roaming\NVIDIA
2016-07-18 23:17:21 ----D---- C:\ProgramData\GRETECH
2016-07-18 23:15:58 ----D---- C:\Users\Skala\AppData\Roaming\Lavasoft
2016-07-18 23:15:56 ----A---- C:\WINDOWS\SYSWOW64\LavasoftTcpServiceOff.ini
2016-07-18 23:15:56 ----A---- C:\WINDOWS\system32\LavasoftTcpServiceOff.ini
2016-07-18 23:15:55 ----A---- C:\WINDOWS\SYSWOW64\LavasoftTcpService.dll
2016-07-18 23:15:55 ----A---- C:\WINDOWS\system32\LavasoftTcpService64.dll
2016-07-18 23:15:54 ----D---- C:\Program Files (x86)\Lavasoft
2016-07-18 23:15:43 ----D---- C:\ProgramData\Lavasoft
2016-07-18 23:15:32 ----D---- C:\Users\Skala\AppData\Roaming\GRETECH
2016-07-18 23:13:43 ----D---- C:\_PROGRAMY_
2016-07-18 22:44:02 ----D---- C:\drivers
2016-07-18 18:05:12 ----D---- C:\ProgramData\AVAST Software
2016-07-18 17:44:04 ----D---- C:\Program Files (x86)\Google
2016-07-14 13:39:27 ----SD---- C:\WINDOWS\SYSWOW64\GWX
2016-07-14 13:39:27 ----SD---- C:\WINDOWS\system32\GWX
2016-07-14 13:31:05 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-07-14 13:31:05 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-07-14 13:21:59 ----A---- C:\WINDOWS\system32\aspnet_counters.dll
2016-07-14 13:21:58 ----A---- C:\WINDOWS\SYSWOW64\aspnet_counters.dll
2016-07-14 13:14:32 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-07-14 13:14:32 ----A---- C:\WINDOWS\system32\twinui.dll
2016-07-14 13:13:28 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-07-14 13:13:28 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\pcasvc.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\invagent.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\devinv.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\centel.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\aepic.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-07-14 13:12:00 ----A---- C:\WINDOWS\system32\tzsync.exe
2016-07-14 13:11:51 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-07-14 13:11:47 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2016-07-14 12:55:48 ----D---- C:\Users\Skala\AppData\Roaming\Identities
2016-07-14 11:44:14 ----SHD---- C:\Recovery
2016-07-14 11:44:02 ----DC---- C:\WINDOWS\Panther
2016-07-14 11:39:44 ----A---- C:\WINDOWS\system32\fhcpl.dll
2016-07-14 11:39:28 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2016-07-14 11:39:28 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-07-14 11:39:28 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2016-07-14 11:39:28 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-07-14 11:39:12 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2016-07-14 11:39:12 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-07-14 11:38:51 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rasser.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rasmxs.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rasdiag.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rascfg.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\QSVRMGMT.DLL
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\QSHVHOST.DLL
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\eventcls.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\WSDMon.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\WSDApi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\WinSCard.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\vsstrace.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\vssapi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rasser.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rasmxs.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rasdiag.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rascfg.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\QSVRMGMT.DLL
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\QSHVHOST.DLL
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\eventcls.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\dnsapi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\splwow64.exe
2016-07-14 11:37:48 ----A---- C:\WINDOWS\system32\msra.exe
2016-07-14 11:32:23 ----A---- C:\WINDOWS\SYSWOW64\dhcpsapi.dll
2016-07-14 11:32:23 ----A---- C:\WINDOWS\system32\dhcpsapi.dll
2016-07-14 11:32:15 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2016-07-14 11:32:15 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-07-14 11:32:15 ----A---- C:\WINDOWS\system32\dbghelp.dll
2016-07-14 11:32:15 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-07-14 11:32:04 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2016-07-14 11:32:04 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-07-14 11:32:04 ----A---- C:\WINDOWS\system32\wscapi.dll
2016-07-14 11:31:53 ----AC---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-07-14 11:31:53 ----AC---- C:\WINDOWS\system32\SysFxUI.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVXENCD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVSENCD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVSDECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVENCOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVDECOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOE.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\VIDRESZR.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\RESAMPLEDMO.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2adec.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MPG4DECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MP4SDECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MP43DECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MP3DMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MFWMAAEC.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfvdsp.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\devenum.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\COLORCNV.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVXENCD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVSENCD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVSDECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVENCOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMADMOE.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\VIDRESZR.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\RESAMPLEDMO.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\quartz.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\qdvd.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\msmpeg2adec.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MPG4DECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MP4SDECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MP43DECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MP3DMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MFWMAAEC.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfvdsp.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfps.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\evr.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\devenum.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\COLORCNV.DLL
2016-07-14 11:31:32 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll
2016-07-14 11:31:32 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll
2016-07-14 11:31:25 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2016-07-14 11:31:25 ----A---- C:\WINDOWS\system32\notepad.exe
2016-07-14 11:31:25 ----A---- C:\WINDOWS\notepad.exe
2016-07-14 11:31:18 ----A---- C:\WINDOWS\system32\drivers\udfs.sys
2016-07-14 11:31:04 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2016-07-14 11:31:04 ----A---- C:\WINDOWS\system32\authz.dll
2016-07-14 11:30:57 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2016-07-14 11:30:57 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2016-07-14 11:30:49 ----AC---- C:\WINDOWS\system32\drivers\disk.sys
2016-07-14 11:30:39 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2016-07-14 11:30:39 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2016-07-14 11:30:39 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2016-07-14 11:30:21 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-07-14 11:30:14 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2016-07-14 11:30:14 ----A---- C:\WINDOWS\system32\oleaut32.dll
2016-07-14 11:30:07 ----A---- C:\WINDOWS\system32\apphelp.dll
2016-07-14 11:29:50 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-07-14 11:29:50 ----A---- C:\WINDOWS\system32\bdesvc.dll
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\sermouse.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\mouhid.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\mouclass.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\kbdhid.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\kbdclass.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\i8042prt.sys
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\ucrtbase.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-07-14 11:29:15 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2016-07-14 11:29:15 ----A---- C:\WINDOWS\SYSWOW64\IPHLPAPI.DLL
2016-07-14 11:29:15 ----A---- C:\WINDOWS\system32\webio.dll
2016-07-14 11:29:15 ----A---- C:\WINDOWS\system32\IPHLPAPI.DLL
2016-07-14 11:29:15 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-07-14 11:29:15 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2016-07-14 11:29:05 ----AC---- C:\WINDOWS\system32\drivers\vhdmp.sys
2016-07-14 11:28:57 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-07-14 11:28:57 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-07-14 11:28:35 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-07-14 11:28:35 ----A---- C:\WINDOWS\system32\ole32.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\SYSWOW64\EncDec.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\SYSWOW64\cfgbkend.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\system32\EncDec.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\system32\CPFilters.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2016-07-14 11:28:20 ----A---- C:\WINDOWS\system32\wbengine.exe
2016-07-14 11:27:50 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2016-07-14 11:27:50 ----A---- C:\WINDOWS\system32\gdi32.dll
2016-07-14 11:27:39 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2016-07-14 11:27:39 ----A---- C:\WINDOWS\system32\poqexec.exe
2016-07-14 11:27:29 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-07-14 11:26:58 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2016-07-14 11:26:58 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\SYSWOW64\ws2_32.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\SYSWOW64\mswsock.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\system32\ws2_32.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\system32\winhttp.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\system32\mswsock.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\system32\drivers\netbt.sys
2016-07-14 11:26:40 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\SYSWOW64\puiapi.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\SYSWOW64\ntprint.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\SYSWOW64\DafPrintProvider.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\puiobj.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\puiapi.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\ntprint.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\localspl.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\inetpp.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\DafPrintProvider.dll
2016-07-14 11:26:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-07-14 11:26:32 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-07-14 11:26:14 ----AC---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Šablony
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Plocha
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Nabídka Start
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Dokumenty
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Data aplikací
2016-07-14 11:17:34 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2016-07-14 11:17:12 ----A---- C:\WINDOWS\system32\rpcss.dll
2016-07-14 11:17:07 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2016-07-14 11:17:07 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-07-14 11:17:07 ----A---- C:\WINDOWS\system32\samlib.dll
2016-07-14 11:16:56 ----A---- C:\WINDOWS\system32\WSShared.dll
2016-07-14 11:16:56 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-07-14 11:16:55 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2016-07-14 11:16:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-07-14 11:16:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-07-14 11:16:37 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-07-14 11:16:30 ----A---- C:\WINDOWS\system32\nlasvc.dll
2016-07-14 11:16:30 ----A---- C:\WINDOWS\system32\ncsi.dll
2016-07-14 11:16:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-07-14 11:16:25 ----A---- C:\WINDOWS\SYSWOW64\glcndFilter.dll
2016-07-14 11:16:25 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-07-14 11:16:25 ----A---- C:\WINDOWS\system32\glcndFilter.dll
2016-07-14 11:16:20 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe
2016-07-14 11:16:11 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2016-07-14 11:16:11 ----A---- C:\WINDOWS\system32\crypt32.dll
2016-07-14 11:16:05 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2016-07-14 11:16:05 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\certcli.dll
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\system32\eapphost.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\system32\eappgnui.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\system32\eappcfg.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmictimeprovider.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmicres.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmbusres.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmbuspiper.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmbuspipe.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\VmApplicationHealthMonitorProxy.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\icsvc.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\winhvr.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\winhv.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vms3cap.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmgencounter.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmbusr.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\VMBusHID.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmbus.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmbkmclr.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmbkmcl.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\Synth3dVsc.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\storvsc.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\hyperkbd.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\dmvsc.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\dmvscres.dll
2016-07-14 11:15:32 ----A---- C:\WINDOWS\SYSWOW64\dsparse.dll
2016-07-14 11:15:32 ----A---- C:\WINDOWS\system32\dsparse.dll
2016-07-14 11:15:26 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2016-07-14 11:15:26 ----A---- C:\WINDOWS\system32\UtcResources.dll
2016-07-14 11:15:26 ----A---- C:\WINDOWS\system32\tdh.dll
2016-07-14 11:15:26 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-07-14 11:14:33 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2016-07-14 11:14:33 ----A---- C:\WINDOWS\system32\comctl32.dll
2016-07-14 11:14:28 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2016-07-14 11:14:28 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2016-07-14 11:14:20 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2016-07-14 11:14:20 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2016-07-14 11:14:20 ----A---- C:\WINDOWS\system32\clfsw32.dll
2016-07-14 11:14:15 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2016-07-14 11:14:15 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2016-07-14 11:14:15 ----A---- C:\WINDOWS\system32\tracerpt.exe
2016-07-14 11:14:15 ----A---- C:\WINDOWS\system32\sechost.dll
2016-07-14 11:14:06 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-07-14 11:14:06 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-07-14 11:14:01 ----A---- C:\WINDOWS\system32\drivers\usb8023.sys
2016-07-14 11:13:44 ----A---- C:\WINDOWS\SYSWOW64\WinSync.dll
2016-07-14 11:13:44 ----A---- C:\WINDOWS\system32\WinSync.dll
2016-07-14 11:13:40 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-07-14 11:13:40 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-07-14 11:13:36 ----A---- C:\WINDOWS\system32\WindowsAnytimeUpgradeui.exe
2016-07-14 11:13:32 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-07-14 11:13:32 ----A---- C:\WINDOWS\system32\msctf.dll
2016-07-14 11:13:27 ----AC---- C:\WINDOWS\system32\drivers\bthpan.sys
2016-07-14 11:13:23 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuwebv.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wups2.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wups.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wudriver.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wucltux.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuapp.exe
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2016-07-14 11:13:04 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2016-07-14 11:13:00 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-07-14 11:12:51 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2016-07-14 11:12:51 ----A---- C:\WINDOWS\SYSWOW64\msvcp120_clr0400.dll
2016-07-14 11:12:51 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2016-07-14 11:12:51 ----A---- C:\WINDOWS\system32\msvcp120_clr0400.dll
2016-07-14 11:12:32 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2016-07-14 11:12:29 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2016-07-14 11:12:20 ----A---- C:\WINDOWS\SYSWOW64\rsaenh.dll
2016-07-14 11:12:20 ----A---- C:\WINDOWS\system32\rsaenh.dll
2016-07-14 11:12:16 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-07-14 11:12:16 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-07-14 11:12:04 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-07-14 11:12:04 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-07-14 11:12:00 ----A---- C:\WINDOWS\system32\wininit.exe
2016-07-14 11:11:48 ----AC---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-07-14 11:11:48 ----AC---- C:\WINDOWS\system32\drivers\hidbth.sys
2016-07-14 11:11:48 ----AC---- C:\WINDOWS\system32\drivers\bthport.sys
2016-07-14 11:10:38 ----A---- C:\WINDOWS\SYSWOW64\wpdshext.dll
2016-07-14 11:10:38 ----A---- C:\WINDOWS\system32\wpdshext.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\SYSWOW64\mfc42u.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\SYSWOW64\mfc42.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\system32\mfc42u.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\system32\mfc42.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2016-07-14 11:10:22 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2016-07-14 11:10:22 ----A---- C:\WINDOWS\system32\qedit.dll
2016-07-14 11:10:10 ----A---- C:\WINDOWS\system32\csrsrv.dll
2016-07-14 11:10:10 ----A---- C:\WINDOWS\system32\basesrv.dll
2016-07-14 11:09:58 ----AC---- C:\WINDOWS\system32\drivers\tpm.sys
2016-07-14 11:09:55 ----A---- C:\WINDOWS\system32\NcdAutoSetup.dll
2016-07-14 11:09:51 ----A---- C:\WINDOWS\system32\ubpm.dll
2016-07-14 11:09:45 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-07-14 11:09:34 ----A---- C:\WINDOWS\SYSWOW64\WsmWmiPl.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\SYSWOW64\WsmAuto.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\SYSWOW64\WsmAgent.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\system32\WsmAuto.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\system32\WsmAgent.dll
2016-07-14 11:09:14 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2016-07-14 11:09:14 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2016-07-14 11:09:14 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2016-07-14 11:09:14 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\SettingMonitor.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-07-14 11:09:12 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\themecpl.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\stobject.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\shell32.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingMonitor.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\hgcpl.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\explorer.exe
2016-07-14 11:08:48 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2016-07-14 11:08:48 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2016-07-14 11:08:40 ----A---- C:\WINDOWS\system32\lsm.dll
2016-07-14 11:08:35 ----AC---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2016-07-14 11:08:29 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2016-07-14 11:08:26 ----A---- C:\WINDOWS\SYSWOW64\rgb9rast.dll
2016-07-14 11:08:22 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2016-07-14 11:08:22 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2016-07-14 11:08:14 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2016-07-14 11:08:14 ----A---- C:\WINDOWS\system32\advapi32.dll
2016-07-14 11:08:09 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-07-14 11:08:09 ----A---- C:\WINDOWS\SYSWOW64\WMASF.DLL
2016-07-14 11:08:09 ----A---- C:\WINDOWS\system32\wmp.dll
2016-07-14 11:08:09 ----A---- C:\WINDOWS\system32\WMASF.DLL
2016-07-14 11:07:32 ----A---- C:\WINDOWS\SYSWOW64\StorageContextHandler.dll
2016-07-14 11:07:32 ----A---- C:\WINDOWS\system32\StorageContextHandler.dll
2016-07-14 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-07-14 11:07:20 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-07-14 11:07:19 ----A---- C:\WINDOWS\system32\winresume.exe
2016-07-14 11:07:19 ----A---- C:\WINDOWS\system32\winload.exe
2016-07-14 11:07:18 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\SYSWOW64\polstore.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\SYSWOW64\FwRemoteSvr.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\polstore.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\IPSECSVC.DLL
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\gpsvc.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\gpapi.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\FwRemoteSvr.dll
2016-07-14 11:07:00 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2016-07-14 11:07:00 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2016-07-14 11:06:55 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2016-07-14 11:06:55 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\nshwfp.dll
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\BFE.DLL
2016-07-14 11:06:51 ----A---- C:\WINDOWS\SYSWOW64\d3d10level9.dll
2016-07-14 11:06:51 ----A---- C:\WINDOWS\system32\d3d10level9.dll
2016-07-14 11:06:46 ----A---- C:\WINDOWS\system32\compstui.dll
2016-07-14 11:06:41 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2016-07-14 11:06:41 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2016-07-14 11:06:37 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-07-14 11:06:37 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\jscript.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\iepeers.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\dxtrans.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-07-14 11:06:14 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2016-07-14 11:06:14 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-07-14 11:06:14 ----A---- C:\WINDOWS\system32\mshtmled.dll
2016-07-14 11:06:14 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\wininet.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\webcheck.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\msrating.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\inseng.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\inetcomm.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\ieui.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\hlink.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\system32\combase.dll
2016-07-14 11:04:38 ----AC---- C:\WINDOWS\system32\drivers\winusb.sys
2016-07-14 11:04:38 ----AC---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-07-14 11:04:32 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-07-14 11:04:26 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2016-07-14 11:04:26 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2016-07-14 11:04:26 ----A---- C:\WINDOWS\system32\comsvcs.dll
2016-07-14 11:04:26 ----A---- C:\WINDOWS\system32\catsrvut.dll
2016-07-14 11:04:19 ----A---- C:\WINDOWS\system32\services.exe
2016-07-14 11:04:16 ----A---- C:\WINDOWS\SYSWOW64\netcfgx.dll
2016-07-14 11:04:16 ----A---- C:\WINDOWS\system32\netcfgx.dll
2016-07-14 11:04:16 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2016-07-14 11:04:04 ----A---- C:\WINDOWS\SYSWOW64\shacct.dll
2016-07-14 11:04:04 ----A---- C:\WINDOWS\system32\shacct.dll
2016-07-14 11:04:00 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-07-14 11:04:00 ----A---- C:\WINDOWS\system32\SRH.dll
2016-07-14 11:03:44 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2016-07-14 11:03:44 ----A---- C:\WINDOWS\system32\winshfhc.dll
2016-07-14 11:03:44 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2016-07-14 11:03:44 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2016-07-14 11:03:44 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2016-07-14 11:03:36 ----A---- C:\WINDOWS\SYSWOW64\taskeng.exe
2016-07-14 11:03:36 ----A---- C:\WINDOWS\SYSWOW64\schtasks.exe
2016-07-14 11:03:36 ----A---- C:\WINDOWS\system32\taskeng.exe
2016-07-14 11:03:36 ----A---- C:\WINDOWS\system32\schtasks.exe
2016-07-14 11:03:36 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-07-14 11:03:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2016-07-14 11:03:32 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-07-14 11:03:28 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2016-07-14 11:03:28 ----A---- C:\WINDOWS\system32\calc.exe
2016-07-14 11:03:15 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll
2016-07-14 11:03:15 ----A---- C:\WINDOWS\SYSWOW64\davclnt.dll
2016-07-14 11:03:15 ----A---- C:\WINDOWS\system32\WebClnt.dll
2016-07-14 11:03:15 ----A---- C:\WINDOWS\system32\davclnt.dll
2016-07-14 11:03:05 ----A---- C:\WINDOWS\system32\wuaext.dll
2016-07-14 11:03:05 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2016-07-14 11:03:05 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-07-14 11:02:50 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2016-07-14 11:02:50 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-07-14 11:02:46 ----A---- C:\WINDOWS\system32\drivers\vpci.sys
2016-07-14 11:02:40 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbuhci.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbport.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbohci.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbhub.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbehci.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbd.sys
2016-07-14 11:02:33 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2016-07-14 11:02:33 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-07-14 11:02:33 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-07-14 11:02:33 ----A---- C:\WINDOWS\system32\rdpcore.dll
2016-07-14 11:02:29 ----A---- C:\WINDOWS\system32\drivers\IPMIDrv.sys
2016-07-14 11:02:26 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2016-07-14 11:02:26 ----A---- C:\WINDOWS\system32\pku2u.dll
2016-07-14 11:02:18 ----A---- C:\WINDOWS\system32\sysmain.dll
2016-07-14 11:02:18 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2016-07-14 11:02:05 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2016-07-14 11:02:05 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-07-14 11:02:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\msiexec.exe
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\msi.dll
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\consent.exe
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\authui.dll
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\appinfo.dll
2016-07-14 11:01:58 ----A---- C:\WINDOWS\SYSWOW64\InkEd.dll
2016-07-14 11:01:58 ----A---- C:\WINDOWS\system32\InkEd.dll
2016-07-14 11:01:51 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2016-07-14 11:01:51 ----A---- C:\WINDOWS\system32\SHCore.dll
2016-07-14 11:01:42 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-07-14 11:01:39 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys
2016-07-14 11:00:55 ----SD---- C:\Users\Skala\AppData\Roaming\Microsoft
2016-07-14 11:00:11 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2016-07-14 11:00:08 ----A---- C:\WINDOWS\system32\win32k.sys
2016-07-14 11:00:05 ----AC---- C:\WINDOWS\system32\drivers\volmgr.sys
2016-07-14 11:00:00 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-07-14 11:00:00 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-07-14 10:59:56 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2016-07-14 10:59:48 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\SYSWOW64\ncrypt.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\schannel.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\ncrypt.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-07-14 10:59:37 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2016-07-14 10:59:37 ----A---- C:\WINDOWS\system32\scesrv.dll
2016-07-14 10:59:34 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\mtxoci.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\msorcl32.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\wow64.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\mtxoci.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-07-14 10:59:13 ----A---- C:\WINDOWS\system32\profsvc.dll
2016-07-14 10:59:09 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-07-14 10:59:09 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-07-14 10:59:09 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-07-14 10:59:09 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-07-14 10:59:06 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-07-14 10:59:06 ----A---- C:\WINDOWS\system32\mfds.dll
2016-07-14 10:58:45 ----A---- C:\WINDOWS\system32\VSSVC.exe
2016-07-14 10:58:43 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\tquery.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\mssvp.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\mssrch.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\mssphtb.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\mssph.dll
2016-07-14 10:56:44 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2016-07-14 10:56:44 ----A---- C:\WINDOWS\system32\untfs.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\system32\user32.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\system32\FntCache.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\system32\DWrite.dll
2016-07-14 10:56:25 ----AC---- C:\WINDOWS\system32\drivers\volsnap.sys
2016-07-14 10:56:21 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2016-07-14 10:56:21 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2016-07-14 10:56:13 ----AC---- C:\WINDOWS\system32\drivers\spaceport.sys
2016-07-14 10:56:13 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2016-07-14 10:56:13 ----A---- C:\WINDOWS\system32\mispace.dll
2016-07-14 10:56:13 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2016-07-14 10:55:36 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2016-07-14 10:55:34 ----A---- C:\WINDOWS\SYSWOW64\GeofenceMonitorService.dll
2016-07-14 10:55:34 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll
2016-07-14 10:55:31 ----A---- C:\WINDOWS\SYSWOW64\rastapi.dll
2016-07-14 10:55:31 ----A---- C:\WINDOWS\system32\rastapi.dll
2016-07-14 10:55:29 ----A---- C:\WINDOWS\SYSWOW64\PCPKsp.dll
2016-07-14 10:55:29 ----A---- C:\WINDOWS\system32\PCPKsp.dll
2016-07-14 10:55:24 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-07-14 10:55:24 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-07-14 10:55:24 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-07-14 10:55:18 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2016-07-14 10:55:18 ----A---- C:\WINDOWS\system32\storagewmi.dll
2016-07-14 10:55:01 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-07-14 10:54:56 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-07-14 10:54:55 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-07-14 10:54:55 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2016-07-14 10:54:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-07-14 10:54:10 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-07-14 10:54:06 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2016-07-14 10:54:06 ----A---- C:\WINDOWS\system32\msftedit.dll
2016-07-14 10:54:03 ----A---- C:\WINDOWS\SYSWOW64\photowiz.dll
2016-07-14 10:54:03 ----A---- C:\WINDOWS\system32\photowiz.dll
2016-07-14 10:53:48 ----A---- C:\WINDOWS\SYSWOW64\appidapi.dll
2016-07-14 10:53:48 ----A---- C:\WINDOWS\system32\appidsvc.dll
2016-07-14 10:53:48 ----A---- C:\WINDOWS\system32\appidapi.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2016-07-14 10:53:45 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\wer.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\Faultrep.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\EncDump.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\ci.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-07-14 10:51:09 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-07-14 10:51:09 ----D---- C:\Program Files\Realtek
2016-07-14 10:50:58 ----D---- C:\Program Files (x86)\Intel
2016-07-14 10:50:57 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2016-07-14 10:50:57 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2016-07-14 10:50:18 ----D---- C:\ProgramData\NVIDIA Corporation
2016-07-14 10:50:10 ----D---- C:\Program Files\NVIDIA Corporation
2016-07-14 10:50:10 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2016-07-14 10:50:00 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-07-14 10:50:00 ----D---- C:\Program Files (x86)\MSBuild
2016-07-14 10:49:59 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2016-07-14 10:49:59 ----D---- C:\Program Files\Reference Assemblies
2016-07-14 10:49:59 ----D---- C:\Program Files\MSBuild
2016-07-14 10:49:57 ----D---- C:\Program Files\Synaptics
2016-07-14 10:49:22 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-07-14 10:49:19 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-07-14 10:48:58 ----A---- C:\WINDOWS\SYSWOW64\sdbinst.exe
2016-07-14 10:48:57 ----A---- C:\WINDOWS\system32\sdbinst.exe
2016-07-14 10:47:03 ----D---- C:\WINDOWS\Prefetch
2016-07-14 09:42:01 ----D---- C:\WINDOWS\system32\appraiser
2016-07-13 17:00:33 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2016-07-12 15:03:42 ----D---- C:\WINDOWS\Migration
2016-07-12 00:44:28 ----D---- C:\WINDOWS\system32\MRT
2016-07-12 00:44:27 ----A---- C:\WINDOWS\system32\MRT.exe
2016-07-12 00:30:23 ----D---- C:\Program Files\Common Files\AV
2016-07-11 23:24:04 ----D---- C:\Users\Skala\AppData\Roaming\Macromedia
2016-07-11 23:15:56 ----D---- C:\Program Files\Common Files\Intel
2016-07-11 23:15:56 ----D---- C:\Program Files (x86)\Cisco
2016-07-11 23:14:53 ----D---- C:\ProgramData\Package Cache
2016-07-11 22:54:39 ----D---- C:\Users\Skala\AppData\Roaming\Adobe
2016-07-11 22:53:39 ----D---- C:\Users\Skala\AppData\Roaming\Intel
2016-07-11 22:49:57 ----SHD---- C:\System Volume Information
2016-07-11 22:49:57 ----ASH---- C:\swapfile.sys
2016-07-11 22:49:57 ----ASH---- C:\pagefile.sys
2016-07-11 22:49:54 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 month======

2016-08-04 19:19:53 ----D---- C:\WINDOWS\Temp
2016-08-04 19:19:53 ----D---- C:\WINDOWS\SoftwareDistribution
2016-08-04 19:19:53 ----D---- C:\WINDOWS\Inf
2016-08-04 19:19:53 ----D---- C:\Windows
2016-08-04 19:15:34 ----RD---- C:\Program Files
2016-08-04 19:00:01 ----D---- C:\WINDOWS\system32\sru
2016-08-04 18:55:32 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-08-04 18:53:21 ----HD---- C:\ProgramData
2016-08-04 18:52:19 ----D---- C:\WINDOWS\system32\drivers
2016-08-04 18:42:06 ----D---- C:\WINDOWS\system32\config
2016-08-04 18:30:34 ----D---- C:\WINDOWS\System32
2016-08-04 18:30:25 ----D---- C:\WINDOWS\system32\Tasks
2016-08-04 17:47:33 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-08-04 17:41:38 ----D---- C:\WINDOWS\system32\DriverStore
2016-08-04 09:09:57 ----D---- C:\WINDOWS\Microsoft.NET
2016-08-03 21:50:45 ----SHD---- C:\WINDOWS\Installer
2016-08-03 21:50:32 ----D---- C:\WINDOWS\SysWOW64
2016-08-02 22:44:35 ----RSD---- C:\WINDOWS\assembly
2016-08-02 22:44:33 ----SD---- C:\ProgramData\Microsoft
2016-08-02 22:44:33 ----D---- C:\Program Files\Common Files\microsoft shared
2016-08-02 22:44:32 ----RD---- C:\Program Files (x86)
2016-08-02 21:24:50 ----D---- C:\WINDOWS\Logs
2016-08-02 21:24:50 ----D---- C:\WINDOWS\debug
2016-08-02 18:19:20 ----D---- C:\Program Files (x86)\Common Files
2016-07-31 22:20:06 ----D---- C:\Program Files\Common Files
2016-07-31 22:19:40 ----SD---- C:\WINDOWS\Downloaded Program Files
2016-07-31 22:18:14 ----RSD---- C:\WINDOWS\Fonts
2016-07-31 22:01:11 ----D---- C:\WINDOWS\WinSxS
2016-07-31 21:41:38 ----SHD---- C:\$Recycle.Bin
2016-07-28 23:56:10 ----D---- C:\WINDOWS\Tasks
2016-07-24 21:07:47 ----D---- C:\WINDOWS\system32\drivers\etc
2016-07-21 17:12:42 ----D---- C:\WINDOWS\system32\catroot2
2016-07-20 17:35:07 ----D---- C:\WINDOWS\CbsTemp
2016-07-19 18:29:33 ----HD---- C:\Program Files\WindowsApps
2016-07-19 18:29:33 ----D---- C:\WINDOWS\AppReadiness
2016-07-19 08:50:15 ----D---- C:\WINDOWS\rescache
2016-07-19 08:39:41 ----D---- C:\WINDOWS\WinStore
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\WCN
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\wbem
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\oobe
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-07-19 08:39:41 ----D---- C:\WINDOWS\servicing
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Photo Viewer
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Media Player
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Mail
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Journal
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Defender
2016-07-19 08:39:41 ----D---- C:\Program Files\Internet Explorer
2016-07-19 08:39:41 ----D---- C:\Program Files\Common Files\System
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Windows Media Player
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Windows Mail
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Windows Defender
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Internet Explorer
2016-07-19 08:39:40 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\Sysprep
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\slmgr
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\sk-SK
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\oobe
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\migwiz
2016-07-19 08:39:40 ----D---- C:\WINDOWS\PolicyDefinitions
2016-07-19 08:39:39 ----D---- C:\WINDOWS\system32\WCN
2016-07-19 08:39:38 ----D---- C:\WINDOWS\system32\wbem
2016-07-19 08:39:37 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-07-19 08:39:37 ----D---- C:\WINDOWS\Help
2016-07-18 23:09:34 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-07-18 22:48:36 ----D---- C:\WINDOWS\system32\wdi
2016-07-18 22:46:59 ----D---- C:\WINDOWS\SYSWOW64\NV
2016-07-18 22:46:59 ----D---- C:\WINDOWS\system32\NV
2016-07-18 18:15:51 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2016-07-18 18:13:52 ----D---- C:\ProgramData\McAfee
2016-07-18 18:13:03 ----D---- C:\WINDOWS\system32\catroot
2016-07-18 18:12:43 ----HD---- C:\WINDOWS\ELAMBKUP
2016-07-18 17:38:26 ----D---- C:\WINDOWS\AppCompat
2016-07-14 13:39:27 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-07-14 13:39:27 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2016-07-14 13:39:27 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2016-07-14 13:39:27 ----D---- C:\WINDOWS\system32\en-US
2016-07-14 13:39:26 ----RD---- C:\WINDOWS\ToastData
2016-07-14 13:39:26 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-07-14 13:39:26 ----D---- C:\WINDOWS\system32\drivers\en-US
2016-07-14 13:39:26 ----D---- C:\WINDOWS\system32\cs-CZ
2016-07-14 13:39:24 ----SD---- C:\WINDOWS\system32\CompatTel
2016-07-14 13:39:24 ----D---- C:\WINDOWS\apppatch
2016-07-14 13:18:58 ----D---- C:\WINDOWS\system32\restore
2016-07-14 13:14:26 ----D---- C:\WINDOWS\system32\LogFiles
2016-07-14 11:39:08 ----D---- C:\WINDOWS\SYSWOW64\setup
2016-07-14 11:39:08 ----D---- C:\WINDOWS\system32\setup
2016-07-14 11:37:18 ----D---- C:\WINDOWS\FileManager
2016-07-14 11:29:20 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2016-07-14 11:28:02 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-07-14 11:25:49 ----D---- C:\WINDOWS\SYSWOW64\winrm
2016-07-14 11:25:49 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2016-07-14 11:25:49 ----D---- C:\WINDOWS\SYSWOW64\en
2016-07-14 11:25:49 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2016-07-14 11:25:49 ----D---- C:\WINDOWS\system32\winrm
2016-07-14 11:25:49 ----D---- C:\WINDOWS\system32\en
2016-07-14 11:25:49 ----D---- C:\WINDOWS\system32\Boot
2016-07-14 11:25:49 ----D---- C:\WINDOWS\en-US
2016-07-14 11:25:38 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2016-07-14 11:18:20 ----D---- C:\Program Files\Windows NT
2016-07-14 11:18:06 ----D---- C:\WINDOWS\Registration
2016-07-14 11:10:53 ----RSD---- C:\WINDOWS\Media
2016-07-14 11:06:46 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2016-07-14 11:03:25 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2016-07-14 11:03:25 ----D---- C:\WINDOWS\SYSWOW64\SMI
2016-07-14 11:03:24 ----D---- C:\WINDOWS\SYSWOW64\sda
2016-07-14 11:03:24 ----D---- C:\WINDOWS\SYSWOW64\MUI
2016-07-14 11:03:24 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2016-07-14 11:03:24 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2016-07-14 11:03:23 ----D---- C:\WINDOWS\SYSWOW64\IME
2016-07-14 11:03:22 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2016-07-14 11:03:22 ----D---- C:\WINDOWS\SYSWOW64\catroot
2016-07-14 11:03:20 ----HD---- C:\WINDOWS\system32\WLANProfiles
2016-07-14 11:03:19 ----D---- C:\WINDOWS\system32\spool
2016-07-14 11:03:16 ----D---- C:\WINDOWS\system32\MUI
2016-07-14 11:03:16 ----D---- C:\WINDOWS\system32\IME
2016-07-14 11:02:37 ----D---- C:\WINDOWS\DigitalLocker
2016-07-14 11:02:35 ----RD---- C:\Users
2016-07-14 11:02:35 ----D---- C:\ProgramData\PRICache
2016-07-14 11:02:33 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2016-07-14 11:02:30 ----SHD---- C:\Program Files\Windows Sidebar
2016-07-14 11:01:35 ----D---- C:\WINDOWS\system32\Recovery
2016-07-14 10:53:47 ----D---- C:\WINDOWS\system32\AdvancedInstallers
2016-07-14 10:50:04 ----D---- C:\WINDOWS\twain_32
2016-07-14 08:52:57 ----D---- C:\WINDOWS\AUInstallAgent
2016-07-11 23:16:44 ----D---- C:\ProgramData\Intel
2016-07-11 23:15:54 ----D---- C:\ProgramData\Intel.sav
2016-07-11 23:15:49 ----D---- C:\Program Files\Intel
2016-07-11 23:14:45 ----D---- C:\Intel

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-09-02 647736]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2013-05-24 39008]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2015-11-16 40264]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 WIBUKEY;WIBU-KEY Kernel Driver; C:\WINDOWS\SYSTEM32\DRIVERS\WibuKey64.sys [2013-12-18 106760]
R3 ACPIVPC;@oem49.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2013-05-24 33560]
R3 AMPPAL;@oem41.inf,%AMPPAL.SVCDESC%;Virtuální adaptér Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\System32\drivers\AMPPAL.sys [2012-11-13 156160]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 btmhsf;btmhsf; C:\WINDOWS\system32\DRIVERS\btmhsf.sys [2012-08-29 857472]
R3 dtlitescsibus;@oem60.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-07-31 30264]
R3 dtliteusbbus;@oem61.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-07-31 47672]
R3 iBtFltCoex;iBtFltCoex; C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys [2012-08-06 68136]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2012-12-13 5353888]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-12-11 3258256]
R3 IntcDAud;@oem35.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-12-14 342528]
R3 iwdbus;@oem46.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 MEIx64;@oem54.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 NETwNe64;@oem51.inf,%NIC_Service_DispName_WIN8_64%;Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 8 64 Bit; C:\WINDOWS\system32\DRIVERS\Netwew00.sys [2013-10-08 3345376]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-11-16 11105936]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 rtsuvc;@oem6.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [2012-10-17 8230160]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2013-03-25 33008]
R3 SynTP;@oem38.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-03-25 474864]
R3 usb3Hub;@oem47.inf,%usb3Hub.SVCDESC%;USB-IF USB 3.0 Hub; C:\WINDOWS\System32\drivers\usb3Hub.sys [2012-11-30 47072]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2016-07-14 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2016-07-14 1201664]
S3 intaud_WaveExtensible;@oem45.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2016-07-14 167424]
S3 RSUSBVSTOR;@oem53.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2012-06-13 315536]
S3 WDC_SAM;@oem59.inf,%WDC_SAM_ServiceName%;WD SCSI Pass Thru driver; C:\WINDOWS\System32\drivers\wdcsam64.sys [2015-11-12 26880]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdAppMgrSvc;Autodesk Application Manager Service; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [2016-02-24 1145928]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-06-25 82128]
R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2012-11-13 755240]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [2015-02-05 31160]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2012-08-27 1112000]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2012-09-06 1124288]
R2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-08-15 135984]
R2 CodeMeter.exe;CodeMeter Runtime Server; C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe [2013-11-15 3105144]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2013-08-28 626416]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R2 LavasoftTcpService;LavasoftTcpService; C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe [2016-07-18 2751760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R2 nvsvc;NVIDIA Display Driver Service; C:\windows\system32\nvvsvc.exe [2013-02-14 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-13 1260320]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2013-08-28 149744]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R2 WCAssistantService;WC Assistant; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [2016-07-18 17168]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\_PROGRAMY_\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2016-05-30 1467072]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-18 154440]
S2 LbpCntAtapole.exe;Lobiphghqocult Center; C:\Program Files (x86)\Gititysabpy\LbpCntAtapole.exe [2016-07-29 389856]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2012-12-19 277640]
S3 FlexNet Licensing Service 64;FlexNet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe [2016-07-31 1369856]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-18 154440]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2013-08-28 273136]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: antivirus.exe

#3 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pedro3
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 04 srp 2016 18:16

Re: antivirus.exe

#4 Příspěvek od pedro3 »

# AdwCleaner v5.201 - Log vytvořen 05/08/2016 v 00:42:52
# Aktualizováno 30/06/2016 by ToolsLib
# Databáze : 2016-08-04.3 [Server]
# Operační system : Windows 8.1 (X64)
# Uživatelské jméno : ...
# Spuštěno z : C:\Users\...\Desktop\adwcleaner_5.201.exe
# Nastavení : Čištění
# Podpora : https://toolslib.net/forum

***** [ Služby ] *****

[-] Služba Smazáno : LavasoftTcpService
[-] Služba Smazáno : WCAssistantService

***** [ Složky ] *****

[-] Složka Smazáno : C:\ProgramData\lavasoft\web companion
[#] Složka Smazáno : C:\ProgramData\Application Data\lavasoft\web companion
[-] Složka Smazáno : C:\Program Files (x86)\lavasoft\web companion
[-] Složka Smazáno : C:\Users\Skala\AppData\Roaming\lavasoft\web companion
[-] Složka Smazáno : C:\extensions

***** [ Soubory ] *****

[-] Soubor Smazáno : C:\WINDOWS\SysWOW64\lavasofttcpservice.dll
[-] Soubor Smazáno : C:\WINDOWS\SysWOW64\LavasoftTcpServiceOff.ini
[-] Soubor Smazáno : C:\WINDOWS\SysNative\LavasoftTcpService64.dll
[-] Soubor Smazáno : C:\WINDOWS\SysNative\LavasoftTcpServiceOff.ini

***** [ DLLs ] *****


***** [ WMI ] *****


***** [ Zástupci ] *****


***** [ Naplánované úlohy ] *****


***** [ Registry ] *****

[-] Klíč Smazáno : HKCU\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF}
[-] Klíč Smazáno : HKLM\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF}
[-] Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataContainer
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataContainer.1
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataController
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataController.1
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTable
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTable.1
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTableFields
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTableFields.1
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTableHolder
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTableHolder.1
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.LSPLogic
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.LSPLogic.1
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.ReadOnlyManager
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.ReadOnlyManager.1
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.WFPController
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.WFPController.1
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{0015CAC9-FC30-4CD0-BFAA-7412CC2C4DD9}
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{26C7AFDB-3690-449E-B979-B0AF5CC56DD4}
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{3A5A5381-DAAF-4C0D-B032-2C66B3EE4A8D}
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{472EF1D2-4AAE-470D-AE85-6AF8177916FD}
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{8F010D54-C023-457F-AF03-497EACB6D519}
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{9A754403-27B1-4ED7-96D7-588F07888EBF}
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{CB31FF8F-BF80-4D2B-ADBE-12C6F5347890}
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{FCAA532B-E807-4027-940C-BA16B9D50105}
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{ED62BC6E-64F1-46BE-866F-4C8DC0DF7057}
[-] Klíč Smazáno : HKLM\SOFTWARE\Lavasoft\Web Companion
[-] Klíč Smazáno : HKLM\SOFTWARE\{E6276374-DE18-4AA5-A365-9016A2F98A2D}
[-] Klíč Smazáno : HKLM\SOFTWARE\youndooSoftware
[-] Data Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Obnoveno : HKU\S-1-5-21-1375698676-891907955-1815033883-1002\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{C0C3A6C6-03BC-4195-8FCB-AEA091301353}
[-] Hodnota Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Web Companion]
[#] Hodnota Smazáno : HKU\S-1-5-21-1375698676-891907955-1815033883-1002\Software\Microsoft\Windows\CurrentVersion\Run [Web Companion]

***** [ Prohlížeče ] *****


*************************

:: "Tracing" klíče smazány
:: Nastavení Winsock vyčištěno

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [4613 bytů] - [05/08/2016 00:42:52]
C:\AdwCleaner\AdwCleaner[S1].txt - [4807 bytů] - [05/08/2016 00:41:47]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [4759 bytů] ##########

pedro3
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 04 srp 2016 18:16

Re: antivirus.exe

#5 Příspěvek od pedro3 »

Bohužel problém přetrvává.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: antivirus.exe

#6 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pedro3
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 04 srp 2016 18:16

Re: antivirus.exe

#7 Příspěvek od pedro3 »

Logfile of random's system information tool 1.10 (written by random/random)
Run by ... at 2016-08-07 20:06:00
Microsoft Windows 8.1
System drive C: has 802 GB (89%) free of 904 GB
Total RAM: 8048 MB (77% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:06:02, on 7. 8. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe
C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
C:\Users\Skala\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\w10memchk.exe
C:\Users\Skala\AppData\Roaming\Microsoft\Antivirus\windefender.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Skala\AppData\Local\Autodesk\.AdskAppManager\R1\AdAppMgr.exe
C:\Program Files\trend micro\Skala.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
O4 - HKLM\..\Run: [ADSKAppManager] "C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe" -showminimized -checkautorun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\_PROGRAMY_\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-21-1375698676-891907955-1815033883-1001\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'UpdatusUser')
O4 - Startup: w10memchk.exe
O4 - Global Startup: CodeMeter Control Center.lnk = C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
O4 - Global Startup: Network Server.lnk = C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe
O8 - Extra context menu item: Odeslat do Bluetooth - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O9 - Extra button: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Autodesk Application Manager Service (AdAppMgrSvc) - Autodesk Inc. - C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) - WIBU-SYSTEMS AG - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\_PROGRAMY_\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FlexNet Licensing Service 64 - Flexera Software LLC - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Lobiphghqocult Center (LbpCntAtapole.exe) - Unknown owner - C:\Program Files (x86)\Gititysabpy\LbpCntAtapole.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 10626 bytes

======Listing Processes======





wininit.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"C:\windows\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\WLANExt.exe 448822181888
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-6e39989c-50d0-462d-b067-d373729de9b2 -SystemEventPortName:HostProcess-f4c53711-615a-419f-bd99-a3462837463a -IoCancelEventPortName:HostProcess-8c9db5b3-8620-47b6-9879-8508406e0bd2 -NonStateChangingEventPortName:HostProcess-8f3e1009-fecf-4c40-b109-d6c9bc7af86c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:b6125b6c-a859-4595-b883-5fa6bbcd7cda -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\_PROGRAMY_\DAEMON Tools Lite\DiscSoftBusServiceLite.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"


C:\WINDOWS\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session

taskeng.exe {2EDDEAC4-262C-4088-8EAE-D7DBF7023CEF}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskhostex.exe
C:\WINDOWS\Explorer.EXE
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\RTFTrack.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe" /m
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe" -start
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe"
"C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe"
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
"C:\Users\Skala\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\w10memchk.exe"
"C:\Users\Skala\AppData\Roaming\Microsoft\Antivirus\antivirus.exe" -a skein -o stratum+tcp://stratum.dgb.theblocksfactory.com:9002 -u Dadas.owner -p x
"C:\Users\Skala\AppData\Roaming\Microsoft\Antivirus\windefender.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
"C:\Users\Skala\AppData\Local\Autodesk\.AdskAppManager\R1\AdAppMgr.exe" -showminimized -checkautorun -peruser
C:\WINDOWS\system32\CompatTelRunner.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\CompatTelRunner.exe -m:appraiser.dll -f:DoScheduledTelemetryRun -cv:V7bSLy8PGUaqLoQM.1
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Internet Explorer\IELowutil.exe" -PID:123
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe11_ Global\UsGthrCtrlFltPipeMssGthrPipe11 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 580 584 592 65536 588
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Skala\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-08-02 473152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-08-02 186944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtsFT"=C:\WINDOWS\RTFTrack.exe [2012-10-17 6334096]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-12-07 13262480]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-12-03 1256080]
"SynLenovoGestureMgr"=C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [2013-03-25 677104]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2012-08-27 11577216]
"OnekeyStudio"=C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [2012-09-15 4196432]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2013-05-24 17080376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2013-05-24 191544]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-03-25 3049712]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2012-12-19 172168]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2012-12-19 400008]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2012-12-19 441992]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite Automount"=C:\_PROGRAMY_\DAEMON Tools Lite\DTAgent.exe [2016-05-30 4299968]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-01-15 8619224]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [2012-10-31 168464]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2012-04-19 217088]
"RemoteControl10"=C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
"Intel AppUp(SM) center"=C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2012-07-12 155488]
"ADSKAppManager"=C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [2016-02-24 529480]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-06-22 598552]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
CodeMeter Control Center.lnk - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
Network Server.lnk - C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe

C:\Users\Skala\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
w10memchk.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2012-12-13 442880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{6710C780-E20E-4C49-A87D-321850ED3D7C}"=C:\Users\Skala\AppData\Local\Microsoft\Windows\INetCookies\anugily.dll [2016-07-29 374784]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe"="C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe:*:Enabled:CodeMeter Runtime Server"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe"="C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe:*:Enabled:CodeMeter Runtime Server"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\WINDOWS\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2016-08-05 00:41:22 ----D---- C:\AdwCleaner
2016-08-04 19:15:34 ----D---- C:\rsit
2016-08-04 19:15:34 ----D---- C:\Program Files\trend micro
2016-08-02 22:44:07 ----D---- C:\ProgramData\Microsoft Help
2016-08-02 22:26:42 ----D---- C:\Users\Skala\AppData\Roaming\MAXON
2016-08-02 22:25:56 ----D---- C:\Users\Skala\AppData\Roaming\Graphisoft
2016-08-02 22:07:37 ----D---- C:\ProgramData\CodeMeter
2016-08-02 22:07:37 ----D---- C:\Program Files\CodeMeter
2016-08-02 22:07:37 ----D---- C:\Program Files (x86)\CodeMeter
2016-08-02 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\WkExt32.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\WibuXpm4J32.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\wibuKJni.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\system32\WkExt64.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\system32\WibuXpm4J64.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\system32\wibuKJni64.dll
2016-08-02 22:06:57 ----A---- C:\WINDOWS\system32\drivers\Wibukey2_64.sys
2016-08-02 22:06:55 ----A---- C:\WINDOWS\SYSWOW64\WkWin32.dll
2016-08-02 22:06:55 ----A---- C:\WINDOWS\system32\WkWin64.dll
2016-08-02 22:06:55 ----A---- C:\WINDOWS\system32\drivers\WibuKey64.sys
2016-08-02 22:06:48 ----D---- C:\Program Files\WIBU-SYSTEMS
2016-08-02 22:06:48 ----D---- C:\Program Files (x86)\WIBU-SYSTEMS
2016-08-02 22:06:48 ----D---- C:\Program Files (x86)\WIBUKEY
2016-08-02 22:01:30 ----D---- C:\Users\Skala\AppData\Roaming\Install.GS
2016-08-02 21:23:36 ----D---- C:\Program Files\CCleaner
2016-08-02 20:51:33 ----D---- C:\Users\Skala\AppData\Roaming\WinRAR
2016-08-02 18:20:33 ----D---- C:\Users\Skala\AppData\Roaming\VitySoft
2016-08-02 18:19:15 ----D---- C:\Users\Skala\AppData\Roaming\Sun
2016-08-02 18:19:11 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2016-08-02 18:18:50 ----D---- C:\ProgramData\Oracle
2016-08-02 18:18:45 ----D---- C:\Program Files (x86)\Java
2016-07-31 22:48:20 ----D---- C:\ProgramData\FLEXnet
2016-07-31 22:20:48 ----D---- C:\Program Files (x86)\Autodesk
2016-07-31 22:20:06 ----D---- C:\Program Files\Common Files\Macrovision Shared
2016-07-31 22:14:04 ----D---- C:\Program Files\Common Files\Autodesk Shared
2016-07-31 22:14:04 ----D---- C:\Program Files\Autodesk
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_7.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_5.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2016-07-31 22:03:03 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll
2016-07-31 22:03:03 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2016-07-31 22:03:03 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2016-07-31 22:03:03 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2016-07-31 22:03:01 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll
2016-07-31 22:03:01 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll
2016-07-31 22:03:01 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2016-07-31 22:03:01 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2016-07-31 22:02:51 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2016-07-31 22:02:51 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2016-07-31 21:57:26 ----D---- C:\Users\Skala\AppData\Roaming\Autodesk
2016-07-31 21:57:26 ----D---- C:\ProgramData\Autodesk
2016-07-31 21:37:31 ----HD---- C:\Program Files (x86)\vgyDC08
2016-07-31 21:37:00 ----D---- C:\Program Files (x86)\Gititysabpy
2016-07-31 21:36:43 ----A---- C:\WINDOWS\system32\drivers\dtliteusbbus.sys
2016-07-31 21:36:24 ----D---- C:\Users\Skala\AppData\Roaming\DAEMON Tools Lite
2016-07-31 21:36:24 ----A---- C:\WINDOWS\system32\drivers\dtlitescsibus.sys
2016-07-31 21:33:00 ----D---- C:\ProgramData\DAEMON Tools Lite
2016-07-25 18:18:22 ----D---- C:\Users\Skala\AppData\Roaming\com.relax-gaming.skywalker
2016-07-22 07:52:24 ----D---- C:\ProgramData\Energy Management
2016-07-20 17:34:14 ----D---- C:\WINDOWS\EOONotify
2016-07-19 23:48:37 ----D---- C:\Program Files (x86)\Adobe
2016-07-19 23:48:27 ----D---- C:\ProgramData\Adobe
2016-07-18 23:17:24 ----D---- C:\Users\Skala\AppData\Roaming\NVIDIA
2016-07-18 23:17:21 ----D---- C:\ProgramData\GRETECH
2016-07-18 23:15:58 ----D---- C:\Users\Skala\AppData\Roaming\Lavasoft
2016-07-18 23:15:54 ----D---- C:\Program Files (x86)\Lavasoft
2016-07-18 23:15:43 ----D---- C:\ProgramData\Lavasoft
2016-07-18 23:15:32 ----D---- C:\Users\Skala\AppData\Roaming\GRETECH
2016-07-18 23:13:43 ----D---- C:\_PROGRAMY_
2016-07-18 22:44:02 ----D---- C:\drivers
2016-07-18 18:05:12 ----D---- C:\ProgramData\AVAST Software
2016-07-18 17:44:04 ----D---- C:\Program Files (x86)\Google
2016-07-14 13:39:27 ----SD---- C:\WINDOWS\SYSWOW64\GWX
2016-07-14 13:39:27 ----SD---- C:\WINDOWS\system32\GWX
2016-07-14 13:31:05 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-07-14 13:31:05 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-07-14 13:21:59 ----A---- C:\WINDOWS\system32\aspnet_counters.dll
2016-07-14 13:21:58 ----A---- C:\WINDOWS\SYSWOW64\aspnet_counters.dll
2016-07-14 13:14:32 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-07-14 13:14:32 ----A---- C:\WINDOWS\system32\twinui.dll
2016-07-14 13:13:28 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-07-14 13:13:28 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\pcasvc.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\invagent.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\devinv.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\centel.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\aepic.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-07-14 13:12:00 ----A---- C:\WINDOWS\system32\tzsync.exe
2016-07-14 13:11:51 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-07-14 13:11:47 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2016-07-14 12:55:48 ----D---- C:\Users\Skala\AppData\Roaming\Identities
2016-07-14 11:44:14 ----SHD---- C:\Recovery
2016-07-14 11:44:02 ----DC---- C:\WINDOWS\Panther
2016-07-14 11:39:44 ----A---- C:\WINDOWS\system32\fhcpl.dll
2016-07-14 11:39:28 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2016-07-14 11:39:28 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-07-14 11:39:28 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2016-07-14 11:39:28 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-07-14 11:39:12 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2016-07-14 11:39:12 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-07-14 11:38:51 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rasser.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rasmxs.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rasdiag.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rascfg.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\QSVRMGMT.DLL
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\QSHVHOST.DLL
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\eventcls.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\WSDMon.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\WSDApi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\WinSCard.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\vsstrace.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\vssapi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rasser.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rasmxs.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rasdiag.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rascfg.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\QSVRMGMT.DLL
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\QSHVHOST.DLL
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\eventcls.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\dnsapi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\splwow64.exe
2016-07-14 11:37:48 ----A---- C:\WINDOWS\system32\msra.exe
2016-07-14 11:32:23 ----A---- C:\WINDOWS\SYSWOW64\dhcpsapi.dll
2016-07-14 11:32:23 ----A---- C:\WINDOWS\system32\dhcpsapi.dll
2016-07-14 11:32:15 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2016-07-14 11:32:15 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-07-14 11:32:15 ----A---- C:\WINDOWS\system32\dbghelp.dll
2016-07-14 11:32:15 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-07-14 11:32:04 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2016-07-14 11:32:04 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-07-14 11:32:04 ----A---- C:\WINDOWS\system32\wscapi.dll
2016-07-14 11:31:53 ----AC---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-07-14 11:31:53 ----AC---- C:\WINDOWS\system32\SysFxUI.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVXENCD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVSENCD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVSDECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVENCOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVDECOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOE.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\VIDRESZR.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\RESAMPLEDMO.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2adec.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MPG4DECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MP4SDECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MP43DECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MP3DMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MFWMAAEC.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfvdsp.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\devenum.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\COLORCNV.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVXENCD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVSENCD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVSDECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVENCOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMADMOE.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\VIDRESZR.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\RESAMPLEDMO.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\quartz.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\qdvd.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\msmpeg2adec.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MPG4DECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MP4SDECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MP43DECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MP3DMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MFWMAAEC.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfvdsp.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfps.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\evr.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\devenum.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\COLORCNV.DLL
2016-07-14 11:31:32 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll
2016-07-14 11:31:32 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll
2016-07-14 11:31:25 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2016-07-14 11:31:25 ----A---- C:\WINDOWS\system32\notepad.exe
2016-07-14 11:31:25 ----A---- C:\WINDOWS\notepad.exe
2016-07-14 11:31:18 ----A---- C:\WINDOWS\system32\drivers\udfs.sys
2016-07-14 11:31:04 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2016-07-14 11:31:04 ----A---- C:\WINDOWS\system32\authz.dll
2016-07-14 11:30:57 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2016-07-14 11:30:57 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2016-07-14 11:30:49 ----AC---- C:\WINDOWS\system32\drivers\disk.sys
2016-07-14 11:30:39 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2016-07-14 11:30:39 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2016-07-14 11:30:39 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2016-07-14 11:30:21 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-07-14 11:30:14 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2016-07-14 11:30:14 ----A---- C:\WINDOWS\system32\oleaut32.dll
2016-07-14 11:30:07 ----A---- C:\WINDOWS\system32\apphelp.dll
2016-07-14 11:29:50 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-07-14 11:29:50 ----A---- C:\WINDOWS\system32\bdesvc.dll
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\sermouse.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\mouhid.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\mouclass.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\kbdhid.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\kbdclass.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\i8042prt.sys
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\ucrtbase.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-07-14 11:29:15 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2016-07-14 11:29:15 ----A---- C:\WINDOWS\SYSWOW64\IPHLPAPI.DLL
2016-07-14 11:29:15 ----A---- C:\WINDOWS\system32\webio.dll
2016-07-14 11:29:15 ----A---- C:\WINDOWS\system32\IPHLPAPI.DLL
2016-07-14 11:29:15 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-07-14 11:29:15 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2016-07-14 11:29:05 ----AC---- C:\WINDOWS\system32\drivers\vhdmp.sys
2016-07-14 11:28:57 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-07-14 11:28:57 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-07-14 11:28:35 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-07-14 11:28:35 ----A---- C:\WINDOWS\system32\ole32.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\SYSWOW64\EncDec.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\SYSWOW64\cfgbkend.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\system32\EncDec.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\system32\CPFilters.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2016-07-14 11:28:20 ----A---- C:\WINDOWS\system32\wbengine.exe
2016-07-14 11:27:50 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2016-07-14 11:27:50 ----A---- C:\WINDOWS\system32\gdi32.dll
2016-07-14 11:27:39 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2016-07-14 11:27:39 ----A---- C:\WINDOWS\system32\poqexec.exe
2016-07-14 11:27:29 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-07-14 11:26:58 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2016-07-14 11:26:58 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\SYSWOW64\ws2_32.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\SYSWOW64\mswsock.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\system32\ws2_32.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\system32\winhttp.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\system32\mswsock.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\system32\drivers\netbt.sys
2016-07-14 11:26:40 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\SYSWOW64\puiapi.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\SYSWOW64\ntprint.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\SYSWOW64\DafPrintProvider.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\puiobj.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\puiapi.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\ntprint.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\localspl.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\inetpp.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\DafPrintProvider.dll
2016-07-14 11:26:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-07-14 11:26:32 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-07-14 11:26:14 ----AC---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Šablony
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Plocha
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Nabídka Start
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Dokumenty
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Data aplikací
2016-07-14 11:17:34 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2016-07-14 11:17:12 ----A---- C:\WINDOWS\system32\rpcss.dll
2016-07-14 11:17:07 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2016-07-14 11:17:07 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-07-14 11:17:07 ----A---- C:\WINDOWS\system32\samlib.dll
2016-07-14 11:16:56 ----A---- C:\WINDOWS\system32\WSShared.dll
2016-07-14 11:16:56 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-07-14 11:16:55 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2016-07-14 11:16:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-07-14 11:16:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-07-14 11:16:37 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-07-14 11:16:30 ----A---- C:\WINDOWS\system32\nlasvc.dll
2016-07-14 11:16:30 ----A---- C:\WINDOWS\system32\ncsi.dll
2016-07-14 11:16:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-07-14 11:16:25 ----A---- C:\WINDOWS\SYSWOW64\glcndFilter.dll
2016-07-14 11:16:25 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-07-14 11:16:25 ----A---- C:\WINDOWS\system32\glcndFilter.dll
2016-07-14 11:16:20 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe
2016-07-14 11:16:11 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2016-07-14 11:16:11 ----A---- C:\WINDOWS\system32\crypt32.dll
2016-07-14 11:16:05 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2016-07-14 11:16:05 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\certcli.dll
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\system32\eapphost.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\system32\eappgnui.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\system32\eappcfg.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmictimeprovider.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmicres.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmbusres.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmbuspiper.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmbuspipe.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\VmApplicationHealthMonitorProxy.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\icsvc.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\winhvr.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\winhv.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vms3cap.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmgencounter.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmbusr.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\VMBusHID.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmbus.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmbkmclr.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmbkmcl.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\Synth3dVsc.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\storvsc.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\hyperkbd.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\dmvsc.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\dmvscres.dll
2016-07-14 11:15:32 ----A---- C:\WINDOWS\SYSWOW64\dsparse.dll
2016-07-14 11:15:32 ----A---- C:\WINDOWS\system32\dsparse.dll
2016-07-14 11:15:26 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2016-07-14 11:15:26 ----A---- C:\WINDOWS\system32\UtcResources.dll
2016-07-14 11:15:26 ----A---- C:\WINDOWS\system32\tdh.dll
2016-07-14 11:15:26 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-07-14 11:14:33 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2016-07-14 11:14:33 ----A---- C:\WINDOWS\system32\comctl32.dll
2016-07-14 11:14:28 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2016-07-14 11:14:28 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2016-07-14 11:14:20 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2016-07-14 11:14:20 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2016-07-14 11:14:20 ----A---- C:\WINDOWS\system32\clfsw32.dll
2016-07-14 11:14:15 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2016-07-14 11:14:15 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2016-07-14 11:14:15 ----A---- C:\WINDOWS\system32\tracerpt.exe
2016-07-14 11:14:15 ----A---- C:\WINDOWS\system32\sechost.dll
2016-07-14 11:14:06 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-07-14 11:14:06 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-07-14 11:14:01 ----A---- C:\WINDOWS\system32\drivers\usb8023.sys
2016-07-14 11:13:44 ----A---- C:\WINDOWS\SYSWOW64\WinSync.dll
2016-07-14 11:13:44 ----A---- C:\WINDOWS\system32\WinSync.dll
2016-07-14 11:13:40 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-07-14 11:13:40 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-07-14 11:13:36 ----A---- C:\WINDOWS\system32\WindowsAnytimeUpgradeui.exe
2016-07-14 11:13:32 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-07-14 11:13:32 ----A---- C:\WINDOWS\system32\msctf.dll
2016-07-14 11:13:27 ----AC---- C:\WINDOWS\system32\drivers\bthpan.sys
2016-07-14 11:13:23 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuwebv.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wups2.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wups.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wudriver.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wucltux.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuapp.exe
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2016-07-14 11:13:04 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2016-07-14 11:13:00 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-07-14 11:12:51 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2016-07-14 11:12:51 ----A---- C:\WINDOWS\SYSWOW64\msvcp120_clr0400.dll
2016-07-14 11:12:51 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2016-07-14 11:12:51 ----A---- C:\WINDOWS\system32\msvcp120_clr0400.dll
2016-07-14 11:12:32 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2016-07-14 11:12:29 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2016-07-14 11:12:20 ----A---- C:\WINDOWS\SYSWOW64\rsaenh.dll
2016-07-14 11:12:20 ----A---- C:\WINDOWS\system32\rsaenh.dll
2016-07-14 11:12:16 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-07-14 11:12:16 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-07-14 11:12:04 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-07-14 11:12:04 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-07-14 11:12:00 ----A---- C:\WINDOWS\system32\wininit.exe
2016-07-14 11:11:48 ----AC---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-07-14 11:11:48 ----AC---- C:\WINDOWS\system32\drivers\hidbth.sys
2016-07-14 11:11:48 ----AC---- C:\WINDOWS\system32\drivers\bthport.sys
2016-07-14 11:10:38 ----A---- C:\WINDOWS\SYSWOW64\wpdshext.dll
2016-07-14 11:10:38 ----A---- C:\WINDOWS\system32\wpdshext.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\SYSWOW64\mfc42u.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\SYSWOW64\mfc42.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\system32\mfc42u.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\system32\mfc42.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2016-07-14 11:10:22 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2016-07-14 11:10:22 ----A---- C:\WINDOWS\system32\qedit.dll
2016-07-14 11:10:10 ----A---- C:\WINDOWS\system32\csrsrv.dll
2016-07-14 11:10:10 ----A---- C:\WINDOWS\system32\basesrv.dll
2016-07-14 11:09:58 ----AC---- C:\WINDOWS\system32\drivers\tpm.sys
2016-07-14 11:09:55 ----A---- C:\WINDOWS\system32\NcdAutoSetup.dll
2016-07-14 11:09:51 ----A---- C:\WINDOWS\system32\ubpm.dll
2016-07-14 11:09:45 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-07-14 11:09:34 ----A---- C:\WINDOWS\SYSWOW64\WsmWmiPl.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\SYSWOW64\WsmAuto.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\SYSWOW64\WsmAgent.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\system32\WsmAuto.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\system32\WsmAgent.dll
2016-07-14 11:09:14 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2016-07-14 11:09:14 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2016-07-14 11:09:14 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2016-07-14 11:09:14 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\SettingMonitor.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-07-14 11:09:12 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\themecpl.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\stobject.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\shell32.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingMonitor.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\hgcpl.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\explorer.exe
2016-07-14 11:08:48 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2016-07-14 11:08:48 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2016-07-14 11:08:40 ----A---- C:\WINDOWS\system32\lsm.dll
2016-07-14 11:08:35 ----AC---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2016-07-14 11:08:29 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2016-07-14 11:08:26 ----A---- C:\WINDOWS\SYSWOW64\rgb9rast.dll
2016-07-14 11:08:22 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2016-07-14 11:08:22 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2016-07-14 11:08:14 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2016-07-14 11:08:14 ----A---- C:\WINDOWS\system32\advapi32.dll
2016-07-14 11:08:09 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-07-14 11:08:09 ----A---- C:\WINDOWS\SYSWOW64\WMASF.DLL
2016-07-14 11:08:09 ----A---- C:\WINDOWS\system32\wmp.dll
2016-07-14 11:08:09 ----A---- C:\WINDOWS\system32\WMASF.DLL
2016-07-14 11:07:32 ----A---- C:\WINDOWS\SYSWOW64\StorageContextHandler.dll
2016-07-14 11:07:32 ----A---- C:\WINDOWS\system32\StorageContextHandler.dll
2016-07-14 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-07-14 11:07:20 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-07-14 11:07:19 ----A---- C:\WINDOWS\system32\winresume.exe
2016-07-14 11:07:19 ----A---- C:\WINDOWS\system32\winload.exe
2016-07-14 11:07:18 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\SYSWOW64\polstore.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\SYSWOW64\FwRemoteSvr.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\polstore.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\IPSECSVC.DLL
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\gpsvc.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\gpapi.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\FwRemoteSvr.dll
2016-07-14 11:07:00 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2016-07-14 11:07:00 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2016-07-14 11:06:55 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2016-07-14 11:06:55 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\nshwfp.dll
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\BFE.DLL
2016-07-14 11:06:51 ----A---- C:\WINDOWS\SYSWOW64\d3d10level9.dll
2016-07-14 11:06:51 ----A---- C:\WINDOWS\system32\d3d10level9.dll
2016-07-14 11:06:46 ----A---- C:\WINDOWS\system32\compstui.dll
2016-07-14 11:06:41 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2016-07-14 11:06:41 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2016-07-14 11:06:37 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-07-14 11:06:37 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\jscript.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\iepeers.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\dxtrans.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-07-14 11:06:14 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2016-07-14 11:06:14 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-07-14 11:06:14 ----A---- C:\WINDOWS\system32\mshtmled.dll
2016-07-14 11:06:14 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\wininet.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\webcheck.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\msrating.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\inseng.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\inetcomm.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\ieui.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\hlink.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\system32\combase.dll
2016-07-14 11:04:38 ----AC---- C:\WINDOWS\system32\drivers\winusb.sys
2016-07-14 11:04:38 ----AC---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-07-14 11:04:32 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-07-14 11:04:26 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2016-07-14 11:04:26 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2016-07-14 11:04:26 ----A---- C:\WINDOWS\system32\comsvcs.dll
2016-07-14 11:04:26 ----A---- C:\WINDOWS\system32\catsrvut.dll
2016-07-14 11:04:19 ----A---- C:\WINDOWS\system32\services.exe
2016-07-14 11:04:16 ----A---- C:\WINDOWS\SYSWOW64\netcfgx.dll
2016-07-14 11:04:16 ----A---- C:\WINDOWS\system32\netcfgx.dll
2016-07-14 11:04:16 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2016-07-14 11:04:04 ----A---- C:\WINDOWS\SYSWOW64\shacct.dll
2016-07-14 11:04:04 ----A---- C:\WINDOWS\system32\shacct.dll
2016-07-14 11:04:00 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-07-14 11:04:00 ----A---- C:\WINDOWS\system32\SRH.dll
2016-07-14 11:03:44 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2016-07-14 11:03:44 ----A---- C:\WINDOWS\system32\winshfhc.dll
2016-07-14 11:03:44 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2016-07-14 11:03:44 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2016-07-14 11:03:44 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2016-07-14 11:03:36 ----A---- C:\WINDOWS\SYSWOW64\taskeng.exe
2016-07-14 11:03:36 ----A---- C:\WINDOWS\SYSWOW64\schtasks.exe
2016-07-14 11:03:36 ----A---- C:\WINDOWS\system32\taskeng.exe
2016-07-14 11:03:36 ----A---- C:\WINDOWS\system32\schtasks.exe
2016-07-14 11:03:36 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-07-14 11:03:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2016-07-14 11:03:32 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-07-14 11:03:28 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2016-07-14 11:03:28 ----A---- C:\WINDOWS\system32\calc.exe
2016-07-14 11:03:15 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll
2016-07-14 11:03:15 ----A---- C:\WINDOWS\SYSWOW64\davclnt.dll
2016-07-14 11:03:15 ----A---- C:\WINDOWS\system32\WebClnt.dll
2016-07-14 11:03:15 ----A---- C:\WINDOWS\system32\davclnt.dll
2016-07-14 11:03:05 ----A---- C:\WINDOWS\system32\wuaext.dll
2016-07-14 11:03:05 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2016-07-14 11:03:05 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-07-14 11:02:50 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2016-07-14 11:02:50 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-07-14 11:02:46 ----A---- C:\WINDOWS\system32\drivers\vpci.sys
2016-07-14 11:02:40 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbuhci.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbport.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbohci.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbhub.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbehci.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbd.sys
2016-07-14 11:02:33 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2016-07-14 11:02:33 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-07-14 11:02:33 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-07-14 11:02:33 ----A---- C:\WINDOWS\system32\rdpcore.dll
2016-07-14 11:02:29 ----A---- C:\WINDOWS\system32\drivers\IPMIDrv.sys
2016-07-14 11:02:26 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2016-07-14 11:02:26 ----A---- C:\WINDOWS\system32\pku2u.dll
2016-07-14 11:02:18 ----A---- C:\WINDOWS\system32\sysmain.dll
2016-07-14 11:02:18 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2016-07-14 11:02:05 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2016-07-14 11:02:05 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-07-14 11:02:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\msiexec.exe
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\msi.dll
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\consent.exe
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\authui.dll
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\appinfo.dll
2016-07-14 11:01:58 ----A---- C:\WINDOWS\SYSWOW64\InkEd.dll
2016-07-14 11:01:58 ----A---- C:\WINDOWS\system32\InkEd.dll
2016-07-14 11:01:51 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2016-07-14 11:01:51 ----A---- C:\WINDOWS\system32\SHCore.dll
2016-07-14 11:01:42 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-07-14 11:01:39 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys
2016-07-14 11:00:55 ----SD---- C:\Users\Skala\AppData\Roaming\Microsoft
2016-07-14 11:00:11 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2016-07-14 11:00:08 ----A---- C:\WINDOWS\system32\win32k.sys
2016-07-14 11:00:05 ----AC---- C:\WINDOWS\system32\drivers\volmgr.sys
2016-07-14 11:00:00 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-07-14 11:00:00 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-07-14 10:59:56 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2016-07-14 10:59:48 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\SYSWOW64\ncrypt.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\schannel.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\ncrypt.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-07-14 10:59:37 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2016-07-14 10:59:37 ----A---- C:\WINDOWS\system32\scesrv.dll
2016-07-14 10:59:34 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\mtxoci.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\msorcl32.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\wow64.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\mtxoci.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-07-14 10:59:13 ----A---- C:\WINDOWS\system32\profsvc.dll
2016-07-14 10:59:09 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-07-14 10:59:09 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-07-14 10:59:09 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-07-14 10:59:09 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-07-14 10:59:06 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-07-14 10:59:06 ----A---- C:\WINDOWS\system32\mfds.dll
2016-07-14 10:58:45 ----A---- C:\WINDOWS\system32\VSSVC.exe
2016-07-14 10:58:43 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\tquery.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\mssvp.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\mssrch.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\mssphtb.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\mssph.dll
2016-07-14 10:56:44 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2016-07-14 10:56:44 ----A---- C:\WINDOWS\system32\untfs.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\system32\user32.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\system32\FntCache.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\system32\DWrite.dll
2016-07-14 10:56:25 ----AC---- C:\WINDOWS\system32\drivers\volsnap.sys
2016-07-14 10:56:21 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2016-07-14 10:56:21 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2016-07-14 10:56:13 ----AC---- C:\WINDOWS\system32\drivers\spaceport.sys
2016-07-14 10:56:13 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2016-07-14 10:56:13 ----A---- C:\WINDOWS\system32\mispace.dll
2016-07-14 10:56:13 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2016-07-14 10:55:36 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2016-07-14 10:55:34 ----A---- C:\WINDOWS\SYSWOW64\GeofenceMonitorService.dll
2016-07-14 10:55:34 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll
2016-07-14 10:55:31 ----A---- C:\WINDOWS\SYSWOW64\rastapi.dll
2016-07-14 10:55:31 ----A---- C:\WINDOWS\system32\rastapi.dll
2016-07-14 10:55:29 ----A---- C:\WINDOWS\SYSWOW64\PCPKsp.dll
2016-07-14 10:55:29 ----A---- C:\WINDOWS\system32\PCPKsp.dll
2016-07-14 10:55:24 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-07-14 10:55:24 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-07-14 10:55:24 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-07-14 10:55:18 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2016-07-14 10:55:18 ----A---- C:\WINDOWS\system32\storagewmi.dll
2016-07-14 10:55:01 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-07-14 10:54:56 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-07-14 10:54:55 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-07-14 10:54:55 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2016-07-14 10:54:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-07-14 10:54:10 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-07-14 10:54:06 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2016-07-14 10:54:06 ----A---- C:\WINDOWS\system32\msftedit.dll
2016-07-14 10:54:03 ----A---- C:\WINDOWS\SYSWOW64\photowiz.dll
2016-07-14 10:54:03 ----A---- C:\WINDOWS\system32\photowiz.dll
2016-07-14 10:53:48 ----A---- C:\WINDOWS\SYSWOW64\appidapi.dll
2016-07-14 10:53:48 ----A---- C:\WINDOWS\system32\appidsvc.dll
2016-07-14 10:53:48 ----A---- C:\WINDOWS\system32\appidapi.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2016-07-14 10:53:45 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\wer.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\Faultrep.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\EncDump.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\ci.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-07-14 10:51:09 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-07-14 10:51:09 ----D---- C:\Program Files\Realtek
2016-07-14 10:50:58 ----D---- C:\Program Files (x86)\Intel
2016-07-14 10:50:57 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2016-07-14 10:50:57 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2016-07-14 10:50:18 ----D---- C:\ProgramData\NVIDIA Corporation
2016-07-14 10:50:10 ----D---- C:\Program Files\NVIDIA Corporation
2016-07-14 10:50:10 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2016-07-14 10:50:00 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-07-14 10:50:00 ----D---- C:\Program Files (x86)\MSBuild
2016-07-14 10:49:59 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2016-07-14 10:49:59 ----D---- C:\Program Files\Reference Assemblies
2016-07-14 10:49:59 ----D---- C:\Program Files\MSBuild
2016-07-14 10:49:57 ----D---- C:\Program Files\Synaptics
2016-07-14 10:49:22 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-07-14 10:49:19 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-07-14 10:48:58 ----A---- C:\WINDOWS\SYSWOW64\sdbinst.exe
2016-07-14 10:48:57 ----A---- C:\WINDOWS\system32\sdbinst.exe
2016-07-14 10:47:03 ----D---- C:\WINDOWS\Prefetch
2016-07-14 09:42:01 ----D---- C:\WINDOWS\system32\appraiser
2016-07-13 17:00:33 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2016-07-12 15:03:42 ----D---- C:\WINDOWS\Migration
2016-07-12 00:44:28 ----D---- C:\WINDOWS\system32\MRT
2016-07-12 00:44:27 ----A---- C:\WINDOWS\system32\MRT.exe
2016-07-12 00:30:23 ----D---- C:\Program Files\Common Files\AV
2016-07-11 23:24:04 ----D---- C:\Users\Skala\AppData\Roaming\Macromedia
2016-07-11 23:15:56 ----D---- C:\Program Files\Common Files\Intel
2016-07-11 23:15:56 ----D---- C:\Program Files (x86)\Cisco
2016-07-11 23:14:53 ----D---- C:\ProgramData\Package Cache
2016-07-11 22:54:39 ----D---- C:\Users\Skala\AppData\Roaming\Adobe
2016-07-11 22:53:39 ----D---- C:\Users\Skala\AppData\Roaming\Intel
2016-07-11 22:49:57 ----SHD---- C:\System Volume Information
2016-07-11 22:49:57 ----ASH---- C:\swapfile.sys
2016-07-11 22:49:57 ----ASH---- C:\pagefile.sys
2016-07-11 22:49:54 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 month======

2016-08-07 20:03:12 ----D---- C:\WINDOWS\Temp
2016-08-07 20:02:50 ----D---- C:\WINDOWS\System32
2016-08-07 20:02:50 ----D---- C:\WINDOWS\Inf
2016-08-07 20:02:50 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-08-07 20:01:36 ----D---- C:\WINDOWS\system32\sru
2016-08-05 00:46:45 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-08-05 00:44:31 ----HD---- C:\ProgramData
2016-08-05 00:44:00 ----D---- C:\Windows
2016-08-05 00:42:52 ----D---- C:\WINDOWS\SysWOW64
2016-08-05 00:37:38 ----D---- C:\WINDOWS\SoftwareDistribution
2016-08-04 20:09:33 ----D---- C:\WINDOWS\LiveKernelReports
2016-08-04 19:42:26 ----D---- C:\WINDOWS\system32\config
2016-08-04 19:40:06 ----D---- C:\WINDOWS\Microsoft.NET
2016-08-04 19:15:34 ----RD---- C:\Program Files
2016-08-04 18:52:19 ----D---- C:\WINDOWS\system32\drivers
2016-08-04 18:30:25 ----D---- C:\WINDOWS\system32\Tasks
2016-08-04 17:41:38 ----D---- C:\WINDOWS\system32\DriverStore
2016-08-03 21:50:45 ----SHD---- C:\WINDOWS\Installer
2016-08-02 22:44:35 ----RSD---- C:\WINDOWS\assembly
2016-08-02 22:44:33 ----SD---- C:\ProgramData\Microsoft
2016-08-02 22:44:33 ----D---- C:\Program Files\Common Files\microsoft shared
2016-08-02 22:44:32 ----RD---- C:\Program Files (x86)
2016-08-02 21:24:50 ----D---- C:\WINDOWS\Logs
2016-08-02 21:24:50 ----D---- C:\WINDOWS\debug
2016-08-02 18:19:20 ----D---- C:\Program Files (x86)\Common Files
2016-07-31 22:20:06 ----D---- C:\Program Files\Common Files
2016-07-31 22:19:40 ----SD---- C:\WINDOWS\Downloaded Program Files
2016-07-31 22:18:14 ----RSD---- C:\WINDOWS\Fonts
2016-07-31 22:01:11 ----D---- C:\WINDOWS\WinSxS
2016-07-31 21:41:38 ----SHD---- C:\$Recycle.Bin
2016-07-28 23:56:10 ----D---- C:\WINDOWS\Tasks
2016-07-24 21:07:47 ----D---- C:\WINDOWS\system32\drivers\etc
2016-07-21 17:12:42 ----D---- C:\WINDOWS\system32\catroot2
2016-07-20 17:35:07 ----D---- C:\WINDOWS\CbsTemp
2016-07-19 18:29:33 ----HD---- C:\Program Files\WindowsApps
2016-07-19 18:29:33 ----D---- C:\WINDOWS\AppReadiness
2016-07-19 08:50:15 ----D---- C:\WINDOWS\rescache
2016-07-19 08:39:41 ----D---- C:\WINDOWS\WinStore
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\WCN
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\wbem
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\oobe
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-07-19 08:39:41 ----D---- C:\WINDOWS\servicing
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Photo Viewer
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Media Player
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Mail
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Journal
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Defender
2016-07-19 08:39:41 ----D---- C:\Program Files\Internet Explorer
2016-07-19 08:39:41 ----D---- C:\Program Files\Common Files\System
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Windows Media Player
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Windows Mail
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Windows Defender
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Internet Explorer
2016-07-19 08:39:40 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\Sysprep
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\slmgr
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\sk-SK
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\oobe
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\migwiz
2016-07-19 08:39:40 ----D---- C:\WINDOWS\PolicyDefinitions
2016-07-19 08:39:39 ----D---- C:\WINDOWS\system32\WCN
2016-07-19 08:39:38 ----D---- C:\WINDOWS\system32\wbem
2016-07-19 08:39:37 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-07-19 08:39:37 ----D---- C:\WINDOWS\Help
2016-07-18 23:09:34 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-07-18 22:48:36 ----D---- C:\WINDOWS\system32\wdi
2016-07-18 22:46:59 ----D---- C:\WINDOWS\SYSWOW64\NV
2016-07-18 22:46:59 ----D---- C:\WINDOWS\system32\NV
2016-07-18 18:15:51 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2016-07-18 18:13:52 ----D---- C:\ProgramData\McAfee
2016-07-18 18:13:03 ----D---- C:\WINDOWS\system32\catroot
2016-07-18 18:12:43 ----HD---- C:\WINDOWS\ELAMBKUP
2016-07-18 17:38:26 ----D---- C:\WINDOWS\AppCompat
2016-07-14 13:39:27 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-07-14 13:39:27 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2016-07-14 13:39:27 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2016-07-14 13:39:27 ----D---- C:\WINDOWS\system32\en-US
2016-07-14 13:39:26 ----RD---- C:\WINDOWS\ToastData
2016-07-14 13:39:26 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-07-14 13:39:26 ----D---- C:\WINDOWS\system32\drivers\en-US
2016-07-14 13:39:26 ----D---- C:\WINDOWS\system32\cs-CZ
2016-07-14 13:39:24 ----SD---- C:\WINDOWS\system32\CompatTel
2016-07-14 13:39:24 ----D---- C:\WINDOWS\apppatch
2016-07-14 13:18:58 ----D---- C:\WINDOWS\system32\restore
2016-07-14 13:14:26 ----D---- C:\WINDOWS\system32\LogFiles
2016-07-14 11:39:08 ----D---- C:\WINDOWS\SYSWOW64\setup
2016-07-14 11:39:08 ----D---- C:\WINDOWS\system32\setup
2016-07-14 11:37:18 ----D---- C:\WINDOWS\FileManager
2016-07-14 11:29:20 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2016-07-14 11:28:02 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-07-14 11:25:49 ----D---- C:\WINDOWS\SYSWOW64\winrm
2016-07-14 11:25:49 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2016-07-14 11:25:49 ----D---- C:\WINDOWS\SYSWOW64\en
2016-07-14 11:25:49 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2016-07-14 11:25:49 ----D---- C:\WINDOWS\system32\winrm
2016-07-14 11:25:49 ----D---- C:\WINDOWS\system32\en
2016-07-14 11:25:49 ----D---- C:\WINDOWS\system32\Boot
2016-07-14 11:25:49 ----D---- C:\WINDOWS\en-US
2016-07-14 11:25:38 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2016-07-14 11:18:20 ----D---- C:\Program Files\Windows NT
2016-07-14 11:18:06 ----D---- C:\WINDOWS\Registration
2016-07-14 11:10:53 ----RSD---- C:\WINDOWS\Media
2016-07-14 11:06:46 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2016-07-14 11:03:25 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2016-07-14 11:03:25 ----D---- C:\WINDOWS\SYSWOW64\SMI
2016-07-14 11:03:24 ----D---- C:\WINDOWS\SYSWOW64\sda
2016-07-14 11:03:24 ----D---- C:\WINDOWS\SYSWOW64\MUI
2016-07-14 11:03:24 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2016-07-14 11:03:24 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2016-07-14 11:03:23 ----D---- C:\WINDOWS\SYSWOW64\IME
2016-07-14 11:03:22 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2016-07-14 11:03:22 ----D---- C:\WINDOWS\SYSWOW64\catroot
2016-07-14 11:03:20 ----HD---- C:\WINDOWS\system32\WLANProfiles
2016-07-14 11:03:19 ----D---- C:\WINDOWS\system32\spool
2016-07-14 11:03:16 ----D---- C:\WINDOWS\system32\MUI
2016-07-14 11:03:16 ----D---- C:\WINDOWS\system32\IME
2016-07-14 11:02:37 ----D---- C:\WINDOWS\DigitalLocker
2016-07-14 11:02:35 ----RD---- C:\Users
2016-07-14 11:02:35 ----D---- C:\ProgramData\PRICache
2016-07-14 11:02:33 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2016-07-14 11:02:30 ----SHD---- C:\Program Files\Windows Sidebar
2016-07-14 11:01:35 ----D---- C:\WINDOWS\system32\Recovery
2016-07-14 10:53:47 ----D---- C:\WINDOWS\system32\AdvancedInstallers
2016-07-14 10:50:04 ----D---- C:\WINDOWS\twain_32
2016-07-14 08:52:57 ----D---- C:\WINDOWS\AUInstallAgent
2016-07-11 23:16:44 ----D---- C:\ProgramData\Intel
2016-07-11 23:15:54 ----D---- C:\ProgramData\Intel.sav
2016-07-11 23:15:49 ----D---- C:\Program Files\Intel
2016-07-11 23:14:45 ----D---- C:\Intel

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-09-02 647736]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2013-05-24 39008]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2015-11-16 40264]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 WIBUKEY;WIBU-KEY Kernel Driver; C:\WINDOWS\SYSTEM32\DRIVERS\WibuKey64.sys [2013-12-18 106760]
R3 ACPIVPC;@oem49.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2013-05-24 33560]
R3 AMPPAL;@oem41.inf,%AMPPAL.SVCDESC%;Virtuální adaptér Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\System32\drivers\AMPPAL.sys [2012-11-13 156160]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 btmhsf;btmhsf; C:\WINDOWS\system32\DRIVERS\btmhsf.sys [2012-08-29 857472]
R3 dtlitescsibus;@oem60.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-07-31 30264]
R3 dtliteusbbus;@oem61.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-07-31 47672]
R3 iBtFltCoex;iBtFltCoex; C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys [2012-08-06 68136]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2012-12-13 5353888]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-12-11 3258256]
R3 IntcDAud;@oem35.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-12-14 342528]
R3 iwdbus;@oem46.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 MEIx64;@oem54.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 NETwNe64;@oem51.inf,%NIC_Service_DispName_WIN8_64%;Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 8 64 Bit; C:\WINDOWS\system32\DRIVERS\Netwew00.sys [2013-10-08 3345376]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-11-16 11105936]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 rtsuvc;@oem6.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [2012-10-17 8230160]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2013-03-25 33008]
R3 SynTP;@oem38.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-03-25 474864]
R3 usb3Hub;@oem47.inf,%usb3Hub.SVCDESC%;USB-IF USB 3.0 Hub; C:\WINDOWS\System32\drivers\usb3Hub.sys [2012-11-30 47072]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2016-07-14 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2016-07-14 1201664]
S3 intaud_WaveExtensible;@oem45.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2016-07-14 167424]
S3 RSUSBVSTOR;@oem53.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2012-06-13 315536]
S3 WDC_SAM;@oem59.inf,%WDC_SAM_ServiceName%;WD SCSI Pass Thru driver; C:\WINDOWS\System32\drivers\wdcsam64.sys [2015-11-12 26880]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdAppMgrSvc;Autodesk Application Manager Service; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [2016-02-24 1145928]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-06-25 82128]
R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2012-11-13 755240]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [2015-02-05 31160]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2012-08-27 1112000]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2012-09-06 1124288]
R2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-08-15 135984]
R2 CodeMeter.exe;CodeMeter Runtime Server; C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe [2013-11-15 3105144]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2013-08-28 626416]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R2 nvsvc;NVIDIA Display Driver Service; C:\windows\system32\nvvsvc.exe [2013-02-14 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-13 1260320]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2013-08-28 149744]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\_PROGRAMY_\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2016-05-30 1467072]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-18 154440]
S2 LbpCntAtapole.exe;Lobiphghqocult Center; C:\Program Files (x86)\Gititysabpy\LbpCntAtapole.exe [2016-07-29 389856]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2012-12-19 277640]
S3 FlexNet Licensing Service 64;FlexNet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe [2016-07-31 1369856]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-18 154440]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2013-08-28 273136]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: antivirus.exe

#8 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\Users\Skala\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\w10memchk.exe

:reg
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pedro3
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 04 srp 2016 18:16

Re: antivirus.exe

#9 Příspěvek od pedro3 »

Logfile of random's system information tool 1.10 (written by random/random)
Run by ... at 2016-08-07 20:53:58
Microsoft Windows 8.1
System drive C: has 802 GB (89%) free of 904 GB
Total RAM: 8048 MB (75% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:53:59, on 7. 8. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe
C:\Users\Skala\AppData\Local\Autodesk\.AdskAppManager\R1\AdAppMgr.exe
C:\Program Files\trend micro\Skala.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
O4 - HKLM\..\Run: [ADSKAppManager] "C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe" -showminimized -checkautorun
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\_PROGRAMY_\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Global Startup: CodeMeter Control Center.lnk = C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
O4 - Global Startup: Network Server.lnk = C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe
O8 - Extra context menu item: Odeslat do Bluetooth - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O9 - Extra button: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Autodesk Application Manager Service (AdAppMgrSvc) - Autodesk Inc. - C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) - WIBU-SYSTEMS AG - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\_PROGRAMY_\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FlexNet Licensing Service 64 - Flexera Software LLC - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Lobiphghqocult Center (LbpCntAtapole.exe) - Unknown owner - C:\Program Files (x86)\Gititysabpy\LbpCntAtapole.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 10115 bytes

======Listing Processes======





wininit.exe


C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"C:\windows\system32\nvvsvc.exe"
"dwm.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\WLANExt.exe 887675166592
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-cb717fdd-19da-4e61-a3c9-71a3c827cfb7 -SystemEventPortName:HostProcess-bc4fbaa3-b4a1-44b7-8d0d-acf585542b6e -IoCancelEventPortName:HostProcess-0e0f217c-7cab-492e-99e2-c4448460d71e -NonStateChangingEventPortName:HostProcess-87e8f368-5d85-4d67-8725-672bd786117f -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:6a587c68-8e02-4d82-a695-4a3be4e0db24 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.18384_none_fa1d93c39b41b41a\TiWorker.exe -Embedding
taskeng.exe {CB55F703-9BA7-40E6-8AF9-CC12695887C9}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\WINDOWS\Explorer.EXE
taskhostex.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 576 580 588 65536 584
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Windows\RTFTrack.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe" /m
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe" -start
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Windows\System32\igfxtray.exe"

"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\_PROGRAMY_\DAEMON Tools Lite\DiscSoftBusServiceLite.exe"

"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe"
"C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe"
"C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
"C:\Users\Skala\AppData\Local\Autodesk\.AdskAppManager\R1\AdAppMgr.exe" -showminimized -checkautorun -peruser
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Skala\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=-m --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=52.0.2743.116 --handshake-handle=0x12c
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4840.0.1437955634\1805238458" --mojo-application-channel-token=6FA230744017151AB43215B516A9A67D --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/DisallowFetchForDocWrittenScriptsInMainFrame/Default/EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SchedulerExpensiveTaskBlocking/Enabled/SyncHttpContentCompression/Enabled/TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --disable-direct-composition --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,12,13,27,47,55 --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.2932 --gpu-driver-date=12-12-2012 --gpu-secondary-vendor-ids=0x10de --gpu-secondary-device-ids=0x1292 --mojo-platform-channel-handle=1096 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SchedulerExpensiveTaskBlocking/Enabled/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=8D01B4A950383AB567E785F6F0358C4C --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=6BEB399FC36B8309673B6DB2F13FB479 --mojo-application-channel-token=5669C65A588458617CC5FDCB609427B9 --channel="4840.2.1093482557\735841513" --mojo-platform-channel-handle=2300 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SchedulerExpensiveTaskBlocking/Enabled/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=C64C2189641CB368C3066852926BBC61 --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=AE6B8B0CEFB282B7EB253CF1266B2F7D --mojo-application-channel-token=A5A5E8FD3060C62FEE91634DD010720A --channel="4840.3.1565441146\1718830385" --mojo-platform-channel-handle=2300 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SchedulerExpensiveTaskBlocking/Enabled/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=17C2696869443F366ED9145EBF9D78B6 --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=4424E1FAB985C24DD4CBBF7BAA3FFB8D --mojo-application-channel-token=D9635E7A2352E85C231FD9D7EACCCCD1 --channel="4840.4.97291844\1829836356" --mojo-platform-channel-handle=2628 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SchedulerExpensiveTaskBlocking/Enabled/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=78B028FA7E07CCBBDC4D7B5CC0966FF3 --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=BB5679D5843814F0ADEF1FCE2000E7D6 --mojo-application-channel-token=7A1D4DAF478909C932B3F55E441C7196 --channel="4840.5.1950115221\712859589" --mojo-platform-channel-handle=2324 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch25PermanentA_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SchedulerExpensiveTaskBlocking/Enabled/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=34076D47FE4627228E8F8F90CE9E6315 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=E79D976162CC270DCDB69DCD72A3809E --mojo-application-channel-token=DBE1259F736D7909AED6CC780C0F6541 --channel="4840.6.53643747\1418842091" --mojo-platform-channel-handle=5476 /prefetch:1
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Skala\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-08-02 473152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-08-02 186944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtsFT"=C:\WINDOWS\RTFTrack.exe [2012-10-17 6334096]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-12-07 13262480]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-12-03 1256080]
"SynLenovoGestureMgr"=C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [2013-03-25 677104]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2012-08-27 11577216]
"OnekeyStudio"=C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [2012-09-15 4196432]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2013-05-24 17080376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2013-05-24 191544]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-03-25 3049712]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2012-12-19 172168]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2012-12-19 400008]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2012-12-19 441992]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite Automount"=C:\_PROGRAMY_\DAEMON Tools Lite\DTAgent.exe [2016-05-30 4299968]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-01-15 8619224]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [2012-10-31 168464]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2012-04-19 217088]
"RemoteControl10"=C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
"Intel AppUp(SM) center"=C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2012-07-12 155488]
"ADSKAppManager"=C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [2016-02-24 529480]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
CodeMeter Control Center.lnk - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
Network Server.lnk - C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2012-12-13 442880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{6710C780-E20E-4C49-A87D-321850ED3D7C}"=C:\Users\Skala\AppData\Local\Microsoft\Windows\INetCookies\anugily.dll [2016-07-29 374784]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe"="C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe:*:Enabled:CodeMeter Runtime Server"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe"="C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe:*:Enabled:CodeMeter Runtime Server"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\WINDOWS\system32\notepad.exe "%1"
.scr - install -
.scr - config -
Naposledy upravil(a) pedro3 dne 07 srp 2016 20:01, celkem upraveno 1 x.

pedro3
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 04 srp 2016 18:16

Re: antivirus.exe

#10 Příspěvek od pedro3 »

======List of files/folders created in the last 1 month======

2016-08-07 20:52:01 ----D---- C:\_OTM
2016-08-05 00:41:22 ----D---- C:\AdwCleaner
2016-08-04 19:15:34 ----D---- C:\rsit
2016-08-04 19:15:34 ----D---- C:\Program Files\trend micro
2016-08-02 22:44:07 ----D---- C:\ProgramData\Microsoft Help
2016-08-02 22:26:42 ----D---- C:\Users\Skala\AppData\Roaming\MAXON
2016-08-02 22:25:56 ----D---- C:\Users\Skala\AppData\Roaming\Graphisoft
2016-08-02 22:07:37 ----D---- C:\ProgramData\CodeMeter
2016-08-02 22:07:37 ----D---- C:\Program Files\CodeMeter
2016-08-02 22:07:37 ----D---- C:\Program Files (x86)\CodeMeter
2016-08-02 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\WkExt32.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\WibuXpm4J32.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\wibuKJni.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\system32\WkExt64.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\system32\WibuXpm4J64.dll
2016-08-02 22:07:02 ----A---- C:\WINDOWS\system32\wibuKJni64.dll
2016-08-02 22:06:57 ----A---- C:\WINDOWS\system32\drivers\Wibukey2_64.sys
2016-08-02 22:06:55 ----A---- C:\WINDOWS\SYSWOW64\WkWin32.dll
2016-08-02 22:06:55 ----A---- C:\WINDOWS\system32\WkWin64.dll
2016-08-02 22:06:55 ----A---- C:\WINDOWS\system32\drivers\WibuKey64.sys
2016-08-02 22:06:48 ----D---- C:\Program Files\WIBU-SYSTEMS
2016-08-02 22:06:48 ----D---- C:\Program Files (x86)\WIBU-SYSTEMS
2016-08-02 22:06:48 ----D---- C:\Program Files (x86)\WIBUKEY
2016-08-02 22:01:30 ----D---- C:\Users\Skala\AppData\Roaming\Install.GS
2016-08-02 21:23:36 ----D---- C:\Program Files\CCleaner
2016-08-02 20:51:33 ----D---- C:\Users\Skala\AppData\Roaming\WinRAR
2016-08-02 18:20:33 ----D---- C:\Users\Skala\AppData\Roaming\VitySoft
2016-08-02 18:19:15 ----D---- C:\Users\Skala\AppData\Roaming\Sun
2016-08-02 18:19:11 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2016-08-02 18:18:50 ----D---- C:\ProgramData\Oracle
2016-08-02 18:18:45 ----D---- C:\Program Files (x86)\Java
2016-07-31 22:48:20 ----D---- C:\ProgramData\FLEXnet
2016-07-31 22:20:48 ----D---- C:\Program Files (x86)\Autodesk
2016-07-31 22:20:06 ----D---- C:\Program Files\Common Files\Macrovision Shared
2016-07-31 22:14:04 ----D---- C:\Program Files\Common Files\Autodesk Shared
2016-07-31 22:14:04 ----D---- C:\Program Files\Autodesk
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_7.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_5.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2016-07-31 22:03:04 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2016-07-31 22:03:03 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll
2016-07-31 22:03:03 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2016-07-31 22:03:03 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2016-07-31 22:03:03 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2016-07-31 22:03:01 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll
2016-07-31 22:03:01 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll
2016-07-31 22:03:01 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2016-07-31 22:03:01 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2016-07-31 22:02:51 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2016-07-31 22:02:51 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2016-07-31 21:57:26 ----D---- C:\Users\Skala\AppData\Roaming\Autodesk
2016-07-31 21:57:26 ----D---- C:\ProgramData\Autodesk
2016-07-31 21:37:31 ----HD---- C:\Program Files (x86)\vgyDC08
2016-07-31 21:37:00 ----D---- C:\Program Files (x86)\Gititysabpy
2016-07-31 21:36:43 ----A---- C:\WINDOWS\system32\drivers\dtliteusbbus.sys
2016-07-31 21:36:24 ----D---- C:\Users\Skala\AppData\Roaming\DAEMON Tools Lite
2016-07-31 21:36:24 ----A---- C:\WINDOWS\system32\drivers\dtlitescsibus.sys
2016-07-31 21:33:00 ----D---- C:\ProgramData\DAEMON Tools Lite
2016-07-25 18:18:22 ----D---- C:\Users\Skala\AppData\Roaming\com.relax-gaming.skywalker
2016-07-22 07:52:24 ----D---- C:\ProgramData\Energy Management
2016-07-20 17:34:14 ----D---- C:\WINDOWS\EOONotify
2016-07-19 23:48:37 ----D---- C:\Program Files (x86)\Adobe
2016-07-19 23:48:27 ----D---- C:\ProgramData\Adobe
2016-07-18 23:17:24 ----D---- C:\Users\Skala\AppData\Roaming\NVIDIA
2016-07-18 23:17:21 ----D---- C:\ProgramData\GRETECH
2016-07-18 23:15:58 ----D---- C:\Users\Skala\AppData\Roaming\Lavasoft
2016-07-18 23:15:54 ----D---- C:\Program Files (x86)\Lavasoft
2016-07-18 23:15:43 ----D---- C:\ProgramData\Lavasoft
2016-07-18 23:15:32 ----D---- C:\Users\Skala\AppData\Roaming\GRETECH
2016-07-18 23:13:43 ----D---- C:\_PROGRAMY_
2016-07-18 22:44:02 ----D---- C:\drivers
2016-07-18 18:05:12 ----D---- C:\ProgramData\AVAST Software
2016-07-18 17:44:04 ----D---- C:\Program Files (x86)\Google
2016-07-14 13:39:27 ----SD---- C:\WINDOWS\SYSWOW64\GWX
2016-07-14 13:39:27 ----SD---- C:\WINDOWS\system32\GWX
2016-07-14 13:31:05 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-07-14 13:31:05 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-07-14 13:21:59 ----A---- C:\WINDOWS\system32\aspnet_counters.dll
2016-07-14 13:21:58 ----A---- C:\WINDOWS\SYSWOW64\aspnet_counters.dll
2016-07-14 13:14:32 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-07-14 13:14:32 ----A---- C:\WINDOWS\system32\twinui.dll
2016-07-14 13:13:28 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-07-14 13:13:28 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\pcasvc.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\invagent.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\devinv.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\centel.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\aepic.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-07-14 13:12:35 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-07-14 13:12:00 ----A---- C:\WINDOWS\system32\tzsync.exe
2016-07-14 13:11:51 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-07-14 13:11:47 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2016-07-14 12:55:48 ----D---- C:\Users\Skala\AppData\Roaming\Identities
2016-07-14 11:44:14 ----SHD---- C:\Recovery
2016-07-14 11:44:02 ----DC---- C:\WINDOWS\Panther
2016-07-14 11:39:44 ----A---- C:\WINDOWS\system32\fhcpl.dll
2016-07-14 11:39:28 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2016-07-14 11:39:28 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-07-14 11:39:28 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2016-07-14 11:39:28 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-07-14 11:39:12 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2016-07-14 11:39:12 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-07-14 11:38:51 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rasser.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rasmxs.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rasdiag.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rascfg.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\QSVRMGMT.DLL
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\QSHVHOST.DLL
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\eventcls.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\WSDMon.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\WSDApi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\WinSCard.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\vsstrace.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\vssapi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rasser.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rasmxs.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rasdiag.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rascfg.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\QSVRMGMT.DLL
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\QSHVHOST.DLL
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\eventcls.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\dnsapi.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-07-14 11:38:51 ----A---- C:\WINDOWS\splwow64.exe
2016-07-14 11:37:48 ----A---- C:\WINDOWS\system32\msra.exe
2016-07-14 11:32:23 ----A---- C:\WINDOWS\SYSWOW64\dhcpsapi.dll
2016-07-14 11:32:23 ----A---- C:\WINDOWS\system32\dhcpsapi.dll
2016-07-14 11:32:15 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2016-07-14 11:32:15 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-07-14 11:32:15 ----A---- C:\WINDOWS\system32\dbghelp.dll
2016-07-14 11:32:15 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-07-14 11:32:04 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2016-07-14 11:32:04 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-07-14 11:32:04 ----A---- C:\WINDOWS\system32\wscapi.dll
2016-07-14 11:31:53 ----AC---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-07-14 11:31:53 ----AC---- C:\WINDOWS\system32\SysFxUI.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVXENCD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVSENCD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVSDECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVENCOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMVDECOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOE.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\VIDRESZR.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\RESAMPLEDMO.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2adec.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MPG4DECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MP4SDECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MP43DECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MP3DMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\MFWMAAEC.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfvdsp.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\devenum.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\SYSWOW64\COLORCNV.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVXENCD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVSENCD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVSDECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVENCOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMADMOE.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\VIDRESZR.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\RESAMPLEDMO.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\quartz.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\qdvd.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\msmpeg2adec.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MPG4DECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MP4SDECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MP43DECD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MP3DMOD.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\MFWMAAEC.DLL
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfvdsp.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfps.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\evr.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\devenum.dll
2016-07-14 11:31:53 ----A---- C:\WINDOWS\system32\COLORCNV.DLL
2016-07-14 11:31:32 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll
2016-07-14 11:31:32 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll
2016-07-14 11:31:25 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2016-07-14 11:31:25 ----A---- C:\WINDOWS\system32\notepad.exe
2016-07-14 11:31:25 ----A---- C:\WINDOWS\notepad.exe
2016-07-14 11:31:18 ----A---- C:\WINDOWS\system32\drivers\udfs.sys
2016-07-14 11:31:04 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2016-07-14 11:31:04 ----A---- C:\WINDOWS\system32\authz.dll
2016-07-14 11:30:57 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2016-07-14 11:30:57 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2016-07-14 11:30:49 ----AC---- C:\WINDOWS\system32\drivers\disk.sys
2016-07-14 11:30:39 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2016-07-14 11:30:39 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2016-07-14 11:30:39 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2016-07-14 11:30:21 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-07-14 11:30:14 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2016-07-14 11:30:14 ----A---- C:\WINDOWS\system32\oleaut32.dll
2016-07-14 11:30:07 ----A---- C:\WINDOWS\system32\apphelp.dll
2016-07-14 11:29:50 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-07-14 11:29:50 ----A---- C:\WINDOWS\system32\bdesvc.dll
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\sermouse.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\mouhid.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\mouclass.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\kbdhid.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\kbdclass.sys
2016-07-14 11:29:39 ----AC---- C:\WINDOWS\system32\drivers\i8042prt.sys
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2016-07-14 11:29:26 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\ucrtbase.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-07-14 11:29:25 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-07-14 11:29:15 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2016-07-14 11:29:15 ----A---- C:\WINDOWS\SYSWOW64\IPHLPAPI.DLL
2016-07-14 11:29:15 ----A---- C:\WINDOWS\system32\webio.dll
2016-07-14 11:29:15 ----A---- C:\WINDOWS\system32\IPHLPAPI.DLL
2016-07-14 11:29:15 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-07-14 11:29:15 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2016-07-14 11:29:05 ----AC---- C:\WINDOWS\system32\drivers\vhdmp.sys
2016-07-14 11:28:57 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-07-14 11:28:57 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-07-14 11:28:35 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-07-14 11:28:35 ----A---- C:\WINDOWS\system32\ole32.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\SYSWOW64\EncDec.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\SYSWOW64\cfgbkend.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\system32\EncDec.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\system32\CPFilters.dll
2016-07-14 11:28:28 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2016-07-14 11:28:20 ----A---- C:\WINDOWS\system32\wbengine.exe
2016-07-14 11:27:50 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2016-07-14 11:27:50 ----A---- C:\WINDOWS\system32\gdi32.dll
2016-07-14 11:27:39 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2016-07-14 11:27:39 ----A---- C:\WINDOWS\system32\poqexec.exe
2016-07-14 11:27:29 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-07-14 11:26:58 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2016-07-14 11:26:58 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\SYSWOW64\ws2_32.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\SYSWOW64\mswsock.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\system32\ws2_32.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\system32\winhttp.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\system32\mswsock.dll
2016-07-14 11:26:49 ----A---- C:\WINDOWS\system32\drivers\netbt.sys
2016-07-14 11:26:40 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\SYSWOW64\puiapi.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\SYSWOW64\ntprint.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\SYSWOW64\DafPrintProvider.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\puiobj.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\puiapi.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\ntprint.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\localspl.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\inetpp.dll
2016-07-14 11:26:40 ----A---- C:\WINDOWS\system32\DafPrintProvider.dll
2016-07-14 11:26:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-07-14 11:26:32 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-07-14 11:26:14 ----AC---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Šablony
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Plocha
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Nabídka Start
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Dokumenty
2016-07-14 11:18:20 ----SHD---- C:\ProgramData\Data aplikací
2016-07-14 11:17:34 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2016-07-14 11:17:12 ----A---- C:\WINDOWS\system32\rpcss.dll
2016-07-14 11:17:07 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2016-07-14 11:17:07 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-07-14 11:17:07 ----A---- C:\WINDOWS\system32\samlib.dll
2016-07-14 11:16:56 ----A---- C:\WINDOWS\system32\WSShared.dll
2016-07-14 11:16:56 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-07-14 11:16:55 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2016-07-14 11:16:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-07-14 11:16:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-07-14 11:16:37 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-07-14 11:16:30 ----A---- C:\WINDOWS\system32\nlasvc.dll
2016-07-14 11:16:30 ----A---- C:\WINDOWS\system32\ncsi.dll
2016-07-14 11:16:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-07-14 11:16:25 ----A---- C:\WINDOWS\SYSWOW64\glcndFilter.dll
2016-07-14 11:16:25 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-07-14 11:16:25 ----A---- C:\WINDOWS\system32\glcndFilter.dll
2016-07-14 11:16:20 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe
2016-07-14 11:16:11 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2016-07-14 11:16:11 ----A---- C:\WINDOWS\system32\crypt32.dll
2016-07-14 11:16:05 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2016-07-14 11:16:05 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\certcli.dll
2016-07-14 11:16:05 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\system32\eapphost.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\system32\eappgnui.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\system32\eappcfg.dll
2016-07-14 11:15:53 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmictimeprovider.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmicres.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmbusres.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmbuspiper.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\vmbuspipe.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\VmApplicationHealthMonitorProxy.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\icsvc.dll
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\winhvr.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\winhv.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vms3cap.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmgencounter.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmbusr.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\VMBusHID.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmbus.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmbkmclr.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\vmbkmcl.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\Synth3dVsc.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\storvsc.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\hyperkbd.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\drivers\dmvsc.sys
2016-07-14 11:15:41 ----A---- C:\WINDOWS\system32\dmvscres.dll
2016-07-14 11:15:32 ----A---- C:\WINDOWS\SYSWOW64\dsparse.dll
2016-07-14 11:15:32 ----A---- C:\WINDOWS\system32\dsparse.dll
2016-07-14 11:15:26 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2016-07-14 11:15:26 ----A---- C:\WINDOWS\system32\UtcResources.dll
2016-07-14 11:15:26 ----A---- C:\WINDOWS\system32\tdh.dll
2016-07-14 11:15:26 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-07-14 11:14:33 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2016-07-14 11:14:33 ----A---- C:\WINDOWS\system32\comctl32.dll
2016-07-14 11:14:28 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2016-07-14 11:14:28 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2016-07-14 11:14:20 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2016-07-14 11:14:20 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2016-07-14 11:14:20 ----A---- C:\WINDOWS\system32\clfsw32.dll
2016-07-14 11:14:15 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2016-07-14 11:14:15 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2016-07-14 11:14:15 ----A---- C:\WINDOWS\system32\tracerpt.exe
2016-07-14 11:14:15 ----A---- C:\WINDOWS\system32\sechost.dll
2016-07-14 11:14:06 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-07-14 11:14:06 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-07-14 11:14:01 ----A---- C:\WINDOWS\system32\drivers\usb8023.sys
2016-07-14 11:13:44 ----A---- C:\WINDOWS\SYSWOW64\WinSync.dll
2016-07-14 11:13:44 ----A---- C:\WINDOWS\system32\WinSync.dll
2016-07-14 11:13:40 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-07-14 11:13:40 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-07-14 11:13:36 ----A---- C:\WINDOWS\system32\WindowsAnytimeUpgradeui.exe
2016-07-14 11:13:32 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-07-14 11:13:32 ----A---- C:\WINDOWS\system32\msctf.dll
2016-07-14 11:13:27 ----AC---- C:\WINDOWS\system32\drivers\bthpan.sys
2016-07-14 11:13:23 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2016-07-14 11:13:16 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuwebv.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wups2.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wups.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wudriver.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wucltux.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuapp.exe
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-07-14 11:13:16 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2016-07-14 11:13:04 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2016-07-14 11:13:00 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-07-14 11:12:51 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2016-07-14 11:12:51 ----A---- C:\WINDOWS\SYSWOW64\msvcp120_clr0400.dll
2016-07-14 11:12:51 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2016-07-14 11:12:51 ----A---- C:\WINDOWS\system32\msvcp120_clr0400.dll
2016-07-14 11:12:32 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2016-07-14 11:12:29 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2016-07-14 11:12:20 ----A---- C:\WINDOWS\SYSWOW64\rsaenh.dll
2016-07-14 11:12:20 ----A---- C:\WINDOWS\system32\rsaenh.dll
2016-07-14 11:12:16 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-07-14 11:12:16 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-07-14 11:12:04 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-07-14 11:12:04 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-07-14 11:12:00 ----A---- C:\WINDOWS\system32\wininit.exe
2016-07-14 11:11:48 ----AC---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-07-14 11:11:48 ----AC---- C:\WINDOWS\system32\drivers\hidbth.sys
2016-07-14 11:11:48 ----AC---- C:\WINDOWS\system32\drivers\bthport.sys
2016-07-14 11:10:38 ----A---- C:\WINDOWS\SYSWOW64\wpdshext.dll
2016-07-14 11:10:38 ----A---- C:\WINDOWS\system32\wpdshext.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\SYSWOW64\mfc42u.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\SYSWOW64\mfc42.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\system32\mfc42u.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\system32\mfc42.dll
2016-07-14 11:10:34 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2016-07-14 11:10:22 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2016-07-14 11:10:22 ----A---- C:\WINDOWS\system32\qedit.dll
2016-07-14 11:10:10 ----A---- C:\WINDOWS\system32\csrsrv.dll
2016-07-14 11:10:10 ----A---- C:\WINDOWS\system32\basesrv.dll
2016-07-14 11:09:58 ----AC---- C:\WINDOWS\system32\drivers\tpm.sys
2016-07-14 11:09:55 ----A---- C:\WINDOWS\system32\NcdAutoSetup.dll
2016-07-14 11:09:51 ----A---- C:\WINDOWS\system32\ubpm.dll
2016-07-14 11:09:45 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-07-14 11:09:34 ----A---- C:\WINDOWS\SYSWOW64\WsmWmiPl.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\SYSWOW64\WsmAuto.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\SYSWOW64\WsmAgent.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\system32\WsmAuto.dll
2016-07-14 11:09:34 ----A---- C:\WINDOWS\system32\WsmAgent.dll
2016-07-14 11:09:14 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2016-07-14 11:09:14 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2016-07-14 11:09:14 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2016-07-14 11:09:14 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\SettingMonitor.dll
2016-07-14 11:09:13 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-07-14 11:09:12 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\themecpl.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\stobject.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\shell32.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\SettingMonitor.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\hgcpl.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-07-14 11:09:12 ----A---- C:\WINDOWS\explorer.exe
2016-07-14 11:08:48 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2016-07-14 11:08:48 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2016-07-14 11:08:40 ----A---- C:\WINDOWS\system32\lsm.dll
2016-07-14 11:08:35 ----AC---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2016-07-14 11:08:29 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2016-07-14 11:08:26 ----A---- C:\WINDOWS\SYSWOW64\rgb9rast.dll
2016-07-14 11:08:22 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2016-07-14 11:08:22 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2016-07-14 11:08:14 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2016-07-14 11:08:14 ----A---- C:\WINDOWS\system32\advapi32.dll
2016-07-14 11:08:09 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-07-14 11:08:09 ----A---- C:\WINDOWS\SYSWOW64\WMASF.DLL
2016-07-14 11:08:09 ----A---- C:\WINDOWS\system32\wmp.dll
2016-07-14 11:08:09 ----A---- C:\WINDOWS\system32\WMASF.DLL
2016-07-14 11:07:32 ----A---- C:\WINDOWS\SYSWOW64\StorageContextHandler.dll
2016-07-14 11:07:32 ----A---- C:\WINDOWS\system32\StorageContextHandler.dll
2016-07-14 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-07-14 11:07:20 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-07-14 11:07:19 ----A---- C:\WINDOWS\system32\winresume.exe
2016-07-14 11:07:19 ----A---- C:\WINDOWS\system32\winload.exe
2016-07-14 11:07:18 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\SYSWOW64\polstore.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\SYSWOW64\FwRemoteSvr.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\polstore.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\IPSECSVC.DLL
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\gpsvc.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\gpapi.dll
2016-07-14 11:07:05 ----A---- C:\WINDOWS\system32\FwRemoteSvr.dll
2016-07-14 11:07:00 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2016-07-14 11:07:00 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2016-07-14 11:06:55 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2016-07-14 11:06:55 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\nshwfp.dll
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2016-07-14 11:06:55 ----A---- C:\WINDOWS\system32\BFE.DLL
2016-07-14 11:06:51 ----A---- C:\WINDOWS\SYSWOW64\d3d10level9.dll
2016-07-14 11:06:51 ----A---- C:\WINDOWS\system32\d3d10level9.dll
2016-07-14 11:06:46 ----A---- C:\WINDOWS\system32\compstui.dll
2016-07-14 11:06:41 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2016-07-14 11:06:41 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2016-07-14 11:06:37 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-07-14 11:06:37 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\jscript.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\iepeers.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\dxtrans.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2016-07-14 11:06:15 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-07-14 11:06:14 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2016-07-14 11:06:14 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-07-14 11:06:14 ----A---- C:\WINDOWS\system32\mshtmled.dll
2016-07-14 11:06:14 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\wininet.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\webcheck.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\msrating.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\inseng.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\inetcomm.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\ieui.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-07-14 11:06:13 ----A---- C:\WINDOWS\system32\hlink.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-07-14 11:04:52 ----A---- C:\WINDOWS\system32\combase.dll
2016-07-14 11:04:38 ----AC---- C:\WINDOWS\system32\drivers\winusb.sys
2016-07-14 11:04:38 ----AC---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-07-14 11:04:32 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-07-14 11:04:26 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2016-07-14 11:04:26 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2016-07-14 11:04:26 ----A---- C:\WINDOWS\system32\comsvcs.dll
2016-07-14 11:04:26 ----A---- C:\WINDOWS\system32\catsrvut.dll
2016-07-14 11:04:19 ----A---- C:\WINDOWS\system32\services.exe
2016-07-14 11:04:16 ----A---- C:\WINDOWS\SYSWOW64\netcfgx.dll
2016-07-14 11:04:16 ----A---- C:\WINDOWS\system32\netcfgx.dll
2016-07-14 11:04:16 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2016-07-14 11:04:04 ----A---- C:\WINDOWS\SYSWOW64\shacct.dll
2016-07-14 11:04:04 ----A---- C:\WINDOWS\system32\shacct.dll
2016-07-14 11:04:00 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-07-14 11:04:00 ----A---- C:\WINDOWS\system32\SRH.dll
2016-07-14 11:03:44 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2016-07-14 11:03:44 ----A---- C:\WINDOWS\system32\winshfhc.dll
2016-07-14 11:03:44 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2016-07-14 11:03:44 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2016-07-14 11:03:44 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2016-07-14 11:03:36 ----A---- C:\WINDOWS\SYSWOW64\taskeng.exe
2016-07-14 11:03:36 ----A---- C:\WINDOWS\SYSWOW64\schtasks.exe
2016-07-14 11:03:36 ----A---- C:\WINDOWS\system32\taskeng.exe
2016-07-14 11:03:36 ----A---- C:\WINDOWS\system32\schtasks.exe
2016-07-14 11:03:36 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-07-14 11:03:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2016-07-14 11:03:32 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-07-14 11:03:28 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2016-07-14 11:03:28 ----A---- C:\WINDOWS\system32\calc.exe
2016-07-14 11:03:15 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll
2016-07-14 11:03:15 ----A---- C:\WINDOWS\SYSWOW64\davclnt.dll
2016-07-14 11:03:15 ----A---- C:\WINDOWS\system32\WebClnt.dll
2016-07-14 11:03:15 ----A---- C:\WINDOWS\system32\davclnt.dll
2016-07-14 11:03:05 ----A---- C:\WINDOWS\system32\wuaext.dll
2016-07-14 11:03:05 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2016-07-14 11:03:05 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-07-14 11:02:50 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2016-07-14 11:02:50 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-07-14 11:02:46 ----A---- C:\WINDOWS\system32\drivers\vpci.sys
2016-07-14 11:02:40 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbuhci.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbport.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbohci.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbhub.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbehci.sys
2016-07-14 11:02:36 ----AC---- C:\WINDOWS\system32\drivers\usbd.sys
2016-07-14 11:02:33 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2016-07-14 11:02:33 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-07-14 11:02:33 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-07-14 11:02:33 ----A---- C:\WINDOWS\system32\rdpcore.dll
2016-07-14 11:02:29 ----A---- C:\WINDOWS\system32\drivers\IPMIDrv.sys
2016-07-14 11:02:26 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2016-07-14 11:02:26 ----A---- C:\WINDOWS\system32\pku2u.dll
2016-07-14 11:02:18 ----A---- C:\WINDOWS\system32\sysmain.dll
2016-07-14 11:02:18 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2016-07-14 11:02:05 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2016-07-14 11:02:05 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-07-14 11:02:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\msiexec.exe
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\msi.dll
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\consent.exe
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\authui.dll
2016-07-14 11:02:05 ----A---- C:\WINDOWS\system32\appinfo.dll
2016-07-14 11:01:58 ----A---- C:\WINDOWS\SYSWOW64\InkEd.dll
2016-07-14 11:01:58 ----A---- C:\WINDOWS\system32\InkEd.dll
2016-07-14 11:01:51 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2016-07-14 11:01:51 ----A---- C:\WINDOWS\system32\SHCore.dll
2016-07-14 11:01:42 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-07-14 11:01:39 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys
2016-07-14 11:00:55 ----SD---- C:\Users\Skala\AppData\Roaming\Microsoft
2016-07-14 11:00:11 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2016-07-14 11:00:08 ----A---- C:\WINDOWS\system32\win32k.sys
2016-07-14 11:00:05 ----AC---- C:\WINDOWS\system32\drivers\volmgr.sys
2016-07-14 11:00:00 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-07-14 11:00:00 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-07-14 10:59:56 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2016-07-14 10:59:48 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\SYSWOW64\ncrypt.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\schannel.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\ncrypt.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-07-14 10:59:48 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-07-14 10:59:37 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2016-07-14 10:59:37 ----A---- C:\WINDOWS\system32\scesrv.dll
2016-07-14 10:59:34 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\mtxoci.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\msorcl32.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\wow64.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\mtxoci.dll
2016-07-14 10:59:25 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-07-14 10:59:13 ----A---- C:\WINDOWS\system32\profsvc.dll
2016-07-14 10:59:09 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-07-14 10:59:09 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-07-14 10:59:09 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-07-14 10:59:09 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-07-14 10:59:06 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-07-14 10:59:06 ----A---- C:\WINDOWS\system32\mfds.dll
2016-07-14 10:58:45 ----A---- C:\WINDOWS\system32\VSSVC.exe
2016-07-14 10:58:43 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\tquery.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\mssvp.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\mssrch.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\mssphtb.dll
2016-07-14 10:58:39 ----A---- C:\WINDOWS\system32\mssph.dll
2016-07-14 10:56:44 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2016-07-14 10:56:44 ----A---- C:\WINDOWS\system32\untfs.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\system32\user32.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\system32\FntCache.dll
2016-07-14 10:56:32 ----A---- C:\WINDOWS\system32\DWrite.dll
2016-07-14 10:56:25 ----AC---- C:\WINDOWS\system32\drivers\volsnap.sys
2016-07-14 10:56:21 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2016-07-14 10:56:21 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2016-07-14 10:56:13 ----AC---- C:\WINDOWS\system32\drivers\spaceport.sys
2016-07-14 10:56:13 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2016-07-14 10:56:13 ----A---- C:\WINDOWS\system32\mispace.dll
2016-07-14 10:56:13 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2016-07-14 10:55:36 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2016-07-14 10:55:34 ----A---- C:\WINDOWS\SYSWOW64\GeofenceMonitorService.dll
2016-07-14 10:55:34 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll
2016-07-14 10:55:31 ----A---- C:\WINDOWS\SYSWOW64\rastapi.dll
2016-07-14 10:55:31 ----A---- C:\WINDOWS\system32\rastapi.dll
2016-07-14 10:55:29 ----A---- C:\WINDOWS\SYSWOW64\PCPKsp.dll
2016-07-14 10:55:29 ----A---- C:\WINDOWS\system32\PCPKsp.dll
2016-07-14 10:55:24 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-07-14 10:55:24 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-07-14 10:55:24 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-07-14 10:55:18 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2016-07-14 10:55:18 ----A---- C:\WINDOWS\system32\storagewmi.dll
2016-07-14 10:55:01 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-07-14 10:54:56 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-07-14 10:54:55 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-07-14 10:54:55 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2016-07-14 10:54:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-07-14 10:54:10 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-07-14 10:54:06 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2016-07-14 10:54:06 ----A---- C:\WINDOWS\system32\msftedit.dll
2016-07-14 10:54:03 ----A---- C:\WINDOWS\SYSWOW64\photowiz.dll
2016-07-14 10:54:03 ----A---- C:\WINDOWS\system32\photowiz.dll
2016-07-14 10:53:48 ----A---- C:\WINDOWS\SYSWOW64\appidapi.dll
2016-07-14 10:53:48 ----A---- C:\WINDOWS\system32\appidsvc.dll
2016-07-14 10:53:48 ----A---- C:\WINDOWS\system32\appidapi.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2016-07-14 10:53:45 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\wer.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\Faultrep.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\EncDump.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\ci.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-07-14 10:53:45 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-07-14 10:51:09 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-07-14 10:51:09 ----D---- C:\Program Files\Realtek
2016-07-14 10:50:58 ----D---- C:\Program Files (x86)\Intel
2016-07-14 10:50:57 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2016-07-14 10:50:57 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2016-07-14 10:50:18 ----D---- C:\ProgramData\NVIDIA Corporation
2016-07-14 10:50:10 ----D---- C:\Program Files\NVIDIA Corporation
2016-07-14 10:50:10 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2016-07-14 10:50:00 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-07-14 10:50:00 ----D---- C:\Program Files (x86)\MSBuild
2016-07-14 10:49:59 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2016-07-14 10:49:59 ----D---- C:\Program Files\Reference Assemblies
2016-07-14 10:49:59 ----D---- C:\Program Files\MSBuild
2016-07-14 10:49:57 ----D---- C:\Program Files\Synaptics
2016-07-14 10:49:22 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-07-14 10:49:19 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-07-14 10:48:58 ----A---- C:\WINDOWS\SYSWOW64\sdbinst.exe
2016-07-14 10:48:57 ----A---- C:\WINDOWS\system32\sdbinst.exe
2016-07-14 10:47:03 ----D---- C:\WINDOWS\Prefetch
2016-07-14 09:42:01 ----D---- C:\WINDOWS\system32\appraiser
2016-07-13 17:00:33 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2016-07-12 15:03:42 ----D---- C:\WINDOWS\Migration
2016-07-12 00:44:28 ----D---- C:\WINDOWS\system32\MRT
2016-07-12 00:44:27 ----A---- C:\WINDOWS\system32\MRT.exe
2016-07-12 00:30:23 ----D---- C:\Program Files\Common Files\AV
2016-07-11 23:24:04 ----D---- C:\Users\Skala\AppData\Roaming\Macromedia
2016-07-11 23:15:56 ----D---- C:\Program Files\Common Files\Intel
2016-07-11 23:15:56 ----D---- C:\Program Files (x86)\Cisco
2016-07-11 23:14:53 ----D---- C:\ProgramData\Package Cache
2016-07-11 22:54:39 ----D---- C:\Users\Skala\AppData\Roaming\Adobe
2016-07-11 22:53:39 ----D---- C:\Users\Skala\AppData\Roaming\Intel
2016-07-11 22:49:57 ----SHD---- C:\System Volume Information
2016-07-11 22:49:57 ----ASH---- C:\swapfile.sys
2016-07-11 22:49:57 ----ASH---- C:\pagefile.sys
2016-07-11 22:49:54 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 month======

2016-08-07 20:53:12 ----D---- C:\WINDOWS\Temp
2016-08-07 20:53:01 ----HD---- C:\ProgramData
2016-08-07 20:52:18 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-08-07 20:52:01 ----D---- C:\WINDOWS\Tasks
2016-08-07 20:02:50 ----D---- C:\WINDOWS\System32
2016-08-07 20:02:50 ----D---- C:\WINDOWS\Inf
2016-08-07 20:02:50 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-08-07 20:01:36 ----D---- C:\WINDOWS\system32\sru
2016-08-05 00:44:00 ----D---- C:\Windows
2016-08-05 00:42:52 ----D---- C:\WINDOWS\SysWOW64
2016-08-05 00:37:38 ----D---- C:\WINDOWS\SoftwareDistribution
2016-08-04 20:09:33 ----D---- C:\WINDOWS\LiveKernelReports
2016-08-04 19:42:26 ----D---- C:\WINDOWS\system32\config
2016-08-04 19:40:06 ----D---- C:\WINDOWS\Microsoft.NET
2016-08-04 19:15:34 ----RD---- C:\Program Files
2016-08-04 18:52:19 ----D---- C:\WINDOWS\system32\drivers
2016-08-04 18:30:25 ----D---- C:\WINDOWS\system32\Tasks
2016-08-04 17:41:38 ----D---- C:\WINDOWS\system32\DriverStore
2016-08-03 21:50:45 ----SHD---- C:\WINDOWS\Installer
2016-08-02 22:44:35 ----RSD---- C:\WINDOWS\assembly
2016-08-02 22:44:33 ----SD---- C:\ProgramData\Microsoft
2016-08-02 22:44:33 ----D---- C:\Program Files\Common Files\microsoft shared
2016-08-02 22:44:32 ----RD---- C:\Program Files (x86)
2016-08-02 21:24:50 ----D---- C:\WINDOWS\Logs
2016-08-02 21:24:50 ----D---- C:\WINDOWS\debug
2016-08-02 18:19:20 ----D---- C:\Program Files (x86)\Common Files
2016-07-31 22:20:06 ----D---- C:\Program Files\Common Files
2016-07-31 22:19:40 ----SD---- C:\WINDOWS\Downloaded Program Files
2016-07-31 22:18:14 ----RSD---- C:\WINDOWS\Fonts
2016-07-31 22:01:11 ----D---- C:\WINDOWS\WinSxS
2016-07-31 21:41:38 ----SHD---- C:\$Recycle.Bin
2016-07-24 21:07:47 ----D---- C:\WINDOWS\system32\drivers\etc
2016-07-21 17:12:42 ----D---- C:\WINDOWS\system32\catroot2
2016-07-20 17:35:07 ----D---- C:\WINDOWS\CbsTemp
2016-07-19 18:29:33 ----HD---- C:\Program Files\WindowsApps
2016-07-19 18:29:33 ----D---- C:\WINDOWS\AppReadiness
2016-07-19 08:50:15 ----D---- C:\WINDOWS\rescache
2016-07-19 08:39:41 ----D---- C:\WINDOWS\WinStore
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\WCN
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\wbem
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\oobe
2016-07-19 08:39:41 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-07-19 08:39:41 ----D---- C:\WINDOWS\servicing
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Photo Viewer
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Media Player
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Mail
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Journal
2016-07-19 08:39:41 ----D---- C:\Program Files\Windows Defender
2016-07-19 08:39:41 ----D---- C:\Program Files\Internet Explorer
2016-07-19 08:39:41 ----D---- C:\Program Files\Common Files\System
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Windows Media Player
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Windows Mail
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Windows Defender
2016-07-19 08:39:41 ----D---- C:\Program Files (x86)\Internet Explorer
2016-07-19 08:39:40 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\Sysprep
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\slmgr
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\sk-SK
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\oobe
2016-07-19 08:39:40 ----D---- C:\WINDOWS\system32\migwiz
2016-07-19 08:39:40 ----D---- C:\WINDOWS\PolicyDefinitions
2016-07-19 08:39:39 ----D---- C:\WINDOWS\system32\WCN
2016-07-19 08:39:38 ----D---- C:\WINDOWS\system32\wbem
2016-07-19 08:39:37 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-07-19 08:39:37 ----D---- C:\WINDOWS\Help
2016-07-18 23:09:34 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-07-18 22:48:36 ----D---- C:\WINDOWS\system32\wdi
2016-07-18 22:46:59 ----D---- C:\WINDOWS\SYSWOW64\NV
2016-07-18 22:46:59 ----D---- C:\WINDOWS\system32\NV
2016-07-18 18:15:51 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2016-07-18 18:13:52 ----D---- C:\ProgramData\McAfee
2016-07-18 18:13:03 ----D---- C:\WINDOWS\system32\catroot
2016-07-18 18:12:43 ----HD---- C:\WINDOWS\ELAMBKUP
2016-07-18 17:38:26 ----D---- C:\WINDOWS\AppCompat
2016-07-14 13:39:27 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-07-14 13:39:27 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2016-07-14 13:39:27 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2016-07-14 13:39:27 ----D---- C:\WINDOWS\system32\en-US
2016-07-14 13:39:26 ----RD---- C:\WINDOWS\ToastData
2016-07-14 13:39:26 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-07-14 13:39:26 ----D---- C:\WINDOWS\system32\drivers\en-US
2016-07-14 13:39:26 ----D---- C:\WINDOWS\system32\cs-CZ
2016-07-14 13:39:24 ----SD---- C:\WINDOWS\system32\CompatTel
2016-07-14 13:39:24 ----D---- C:\WINDOWS\apppatch
2016-07-14 13:18:58 ----D---- C:\WINDOWS\system32\restore
2016-07-14 13:14:26 ----D---- C:\WINDOWS\system32\LogFiles
2016-07-14 11:39:08 ----D---- C:\WINDOWS\SYSWOW64\setup
2016-07-14 11:39:08 ----D---- C:\WINDOWS\system32\setup
2016-07-14 11:37:18 ----D---- C:\WINDOWS\FileManager
2016-07-14 11:29:20 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2016-07-14 11:28:02 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-07-14 11:25:49 ----D---- C:\WINDOWS\SYSWOW64\winrm
2016-07-14 11:25:49 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2016-07-14 11:25:49 ----D---- C:\WINDOWS\SYSWOW64\en
2016-07-14 11:25:49 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2016-07-14 11:25:49 ----D---- C:\WINDOWS\system32\winrm
2016-07-14 11:25:49 ----D---- C:\WINDOWS\system32\en
2016-07-14 11:25:49 ----D---- C:\WINDOWS\system32\Boot
2016-07-14 11:25:49 ----D---- C:\WINDOWS\en-US
2016-07-14 11:25:38 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2016-07-14 11:18:20 ----D---- C:\Program Files\Windows NT
2016-07-14 11:18:06 ----D---- C:\WINDOWS\Registration
2016-07-14 11:10:53 ----RSD---- C:\WINDOWS\Media
2016-07-14 11:06:46 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2016-07-14 11:03:25 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2016-07-14 11:03:25 ----D---- C:\WINDOWS\SYSWOW64\SMI
2016-07-14 11:03:24 ----D---- C:\WINDOWS\SYSWOW64\sda
2016-07-14 11:03:24 ----D---- C:\WINDOWS\SYSWOW64\MUI
2016-07-14 11:03:24 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2016-07-14 11:03:24 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2016-07-14 11:03:23 ----D---- C:\WINDOWS\SYSWOW64\IME
2016-07-14 11:03:22 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2016-07-14 11:03:22 ----D---- C:\WINDOWS\SYSWOW64\catroot
2016-07-14 11:03:20 ----HD---- C:\WINDOWS\system32\WLANProfiles
2016-07-14 11:03:19 ----D---- C:\WINDOWS\system32\spool
2016-07-14 11:03:16 ----D---- C:\WINDOWS\system32\MUI
2016-07-14 11:03:16 ----D---- C:\WINDOWS\system32\IME
2016-07-14 11:02:37 ----D---- C:\WINDOWS\DigitalLocker
2016-07-14 11:02:35 ----RD---- C:\Users
2016-07-14 11:02:35 ----D---- C:\ProgramData\PRICache
2016-07-14 11:02:33 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2016-07-14 11:02:30 ----SHD---- C:\Program Files\Windows Sidebar
2016-07-14 11:01:35 ----D---- C:\WINDOWS\system32\Recovery
2016-07-14 10:53:47 ----D---- C:\WINDOWS\system32\AdvancedInstallers
2016-07-14 10:50:04 ----D---- C:\WINDOWS\twain_32
2016-07-14 08:52:57 ----D---- C:\WINDOWS\AUInstallAgent
2016-07-11 23:16:44 ----D---- C:\ProgramData\Intel
2016-07-11 23:15:54 ----D---- C:\ProgramData\Intel.sav
2016-07-11 23:15:49 ----D---- C:\Program Files\Intel
2016-07-11 23:14:45 ----D---- C:\Intel

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-09-02 647736]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2013-05-24 39008]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2015-11-16 40264]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 WIBUKEY;WIBU-KEY Kernel Driver; C:\WINDOWS\SYSTEM32\DRIVERS\WibuKey64.sys [2013-12-18 106760]
R3 ACPIVPC;@oem49.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2013-05-24 33560]
R3 AMPPAL;@oem41.inf,%AMPPAL.SVCDESC%;Virtuální adaptér Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\System32\drivers\AMPPAL.sys [2012-11-13 156160]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 btmhsf;btmhsf; C:\WINDOWS\system32\DRIVERS\btmhsf.sys [2012-08-29 857472]
R3 dtlitescsibus;@oem60.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-07-31 30264]
R3 dtliteusbbus;@oem61.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-07-31 47672]
R3 iBtFltCoex;iBtFltCoex; C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys [2012-08-06 68136]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2012-12-13 5353888]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-12-11 3258256]
R3 IntcDAud;@oem35.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-12-14 342528]
R3 iwdbus;@oem46.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 MEIx64;@oem54.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 NETwNe64;@oem51.inf,%NIC_Service_DispName_WIN8_64%;Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 8 64 Bit; C:\WINDOWS\system32\DRIVERS\Netwew00.sys [2013-10-08 3345376]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-11-16 11105936]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 rtsuvc;@oem6.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [2012-10-17 8230160]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2013-03-25 33008]
R3 SynTP;@oem38.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-03-25 474864]
R3 usb3Hub;@oem47.inf,%usb3Hub.SVCDESC%;USB-IF USB 3.0 Hub; C:\WINDOWS\System32\drivers\usb3Hub.sys [2012-11-30 47072]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2016-07-14 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2016-07-14 1201664]
S3 intaud_WaveExtensible;@oem45.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2016-07-14 167424]
S3 RSUSBVSTOR;@oem53.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2012-06-13 315536]
S3 WDC_SAM;@oem59.inf,%WDC_SAM_ServiceName%;WD SCSI Pass Thru driver; C:\WINDOWS\System32\drivers\wdcsam64.sys [2015-11-12 26880]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdAppMgrSvc;Autodesk Application Manager Service; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [2016-02-24 1145928]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-06-25 82128]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [2015-02-05 31160]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2012-08-27 1112000]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2012-09-06 1124288]
R2 CodeMeter.exe;CodeMeter Runtime Server; C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe [2013-11-15 3105144]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2013-08-28 626416]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R2 nvsvc;NVIDIA Display Driver Service; C:\windows\system32\nvvsvc.exe [2013-02-14 884512]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2013-08-28 149744]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\_PROGRAMY_\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2016-05-30 1467072]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2012-11-13 755240]
S2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-08-15 135984]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-18 154440]
S2 LbpCntAtapole.exe;Lobiphghqocult Center; C:\Program Files (x86)\Gititysabpy\LbpCntAtapole.exe [2016-07-29 389856]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-13 1260320]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2012-12-19 277640]
S3 FlexNet Licensing Service 64;FlexNet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe [2016-07-31 1369856]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-18 154440]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2013-08-28 273136]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: antivirus.exe

#11 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pedro3
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 04 srp 2016 18:16

Re: antivirus.exe

#12 Příspěvek od pedro3 »

Ano, procesor běží pouze na 2%. Jestli je to konec trápení, tak vám velice děkuji za ochotu a spolupráci. Hezký večer.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: antivirus.exe

#13 Příspěvek od Rudy »

Pokud není jiný problém, pak ano. Též hezký večer a nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět