Logfile of random's system information tool 1.10 (written by random/random)
Run by Roman at 2016-08-17 21:57:07
Microsoft Windows 10 Home
System drive C: has 319 GB (67%) free of 476 GB
Total RAM: 7368 MB (62% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:57:11, on 17.8.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0545)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\AssistTools\WiFi GO! Server.exe
C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe
C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe
C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe
C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\ASUSDMS.exe
C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
C:\Program Files (x86)\Opera\39.0.2256.48\opera_crashreporter.exe
C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\AsDLNAServerReal.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
C:\Program Files\WindowsApps\Microsoft.BingWeather_4.11.156.0_x86__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe
C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
C:\Program Files\trend micro\Roman.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [AppEx Accelerator UI] C:\Program Files\AMD Quick Stream\AMDQuickStream.exe -h
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{1362d2a6-d0f7-4eaa-9fc4-920fb9b761cd}: NameServer = 156.154.70.25,156.154.71.25
O17 - HKLM\System\CCS\Services\Tcpip\..\{74547168-27fa-4820-997b-69288ee87606}: NameServer = 156.154.70.25,156.154.71.25
O17 - HKLM\System\CS1\Services\Tcpip\..\{1362d2a6-d0f7-4eaa-9fc4-920fb9b761cd}: NameServer = 156.154.70.25,156.154.71.25
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10125 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
dashost.exe {7c0afe28-74db-409b-a2de669bfef14bed}
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe"
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\WINDOWS\SysWOW64\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE"
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
atieclxx
sihost.exe
"C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe" -open
"C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\AssistTools\WiFi GO! Server.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe" -onlytray
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
"C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe"
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Windows\SysWOW64\rundll32.exe" C:\WINDOWS\Syswow64\cm108.dll,CMICtrlWnd
"C:\Program Files\AMD Quick Stream\AMDQuickStream.exe" -h
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe"
"C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe" -Init
"C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe" -Init
"C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\ASUSDMS.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"fontdrvhost.exe"
"C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe" -hide
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe" --ran-launcher
"C:\Program Files (x86)\Opera\39.0.2256.48\opera_crashreporter.exe" --ran-launcher --crash-reporter-parent-id=2568
"C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe" --type=gpu-process --channel="2568.0.1303688171\1281708266" --mojo-application-channel-token=3BB5376F9BB7668A5587CAFB2E4650EC --enable-features=DownloadResumption --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=6656 --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,10,13,27,55 --gpu-vendor-id=0x1002 --gpu-device-id=0x9904 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=15.200.1062.1004 --gpu-driver-date=8-3-2015 --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=6656 --mojo-platform-channel-handle=1712 --ignored=" --type=renderer "
"C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --enable-features=DownloadResumption --primordial-pipe-token=A814B1032C53EDCD7CFCA50BBFA83516 --lang=sk --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=6656 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=879BBF13F4A3FFE6CB10759544624FF3 --mojo-application-channel-token=BF3251000D97E574881C255B91FE5CED --channel="2568.2.508657349\1193038842" --mojo-platform-channel-handle=2400
"C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --enable-features=DownloadResumption --primordial-pipe-token=56F224B7116463C7CC6C8B8EBE71E249 --lang=sk --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=6656 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=CA3DDC91AE875EF98FBE20206AAC2A82 --mojo-application-channel-token=A1FCABEAB2B5CFBC2053103585E98142 --channel="2568.3.605471663\1419732610" --mojo-platform-channel-handle=2420
"C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe" -hide
"C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\AsDLNAServerReal.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --enable-features=DownloadResumption --primordial-pipe-token=8F051F1F4D6857B56F27E4D938415B38 --lang=sk --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=6656 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=1FA5377BB7D736F1E0FDB70ACD800201 --mojo-application-channel-token=3677481B52C31D11EA11A10A3FE79B8E --channel="2568.7.1057888956\868446798" --mojo-platform-channel-handle=3828
"C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --enable-features=DownloadResumption --primordial-pipe-token=A01C36BB65F0C4CB8656CB07EE1393DC --lang=sk --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=6656 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=8342CA83378117425B2351CF338DC6D6 --mojo-application-channel-token=1FD92CDFE17072FD9AA6F71BC3BB3308 --channel="2568.8.892138822\1429724405" --mojo-platform-channel-handle=3824
"C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --enable-features=DownloadResumption --primordial-pipe-token=C4E463B03ABFD645DEB25859E3AE9F45 --lang=sk --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=6656 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=18E9954B0DE9FF6F1BCAE1A97425D843 --mojo-application-channel-token=35286CD76E46A0D9CC28B4A5F831691A --channel="2568.9.969707136\1861878641" --mojo-platform-channel-handle=6544
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.WindowsStore_11602.1.26.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe" -ServerName:App.AppXqagq4n4gvy0tjw576pgh6xr601s1h1mv.mca
"C:\Program Files\WindowsApps\Microsoft.BingWeather_4.11.156.0_x86__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe" -ServerName:App.AppX2m6wj6jceb8yq7ppx1b3drf7yy51ha6f.mca
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.22511.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\WmiApSrv.exe
"C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe" --type=ppapi --channel="2568.10.1106177358\1447788005" --ppapi-flash-args --lang=sk --device-scale-factor=1 --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=6656 --mojo-platform-channel-handle=7280 --ignored=" --type=renderer "
"C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --enable-features=DownloadResumption --primordial-pipe-token=84BA1C6647D8DEFA4842C306739AAB2A --lang=sk --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=6656 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=925DFBC86D2D35F88C90C1589745FD47 --mojo-application-channel-token=1656CA1A6ABFE69D000DB6E5323A1C5F --channel="2568.11.1077999410\2013623953" --mojo-platform-channel-handle=6100
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 960 972 980 8192 976
"C:\Users\Roman\Desktop\RSITx64.exe"
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-07-27 473152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-07-27 186944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-08-05 1427648]
"Cm108Sound"=C:\WINDOWS\syswow64\RunDll32.exe [2015-10-30 53760]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AppEx Accelerator UI"=C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [2016-02-15 488640]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-08-16 9103976]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-08-17 21:57:07 ----D---- C:\rsit
2016-08-17 21:57:07 ----D---- C:\Program Files\trend micro
2016-08-17 21:19:47 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2016-08-16 17:26:00 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-08-16 17:25:50 ----A---- C:\WINDOWS\avastSS.scr
2016-08-11 10:07:46 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-08-11 10:07:45 ----A---- C:\WINDOWS\system32\wmp.dll
2016-08-11 10:07:44 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-08-11 10:07:43 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-08-11 10:07:42 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-08-11 10:07:42 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2016-08-11 10:07:42 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-08-11 10:07:42 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-08-11 10:07:41 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-08-11 10:07:41 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-08-11 10:07:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2016-08-11 10:07:40 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-08-11 10:07:40 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-08-11 10:07:40 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-08-11 10:07:39 ----A---- C:\WINDOWS\system32\wevtutil.exe
2016-08-11 10:07:39 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-08-11 10:07:38 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-08-11 10:07:38 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2016-08-11 10:07:37 ----A---- C:\WINDOWS\SYSWOW64\wldp.dll
2016-08-11 10:07:37 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.dll
2016-08-11 10:07:37 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-08-11 10:07:37 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-08-11 10:07:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2016-08-11 10:07:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2016-08-11 10:07:35 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-08-11 10:07:34 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-08-11 10:07:34 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-08-11 10:07:34 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-08-11 10:07:34 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-08-11 10:07:33 ----A---- C:\WINDOWS\system32\usocore.dll
2016-08-11 10:07:33 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-08-11 10:07:32 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-08-11 10:07:31 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-08-11 10:07:29 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-08-11 10:07:28 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-08-11 10:07:27 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-08-11 10:07:26 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-08-11 10:07:26 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-08-11 10:07:25 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2016-08-11 10:07:25 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-08-11 10:07:25 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2016-08-11 10:07:24 ----A---- C:\WINDOWS\SYSWOW64\tdlrecover.exe
2016-08-11 10:07:24 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-08-11 10:07:24 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-08-11 10:07:24 ----A---- C:\WINDOWS\system32\cdd.dll
2016-08-11 10:07:23 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-08-11 10:07:22 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2016-08-11 10:07:22 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2016-08-11 10:07:22 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-08-11 10:07:21 ----A---- C:\WINDOWS\SYSWOW64\wshbth.dll
2016-08-11 10:07:21 ----A---- C:\WINDOWS\system32\winsrv.dll
2016-08-11 10:07:21 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-08-11 10:07:20 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-08-11 10:07:20 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-08-11 10:07:20 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll
2016-08-11 10:07:20 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2016-08-11 10:07:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-08-11 10:07:19 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-08-11 10:07:18 ----A---- C:\WINDOWS\system32\wininet.dll
2016-08-11 10:07:18 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-08-11 10:07:18 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-08-11 10:07:17 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-08-11 10:07:17 ----A---- C:\WINDOWS\system32\sppwinob.dll
2016-08-11 10:07:17 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-08-11 10:07:17 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-08-11 10:07:16 ----A---- C:\WINDOWS\SYSWOW64\wevtutil.exe
2016-08-11 10:07:16 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-08-11 10:07:16 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2016-08-11 10:07:16 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2016-08-11 10:07:15 ----A---- C:\WINDOWS\system32\wshbth.dll
2016-08-11 10:07:14 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-08-11 10:07:13 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-08-11 10:07:11 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-08-11 10:07:11 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-08-11 10:07:11 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-08-11 10:07:10 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-08-11 10:07:10 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-08-11 10:07:10 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-08-11 10:07:10 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-08-11 10:07:09 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-08-11 10:07:09 ----A---- C:\WINDOWS\system32\tdlrecover.exe
2016-08-11 10:07:09 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-08-11 10:07:08 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-08-11 10:07:06 ----A---- C:\WINDOWS\system32\wldp.dll
2016-08-11 10:07:06 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-08-11 10:07:05 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-08-11 10:07:05 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-08-11 10:07:05 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-08-11 10:07:05 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-08-11 10:07:04 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-08-11 10:07:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-08-11 10:07:02 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-08-11 10:07:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-08-11 10:07:01 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-08-11 10:07:00 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-08-11 10:06:59 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-08-11 10:06:58 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-08-11 10:06:58 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-08-11 10:06:57 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-08-11 10:06:57 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-08-11 10:06:57 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-08-11 10:06:56 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-08-11 10:06:56 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-08-11 10:06:55 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-08-11 10:06:54 ----A---- C:\WINDOWS\system32\shell32.dll
2016-08-11 10:06:54 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-08-11 10:06:53 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-08-11 10:06:53 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2016-08-11 10:06:53 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-08-11 10:06:53 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-08-11 10:06:53 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-08-11 10:06:53 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2016-08-11 10:06:53 ----A---- C:\WINDOWS\system32\ole32.dll
2016-08-11 10:06:53 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-08-11 10:06:53 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-08-11 10:06:53 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-08-11 10:06:52 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-08-11 10:06:52 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2016-08-11 10:06:52 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-08-11 10:06:52 ----A---- C:\WINDOWS\SYSWOW64\IdCtrls.dll
2016-08-11 10:06:52 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2016-08-11 10:06:52 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-08-11 10:06:52 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-08-11 10:06:52 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-08-11 10:06:52 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-08-11 10:06:52 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2016-08-11 10:06:52 ----A---- C:\WINDOWS\system32\bthserv.dll
2016-08-03 22:42:09 ----D---- C:\Users\Roman\AppData\Roaming\LockAP
2016-08-02 19:01:07 ----D---- C:\Program Files (x86)\iTunes
2016-08-02 19:01:06 ----D---- C:\Program Files\iPod
2016-08-02 19:01:06 ----AD---- C:\Program Files\iTunes
======List of files/folders modified in the last 1 month======
2016-08-17 21:57:07 ----RD---- C:\Program Files
2016-08-17 21:57:04 ----D---- C:\WINDOWS\Temp
2016-08-17 21:43:18 ----D---- C:\WINDOWS\Prefetch
2016-08-17 21:23:01 ----D---- C:\Windows
2016-08-17 21:19:47 ----D---- C:\WINDOWS\System32
2016-08-17 21:19:09 ----D---- C:\WINDOWS\system32\sru
2016-08-17 21:18:32 ----HD---- C:\ProgramData
2016-08-17 21:11:43 ----SHDC---- C:\WINDOWS\Installer
2016-08-17 21:11:15 ----D---- C:\WINDOWS\SysWOW64
2016-08-17 19:48:25 ----D---- C:\WINDOWS\INF
2016-08-17 19:33:08 ----D---- C:\WINDOWS\debug
2016-08-17 19:20:56 ----D---- C:\Users\Roman\AppData\Roaming\Skype
2016-08-17 17:05:09 ----D---- C:\WINDOWS\system32\drivers
2016-08-17 16:47:06 ----D---- C:\WINDOWS\Microsoft.NET
2016-08-16 18:43:48 ----HD---- C:\Program Files\WindowsApps
2016-08-16 18:43:48 ----D---- C:\WINDOWS\AppReadiness
2016-08-16 18:30:41 ----D---- C:\WINDOWS\system32\Tasks
2016-08-15 19:14:18 ----D---- C:\WINDOWS\system32\config
2016-08-15 17:04:15 ----D---- C:\Users\Roman\AppData\Roaming\ICQ
2016-08-14 17:56:46 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-08-14 17:49:49 ----D---- C:\WINDOWS\SoftwareDistribution
2016-08-14 03:37:29 ----AD---- C:\Program Files (x86)\Ulozto File Manager
2016-08-14 03:32:55 ----SHD---- C:\System Volume Information
2016-08-14 03:23:47 ----D---- C:\ProgramData\Origin
2016-08-14 02:58:41 ----D---- C:\Program Files (x86)\Origin Games
2016-08-14 02:52:37 ----RD---- C:\Program Files (x86)
2016-08-14 02:43:40 ----SD---- C:\Users\Roman\AppData\Roaming\Microsoft
2016-08-14 02:38:30 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-08-14 00:55:09 ----D---- C:\Program Files (x86)\SpeedFan
2016-08-12 18:53:37 ----D---- C:\WINDOWS\rescache
2016-08-12 12:45:02 ----D---- C:\WINDOWS\system32\catroot2
2016-08-12 11:26:49 ----D---- C:\WINDOWS\system32\NDF
2016-08-11 11:25:25 ----D---- C:\WINDOWS\WinSxS
2016-08-11 11:24:25 ----D---- C:\WINDOWS\system32\DriverStore
2016-08-11 11:21:19 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2016-08-11 11:21:19 ----D---- C:\WINDOWS\system32\sk-SK
2016-08-11 11:21:19 ----D---- C:\WINDOWS\system32\en-US
2016-08-11 11:21:19 ----D---- C:\WINDOWS\system32\appraiser
2016-08-11 11:21:18 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-08-11 11:21:18 ----D---- C:\Program Files\Windows Journal
2016-08-11 11:21:18 ----D---- C:\Program Files\Internet Explorer
2016-08-11 11:21:18 ----D---- C:\Program Files (x86)\Internet Explorer
2016-08-11 10:21:41 ----D---- C:\WINDOWS\CbsTemp
2016-08-11 10:21:39 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2016-08-11 10:21:34 ----D---- C:\WINDOWS\system32\MRT
2016-08-11 10:18:03 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-08-08 11:39:06 ----RSD---- C:\WINDOWS\assembly
2016-08-08 11:38:20 ----AD---- C:\Program Files (x86)\LibreOffice 5
2016-08-08 11:37:30 ----RSD---- C:\WINDOWS\Fonts
2016-08-04 18:25:39 ----AD---- C:\Program Files (x86)\Opera
2016-08-02 19:01:06 ----D---- C:\Program Files\Common Files\Apple
2016-08-02 18:59:54 ----AD---- C:\Program Files\CDBurnerXP
2016-07-31 20:18:32 ----D---- C:\WINDOWS\system32\FxsTmp
2016-07-27 18:38:06 ----D---- C:\Program Files (x86)\Java
2016-07-27 18:37:06 ----D---- C:\ProgramData\Skype
2016-07-27 18:36:59 ----RD---- C:\Program Files (x86)\Skype
2016-07-27 18:35:17 ----D---- C:\ProgramData\Oracle
2016-07-27 17:48:50 ----D---- C:\Program Files (x86)\Common Files
2016-07-27 17:48:19 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2016-07-23 11:46:01 ----D---- C:\WINDOWS\Minidump
2016-07-21 01:18:37 ----RD---- C:\WINDOWS\DevicesFlow
2016-07-20 12:05:07 ----D---- C:\WINDOWS\Tasks
2016-07-20 12:02:51 ----AD---- C:\Program Files (x86)\KMPlayer
2016-07-20 10:08:08 ----D---- C:\ProgramData\CanonIJPLM
2016-07-19 09:55:27 ----D---- C:\WINDOWS\system32\Macromed
2016-07-19 09:55:24 ----D---- C:\WINDOWS\SYSWOW64\Macromed
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2014-03-21 81608]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2014-03-21 23752]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-08-16 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-08-16 292704]
R1 AsIO;AsIO; C:\WINDOWS\SysWow64\drivers\AsIO.sys [2014-12-28 15232]
R1 AsUpIO;AsUpIO; C:\WINDOWS\SysWow64\drivers\AsUpIO.sys [2010-08-03 14464]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2016-08-16 37144]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-08-16 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-08-16 969560]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-08-16 513496]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\WINDOWS\System32\DRIVERS\cmderd.sys [2015-11-18 21720]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\system32\DRIVERS\cmdguard.sys [2015-11-18 828144]
R1 cmdhlp;COMODO Internet Security Helper Driver; C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [2015-08-05 35056]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-05-10 87552]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 inspect;COMODO Internet Security Firewall Driver; C:\WINDOWS\system32\DRIVERS\inspect.sys [2015-08-05 127232]
R1 ndisrd;@oem28.inf,%ndisrd_Desc%;WinpkFilter LightWeight Filter; C:\WINDOWS\system32\DRIVERS\ndisrd.sys [2014-12-28 32840]
R2 AODDriver4.2.0;AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-11 59616]
R2 APXACC;@oem0.inf,%APPEX_ACC_SERVICE_NAME%;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [2015-09-21 229056]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-08-16 108816]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-08-16 163416]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 RtNdPt60;@oem70.inf,%NDISPROT_Desc%;Realtek NDIS Protocol Driver; C:\WINDOWS\system32\DRIVERS\RtNdPt60.sys [2011-06-15 32544]
R2 speedfan;speedfan; \??\C:\WINDOWS\SysWOW64\speedfan.sys [2012-12-29 28664]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2016-01-08 21631512]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2016-01-08 673816]
R3 athur;@oem6.inf,%ATHR.Service.DispName%;Qualcomm Atheros AR9271 Wireless Network Adapter Service; C:\WINDOWS\System32\drivers\athuwbx.sys [2016-02-21 2702336]
R3 AtiHDAudioService;@oem34.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2016-01-08 102912]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2016-01-08 4467928]
R3 rt640x64;@oem1.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-02-16 888064]
S0 amdkmafd;@oem16.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmafd.sys [2016-01-08 31992]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 AiCharger;AiCharger; C:\WINDOWS\SysWow64\drivers\AiCharger.sys [2014-12-30 14848]
S3 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-08-16 37656]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-03 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 Netaapl;Apple Mobile Device Ethernet Service; C:\WINDOWS\system32\DRIVERS\netaapl64.sys [2013-07-25 23040]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-07-19 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2016-01-08 255512]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [2014-11-20 344064]
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2016-03-22 83768]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [2012-06-01 920736]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [2012-06-01 951936]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [2012-02-17 149120]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe [2014-12-28 2005504]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-08-16 197128]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2015-09-19 462096]
R2 CmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2015-09-03 5542472]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2010-04-05 116104]
R2 OneSyncSvc_3722a9;Sync Host_3722a9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\syswow64\PnkBstrA.exe [2016-05-15 76152]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_123a9ac;Sync Host_123a9ac; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1313cfa;Sync Host_1313cfa; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_141ce1d2;Sync Host_141ce1d2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1de804c;Sync Host_1de804c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1f75791;Sync Host_1f75791; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_370a756;Sync Host_370a756; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38faae;Sync Host_38faae; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4d906c7;Sync Host_4d906c7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_7473069;Sync Host_7473069; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_7bac138;Sync Host_7bac138; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_85f2876;Sync Host_85f2876; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_9d8d7df;Sync Host_9d8d7df; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_ec78976;Sync Host_ec78976; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-05-23 324224]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-19 270016]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2015-08-05 2265792]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2016-08-02 651576]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_123a9ac;MessagingService_123a9ac; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1313cfa;MessagingService_1313cfa; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_141ce1d2;MessagingService_141ce1d2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1de804c;MessagingService_1de804c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1f75791;MessagingService_1f75791; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_370a756;MessagingService_370a756; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3722a9;MessagingService_3722a9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38faae;MessagingService_38faae; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4d906c7;MessagingService_4d906c7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7473069;MessagingService_7473069; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7bac138;MessagingService_7bac138; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_85f2876;MessagingService_85f2876; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_9d8d7df;MessagingService_9d8d7df; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_ec78976;MessagingService_ec78976; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2016-06-11 2122248]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_123a9ac;Kontaktné údaje_123a9ac; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_1313cfa;Kontaktné údaje_1313cfa; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_141ce1d2;Kontaktné údaje_141ce1d2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_1de804c;Kontaktné údaje_1de804c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_1f75791;Kontaktné údaje_1f75791; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_370a756;Kontaktné údaje_370a756; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3722a9;Kontaktné údaje_3722a9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38faae;Kontaktné údaje_38faae; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4d906c7;Kontaktné údaje_4d906c7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_7473069;Kontaktné údaje_7473069; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_7bac138;Kontaktné údaje_7bac138; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_85f2876;Kontaktné údaje_85f2876; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_9d8d7df;Kontaktné údaje_9d8d7df; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_ec78976;Kontaktné údaje_ec78976; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe []
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Preventivní kontrola
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- Rudy
- Site Admin
- Příspěvky: 119418
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Preventivní kontrola
Zdravím!
Log vypadá OK.
Log vypadá OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.