
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Velice pomalý ntb
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Velice pomalý ntb
Dobrý den,
mám problém s tímto ntb: https://www.czc.cz/acer-aspire-e15-e5-5 ... 39/produkt. Je cca rok starý a již od prvního používání se jeví jako velice pomalý(pozoruji například odezvu při zvolení "vlastnosti" při kliku na soubor/plochu). Zkoušel jsem pouštět například 3D Mark11 a výsledky odpovídali "papírovému" výkonu ntb, při běžné práci je však nepoužitelný, všechny aplikace se sekají, na vše je velká odezva. Pokud například porovnám výkon v aplikaci Pinnacle studio 18 se starším ntb, který má processor P6100(o disku nemluvě), vyhrává na plné čáře uvedený ntb s procesorem Pentium, kde na aceru se silně "seká" i pouhý náhled videa. Ntb byl na reklamaci a byl vrácen s tím, že je v pořádku(což mnou spuštěné testy také potvrzovaly). Prosím tedy o pomoc a přikládám log.
Logfile of random's system information tool 1.10 (written by random/random)
Run by J at 2016-12-17 13:35:21
Microsoft Windows 10 Home
System drive C: has 22 GB (24%) free of 89 GB
Total RAM: 4015 MB (33% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:35:32, on 17.12.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\J\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Zoner\Photo Studio 12\Program\Zps.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\J.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKCU\..\Run: [OneDrive] "C:\Users\J\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark - D:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: GoPro Device Detection Service (GoProDeviceDetectionService) - Unknown owner - C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem35.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\system32\ibtsiva (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) - arvato digital services llc - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9193 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k LocalService
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
dashost.exe {18b4b736-a27f-475d-a34ccc4b6d8fe2d6}
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\ibtsiva
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\GoPro\GoPro Desktop App\GoProDesktopSystemTray.exe"
"C:\Users\J\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\Internet Explorer\iexplore.exe" -restart /WERRESTART
"C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{49F6E667-6658-4BD1-9DE9-6AF87F9FAF85}
"fontdrvhost.exe"
"C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe" -Embedding
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7012 CREDAT:206321 /prefetch:2
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7012 CREDAT:140582 /prefetch:2
"C:\Program Files (x86)\Zoner\Photo Studio 12\Program\Zps.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-3b2eaaca-7523-43b6-91ca-218f45bba141 -SystemEventPortName:HostProcess-7a271a1c-017f-42f1-ad49-f8cc426697c2 -IoCancelEventPortName:HostProcess-9b7ecc5c-0654-4abd-b848-531c84433836 -NonStateChangingEventPortName:HostProcess-8835ca24-aff2-4ef8-a590-263090752405 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:3b8ba02f-e513-467a-b437-de08bc5ecf0c -DeviceGroupId:WpdFsGroup
taskhostw.exe
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.16112.10221.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7012 CREDAT:468461 /prefetch:2
"C:\WINDOWS\system32\NOTEPAD.EXE" D:\office10\Office 2010\Instalace - návod.txt
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7012 CREDAT:337351 /prefetch:2
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7012 CREDAT:337355 /prefetch:2
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7012 CREDAT:140683 /prefetch:2
C:\WINDOWS\system32\compattelrunner.exe -m:aeinv.dll -f:UpdateSoftwareInventoryW
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 640 644 652 8192 648
C:\Windows\System32\smartscreen.exe -Embedding
C:\WINDOWS\system32\AUDIODG.EXE 0x430
"C:\Users\J\Desktop\RSITx64.exe"
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-08-23 16405744]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-05-02 2398776]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2016-05-02 1767944]
"Corel Update Helper"=c:\Program Files\Corel\Corel VideoStudio X9\pua.exe [2016-03-01 2012104]
"GoPro Tray App"=C:\Program Files\GoPro\GoPro Desktop App\GoProDesktopSystemTray.exe [2016-10-11 866224]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\J\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-09-29 633024]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe []
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"msacm.dvacm_vspx9"=c:\PROGRA~1\Corel\CORELV~1\Dvacm.acm
"VIDC.CFHD"=CFHD.dll
"vidc.mjpg"=pvmjpgx40.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-12-17 13:35:22 ----D---- C:\Program Files\trend micro
2016-12-17 13:35:21 ----D---- C:\rsit
2016-12-17 13:24:29 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2016-12-17 13:24:01 ----D---- C:\WINDOWS\PCHEALTH
2016-12-17 13:24:01 ----D---- C:\Program Files (x86)\Microsoft Sync Framework
2016-12-17 13:24:01 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2016-12-17 13:21:31 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2016-12-17 13:20:57 ----D---- C:\Program Files\Microsoft Office
2016-12-17 13:20:38 ----D---- C:\WINDOWS\SHELLNEW
2016-12-17 13:20:38 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2016-12-17 13:20:23 ----D---- C:\Program Files (x86)\Microsoft Office
2016-12-17 13:20:22 ----D---- C:\ProgramData\Microsoft Help
2016-12-17 13:19:24 ----RHD---- C:\MSOCache
2016-12-17 13:13:40 ----D---- C:\Program Files\7-Zip
2016-12-09 21:47:12 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-12-09 21:47:11 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\wpnprv.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\AudioEng.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\rascustom.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2016-12-09 21:47:09 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-12-09 21:47:09 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-12-09 21:47:07 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-12-09 21:47:07 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-12-09 21:47:07 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-12-09 21:47:06 ----A---- C:\WINDOWS\system32\ntshrui.dll
2016-12-09 21:47:06 ----A---- C:\WINDOWS\system32\netshell.dll
2016-12-09 21:47:06 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-12-09 21:47:04 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-12-09 21:47:04 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-12-09 21:47:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-12-09 21:47:00 ----A---- C:\WINDOWS\system32\shell32.dll
2016-12-09 21:46:59 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-12-09 21:46:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2016-12-09 21:46:58 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-12-09 21:46:58 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-12-09 21:46:58 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-12-09 21:46:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2016-12-09 21:46:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2016-12-09 21:46:57 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-12-09 21:46:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-12-09 21:46:56 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2016-12-09 21:46:56 ----A---- C:\WINDOWS\system32\apprepsync.dll
2016-12-09 21:46:56 ----A---- C:\WINDOWS\system32\apprepapi.dll
2016-12-09 21:46:55 ----A---- C:\WINDOWS\SYSWOW64\WSManHTTPConfig.exe
2016-12-09 21:46:55 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-12-09 21:46:55 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-12-09 21:46:55 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2016-12-09 21:46:54 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2016-12-09 21:46:54 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-12-09 21:46:54 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-12-09 21:46:53 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-12-09 21:46:53 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-12-09 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-12-09 21:46:49 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-12-09 21:46:49 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-12-09 21:46:49 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-12-09 21:46:48 ----A---- C:\WINDOWS\SYSWOW64\zipfldr.dll
2016-12-09 21:46:48 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-12-09 21:46:48 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2016-12-09 21:46:46 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-12-09 21:46:45 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2016-12-09 21:46:45 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2016-12-09 21:46:45 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2016-12-09 21:46:45 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\SYSWOW64\mfaudiocnv.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\system32\MFPlay.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\system32\RTWorkQ.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\CloudStorageWizard.exe
2016-12-09 21:46:42 ----A---- C:\WINDOWS\system32\policymanager.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2016-12-09 21:46:42 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-12-09 21:46:41 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-09 21:46:41 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2016-12-09 21:46:41 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\EAMProgressHandler.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2016-12-09 21:46:36 ----A---- C:\WINDOWS\system32\ReportingCSP.dll
2016-12-09 21:46:36 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2016-12-09 21:46:36 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-12-09 21:46:36 ----A---- C:\WINDOWS\system32\EDPCleanup.exe
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2016-12-09 21:46:34 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-12-09 21:46:34 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-12-09 21:46:34 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2016-12-09 21:46:34 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-12-09 21:46:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-12-09 21:46:33 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-12-09 21:46:33 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-12-09 21:46:33 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2016-12-09 21:46:31 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-12-09 21:46:31 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\system32\netplwiz.dll
2016-12-09 21:46:27 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-12-09 21:46:26 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-12-09 21:46:26 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-12-09 21:46:26 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-12-09 21:46:23 ----A---- C:\WINDOWS\SYSWOW64\RTWorkQ.dll
2016-12-09 21:46:23 ----A---- C:\WINDOWS\system32\services.exe
2016-12-09 21:46:22 ----A---- C:\WINDOWS\system32\wscapi.dll
2016-12-09 21:46:21 ----A---- C:\WINDOWS\SYSWOW64\wsecedit.dll
2016-12-09 21:46:21 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2016-12-09 21:46:21 ----A---- C:\WINDOWS\system32\cryptngc.dll
2016-12-09 21:46:20 ----A---- C:\WINDOWS\system32\wscinterop.dll
2016-12-09 21:46:20 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-12-09 21:46:20 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-12-09 21:46:19 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-12-09 21:46:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2016-12-09 21:46:18 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-12-09 21:46:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-12-09 21:46:16 ----A---- C:\WINDOWS\system32\win32k.sys
2016-12-09 21:46:16 ----A---- C:\WINDOWS\system32\msctf.dll
2016-12-09 21:46:15 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2016-12-09 21:46:15 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2016-12-09 21:46:15 ----A---- C:\WINDOWS\system32\comdlg32.dll
2016-12-09 21:46:14 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-12-09 21:46:14 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-12-09 21:46:13 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2016-12-09 21:46:13 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-12-09 21:46:12 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-12-09 21:46:11 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2016-12-09 21:46:11 ----A---- C:\WINDOWS\system32\ShareHost.dll
2016-12-09 21:46:11 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-12-09 21:46:11 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-12-09 21:46:10 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-12-09 21:46:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-12-09 21:46:09 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2016-12-09 21:46:09 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-12-09 21:46:08 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-12-09 21:46:07 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2016-12-09 21:46:07 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2016-12-09 21:46:07 ----A---- C:\WINDOWS\system32\cdp.dll
2016-12-09 21:46:06 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2016-12-09 21:46:06 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\sppwinob.dll
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\wpncore.dll
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-12-09 21:46:02 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2016-12-09 21:46:02 ----A---- C:\WINDOWS\system32\wsecedit.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\system32\lpremove.exe
2016-12-09 21:46:01 ----A---- C:\WINDOWS\system32\DeviceReactivation.dll
2016-12-09 21:46:00 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2016-12-09 21:46:00 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-12-09 21:46:00 ----A---- C:\WINDOWS\system32\SRH.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\system32\drivers\modem.sys
2016-12-09 21:45:57 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2016-12-09 21:45:57 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-12-09 21:45:57 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-12-09 21:45:56 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-12-09 21:45:56 ----A---- C:\WINDOWS\system32\wkssvc.dll
2016-12-09 21:45:56 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-12-09 21:45:55 ----A---- C:\WINDOWS\system32\ole32.dll
2016-12-09 21:45:54 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-12-09 21:45:54 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2016-12-09 21:45:54 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-12-09 21:45:53 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-12-09 21:45:53 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-12-09 21:45:53 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-12-09 21:45:53 ----A---- C:\WINDOWS\system32\BcastDVRHelper.dll
2016-12-09 21:45:52 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-12-09 21:45:52 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-12-09 21:45:51 ----A---- C:\WINDOWS\system32\msdtctm.dll
2016-12-09 21:45:51 ----A---- C:\WINDOWS\system32\lsm.dll
2016-12-09 21:45:51 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-12-09 21:45:50 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-12-09 21:45:50 ----A---- C:\WINDOWS\system32\combase.dll
2016-12-09 21:45:49 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-12-09 21:45:49 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-12-09 21:45:48 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-12-09 21:45:48 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-12-09 21:45:48 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-12-09 21:45:47 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-12-09 21:45:46 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-12-09 21:45:46 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-12-09 21:45:45 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-12-09 21:45:44 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-12-09 21:45:42 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-12-09 21:45:41 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-12-09 21:45:40 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-12-09 21:45:39 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-12-09 21:45:36 ----A---- C:\WINDOWS\system32\mfaudiocnv.dll
2016-12-09 21:45:36 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\SYSWOW64\migisol.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\migisol.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\dialserver.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\CloudStorageWizard.exe
2016-12-09 21:45:34 ----A---- C:\WINDOWS\system32\ProvSysprep.dll
2016-12-09 21:45:34 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-12-09 21:45:33 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\wincorlib.dll
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\sppnp.dll
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\ReAgentc.exe
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\aitstatic.exe
2016-12-09 21:45:32 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2016-12-09 21:45:32 ----A---- C:\WINDOWS\system32\RjvMDMConfig.dll
2016-12-09 21:45:31 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-12-09 21:45:31 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-12-09 21:45:31 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2016-12-09 21:45:31 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-12-09 21:45:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-12-09 21:45:30 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2016-12-09 21:45:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-09 21:45:28 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-12-09 21:45:25 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-12-09 21:45:25 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2016-12-09 21:45:23 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-12-09 21:45:22 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-12-09 21:45:21 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2016-12-09 21:45:20 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-12-09 21:45:19 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2016-12-09 21:45:19 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-12-09 21:45:17 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-12-09 21:45:17 ----A---- C:\WINDOWS\system32\mspaint.exe
2016-12-09 21:45:17 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-12-09 21:45:16 ----A---- C:\WINDOWS\system32\stobject.dll
2016-12-09 21:45:16 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-12-09 21:45:15 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-12-09 21:45:15 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-12-09 21:45:15 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-12-09 21:45:14 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-12-09 21:45:14 ----A---- C:\WINDOWS\system32\gameux.dll
2016-12-09 21:45:14 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-12-09 21:45:13 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-12-09 21:45:13 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-12-09 21:45:12 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-12-09 21:45:11 ----A---- C:\WINDOWS\explorer.exe
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2016-12-09 21:45:09 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-12-09 21:45:09 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-12-09 21:45:09 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-12-09 21:45:07 ----A---- C:\WINDOWS\system32\twinui.dll
2016-12-09 21:45:07 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2016-12-09 21:45:06 ----A---- C:\WINDOWS\system32\zipfldr.dll
2016-12-09 21:45:06 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-12-09 21:45:05 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2016-12-09 21:45:05 ----A---- C:\WINDOWS\system32\wininet.dll
2016-12-09 21:45:05 ----A---- C:\WINDOWS\system32\efswrt.dll
2016-12-09 21:45:04 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-12-09 21:45:04 ----A---- C:\WINDOWS\system32\mos.dll
2016-12-09 21:45:03 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-12-09 21:45:02 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-12-09 21:45:02 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-12-09 21:45:02 ----A---- C:\WINDOWS\system32\cdd.dll
2016-12-09 21:45:01 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-12-09 21:44:59 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2016-12-09 21:44:58 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2016-12-09 21:44:58 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2016-12-09 21:44:57 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-12-09 21:44:55 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-12-09 21:44:55 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-12-09 21:44:53 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2016-12-09 21:44:53 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2016-12-09 21:44:52 ----A---- C:\WINDOWS\system32\rasmans.dll
2016-12-09 21:44:52 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-12-09 21:44:52 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-12-09 21:44:51 ----A---- C:\WINDOWS\system32\securekernel.exe
2016-12-09 21:44:51 ----A---- C:\WINDOWS\system32\MapRouter.dll
2016-12-09 21:44:51 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2016-12-09 21:44:50 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2016-12-09 21:44:50 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-12-09 21:44:50 ----A---- C:\WINDOWS\system32\setupugc.exe
2016-12-09 21:44:49 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\moshost.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\umpoext.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\sendmail.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-12-09 21:44:47 ----A---- C:\WINDOWS\SYSWOW64\wscinterop.dll
2016-12-09 21:44:47 ----A---- C:\WINDOWS\SYSWOW64\ReAgentc.exe
2016-12-09 21:44:47 ----A---- C:\WINDOWS\SYSWOW64\NetCfgNotifyObjectHost.exe
2016-12-09 21:44:47 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2016-12-09 21:44:47 ----A---- C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-12-09 21:44:47 ----A---- C:\WINDOWS\system32\CbtBackgroundManagerPolicy.dll
2016-12-07 00:19:20 ----D---- C:\ProgramData\tmp
2016-12-07 00:19:18 ----D---- C:\ProgramData\hps
2016-12-07 00:10:08 ----D---- C:\Program Files\Fotolab
======List of files/folders modified in the last 1 month======
2016-12-17 13:35:22 ----RD---- C:\Program Files
2016-12-17 13:34:30 ----D---- C:\WINDOWS\Temp
2016-12-17 13:29:15 ----D---- C:\WINDOWS\system32\config
2016-12-17 13:28:38 ----SHDC---- C:\WINDOWS\Installer
2016-12-17 13:28:35 ----D---- C:\WINDOWS\Prefetch
2016-12-17 13:28:25 ----RD---- C:\WINDOWS\Microsoft.NET
2016-12-17 13:28:14 ----RSD---- C:\WINDOWS\assembly
2016-12-17 13:27:12 ----D---- C:\WINDOWS\WinSxS
2016-12-17 13:25:44 ----RSD---- C:\WINDOWS\Fonts
2016-12-17 13:25:43 ----D---- C:\WINDOWS\SysWOW64
2016-12-17 13:25:04 ----D---- C:\Program Files (x86)\MSBuild
2016-12-17 13:24:29 ----RD---- C:\Program Files (x86)
2016-12-17 13:24:28 ----D---- C:\Program Files (x86)\Common Files
2016-12-17 13:24:01 ----SD---- C:\ProgramData\Microsoft
2016-12-17 13:24:01 ----D---- C:\Windows
2016-12-17 13:22:29 ----D---- C:\WINDOWS\system32\Tasks
2016-12-17 13:22:15 ----D---- C:\Program Files\Common Files\microsoft shared
2016-12-17 13:21:07 ----A---- C:\WINDOWS\win.ini
2016-12-17 13:20:22 ----HD---- C:\ProgramData
2016-12-17 12:48:54 ----D---- C:\WINDOWS\system32\sru
2016-12-17 07:59:43 ----D---- C:\WINDOWS\system32\SleepStudy
2016-12-16 23:36:37 ----D---- C:\WINDOWS\CbsTemp
2016-12-16 23:25:48 ----D---- C:\WINDOWS\system32\MRT
2016-12-16 23:20:56 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-12-16 23:20:18 ----D---- C:\WINDOWS\AppReadiness
2016-12-16 22:47:14 ----HD---- C:\Program Files\WindowsApps
2016-12-16 22:41:27 ----D---- C:\WINDOWS\Tasks
2016-12-15 22:37:49 ----D---- C:\WINDOWS\System32
2016-12-15 22:37:49 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-12-13 23:57:48 ----D---- C:\WINDOWS\system32\catroot2
2016-12-11 16:25:55 ----D---- C:\WINDOWS\system32\drivers
2016-12-11 16:25:55 ----D---- C:\WINDOWS\system32\CatRoot
2016-12-11 16:25:55 ----D---- C:\WINDOWS\INF
2016-12-11 16:25:53 ----D---- C:\WINDOWS\system32\DriverStore
2016-12-10 08:49:04 ----D---- C:\WINDOWS\rescache
2016-12-10 01:11:41 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-12-10 01:07:11 ----D---- C:\WINDOWS\SYSWOW64\oobe
2016-12-10 01:07:11 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\wbem
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\Sysprep
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\oobe
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\Dism
2016-12-10 01:07:07 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-12-10 01:07:07 ----D---- C:\WINDOWS\ShellExperiences
2016-12-10 01:07:07 ----D---- C:\WINDOWS\servicing
2016-12-10 01:07:07 ----D---- C:\WINDOWS\bcastdvr
2016-12-10 01:07:07 ----D---- C:\Program Files\Internet Explorer
2016-12-10 01:07:07 ----D---- C:\Program Files (x86)\Internet Explorer
2016-12-09 12:41:55 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2016-11-10 84616]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2016-11-10 262792]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2016-11-10 197248]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2016-11-10 208520]
R1 EpfwLWF;@oem20.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2016-11-10 61568]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-07-16 88576]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2016-07-16 8192]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2016-11-10 153216]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2016-07-16 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2016-07-16 78336]
R3 AMPPAL;@oem13.inf,%AMPPAL.SVCDESC%;Virtuální adaptér Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-07-29 164832]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-09-29 114176]
R3 BthLEEnum;@BthLEEnum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-09-15 249856]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-10-05 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-09-29 84992]
R3 ibtusb;@oem35.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\system32\DRIVERS\ibtusb.sys [2016-07-12 349960]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-09-10 6415288]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-08-23 4607744]
R3 MarvinBus;@oem26.inf,%MarvinBus.SVCDESC%;Pinnacle Marvin Bus 64; C:\WINDOWS\System32\drivers\MarvinBus64.sys [2005-09-23 261120]
R3 MEIx64;@oem19.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NETwNb64;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\WINDOWS\System32\drivers\Netwbw02.sys [2016-07-16 3485696]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvacwu.inf_amd64_9934c34dc6ca0c4b\nvlddmkm.sys [2016-09-12 13754936]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-05-02 28216]
R3 nvvad_WaveExtensible;@oem3.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2016-04-14 56384]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-07-16 183808]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-07-16 589824]
R3 RTSPER;@oem8.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2015-08-29 761600]
R3 SynRMIHID;@oem16.inf,%SynRMIHID.SVCDESC%;Synaptics HID Service; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [2015-09-08 56520]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2016-06-28 15488]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2016-07-16 105824]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2016-07-16 101216]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2016-07-16 58720]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2016-07-16 61792]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2016-07-16 32096]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 AMPPALP;@oem17.inf,%AMPPALP_Desc%;Protokol Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\system32\DRIVERS\amppal.sys [2013-07-29 164832]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2016-07-16 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-11-11 967168]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2016-07-16 38912]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-09-10 118272]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2016-07-16 20480]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2016-07-16 50016]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-09-29 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2016-07-16 81408]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2016-07-16 176384]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2016-07-16 526176]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 IntcDAud;@oem11.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-08 473864]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2016-07-16 842584]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2016-07-16 108896]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2016-07-16 928608]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 Ser2pl;@oem52.inf,%Serial.SVCDESC%;Prolific Serial port WDF driver; C:\WINDOWS\system32\DRIVERS\ser2pl64.sys [2016-10-06 199960]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2016-07-16 95744]
S3 UcmTcpciCx0101;UCM-TCPCI KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmTcpciCx.sys [2016-07-16 108544]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2016-07-16 50688]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2016-07-16 45568]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2016-07-16 263008]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2016-07-16 96608]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2016-07-16 137056]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-10-21 82128]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 CDPUserSvc_d0e62;CDPUserSvc_d0e62; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2016-11-10 2771848]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-05-02 1165368]
R2 GoProDeviceDetectionService;GoPro Device Detection Service; C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe [2016-10-11 37808]
R2 ibtsiva;@oem35.inf,%SERVICE_NAME%;Intel Bluetooth Service; C:\WINDOWS\system32\ibtsiva []
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-09-10 361384]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-05-02 1881144]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-05-02 2522680]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2016-08-01 1365048]
R2 OneSyncSvc_d0e62;Hostitel synchronizace_d0e62; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 PSI_SVC_2_x64;Corel License Validation Service V2 x64, Powered by arvato; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2014-04-30 337776]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2016-05-02 3634232]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 PimIndexMaintenanceSvc_d0e62;Data kontaktů_d0e62; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 TimeBrokerSvc;@%windir%\system32\TimeBrokerServer.dll,-1001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-26 154440]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-09-10 291768]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2016-07-16 93184]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; D:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [2016-04-13 342456]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-26 154440]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MessagingService_d0e62;Služba zasílání zpráv_d0e62; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2016-09-29 1312768]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2016-07-16 287744]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
-----------------EOF-----------------
mám problém s tímto ntb: https://www.czc.cz/acer-aspire-e15-e5-5 ... 39/produkt. Je cca rok starý a již od prvního používání se jeví jako velice pomalý(pozoruji například odezvu při zvolení "vlastnosti" při kliku na soubor/plochu). Zkoušel jsem pouštět například 3D Mark11 a výsledky odpovídali "papírovému" výkonu ntb, při běžné práci je však nepoužitelný, všechny aplikace se sekají, na vše je velká odezva. Pokud například porovnám výkon v aplikaci Pinnacle studio 18 se starším ntb, který má processor P6100(o disku nemluvě), vyhrává na plné čáře uvedený ntb s procesorem Pentium, kde na aceru se silně "seká" i pouhý náhled videa. Ntb byl na reklamaci a byl vrácen s tím, že je v pořádku(což mnou spuštěné testy také potvrzovaly). Prosím tedy o pomoc a přikládám log.
Logfile of random's system information tool 1.10 (written by random/random)
Run by J at 2016-12-17 13:35:21
Microsoft Windows 10 Home
System drive C: has 22 GB (24%) free of 89 GB
Total RAM: 4015 MB (33% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:35:32, on 17.12.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\J\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Zoner\Photo Studio 12\Program\Zps.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\J.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKCU\..\Run: [OneDrive] "C:\Users\J\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark - D:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: GoPro Device Detection Service (GoProDeviceDetectionService) - Unknown owner - C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem35.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\system32\ibtsiva (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) - arvato digital services llc - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9193 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k LocalService
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
dashost.exe {18b4b736-a27f-475d-a34ccc4b6d8fe2d6}
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\ibtsiva
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\GoPro\GoPro Desktop App\GoProDesktopSystemTray.exe"
"C:\Users\J\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\Internet Explorer\iexplore.exe" -restart /WERRESTART
"C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{49F6E667-6658-4BD1-9DE9-6AF87F9FAF85}
"fontdrvhost.exe"
"C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe" -Embedding
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7012 CREDAT:206321 /prefetch:2
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7012 CREDAT:140582 /prefetch:2
"C:\Program Files (x86)\Zoner\Photo Studio 12\Program\Zps.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-3b2eaaca-7523-43b6-91ca-218f45bba141 -SystemEventPortName:HostProcess-7a271a1c-017f-42f1-ad49-f8cc426697c2 -IoCancelEventPortName:HostProcess-9b7ecc5c-0654-4abd-b848-531c84433836 -NonStateChangingEventPortName:HostProcess-8835ca24-aff2-4ef8-a590-263090752405 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:3b8ba02f-e513-467a-b437-de08bc5ecf0c -DeviceGroupId:WpdFsGroup
taskhostw.exe
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.16112.10221.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7012 CREDAT:468461 /prefetch:2
"C:\WINDOWS\system32\NOTEPAD.EXE" D:\office10\Office 2010\Instalace - návod.txt
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7012 CREDAT:337351 /prefetch:2
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7012 CREDAT:337355 /prefetch:2
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7012 CREDAT:140683 /prefetch:2
C:\WINDOWS\system32\compattelrunner.exe -m:aeinv.dll -f:UpdateSoftwareInventoryW
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 640 644 652 8192 648
C:\Windows\System32\smartscreen.exe -Embedding
C:\WINDOWS\system32\AUDIODG.EXE 0x430
"C:\Users\J\Desktop\RSITx64.exe"
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-08-23 16405744]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-05-02 2398776]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2016-05-02 1767944]
"Corel Update Helper"=c:\Program Files\Corel\Corel VideoStudio X9\pua.exe [2016-03-01 2012104]
"GoPro Tray App"=C:\Program Files\GoPro\GoPro Desktop App\GoProDesktopSystemTray.exe [2016-10-11 866224]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\J\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-09-29 633024]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe []
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"msacm.dvacm_vspx9"=c:\PROGRA~1\Corel\CORELV~1\Dvacm.acm
"VIDC.CFHD"=CFHD.dll
"vidc.mjpg"=pvmjpgx40.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-12-17 13:35:22 ----D---- C:\Program Files\trend micro
2016-12-17 13:35:21 ----D---- C:\rsit
2016-12-17 13:24:29 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2016-12-17 13:24:01 ----D---- C:\WINDOWS\PCHEALTH
2016-12-17 13:24:01 ----D---- C:\Program Files (x86)\Microsoft Sync Framework
2016-12-17 13:24:01 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2016-12-17 13:21:31 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2016-12-17 13:20:57 ----D---- C:\Program Files\Microsoft Office
2016-12-17 13:20:38 ----D---- C:\WINDOWS\SHELLNEW
2016-12-17 13:20:38 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2016-12-17 13:20:23 ----D---- C:\Program Files (x86)\Microsoft Office
2016-12-17 13:20:22 ----D---- C:\ProgramData\Microsoft Help
2016-12-17 13:19:24 ----RHD---- C:\MSOCache
2016-12-17 13:13:40 ----D---- C:\Program Files\7-Zip
2016-12-09 21:47:12 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-12-09 21:47:11 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\wpnprv.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\AudioEng.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\rascustom.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2016-12-09 21:47:09 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-12-09 21:47:09 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-12-09 21:47:07 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-12-09 21:47:07 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-12-09 21:47:07 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-12-09 21:47:06 ----A---- C:\WINDOWS\system32\ntshrui.dll
2016-12-09 21:47:06 ----A---- C:\WINDOWS\system32\netshell.dll
2016-12-09 21:47:06 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-12-09 21:47:04 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-12-09 21:47:04 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-12-09 21:47:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-12-09 21:47:00 ----A---- C:\WINDOWS\system32\shell32.dll
2016-12-09 21:46:59 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-12-09 21:46:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2016-12-09 21:46:58 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-12-09 21:46:58 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-12-09 21:46:58 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-12-09 21:46:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2016-12-09 21:46:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2016-12-09 21:46:57 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-12-09 21:46:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-12-09 21:46:56 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2016-12-09 21:46:56 ----A---- C:\WINDOWS\system32\apprepsync.dll
2016-12-09 21:46:56 ----A---- C:\WINDOWS\system32\apprepapi.dll
2016-12-09 21:46:55 ----A---- C:\WINDOWS\SYSWOW64\WSManHTTPConfig.exe
2016-12-09 21:46:55 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-12-09 21:46:55 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-12-09 21:46:55 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2016-12-09 21:46:54 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2016-12-09 21:46:54 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-12-09 21:46:54 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-12-09 21:46:53 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-12-09 21:46:53 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-12-09 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-12-09 21:46:49 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-12-09 21:46:49 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-12-09 21:46:49 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-12-09 21:46:48 ----A---- C:\WINDOWS\SYSWOW64\zipfldr.dll
2016-12-09 21:46:48 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-12-09 21:46:48 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2016-12-09 21:46:46 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-12-09 21:46:45 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2016-12-09 21:46:45 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2016-12-09 21:46:45 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2016-12-09 21:46:45 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\SYSWOW64\mfaudiocnv.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\system32\MFPlay.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\system32\RTWorkQ.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\CloudStorageWizard.exe
2016-12-09 21:46:42 ----A---- C:\WINDOWS\system32\policymanager.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2016-12-09 21:46:42 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-12-09 21:46:41 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-09 21:46:41 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2016-12-09 21:46:41 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\EAMProgressHandler.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2016-12-09 21:46:36 ----A---- C:\WINDOWS\system32\ReportingCSP.dll
2016-12-09 21:46:36 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2016-12-09 21:46:36 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-12-09 21:46:36 ----A---- C:\WINDOWS\system32\EDPCleanup.exe
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2016-12-09 21:46:34 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-12-09 21:46:34 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-12-09 21:46:34 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2016-12-09 21:46:34 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-12-09 21:46:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-12-09 21:46:33 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-12-09 21:46:33 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-12-09 21:46:33 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2016-12-09 21:46:31 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-12-09 21:46:31 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\system32\netplwiz.dll
2016-12-09 21:46:27 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-12-09 21:46:26 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-12-09 21:46:26 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-12-09 21:46:26 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-12-09 21:46:23 ----A---- C:\WINDOWS\SYSWOW64\RTWorkQ.dll
2016-12-09 21:46:23 ----A---- C:\WINDOWS\system32\services.exe
2016-12-09 21:46:22 ----A---- C:\WINDOWS\system32\wscapi.dll
2016-12-09 21:46:21 ----A---- C:\WINDOWS\SYSWOW64\wsecedit.dll
2016-12-09 21:46:21 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2016-12-09 21:46:21 ----A---- C:\WINDOWS\system32\cryptngc.dll
2016-12-09 21:46:20 ----A---- C:\WINDOWS\system32\wscinterop.dll
2016-12-09 21:46:20 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-12-09 21:46:20 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-12-09 21:46:19 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-12-09 21:46:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2016-12-09 21:46:18 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-12-09 21:46:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-12-09 21:46:16 ----A---- C:\WINDOWS\system32\win32k.sys
2016-12-09 21:46:16 ----A---- C:\WINDOWS\system32\msctf.dll
2016-12-09 21:46:15 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2016-12-09 21:46:15 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2016-12-09 21:46:15 ----A---- C:\WINDOWS\system32\comdlg32.dll
2016-12-09 21:46:14 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-12-09 21:46:14 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-12-09 21:46:13 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2016-12-09 21:46:13 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-12-09 21:46:12 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-12-09 21:46:11 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2016-12-09 21:46:11 ----A---- C:\WINDOWS\system32\ShareHost.dll
2016-12-09 21:46:11 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-12-09 21:46:11 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-12-09 21:46:10 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-12-09 21:46:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-12-09 21:46:09 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2016-12-09 21:46:09 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-12-09 21:46:08 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-12-09 21:46:07 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2016-12-09 21:46:07 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2016-12-09 21:46:07 ----A---- C:\WINDOWS\system32\cdp.dll
2016-12-09 21:46:06 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2016-12-09 21:46:06 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\sppwinob.dll
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\wpncore.dll
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-12-09 21:46:02 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2016-12-09 21:46:02 ----A---- C:\WINDOWS\system32\wsecedit.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\system32\lpremove.exe
2016-12-09 21:46:01 ----A---- C:\WINDOWS\system32\DeviceReactivation.dll
2016-12-09 21:46:00 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2016-12-09 21:46:00 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-12-09 21:46:00 ----A---- C:\WINDOWS\system32\SRH.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\system32\drivers\modem.sys
2016-12-09 21:45:57 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2016-12-09 21:45:57 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-12-09 21:45:57 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-12-09 21:45:56 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-12-09 21:45:56 ----A---- C:\WINDOWS\system32\wkssvc.dll
2016-12-09 21:45:56 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-12-09 21:45:55 ----A---- C:\WINDOWS\system32\ole32.dll
2016-12-09 21:45:54 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-12-09 21:45:54 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2016-12-09 21:45:54 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-12-09 21:45:53 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-12-09 21:45:53 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-12-09 21:45:53 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-12-09 21:45:53 ----A---- C:\WINDOWS\system32\BcastDVRHelper.dll
2016-12-09 21:45:52 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-12-09 21:45:52 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-12-09 21:45:51 ----A---- C:\WINDOWS\system32\msdtctm.dll
2016-12-09 21:45:51 ----A---- C:\WINDOWS\system32\lsm.dll
2016-12-09 21:45:51 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-12-09 21:45:50 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-12-09 21:45:50 ----A---- C:\WINDOWS\system32\combase.dll
2016-12-09 21:45:49 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-12-09 21:45:49 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-12-09 21:45:48 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-12-09 21:45:48 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-12-09 21:45:48 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-12-09 21:45:47 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-12-09 21:45:46 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-12-09 21:45:46 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-12-09 21:45:45 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-12-09 21:45:44 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-12-09 21:45:42 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-12-09 21:45:41 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-12-09 21:45:40 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-12-09 21:45:39 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-12-09 21:45:36 ----A---- C:\WINDOWS\system32\mfaudiocnv.dll
2016-12-09 21:45:36 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\SYSWOW64\migisol.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\migisol.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\dialserver.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\CloudStorageWizard.exe
2016-12-09 21:45:34 ----A---- C:\WINDOWS\system32\ProvSysprep.dll
2016-12-09 21:45:34 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-12-09 21:45:33 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\wincorlib.dll
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\sppnp.dll
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\ReAgentc.exe
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\aitstatic.exe
2016-12-09 21:45:32 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2016-12-09 21:45:32 ----A---- C:\WINDOWS\system32\RjvMDMConfig.dll
2016-12-09 21:45:31 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-12-09 21:45:31 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-12-09 21:45:31 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2016-12-09 21:45:31 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-12-09 21:45:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-12-09 21:45:30 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2016-12-09 21:45:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-09 21:45:28 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-12-09 21:45:25 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-12-09 21:45:25 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2016-12-09 21:45:23 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-12-09 21:45:22 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-12-09 21:45:21 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2016-12-09 21:45:20 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-12-09 21:45:19 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2016-12-09 21:45:19 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-12-09 21:45:17 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-12-09 21:45:17 ----A---- C:\WINDOWS\system32\mspaint.exe
2016-12-09 21:45:17 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-12-09 21:45:16 ----A---- C:\WINDOWS\system32\stobject.dll
2016-12-09 21:45:16 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-12-09 21:45:15 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-12-09 21:45:15 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-12-09 21:45:15 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-12-09 21:45:14 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-12-09 21:45:14 ----A---- C:\WINDOWS\system32\gameux.dll
2016-12-09 21:45:14 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-12-09 21:45:13 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-12-09 21:45:13 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-12-09 21:45:12 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-12-09 21:45:11 ----A---- C:\WINDOWS\explorer.exe
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2016-12-09 21:45:09 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-12-09 21:45:09 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-12-09 21:45:09 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-12-09 21:45:07 ----A---- C:\WINDOWS\system32\twinui.dll
2016-12-09 21:45:07 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2016-12-09 21:45:06 ----A---- C:\WINDOWS\system32\zipfldr.dll
2016-12-09 21:45:06 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-12-09 21:45:05 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2016-12-09 21:45:05 ----A---- C:\WINDOWS\system32\wininet.dll
2016-12-09 21:45:05 ----A---- C:\WINDOWS\system32\efswrt.dll
2016-12-09 21:45:04 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-12-09 21:45:04 ----A---- C:\WINDOWS\system32\mos.dll
2016-12-09 21:45:03 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-12-09 21:45:02 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-12-09 21:45:02 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-12-09 21:45:02 ----A---- C:\WINDOWS\system32\cdd.dll
2016-12-09 21:45:01 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-12-09 21:44:59 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2016-12-09 21:44:58 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2016-12-09 21:44:58 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2016-12-09 21:44:57 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-12-09 21:44:55 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-12-09 21:44:55 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-12-09 21:44:53 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2016-12-09 21:44:53 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2016-12-09 21:44:52 ----A---- C:\WINDOWS\system32\rasmans.dll
2016-12-09 21:44:52 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-12-09 21:44:52 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-12-09 21:44:51 ----A---- C:\WINDOWS\system32\securekernel.exe
2016-12-09 21:44:51 ----A---- C:\WINDOWS\system32\MapRouter.dll
2016-12-09 21:44:51 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2016-12-09 21:44:50 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2016-12-09 21:44:50 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-12-09 21:44:50 ----A---- C:\WINDOWS\system32\setupugc.exe
2016-12-09 21:44:49 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\moshost.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\umpoext.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\sendmail.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-12-09 21:44:47 ----A---- C:\WINDOWS\SYSWOW64\wscinterop.dll
2016-12-09 21:44:47 ----A---- C:\WINDOWS\SYSWOW64\ReAgentc.exe
2016-12-09 21:44:47 ----A---- C:\WINDOWS\SYSWOW64\NetCfgNotifyObjectHost.exe
2016-12-09 21:44:47 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2016-12-09 21:44:47 ----A---- C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-12-09 21:44:47 ----A---- C:\WINDOWS\system32\CbtBackgroundManagerPolicy.dll
2016-12-07 00:19:20 ----D---- C:\ProgramData\tmp
2016-12-07 00:19:18 ----D---- C:\ProgramData\hps
2016-12-07 00:10:08 ----D---- C:\Program Files\Fotolab
======List of files/folders modified in the last 1 month======
2016-12-17 13:35:22 ----RD---- C:\Program Files
2016-12-17 13:34:30 ----D---- C:\WINDOWS\Temp
2016-12-17 13:29:15 ----D---- C:\WINDOWS\system32\config
2016-12-17 13:28:38 ----SHDC---- C:\WINDOWS\Installer
2016-12-17 13:28:35 ----D---- C:\WINDOWS\Prefetch
2016-12-17 13:28:25 ----RD---- C:\WINDOWS\Microsoft.NET
2016-12-17 13:28:14 ----RSD---- C:\WINDOWS\assembly
2016-12-17 13:27:12 ----D---- C:\WINDOWS\WinSxS
2016-12-17 13:25:44 ----RSD---- C:\WINDOWS\Fonts
2016-12-17 13:25:43 ----D---- C:\WINDOWS\SysWOW64
2016-12-17 13:25:04 ----D---- C:\Program Files (x86)\MSBuild
2016-12-17 13:24:29 ----RD---- C:\Program Files (x86)
2016-12-17 13:24:28 ----D---- C:\Program Files (x86)\Common Files
2016-12-17 13:24:01 ----SD---- C:\ProgramData\Microsoft
2016-12-17 13:24:01 ----D---- C:\Windows
2016-12-17 13:22:29 ----D---- C:\WINDOWS\system32\Tasks
2016-12-17 13:22:15 ----D---- C:\Program Files\Common Files\microsoft shared
2016-12-17 13:21:07 ----A---- C:\WINDOWS\win.ini
2016-12-17 13:20:22 ----HD---- C:\ProgramData
2016-12-17 12:48:54 ----D---- C:\WINDOWS\system32\sru
2016-12-17 07:59:43 ----D---- C:\WINDOWS\system32\SleepStudy
2016-12-16 23:36:37 ----D---- C:\WINDOWS\CbsTemp
2016-12-16 23:25:48 ----D---- C:\WINDOWS\system32\MRT
2016-12-16 23:20:56 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-12-16 23:20:18 ----D---- C:\WINDOWS\AppReadiness
2016-12-16 22:47:14 ----HD---- C:\Program Files\WindowsApps
2016-12-16 22:41:27 ----D---- C:\WINDOWS\Tasks
2016-12-15 22:37:49 ----D---- C:\WINDOWS\System32
2016-12-15 22:37:49 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-12-13 23:57:48 ----D---- C:\WINDOWS\system32\catroot2
2016-12-11 16:25:55 ----D---- C:\WINDOWS\system32\drivers
2016-12-11 16:25:55 ----D---- C:\WINDOWS\system32\CatRoot
2016-12-11 16:25:55 ----D---- C:\WINDOWS\INF
2016-12-11 16:25:53 ----D---- C:\WINDOWS\system32\DriverStore
2016-12-10 08:49:04 ----D---- C:\WINDOWS\rescache
2016-12-10 01:11:41 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-12-10 01:07:11 ----D---- C:\WINDOWS\SYSWOW64\oobe
2016-12-10 01:07:11 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\wbem
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\Sysprep
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\oobe
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\Dism
2016-12-10 01:07:07 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-12-10 01:07:07 ----D---- C:\WINDOWS\ShellExperiences
2016-12-10 01:07:07 ----D---- C:\WINDOWS\servicing
2016-12-10 01:07:07 ----D---- C:\WINDOWS\bcastdvr
2016-12-10 01:07:07 ----D---- C:\Program Files\Internet Explorer
2016-12-10 01:07:07 ----D---- C:\Program Files (x86)\Internet Explorer
2016-12-09 12:41:55 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2016-11-10 84616]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2016-11-10 262792]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2016-11-10 197248]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2016-11-10 208520]
R1 EpfwLWF;@oem20.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2016-11-10 61568]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-07-16 88576]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2016-07-16 8192]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2016-11-10 153216]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2016-07-16 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2016-07-16 78336]
R3 AMPPAL;@oem13.inf,%AMPPAL.SVCDESC%;Virtuální adaptér Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-07-29 164832]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-09-29 114176]
R3 BthLEEnum;@BthLEEnum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-09-15 249856]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-10-05 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-09-29 84992]
R3 ibtusb;@oem35.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\system32\DRIVERS\ibtusb.sys [2016-07-12 349960]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-09-10 6415288]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-08-23 4607744]
R3 MarvinBus;@oem26.inf,%MarvinBus.SVCDESC%;Pinnacle Marvin Bus 64; C:\WINDOWS\System32\drivers\MarvinBus64.sys [2005-09-23 261120]
R3 MEIx64;@oem19.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NETwNb64;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\WINDOWS\System32\drivers\Netwbw02.sys [2016-07-16 3485696]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvacwu.inf_amd64_9934c34dc6ca0c4b\nvlddmkm.sys [2016-09-12 13754936]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-05-02 28216]
R3 nvvad_WaveExtensible;@oem3.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2016-04-14 56384]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-07-16 183808]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-07-16 589824]
R3 RTSPER;@oem8.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2015-08-29 761600]
R3 SynRMIHID;@oem16.inf,%SynRMIHID.SVCDESC%;Synaptics HID Service; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [2015-09-08 56520]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2016-06-28 15488]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2016-07-16 105824]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2016-07-16 101216]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2016-07-16 58720]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2016-07-16 61792]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2016-07-16 32096]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 AMPPALP;@oem17.inf,%AMPPALP_Desc%;Protokol Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\system32\DRIVERS\amppal.sys [2013-07-29 164832]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2016-07-16 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-11-11 967168]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2016-07-16 38912]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-09-10 118272]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2016-07-16 20480]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2016-07-16 50016]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-09-29 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2016-07-16 81408]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2016-07-16 176384]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2016-07-16 526176]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 IntcDAud;@oem11.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-08 473864]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2016-07-16 842584]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2016-07-16 108896]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2016-07-16 928608]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 Ser2pl;@oem52.inf,%Serial.SVCDESC%;Prolific Serial port WDF driver; C:\WINDOWS\system32\DRIVERS\ser2pl64.sys [2016-10-06 199960]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2016-07-16 95744]
S3 UcmTcpciCx0101;UCM-TCPCI KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmTcpciCx.sys [2016-07-16 108544]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2016-07-16 50688]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2016-07-16 45568]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2016-07-16 263008]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2016-07-16 96608]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2016-07-16 137056]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-10-21 82128]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 CDPUserSvc_d0e62;CDPUserSvc_d0e62; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2016-11-10 2771848]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-05-02 1165368]
R2 GoProDeviceDetectionService;GoPro Device Detection Service; C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe [2016-10-11 37808]
R2 ibtsiva;@oem35.inf,%SERVICE_NAME%;Intel Bluetooth Service; C:\WINDOWS\system32\ibtsiva []
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-09-10 361384]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-05-02 1881144]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-05-02 2522680]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2016-08-01 1365048]
R2 OneSyncSvc_d0e62;Hostitel synchronizace_d0e62; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 PSI_SVC_2_x64;Corel License Validation Service V2 x64, Powered by arvato; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2014-04-30 337776]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2016-05-02 3634232]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 PimIndexMaintenanceSvc_d0e62;Data kontaktů_d0e62; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 TimeBrokerSvc;@%windir%\system32\TimeBrokerServer.dll,-1001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-26 154440]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-09-10 291768]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2016-07-16 93184]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; D:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [2016-04-13 342456]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-26 154440]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MessagingService_d0e62;Služba zasílání zpráv_d0e62; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2016-09-29 1312768]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2016-07-16 287744]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Velice pomalý ntb
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Velice pomalý ntb
Zdravím, posílám log z ADWcleaneru + níže log z RSIT:
# AdwCleaner v6.041 - Logfile created 17/12/2016 at 19:09:27
# Updated on 16/12/2016 by Malwarebytes
# Database : 2016-12-17.2 [Server]
# Operating System : Windows 10 Home (X64)
# Username : J - J-PC
# Running from : C:\Users\J\Desktop\adwcleaner_6.041.exe
# Mode: Clean
# Support : https://www.malwarebytes.com/support
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Shortcuts ] *****
***** [ Scheduled Tasks ] *****
***** [ Registry ] *****
[-] Key deleted: HKLM\SOFTWARE\Classes\AVSAsyncBuffer.AVSVideoTimeShift
[-] Key deleted: HKLM\SOFTWARE\Classes\AVSAsyncBuffer.AVSVideoTimeShift.1
[-] Key deleted: HKLM\SOFTWARE\Classes\AVSAsyncBuffer.UVideoTimeShift
[-] Key deleted: HKLM\SOFTWARE\Classes\AVSAsyncBuffer.UVideoTimeShift.1
[-] Key deleted: HKLM\SOFTWARE\Classes\U90LdSr1.clsWinServices
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\AVSAsyncBuffer.AVSVideoTimeShift
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\AVSAsyncBuffer.AVSVideoTimeShift.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\AVSAsyncBuffer.UVideoTimeShift
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\AVSAsyncBuffer.UVideoTimeShift.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\U90LdSr1.clsWinServices
[-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.com
[-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\staticimgfarm.com
[-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ttdetect.staticimgfarm.com
[#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.com
[#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\staticimgfarm.com
[#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ttdetect.staticimgfarm.com
***** [ Web browsers ] *****
*************************
:: "Tracing" keys deleted
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [1403 Bytes] - [23/07/2016 15:41:39]
C:\AdwCleaner\AdwCleaner[C2].txt - [2233 Bytes] - [17/12/2016 19:09:27]
C:\AdwCleaner\AdwCleaner[S1].txt - [1208 Bytes] - [23/07/2016 15:39:49]
C:\AdwCleaner\AdwCleaner[S2].txt - [2532 Bytes] - [17/12/2016 19:08:41]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [2452 Bytes] ##########
RSIT:
Logfile of random's system information tool 1.10 (written by random/random)
Run by J at 2016-12-17 19:14:08
Microsoft Windows 10 Home
System drive C: has 23 GB (25%) free of 89 GB
Total RAM: 4015 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:14:18, on 17.12.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\J.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKCU\..\Run: [OneDrive] "C:\Users\J\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark - D:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: GoPro Device Detection Service (GoProDeviceDetectionService) - Unknown owner - C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem35.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\system32\ibtsiva (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) - arvato digital services llc - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8798 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
dashost.exe {913223e2-c84d-438d-a5f8cfb20b74f398}
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
C:\WINDOWS\system32\ibtsiva
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2098665849-2437875990-499209516-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2098665849-2437875990-499209516-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 628 656 664 8192 660
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" XGpuTrayIcon"
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
explorer.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
C:\WINDOWS\system32\AUDIODG.EXE 0x27c
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
C:\Windows\System32\smartscreen.exe -Embedding
"C:\WINDOWS\system32\NOTEPAD.EXE" C:\AdwCleaner\AdwCleaner[C2].txt
"C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe"
"C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.7608.23501.0_x64__8wekyb3d8bbwe\HubTaskHost.exe" -ServerName:Microsoft.MicrosoftOfficeHub.AppXczch7hf9576qpxqh411t8e5g6baj2p43.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.7711.42017.0_x64__8wekyb3d8bbwe\HxTsr.exe" -ServerName:Hx.IPC.Server
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7544 CREDAT:75009 /prefetch:2
"C:\Users\J\Desktop\RSITx64.exe"
C:\WINDOWS\system32\wermgr.exe -upload
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-08-23 16405744]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-05-02 2398776]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2016-05-02 1767944]
"Corel Update Helper"=c:\Program Files\Corel\Corel VideoStudio X9\pua.exe [2016-03-01 2012104]
"GoPro Tray App"=C:\Program Files\GoPro\GoPro Desktop App\GoProDesktopSystemTray.exe [2016-10-11 866224]
"AutoKMS"=C:\WINDOWS\AutoKMS.exe [2016-12-17 615936]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\J\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-12-17 1517280]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe []
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"msacm.dvacm_vspx9"=c:\PROGRA~1\Corel\CORELV~1\Dvacm.acm
"VIDC.CFHD"=CFHD.dll
"vidc.mjpg"=pvmjpgx40.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-12-17 17:47:24 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-12-17 13:43:01 ----A---- C:\WINDOWS\AutoKMS.ini
2016-12-17 13:43:01 ----A---- C:\WINDOWS\AutoKMS.exe
2016-12-17 13:35:22 ----D---- C:\Program Files\trend micro
2016-12-17 13:35:21 ----D---- C:\rsit
2016-12-17 13:24:29 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2016-12-17 13:24:01 ----D---- C:\WINDOWS\PCHEALTH
2016-12-17 13:24:01 ----D---- C:\Program Files (x86)\Microsoft Sync Framework
2016-12-17 13:24:01 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2016-12-17 13:21:31 ----AD---- C:\Program Files (x86)\Microsoft Visual Studio 8
2016-12-17 13:20:57 ----D---- C:\Program Files\Microsoft Office
2016-12-17 13:20:38 ----D---- C:\WINDOWS\SHELLNEW
2016-12-17 13:20:38 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2016-12-17 13:20:23 ----AD---- C:\Program Files (x86)\Microsoft Office
2016-12-17 13:20:22 ----D---- C:\ProgramData\Microsoft Help
2016-12-17 13:19:24 ----RHD---- C:\MSOCache
2016-12-17 13:13:40 ----AD---- C:\Program Files\7-Zip
2016-12-14 00:20:10 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-12-14 00:20:09 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-12-14 00:20:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-12-14 00:20:08 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-12-14 00:20:08 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-12-14 00:20:07 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-12-14 00:20:07 ----A---- C:\WINDOWS\system32\ole32.dll
2016-12-14 00:20:07 ----A---- C:\WINDOWS\system32\msdtctm.dll
2016-12-14 00:20:06 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2016-12-14 00:20:06 ----A---- C:\WINDOWS\system32\msi.dll
2016-12-14 00:20:06 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-12-14 00:20:05 ----A---- C:\WINDOWS\system32\hvix64.exe
2016-12-14 00:20:05 ----A---- C:\WINDOWS\system32\hvax64.exe
2016-12-14 00:20:04 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-12-14 00:20:02 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-12-14 00:20:02 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-12-14 00:20:02 ----A---- C:\WINDOWS\system32\hvloader.exe
2016-12-14 00:20:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-12-14 00:20:00 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2016-12-14 00:20:00 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-12-14 00:20:00 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2016-12-14 00:19:59 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-12-14 00:19:59 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-12-14 00:19:58 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-12-14 00:19:58 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-12-14 00:19:57 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-12-14 00:19:56 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-12-14 00:19:56 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-12-14 00:19:55 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-14 00:19:55 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-12-14 00:19:55 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-12-14 00:19:53 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-12-14 00:19:52 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-12-14 00:19:52 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2016-12-14 00:19:47 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-12-14 00:19:47 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-12-14 00:19:45 ----A---- C:\WINDOWS\system32\InputService.dll
2016-12-14 00:19:44 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2016-12-14 00:19:43 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2016-12-14 00:19:43 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-12-14 00:19:43 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-12-14 00:19:43 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-12-14 00:19:43 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2016-12-14 00:19:41 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2016-12-14 00:19:41 ----A---- C:\WINDOWS\system32\win32k.sys
2016-12-14 00:19:41 ----A---- C:\WINDOWS\system32\ShareHost.dll
2016-12-14 00:19:40 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2016-12-14 00:19:40 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-12-14 00:19:39 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-12-14 00:19:38 ----A---- C:\WINDOWS\system32\user32.dll
2016-12-14 00:19:36 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-12-14 00:19:35 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-12-14 00:19:33 ----A---- C:\WINDOWS\system32\cdp.dll
2016-12-14 00:17:37 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-12-14 00:17:22 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-12-14 00:17:06 ----A---- C:\WINDOWS\system32\securekernel.exe
2016-12-14 00:17:00 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2016-12-14 00:16:51 ----A---- C:\WINDOWS\system32\gdi32full.dll
2016-12-14 00:16:48 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2016-12-14 00:16:33 ----A---- C:\WINDOWS\system32\winresume.exe
2016-12-14 00:16:30 ----A---- C:\WINDOWS\system32\winload.exe
2016-12-14 00:16:30 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-12-14 00:16:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-14 00:16:23 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-12-14 00:16:23 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-12-14 00:16:22 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-12-14 00:16:22 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-12-14 00:16:21 ----A---- C:\WINDOWS\system32\combase.dll
2016-12-14 00:16:20 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-12-14 00:16:20 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-12-14 00:16:20 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2016-12-14 00:16:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-12-14 00:16:19 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-12-14 00:16:19 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-12-14 00:16:19 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-12-14 00:16:18 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-12-14 00:16:18 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-12-14 00:16:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-14 00:16:17 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2016-12-14 00:16:16 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2016-12-14 00:16:15 ----A---- C:\WINDOWS\system32\wincorlib.dll
2016-12-14 00:16:14 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2016-12-14 00:16:14 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-12-14 00:16:14 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-12-14 00:16:14 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2016-12-14 00:16:14 ----A---- C:\WINDOWS\system32\bcrypt.dll
2016-12-14 00:16:13 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll
2016-12-14 00:16:12 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-12-14 00:16:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-12-14 00:16:11 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2016-12-14 00:16:10 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-12-14 00:16:09 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-12-14 00:16:08 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-12-14 00:16:08 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-12-14 00:16:05 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-12-14 00:16:04 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2016-12-14 00:16:04 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-12-14 00:16:04 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-12-14 00:16:03 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-12-14 00:16:00 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-12-14 00:15:59 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-12-14 00:15:59 ----A---- C:\WINDOWS\system32\cdd.dll
2016-12-14 00:15:58 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-12-14 00:15:57 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-12-14 00:15:54 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-12-14 00:15:53 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-12-14 00:15:51 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-12-14 00:15:51 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2016-12-14 00:15:50 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-12-14 00:15:48 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2016-12-14 00:15:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2016-12-14 00:15:47 ----A---- C:\WINDOWS\system32\sspicli.dll
2016-12-14 00:15:47 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2016-12-09 21:47:12 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-12-09 21:47:11 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\wpnprv.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\AudioEng.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\rascustom.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2016-12-09 21:47:09 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-12-09 21:47:09 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-12-09 21:47:07 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-12-09 21:47:07 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-12-09 21:47:07 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-12-09 21:47:06 ----A---- C:\WINDOWS\system32\ntshrui.dll
2016-12-09 21:47:06 ----A---- C:\WINDOWS\system32\netshell.dll
2016-12-09 21:47:04 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-12-09 21:47:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-12-09 21:47:00 ----A---- C:\WINDOWS\system32\shell32.dll
2016-12-09 21:46:59 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-12-09 21:46:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2016-12-09 21:46:58 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-12-09 21:46:58 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-12-09 21:46:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2016-12-09 21:46:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2016-12-09 21:46:56 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2016-12-09 21:46:56 ----A---- C:\WINDOWS\system32\apprepsync.dll
2016-12-09 21:46:56 ----A---- C:\WINDOWS\system32\apprepapi.dll
2016-12-09 21:46:55 ----A---- C:\WINDOWS\SYSWOW64\WSManHTTPConfig.exe
2016-12-09 21:46:55 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-12-09 21:46:55 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2016-12-09 21:46:54 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2016-12-09 21:46:54 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-12-09 21:46:54 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-12-09 21:46:53 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-12-09 21:46:53 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-12-09 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-12-09 21:46:49 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-12-09 21:46:49 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-12-09 21:46:49 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-12-09 21:46:48 ----A---- C:\WINDOWS\SYSWOW64\zipfldr.dll
2016-12-09 21:46:48 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-12-09 21:46:48 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2016-12-09 21:46:46 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-12-09 21:46:45 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2016-12-09 21:46:45 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2016-12-09 21:46:45 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2016-12-09 21:46:45 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\SYSWOW64\mfaudiocnv.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\system32\MFPlay.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\system32\RTWorkQ.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\CloudStorageWizard.exe
2016-12-09 21:46:42 ----A---- C:\WINDOWS\system32\policymanager.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2016-12-09 21:46:41 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-09 21:46:41 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2016-12-09 21:46:41 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\EAMProgressHandler.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2016-12-09 21:46:36 ----A---- C:\WINDOWS\system32\ReportingCSP.dll
2016-12-09 21:46:36 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2016-12-09 21:46:36 ----A---- C:\WINDOWS\system32\EDPCleanup.exe
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-12-09 21:46:34 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-12-09 21:46:34 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2016-12-09 21:46:33 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\system32\netplwiz.dll
2016-12-09 21:46:27 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-12-09 21:46:26 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-12-09 21:46:26 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-12-09 21:46:26 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-12-09 21:46:23 ----A---- C:\WINDOWS\SYSWOW64\RTWorkQ.dll
2016-12-09 21:46:23 ----A---- C:\WINDOWS\system32\services.exe
2016-12-09 21:46:22 ----A---- C:\WINDOWS\system32\wscapi.dll
2016-12-09 21:46:21 ----A---- C:\WINDOWS\SYSWOW64\wsecedit.dll
2016-12-09 21:46:21 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2016-12-09 21:46:21 ----A---- C:\WINDOWS\system32\cryptngc.dll
2016-12-09 21:46:20 ----A---- C:\WINDOWS\system32\wscinterop.dll
2016-12-09 21:46:20 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-12-09 21:46:19 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-12-09 21:46:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2016-12-09 21:46:18 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-12-09 21:46:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-12-09 21:46:16 ----A---- C:\WINDOWS\system32\msctf.dll
2016-12-09 21:46:15 ----A---- C:\WINDOWS\system32\comdlg32.dll
2016-12-09 21:46:14 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-12-09 21:46:13 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2016-12-09 21:46:11 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2016-12-09 21:46:11 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-12-09 21:46:11 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-12-09 21:46:10 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-12-09 21:46:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-12-09 21:46:09 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2016-12-09 21:46:09 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-12-09 21:46:08 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-12-09 21:46:07 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2016-12-09 21:46:07 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2016-12-09 21:46:06 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2016-12-09 21:46:06 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\sppwinob.dll
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\wpncore.dll
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-12-09 21:46:02 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2016-12-09 21:46:02 ----A---- C:\WINDOWS\system32\wsecedit.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\system32\lpremove.exe
2016-12-09 21:46:01 ----A---- C:\WINDOWS\system32\DeviceReactivation.dll
2016-12-09 21:46:00 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2016-12-09 21:46:00 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-12-09 21:46:00 ----A---- C:\WINDOWS\system32\SRH.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\system32\drivers\modem.sys
2016-12-09 21:45:57 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2016-12-09 21:45:57 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-12-09 21:45:57 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-12-09 21:45:56 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-12-09 21:45:56 ----A---- C:\WINDOWS\system32\wkssvc.dll
2016-12-09 21:45:56 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-12-09 21:45:54 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-12-09 21:45:54 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2016-12-09 21:45:53 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-12-09 21:45:53 ----A---- C:\WINDOWS\system32\BcastDVRHelper.dll
2016-12-09 21:45:52 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-12-09 21:45:51 ----A---- C:\WINDOWS\system32\lsm.dll
2016-12-09 21:45:51 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-12-09 21:45:49 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-12-09 21:45:48 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-12-09 21:45:48 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-12-09 21:45:46 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-12-09 21:45:45 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-12-09 21:45:42 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-12-09 21:45:40 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-12-09 21:45:39 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-12-09 21:45:36 ----A---- C:\WINDOWS\system32\mfaudiocnv.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\SYSWOW64\migisol.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\migisol.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\dialserver.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\CloudStorageWizard.exe
2016-12-09 21:45:34 ----A---- C:\WINDOWS\system32\ProvSysprep.dll
2016-12-09 21:45:34 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\sppnp.dll
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\ReAgentc.exe
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\aitstatic.exe
2016-12-09 21:45:32 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2016-12-09 21:45:32 ----A---- C:\WINDOWS\system32\RjvMDMConfig.dll
2016-12-09 21:45:31 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-12-09 21:45:31 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2016-12-09 21:45:31 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-12-09 21:45:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-12-09 21:45:19 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2016-12-09 21:45:17 ----A---- C:\WINDOWS\system32\mspaint.exe
2016-12-09 21:45:17 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-12-09 21:45:16 ----A---- C:\WINDOWS\system32\stobject.dll
2016-12-09 21:45:16 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-12-09 21:45:14 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-12-09 21:45:14 ----A---- C:\WINDOWS\system32\gameux.dll
2016-12-09 21:45:14 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-12-09 21:45:13 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-12-09 21:45:11 ----A---- C:\WINDOWS\explorer.exe
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2016-12-09 21:45:07 ----A---- C:\WINDOWS\system32\twinui.dll
2016-12-09 21:45:06 ----A---- C:\WINDOWS\system32\zipfldr.dll
2016-12-09 21:45:06 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-12-09 21:45:05 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2016-12-09 21:45:05 ----A---- C:\WINDOWS\system32\wininet.dll
2016-12-09 21:45:05 ----A---- C:\WINDOWS\system32\efswrt.dll
2016-12-09 21:45:04 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-12-09 21:45:04 ----A---- C:\WINDOWS\system32\mos.dll
2016-12-09 21:45:02 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-12-09 21:44:59 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2016-12-09 21:44:58 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2016-12-09 21:44:57 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-12-09 21:44:55 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-12-09 21:44:55 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-12-09 21:44:53 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2016-12-09 21:44:53 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2016-12-09 21:44:52 ----A---- C:\WINDOWS\system32\rasmans.dll
2016-12-09 21:44:52 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-12-09 21:44:52 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-12-09 21:44:51 ----A---- C:\WINDOWS\system32\MapRouter.dll
2016-12-09 21:44:51 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2016-12-09 21:44:50 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2016-12-09 21:44:50 ----A---- C:\WINDOWS\system32\setupugc.exe
2016-12-09 21:44:49 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\moshost.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\umpoext.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\sendmail.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-12-09 21:44:47 ----A---- C:\WINDOWS\SYSWOW64\wscinterop.dll
2016-12-09 21:44:47 ----A---- C:\WINDOWS\SYSWOW64\ReAgentc.exe
2016-12-09 21:44:47 ----A---- C:\WINDOWS\SYSWOW64\NetCfgNotifyObjectHost.exe
2016-12-09 21:44:47 ----A---- C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-12-09 21:44:47 ----A---- C:\WINDOWS\system32\CbtBackgroundManagerPolicy.dll
2016-12-07 00:19:20 ----D---- C:\ProgramData\tmp
2016-12-07 00:19:18 ----D---- C:\ProgramData\hps
2016-12-07 00:10:08 ----D---- C:\Program Files\Fotolab
======List of files/folders modified in the last 1 month======
2016-12-17 19:12:18 ----D---- C:\WINDOWS\Temp
2016-12-17 19:12:16 ----D---- C:\WINDOWS\System32
2016-12-17 19:12:16 ----D---- C:\WINDOWS\INF
2016-12-17 19:12:16 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-12-17 19:11:21 ----D---- C:\WINDOWS\system32\sru
2016-12-17 19:09:45 ----D---- C:\WINDOWS\system32\catroot2
2016-12-17 19:09:27 ----D---- C:\WINDOWS\Prefetch
2016-12-17 19:09:27 ----D---- C:\AdwCleaner
2016-12-17 18:51:28 ----D---- C:\WINDOWS\system32\SleepStudy
2016-12-17 18:02:28 ----RD---- C:\WINDOWS\Microsoft.NET
2016-12-17 18:02:13 ----RSD---- C:\WINDOWS\assembly
2016-12-17 17:56:36 ----D---- C:\WINDOWS\system32\config
2016-12-17 17:51:38 ----D---- C:\WINDOWS\system32\Tasks
2016-12-17 17:48:31 ----D---- C:\WINDOWS\AppReadiness
2016-12-17 17:48:05 ----D---- C:\WINDOWS\WinSxS
2016-12-17 17:47:25 ----D---- C:\WINDOWS\SysWOW64
2016-12-17 17:44:52 ----D---- C:\WINDOWS\system32\drivers
2016-12-17 17:43:36 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-12-17 17:43:34 ----D---- C:\WINDOWS\system32\en-US
2016-12-17 17:43:33 ----D---- C:\WINDOWS\ShellExperiences
2016-12-17 17:43:33 ----D---- C:\WINDOWS\AppPatch
2016-12-17 17:43:32 ----D---- C:\WINDOWS\system32\Boot
2016-12-17 17:43:30 ----D---- C:\WINDOWS\system32\DriverStore
2016-12-17 13:43:01 ----D---- C:\Windows
2016-12-17 13:35:22 ----RD---- C:\Program Files
2016-12-17 13:28:38 ----SHDC---- C:\WINDOWS\Installer
2016-12-17 13:25:44 ----RSD---- C:\WINDOWS\Fonts
2016-12-17 13:25:04 ----AD---- C:\Program Files (x86)\MSBuild
2016-12-17 13:24:29 ----RD---- C:\Program Files (x86)
2016-12-17 13:24:28 ----D---- C:\Program Files (x86)\Common Files
2016-12-17 13:24:01 ----SD---- C:\ProgramData\Microsoft
2016-12-17 13:22:15 ----AD---- C:\Program Files\Common Files\microsoft shared
2016-12-17 13:21:07 ----A---- C:\WINDOWS\win.ini
2016-12-17 13:20:22 ----HD---- C:\ProgramData
2016-12-16 23:36:37 ----D---- C:\WINDOWS\CbsTemp
2016-12-16 23:25:48 ----D---- C:\WINDOWS\system32\MRT
2016-12-16 23:20:56 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-12-16 22:47:14 ----HD---- C:\Program Files\WindowsApps
2016-12-16 22:41:27 ----D---- C:\WINDOWS\Tasks
2016-12-15 22:37:49 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-12-11 16:25:55 ----D---- C:\WINDOWS\system32\CatRoot
2016-12-10 08:49:04 ----D---- C:\WINDOWS\rescache
2016-12-10 01:07:11 ----D---- C:\WINDOWS\SYSWOW64\oobe
2016-12-10 01:07:11 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\wbem
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\Sysprep
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\oobe
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\Dism
2016-12-10 01:07:07 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-12-10 01:07:07 ----D---- C:\WINDOWS\servicing
2016-12-10 01:07:07 ----D---- C:\WINDOWS\bcastdvr
2016-12-10 01:07:07 ----D---- C:\Program Files\Internet Explorer
2016-12-10 01:07:07 ----D---- C:\Program Files (x86)\Internet Explorer
2016-12-09 12:41:55 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2016-11-10 84616]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2016-11-10 262792]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2016-11-10 197248]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2016-11-10 208520]
R1 EpfwLWF;@oem20.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2016-11-10 61568]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-07-16 88576]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2016-07-16 8192]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2016-11-10 153216]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2016-07-16 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2016-07-16 78336]
R3 AMPPAL;@oem13.inf,%AMPPAL.SVCDESC%;Virtuální adaptér Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-07-29 164832]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-09-29 114176]
R3 BthLEEnum;@BthLEEnum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-09-15 249856]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-10-05 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-09-29 84992]
R3 ibtusb;@oem35.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\system32\DRIVERS\ibtusb.sys [2016-07-12 349960]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-09-10 6415288]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-08-23 4607744]
R3 MarvinBus;@oem26.inf,%MarvinBus.SVCDESC%;Pinnacle Marvin Bus 64; C:\WINDOWS\System32\drivers\MarvinBus64.sys [2005-09-23 261120]
R3 MEIx64;@oem19.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NETwNb64;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\WINDOWS\System32\drivers\Netwbw02.sys [2016-07-16 3485696]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvacwu.inf_amd64_9934c34dc6ca0c4b\nvlddmkm.sys [2016-09-12 13754936]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-05-02 28216]
R3 nvvad_WaveExtensible;@oem3.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2016-04-14 56384]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-07-16 183808]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-07-16 589824]
R3 RTSPER;@oem8.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2015-08-29 761600]
R3 SynRMIHID;@oem16.inf,%SynRMIHID.SVCDESC%;Synaptics HID Service; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [2015-09-08 56520]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2016-06-28 15488]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2016-07-16 105824]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2016-07-16 101216]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2016-07-16 58720]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2016-07-16 61792]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2016-07-16 32096]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 AMPPALP;@oem17.inf,%AMPPALP_Desc%;Protokol Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\system32\DRIVERS\amppal.sys [2013-07-29 164832]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2016-07-16 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-11-11 967168]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2016-07-16 38912]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-09-10 118272]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2016-07-16 20480]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2016-07-16 50016]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-09-29 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2016-07-16 81408]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2016-07-16 176384]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2016-07-16 526176]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 IntcDAud;@oem11.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-08 473864]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2016-07-16 842584]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2016-07-16 108896]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2016-07-16 928608]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 Ser2pl;@oem52.inf,%Serial.SVCDESC%;Prolific Serial port WDF driver; C:\WINDOWS\system32\DRIVERS\ser2pl64.sys [2016-10-06 199960]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2016-07-16 95744]
S3 UcmTcpciCx0101;UCM-TCPCI KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmTcpciCx.sys [2016-07-16 108544]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2016-07-16 50688]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2016-07-16 45568]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2016-07-16 263008]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2016-07-16 96608]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2016-07-16 137056]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-10-21 82128]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 CDPUserSvc_475b6;CDPUserSvc_475b6; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2016-11-10 2771848]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-05-02 1165368]
R2 GoProDeviceDetectionService;GoPro Device Detection Service; C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe [2016-10-11 37808]
R2 ibtsiva;@oem35.inf,%SERVICE_NAME%;Intel Bluetooth Service; C:\WINDOWS\system32\ibtsiva []
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-09-10 361384]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-05-02 1881144]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-05-02 2522680]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2016-08-01 1365048]
R2 OneSyncSvc_475b6;Hostitel synchronizace_475b6; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 PSI_SVC_2_x64;Corel License Validation Service V2 x64, Powered by arvato; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2014-04-30 337776]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2016-05-02 3634232]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 TimeBrokerSvc;@%windir%\system32\TimeBrokerServer.dll,-1001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-26 154440]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-09-10 291768]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2016-07-16 93184]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; D:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [2016-04-13 342456]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-26 154440]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MessagingService_475b6;Služba zasílání zpráv_475b6; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 PimIndexMaintenanceSvc_475b6;Data kontaktů_475b6; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2016-09-29 1312768]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2016-07-16 287744]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
-----------------EOF-----------------
# AdwCleaner v6.041 - Logfile created 17/12/2016 at 19:09:27
# Updated on 16/12/2016 by Malwarebytes
# Database : 2016-12-17.2 [Server]
# Operating System : Windows 10 Home (X64)
# Username : J - J-PC
# Running from : C:\Users\J\Desktop\adwcleaner_6.041.exe
# Mode: Clean
# Support : https://www.malwarebytes.com/support
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Shortcuts ] *****
***** [ Scheduled Tasks ] *****
***** [ Registry ] *****
[-] Key deleted: HKLM\SOFTWARE\Classes\AVSAsyncBuffer.AVSVideoTimeShift
[-] Key deleted: HKLM\SOFTWARE\Classes\AVSAsyncBuffer.AVSVideoTimeShift.1
[-] Key deleted: HKLM\SOFTWARE\Classes\AVSAsyncBuffer.UVideoTimeShift
[-] Key deleted: HKLM\SOFTWARE\Classes\AVSAsyncBuffer.UVideoTimeShift.1
[-] Key deleted: HKLM\SOFTWARE\Classes\U90LdSr1.clsWinServices
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\AVSAsyncBuffer.AVSVideoTimeShift
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\AVSAsyncBuffer.AVSVideoTimeShift.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\AVSAsyncBuffer.UVideoTimeShift
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\AVSAsyncBuffer.UVideoTimeShift.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\U90LdSr1.clsWinServices
[-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.com
[-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\staticimgfarm.com
[-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ttdetect.staticimgfarm.com
[#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.com
[#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\staticimgfarm.com
[#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ttdetect.staticimgfarm.com
***** [ Web browsers ] *****
*************************
:: "Tracing" keys deleted
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [1403 Bytes] - [23/07/2016 15:41:39]
C:\AdwCleaner\AdwCleaner[C2].txt - [2233 Bytes] - [17/12/2016 19:09:27]
C:\AdwCleaner\AdwCleaner[S1].txt - [1208 Bytes] - [23/07/2016 15:39:49]
C:\AdwCleaner\AdwCleaner[S2].txt - [2532 Bytes] - [17/12/2016 19:08:41]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [2452 Bytes] ##########
RSIT:
Logfile of random's system information tool 1.10 (written by random/random)
Run by J at 2016-12-17 19:14:08
Microsoft Windows 10 Home
System drive C: has 23 GB (25%) free of 89 GB
Total RAM: 4015 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:14:18, on 17.12.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\J.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKCU\..\Run: [OneDrive] "C:\Users\J\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark - D:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: GoPro Device Detection Service (GoProDeviceDetectionService) - Unknown owner - C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem35.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\system32\ibtsiva (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) - arvato digital services llc - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8798 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
dashost.exe {913223e2-c84d-438d-a5f8cfb20b74f398}
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
C:\WINDOWS\system32\ibtsiva
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2098665849-2437875990-499209516-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2098665849-2437875990-499209516-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 628 656 664 8192 660
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" XGpuTrayIcon"
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
explorer.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
C:\WINDOWS\system32\AUDIODG.EXE 0x27c
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
C:\Windows\System32\smartscreen.exe -Embedding
"C:\WINDOWS\system32\NOTEPAD.EXE" C:\AdwCleaner\AdwCleaner[C2].txt
"C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe"
"C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.7608.23501.0_x64__8wekyb3d8bbwe\HubTaskHost.exe" -ServerName:Microsoft.MicrosoftOfficeHub.AppXczch7hf9576qpxqh411t8e5g6baj2p43.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.7711.42017.0_x64__8wekyb3d8bbwe\HxTsr.exe" -ServerName:Hx.IPC.Server
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7544 CREDAT:75009 /prefetch:2
"C:\Users\J\Desktop\RSITx64.exe"
C:\WINDOWS\system32\wermgr.exe -upload
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-08-23 16405744]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-05-02 2398776]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2016-05-02 1767944]
"Corel Update Helper"=c:\Program Files\Corel\Corel VideoStudio X9\pua.exe [2016-03-01 2012104]
"GoPro Tray App"=C:\Program Files\GoPro\GoPro Desktop App\GoProDesktopSystemTray.exe [2016-10-11 866224]
"AutoKMS"=C:\WINDOWS\AutoKMS.exe [2016-12-17 615936]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\J\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-12-17 1517280]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe []
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"msacm.dvacm_vspx9"=c:\PROGRA~1\Corel\CORELV~1\Dvacm.acm
"VIDC.CFHD"=CFHD.dll
"vidc.mjpg"=pvmjpgx40.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-12-17 17:47:24 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-12-17 13:43:01 ----A---- C:\WINDOWS\AutoKMS.ini
2016-12-17 13:43:01 ----A---- C:\WINDOWS\AutoKMS.exe
2016-12-17 13:35:22 ----D---- C:\Program Files\trend micro
2016-12-17 13:35:21 ----D---- C:\rsit
2016-12-17 13:24:29 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2016-12-17 13:24:01 ----D---- C:\WINDOWS\PCHEALTH
2016-12-17 13:24:01 ----D---- C:\Program Files (x86)\Microsoft Sync Framework
2016-12-17 13:24:01 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2016-12-17 13:21:31 ----AD---- C:\Program Files (x86)\Microsoft Visual Studio 8
2016-12-17 13:20:57 ----D---- C:\Program Files\Microsoft Office
2016-12-17 13:20:38 ----D---- C:\WINDOWS\SHELLNEW
2016-12-17 13:20:38 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2016-12-17 13:20:23 ----AD---- C:\Program Files (x86)\Microsoft Office
2016-12-17 13:20:22 ----D---- C:\ProgramData\Microsoft Help
2016-12-17 13:19:24 ----RHD---- C:\MSOCache
2016-12-17 13:13:40 ----AD---- C:\Program Files\7-Zip
2016-12-14 00:20:10 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-12-14 00:20:09 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-12-14 00:20:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-12-14 00:20:08 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-12-14 00:20:08 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-12-14 00:20:07 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-12-14 00:20:07 ----A---- C:\WINDOWS\system32\ole32.dll
2016-12-14 00:20:07 ----A---- C:\WINDOWS\system32\msdtctm.dll
2016-12-14 00:20:06 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2016-12-14 00:20:06 ----A---- C:\WINDOWS\system32\msi.dll
2016-12-14 00:20:06 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-12-14 00:20:05 ----A---- C:\WINDOWS\system32\hvix64.exe
2016-12-14 00:20:05 ----A---- C:\WINDOWS\system32\hvax64.exe
2016-12-14 00:20:04 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-12-14 00:20:02 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-12-14 00:20:02 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-12-14 00:20:02 ----A---- C:\WINDOWS\system32\hvloader.exe
2016-12-14 00:20:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-12-14 00:20:00 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2016-12-14 00:20:00 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-12-14 00:20:00 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2016-12-14 00:19:59 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-12-14 00:19:59 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-12-14 00:19:58 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-12-14 00:19:58 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-12-14 00:19:57 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-12-14 00:19:56 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-12-14 00:19:56 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-12-14 00:19:55 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-14 00:19:55 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-12-14 00:19:55 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-12-14 00:19:53 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-12-14 00:19:52 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-12-14 00:19:52 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2016-12-14 00:19:47 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-12-14 00:19:47 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-12-14 00:19:45 ----A---- C:\WINDOWS\system32\InputService.dll
2016-12-14 00:19:44 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2016-12-14 00:19:43 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2016-12-14 00:19:43 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-12-14 00:19:43 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-12-14 00:19:43 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-12-14 00:19:43 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2016-12-14 00:19:41 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2016-12-14 00:19:41 ----A---- C:\WINDOWS\system32\win32k.sys
2016-12-14 00:19:41 ----A---- C:\WINDOWS\system32\ShareHost.dll
2016-12-14 00:19:40 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2016-12-14 00:19:40 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-12-14 00:19:39 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-12-14 00:19:38 ----A---- C:\WINDOWS\system32\user32.dll
2016-12-14 00:19:36 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-12-14 00:19:35 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-12-14 00:19:33 ----A---- C:\WINDOWS\system32\cdp.dll
2016-12-14 00:17:37 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-12-14 00:17:22 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-12-14 00:17:06 ----A---- C:\WINDOWS\system32\securekernel.exe
2016-12-14 00:17:00 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2016-12-14 00:16:51 ----A---- C:\WINDOWS\system32\gdi32full.dll
2016-12-14 00:16:48 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2016-12-14 00:16:33 ----A---- C:\WINDOWS\system32\winresume.exe
2016-12-14 00:16:30 ----A---- C:\WINDOWS\system32\winload.exe
2016-12-14 00:16:30 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-12-14 00:16:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-14 00:16:23 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-12-14 00:16:23 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-12-14 00:16:22 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-12-14 00:16:22 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-12-14 00:16:21 ----A---- C:\WINDOWS\system32\combase.dll
2016-12-14 00:16:20 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-12-14 00:16:20 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-12-14 00:16:20 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2016-12-14 00:16:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-12-14 00:16:19 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-12-14 00:16:19 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-12-14 00:16:19 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-12-14 00:16:18 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-12-14 00:16:18 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-12-14 00:16:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-14 00:16:17 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2016-12-14 00:16:16 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2016-12-14 00:16:15 ----A---- C:\WINDOWS\system32\wincorlib.dll
2016-12-14 00:16:14 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2016-12-14 00:16:14 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-12-14 00:16:14 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-12-14 00:16:14 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2016-12-14 00:16:14 ----A---- C:\WINDOWS\system32\bcrypt.dll
2016-12-14 00:16:13 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll
2016-12-14 00:16:12 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-12-14 00:16:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-12-14 00:16:11 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2016-12-14 00:16:10 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-12-14 00:16:09 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-12-14 00:16:08 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-12-14 00:16:08 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-12-14 00:16:05 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-12-14 00:16:04 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2016-12-14 00:16:04 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-12-14 00:16:04 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-12-14 00:16:03 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-12-14 00:16:00 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-12-14 00:15:59 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-12-14 00:15:59 ----A---- C:\WINDOWS\system32\cdd.dll
2016-12-14 00:15:58 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-12-14 00:15:57 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-12-14 00:15:54 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-12-14 00:15:53 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-12-14 00:15:51 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-12-14 00:15:51 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2016-12-14 00:15:50 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-12-14 00:15:48 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2016-12-14 00:15:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2016-12-14 00:15:47 ----A---- C:\WINDOWS\system32\sspicli.dll
2016-12-14 00:15:47 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2016-12-09 21:47:12 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-12-09 21:47:11 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\wpnprv.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\AudioEng.dll
2016-12-09 21:47:11 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\rascustom.dll
2016-12-09 21:47:10 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2016-12-09 21:47:09 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-12-09 21:47:09 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-12-09 21:47:07 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-12-09 21:47:07 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-12-09 21:47:07 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-12-09 21:47:06 ----A---- C:\WINDOWS\system32\ntshrui.dll
2016-12-09 21:47:06 ----A---- C:\WINDOWS\system32\netshell.dll
2016-12-09 21:47:04 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-12-09 21:47:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-12-09 21:47:00 ----A---- C:\WINDOWS\system32\shell32.dll
2016-12-09 21:46:59 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-12-09 21:46:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2016-12-09 21:46:58 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-12-09 21:46:58 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-12-09 21:46:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2016-12-09 21:46:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2016-12-09 21:46:56 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2016-12-09 21:46:56 ----A---- C:\WINDOWS\system32\apprepsync.dll
2016-12-09 21:46:56 ----A---- C:\WINDOWS\system32\apprepapi.dll
2016-12-09 21:46:55 ----A---- C:\WINDOWS\SYSWOW64\WSManHTTPConfig.exe
2016-12-09 21:46:55 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-12-09 21:46:55 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2016-12-09 21:46:54 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2016-12-09 21:46:54 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-12-09 21:46:54 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-12-09 21:46:53 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-12-09 21:46:53 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-12-09 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-12-09 21:46:49 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-12-09 21:46:49 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-12-09 21:46:49 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-12-09 21:46:48 ----A---- C:\WINDOWS\SYSWOW64\zipfldr.dll
2016-12-09 21:46:48 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-12-09 21:46:48 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2016-12-09 21:46:46 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-12-09 21:46:45 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2016-12-09 21:46:45 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2016-12-09 21:46:45 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2016-12-09 21:46:45 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\SYSWOW64\mfaudiocnv.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\system32\MFPlay.dll
2016-12-09 21:46:44 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\system32\RTWorkQ.dll
2016-12-09 21:46:43 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\CloudStorageWizard.exe
2016-12-09 21:46:42 ----A---- C:\WINDOWS\system32\policymanager.dll
2016-12-09 21:46:42 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2016-12-09 21:46:41 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-09 21:46:41 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2016-12-09 21:46:41 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\EAMProgressHandler.dll
2016-12-09 21:46:37 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2016-12-09 21:46:36 ----A---- C:\WINDOWS\system32\ReportingCSP.dll
2016-12-09 21:46:36 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2016-12-09 21:46:36 ----A---- C:\WINDOWS\system32\EDPCleanup.exe
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-12-09 21:46:35 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-12-09 21:46:34 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-12-09 21:46:34 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2016-12-09 21:46:33 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-12-09 21:46:32 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2016-12-09 21:46:30 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-12-09 21:46:29 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-09 21:46:28 ----A---- C:\WINDOWS\system32\netplwiz.dll
2016-12-09 21:46:27 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-12-09 21:46:26 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-12-09 21:46:26 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-12-09 21:46:26 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-12-09 21:46:23 ----A---- C:\WINDOWS\SYSWOW64\RTWorkQ.dll
2016-12-09 21:46:23 ----A---- C:\WINDOWS\system32\services.exe
2016-12-09 21:46:22 ----A---- C:\WINDOWS\system32\wscapi.dll
2016-12-09 21:46:21 ----A---- C:\WINDOWS\SYSWOW64\wsecedit.dll
2016-12-09 21:46:21 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2016-12-09 21:46:21 ----A---- C:\WINDOWS\system32\cryptngc.dll
2016-12-09 21:46:20 ----A---- C:\WINDOWS\system32\wscinterop.dll
2016-12-09 21:46:20 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-12-09 21:46:19 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-12-09 21:46:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2016-12-09 21:46:18 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-12-09 21:46:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-12-09 21:46:16 ----A---- C:\WINDOWS\system32\msctf.dll
2016-12-09 21:46:15 ----A---- C:\WINDOWS\system32\comdlg32.dll
2016-12-09 21:46:14 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-12-09 21:46:13 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2016-12-09 21:46:11 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2016-12-09 21:46:11 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-12-09 21:46:11 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2016-12-09 21:46:10 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-12-09 21:46:10 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-12-09 21:46:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-12-09 21:46:09 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2016-12-09 21:46:09 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-12-09 21:46:08 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-12-09 21:46:07 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2016-12-09 21:46:07 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2016-12-09 21:46:06 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2016-12-09 21:46:06 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\sppwinob.dll
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-12-09 21:46:05 ----A---- C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\wpncore.dll
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-12-09 21:46:04 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2016-12-09 21:46:03 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-12-09 21:46:02 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2016-12-09 21:46:02 ----A---- C:\WINDOWS\system32\wsecedit.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-12-09 21:46:01 ----A---- C:\WINDOWS\system32\lpremove.exe
2016-12-09 21:46:01 ----A---- C:\WINDOWS\system32\DeviceReactivation.dll
2016-12-09 21:46:00 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2016-12-09 21:46:00 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-12-09 21:46:00 ----A---- C:\WINDOWS\system32\SRH.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2016-12-09 21:45:59 ----A---- C:\WINDOWS\system32\drivers\modem.sys
2016-12-09 21:45:57 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2016-12-09 21:45:57 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-12-09 21:45:57 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-12-09 21:45:56 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-12-09 21:45:56 ----A---- C:\WINDOWS\system32\wkssvc.dll
2016-12-09 21:45:56 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-12-09 21:45:54 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-12-09 21:45:54 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2016-12-09 21:45:53 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-12-09 21:45:53 ----A---- C:\WINDOWS\system32\BcastDVRHelper.dll
2016-12-09 21:45:52 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-12-09 21:45:51 ----A---- C:\WINDOWS\system32\lsm.dll
2016-12-09 21:45:51 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-12-09 21:45:49 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-12-09 21:45:48 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-12-09 21:45:48 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-12-09 21:45:46 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-12-09 21:45:45 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-12-09 21:45:42 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-12-09 21:45:40 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-12-09 21:45:39 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-12-09 21:45:36 ----A---- C:\WINDOWS\system32\mfaudiocnv.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\SYSWOW64\migisol.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\migisol.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\dialserver.dll
2016-12-09 21:45:35 ----A---- C:\WINDOWS\system32\CloudStorageWizard.exe
2016-12-09 21:45:34 ----A---- C:\WINDOWS\system32\ProvSysprep.dll
2016-12-09 21:45:34 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\sppnp.dll
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\ReAgentc.exe
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2016-12-09 21:45:33 ----A---- C:\WINDOWS\system32\aitstatic.exe
2016-12-09 21:45:32 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2016-12-09 21:45:32 ----A---- C:\WINDOWS\system32\RjvMDMConfig.dll
2016-12-09 21:45:31 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-12-09 21:45:31 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2016-12-09 21:45:31 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-12-09 21:45:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-12-09 21:45:19 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2016-12-09 21:45:17 ----A---- C:\WINDOWS\system32\mspaint.exe
2016-12-09 21:45:17 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-12-09 21:45:16 ----A---- C:\WINDOWS\system32\stobject.dll
2016-12-09 21:45:16 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-12-09 21:45:14 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-12-09 21:45:14 ----A---- C:\WINDOWS\system32\gameux.dll
2016-12-09 21:45:14 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-12-09 21:45:13 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-12-09 21:45:11 ----A---- C:\WINDOWS\explorer.exe
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-12-09 21:45:10 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2016-12-09 21:45:07 ----A---- C:\WINDOWS\system32\twinui.dll
2016-12-09 21:45:06 ----A---- C:\WINDOWS\system32\zipfldr.dll
2016-12-09 21:45:06 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-12-09 21:45:05 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2016-12-09 21:45:05 ----A---- C:\WINDOWS\system32\wininet.dll
2016-12-09 21:45:05 ----A---- C:\WINDOWS\system32\efswrt.dll
2016-12-09 21:45:04 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-12-09 21:45:04 ----A---- C:\WINDOWS\system32\mos.dll
2016-12-09 21:45:02 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-12-09 21:44:59 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2016-12-09 21:44:58 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2016-12-09 21:44:57 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-12-09 21:44:55 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-12-09 21:44:55 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-12-09 21:44:53 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2016-12-09 21:44:53 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2016-12-09 21:44:52 ----A---- C:\WINDOWS\system32\rasmans.dll
2016-12-09 21:44:52 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-12-09 21:44:52 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-12-09 21:44:51 ----A---- C:\WINDOWS\system32\MapRouter.dll
2016-12-09 21:44:51 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2016-12-09 21:44:50 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2016-12-09 21:44:50 ----A---- C:\WINDOWS\system32\setupugc.exe
2016-12-09 21:44:49 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\moshost.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-12-09 21:44:49 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\umpoext.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\sendmail.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-12-09 21:44:48 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-12-09 21:44:47 ----A---- C:\WINDOWS\SYSWOW64\wscinterop.dll
2016-12-09 21:44:47 ----A---- C:\WINDOWS\SYSWOW64\ReAgentc.exe
2016-12-09 21:44:47 ----A---- C:\WINDOWS\SYSWOW64\NetCfgNotifyObjectHost.exe
2016-12-09 21:44:47 ----A---- C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-12-09 21:44:47 ----A---- C:\WINDOWS\system32\CbtBackgroundManagerPolicy.dll
2016-12-07 00:19:20 ----D---- C:\ProgramData\tmp
2016-12-07 00:19:18 ----D---- C:\ProgramData\hps
2016-12-07 00:10:08 ----D---- C:\Program Files\Fotolab
======List of files/folders modified in the last 1 month======
2016-12-17 19:12:18 ----D---- C:\WINDOWS\Temp
2016-12-17 19:12:16 ----D---- C:\WINDOWS\System32
2016-12-17 19:12:16 ----D---- C:\WINDOWS\INF
2016-12-17 19:12:16 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-12-17 19:11:21 ----D---- C:\WINDOWS\system32\sru
2016-12-17 19:09:45 ----D---- C:\WINDOWS\system32\catroot2
2016-12-17 19:09:27 ----D---- C:\WINDOWS\Prefetch
2016-12-17 19:09:27 ----D---- C:\AdwCleaner
2016-12-17 18:51:28 ----D---- C:\WINDOWS\system32\SleepStudy
2016-12-17 18:02:28 ----RD---- C:\WINDOWS\Microsoft.NET
2016-12-17 18:02:13 ----RSD---- C:\WINDOWS\assembly
2016-12-17 17:56:36 ----D---- C:\WINDOWS\system32\config
2016-12-17 17:51:38 ----D---- C:\WINDOWS\system32\Tasks
2016-12-17 17:48:31 ----D---- C:\WINDOWS\AppReadiness
2016-12-17 17:48:05 ----D---- C:\WINDOWS\WinSxS
2016-12-17 17:47:25 ----D---- C:\WINDOWS\SysWOW64
2016-12-17 17:44:52 ----D---- C:\WINDOWS\system32\drivers
2016-12-17 17:43:36 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-12-17 17:43:34 ----D---- C:\WINDOWS\system32\en-US
2016-12-17 17:43:33 ----D---- C:\WINDOWS\ShellExperiences
2016-12-17 17:43:33 ----D---- C:\WINDOWS\AppPatch
2016-12-17 17:43:32 ----D---- C:\WINDOWS\system32\Boot
2016-12-17 17:43:30 ----D---- C:\WINDOWS\system32\DriverStore
2016-12-17 13:43:01 ----D---- C:\Windows
2016-12-17 13:35:22 ----RD---- C:\Program Files
2016-12-17 13:28:38 ----SHDC---- C:\WINDOWS\Installer
2016-12-17 13:25:44 ----RSD---- C:\WINDOWS\Fonts
2016-12-17 13:25:04 ----AD---- C:\Program Files (x86)\MSBuild
2016-12-17 13:24:29 ----RD---- C:\Program Files (x86)
2016-12-17 13:24:28 ----D---- C:\Program Files (x86)\Common Files
2016-12-17 13:24:01 ----SD---- C:\ProgramData\Microsoft
2016-12-17 13:22:15 ----AD---- C:\Program Files\Common Files\microsoft shared
2016-12-17 13:21:07 ----A---- C:\WINDOWS\win.ini
2016-12-17 13:20:22 ----HD---- C:\ProgramData
2016-12-16 23:36:37 ----D---- C:\WINDOWS\CbsTemp
2016-12-16 23:25:48 ----D---- C:\WINDOWS\system32\MRT
2016-12-16 23:20:56 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-12-16 22:47:14 ----HD---- C:\Program Files\WindowsApps
2016-12-16 22:41:27 ----D---- C:\WINDOWS\Tasks
2016-12-15 22:37:49 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-12-11 16:25:55 ----D---- C:\WINDOWS\system32\CatRoot
2016-12-10 08:49:04 ----D---- C:\WINDOWS\rescache
2016-12-10 01:07:11 ----D---- C:\WINDOWS\SYSWOW64\oobe
2016-12-10 01:07:11 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\wbem
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\Sysprep
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\oobe
2016-12-10 01:07:09 ----D---- C:\WINDOWS\system32\Dism
2016-12-10 01:07:07 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-12-10 01:07:07 ----D---- C:\WINDOWS\servicing
2016-12-10 01:07:07 ----D---- C:\WINDOWS\bcastdvr
2016-12-10 01:07:07 ----D---- C:\Program Files\Internet Explorer
2016-12-10 01:07:07 ----D---- C:\Program Files (x86)\Internet Explorer
2016-12-09 12:41:55 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2016-11-10 84616]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2016-11-10 262792]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2016-11-10 197248]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2016-11-10 208520]
R1 EpfwLWF;@oem20.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2016-11-10 61568]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-07-16 88576]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2016-07-16 8192]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2016-11-10 153216]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2016-07-16 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2016-07-16 78336]
R3 AMPPAL;@oem13.inf,%AMPPAL.SVCDESC%;Virtuální adaptér Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-07-29 164832]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-09-29 114176]
R3 BthLEEnum;@BthLEEnum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-09-15 249856]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-10-05 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-09-29 84992]
R3 ibtusb;@oem35.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\system32\DRIVERS\ibtusb.sys [2016-07-12 349960]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-09-10 6415288]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-08-23 4607744]
R3 MarvinBus;@oem26.inf,%MarvinBus.SVCDESC%;Pinnacle Marvin Bus 64; C:\WINDOWS\System32\drivers\MarvinBus64.sys [2005-09-23 261120]
R3 MEIx64;@oem19.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NETwNb64;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\WINDOWS\System32\drivers\Netwbw02.sys [2016-07-16 3485696]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvacwu.inf_amd64_9934c34dc6ca0c4b\nvlddmkm.sys [2016-09-12 13754936]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-05-02 28216]
R3 nvvad_WaveExtensible;@oem3.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2016-04-14 56384]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-07-16 183808]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-07-16 589824]
R3 RTSPER;@oem8.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2015-08-29 761600]
R3 SynRMIHID;@oem16.inf,%SynRMIHID.SVCDESC%;Synaptics HID Service; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [2015-09-08 56520]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2016-06-28 15488]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2016-07-16 105824]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2016-07-16 101216]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2016-07-16 58720]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2016-07-16 61792]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2016-07-16 32096]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 AMPPALP;@oem17.inf,%AMPPALP_Desc%;Protokol Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\system32\DRIVERS\amppal.sys [2013-07-29 164832]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2016-07-16 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-11-11 967168]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2016-07-16 38912]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-09-10 118272]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2016-07-16 20480]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2016-07-16 50016]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-09-29 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2016-07-16 81408]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2016-07-16 176384]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2016-07-16 526176]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 IntcDAud;@oem11.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-08 473864]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2016-07-16 842584]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2016-07-16 108896]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2016-07-16 928608]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 Ser2pl;@oem52.inf,%Serial.SVCDESC%;Prolific Serial port WDF driver; C:\WINDOWS\system32\DRIVERS\ser2pl64.sys [2016-10-06 199960]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2016-07-16 95744]
S3 UcmTcpciCx0101;UCM-TCPCI KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmTcpciCx.sys [2016-07-16 108544]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2016-07-16 50688]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2016-07-16 45568]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2016-07-16 263008]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2016-07-16 96608]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2016-07-16 137056]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-10-21 82128]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 CDPUserSvc_475b6;CDPUserSvc_475b6; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2016-11-10 2771848]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-05-02 1165368]
R2 GoProDeviceDetectionService;GoPro Device Detection Service; C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe [2016-10-11 37808]
R2 ibtsiva;@oem35.inf,%SERVICE_NAME%;Intel Bluetooth Service; C:\WINDOWS\system32\ibtsiva []
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-09-10 361384]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-05-02 1881144]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-05-02 2522680]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2016-08-01 1365048]
R2 OneSyncSvc_475b6;Hostitel synchronizace_475b6; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 PSI_SVC_2_x64;Corel License Validation Service V2 x64, Powered by arvato; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2014-04-30 337776]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2016-05-02 3634232]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 TimeBrokerSvc;@%windir%\system32\TimeBrokerServer.dll,-1001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-26 154440]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-09-10 291768]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2016-07-16 93184]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; D:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [2016-04-13 342456]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-26 154440]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MessagingService_475b6;Služba zasílání zpráv_475b6; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 PimIndexMaintenanceSvc_475b6;Data kontaktů_475b6; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2016-09-29 1312768]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2016-07-16 287744]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Velice pomalý ntb
Pro desítky a další mazání budu ale potřebovat log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Velice pomalý ntb
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-12-2016
Ran by J (administrator) on J-PC (18-12-2016 14:23:29)
Running from C:\Users\J\Desktop
Loaded Profiles: J (Available Profiles: J)
Platform: Windows 10 Home Version 1607 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(arvato digital services llc) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.16112.10221.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(forum.viry.cz) C:\Users\J\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16405744 2015-08-23] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776 2016-05-02] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Corel Update Helper] => c:\Program Files\Corel\Corel VideoStudio X9\pua.exe [2012104 2016-03-01] (Corel Corporation)
HKLM\...\Run: [GoPro Tray App] => C:\Program Files\GoPro\GoPro Desktop App\GoProDesktopSystemTray.exe [866224 2016-10-11] ()
HKLM\...\Run: [AutoKMS] => C:\WINDOWS\AutoKMS.exe [615936 2016-12-17] ()
HKLM-x32\...\Run: [NeroFilterCheck] => C:\WINDOWS\SysWOW64\NeroCheck.exe [155648 2001-07-09] (Ahead Software Gmbh)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.5 192.168.2.80
Tcpip\..\Interfaces\{3fbd1d4f-420c-47d3-babc-183f1ffced0e}: [DhcpNameServer] 192.168.1.5 192.168.2.80
Tcpip\..\Interfaces\{817c6a71-484c-4f81-8950-bfa559c67427}: [DhcpNameServer] 192.168.1.5
Internet Explorer:
==================
HKU\S-1-5-21-2098665849-2437875990-499209516-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR DefaultSearchURL: Default -> hxxp://90.179.223.50:5555/favicon.ico
CHR Profile: C:\Users\J\AppData\Local\Google\Chrome\User Data\Default [2016-12-11]
CHR Extension: (Prezentace Google) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-05-21]
CHR Extension: (Dokumenty Google) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-05-21]
CHR Extension: (Disk Google) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-05-21]
CHR Extension: (YouTube) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-05-21]
CHR Extension: (Tabulky Google) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-05-21]
CHR Extension: (Dokumenty Google offline) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-21]
CHR Extension: (Sunny WebBox 250) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkekciifgefgmbffkcfkkbnnihpihhec [2016-06-23]
CHR Extension: (Sunny WebBox 32) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgpfnlgmbpjfllmpjbokahbngleagjgb [2016-06-23]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-21]
CHR Extension: (Gmail) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-05-21]
CHR Extension: (Chrome Media Router) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-26]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2771848 2016-11-10] (ESET)
S3 Futuremark SystemInfo Service; D:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2016-04-13] (Futuremark)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1165368 2016-05-02] (NVIDIA Corporation)
R2 GoProDeviceDetectionService; C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe [37808 2016-10-11] ()
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [361384 2015-09-10] (Intel Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1881144 2016-05-02] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3634232 2016-05-02] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-05-02] (NVIDIA Corporation)
R2 PSI_SVC_2_x64; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [337776 2014-04-30] (arvato digital services llc)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [262792 2016-11-10] (ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15488 2016-06-28] (ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [197248 2016-11-10] (ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [153216 2016-11-10] (ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [208520 2016-11-10] (ESET)
R1 EpfwLWF; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [61568 2016-11-10] (ESET)
R0 epfwwfp; C:\WINDOWS\System32\DRIVERS\epfwwfp.sys [84616 2016-11-10] (ESET)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [349960 2016-07-12] (Intel Corporation)
R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [129312 2014-09-30] (Intel Corporation)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3485696 2016-07-16] (Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvacwu.inf_amd64_9934c34dc6ca0c4b\nvlddmkm.sys [13754936 2016-09-12] (NVIDIA Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-05-02] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [589824 2016-07-16] (Realtek )
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [761600 2015-08-29] (Realsil Semiconductor Corporation)
R3 SynRMIHID; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [56520 2015-09-08] (Synaptics Incorporated)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
U3 idsvc; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-12-18 14:23 - 2016-12-18 14:24 - 00012198 _____ C:\Users\J\Desktop\FRST.txt
2016-12-18 14:23 - 2016-12-18 14:23 - 00000000 ____D C:\FRST
2016-12-18 14:21 - 2016-12-18 14:23 - 02420224 _____ (Farbar) C:\Users\J\Desktop\FRST64.exe
2016-12-18 14:20 - 2016-12-18 14:22 - 00112640 _____ (forum.viry.cz) C:\Users\J\Desktop\FRSTLauncher.exe
2016-12-17 19:06 - 2016-12-17 19:06 - 03977168 _____ C:\Users\J\Desktop\adwcleaner_6.041.exe
2016-12-17 17:51 - 2016-12-17 17:51 - 00003260 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
2016-12-17 17:47 - 2016-12-12 00:56 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-12-17 17:47 - 2016-12-12 00:56 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-12-17 13:43 - 2016-12-17 13:43 - 00615936 _____ C:\WINDOWS\AutoKMS.exe
2016-12-17 13:43 - 2016-12-17 13:43 - 00000161 _____ C:\WINDOWS\AutoKMS.ini
2016-12-17 13:35 - 2016-12-17 19:14 - 00000000 ____D C:\Program Files\trend micro
2016-12-17 13:35 - 2016-12-17 13:35 - 00000000 ____D C:\rsit
2016-12-17 13:34 - 2016-12-17 13:35 - 01222144 _____ C:\Users\J\Desktop\RSITx64.exe
2016-12-17 13:26 - 2016-12-17 13:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2016-12-17 13:26 - 2016-12-17 13:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-12-17 13:24 - 2016-12-17 13:24 - 00000000 ____D C:\WINDOWS\PCHEALTH
2016-12-17 13:24 - 2016-12-17 13:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services
2016-12-17 13:24 - 2016-12-17 13:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Sync Framework
2016-12-17 13:24 - 2016-12-17 13:24 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2016-12-17 13:22 - 2016-12-17 13:22 - 00000000 ____D C:\WINDOWS\System32\Tasks\OfficeSoftwareProtectionPlatform
2016-12-17 13:21 - 2016-12-17 13:21 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2016-12-17 13:20 - 2016-12-17 13:25 - 00000000 ____D C:\WINDOWS\SHELLNEW
2016-12-17 13:20 - 2016-12-17 13:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-12-17 13:20 - 2016-12-17 13:20 - 00000000 ____D C:\Users\J\AppData\Local\Microsoft Help
2016-12-17 13:20 - 2016-12-17 13:20 - 00000000 ____D C:\Program Files\Microsoft Office
2016-12-17 13:20 - 2016-12-17 13:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2016-12-17 13:19 - 2016-12-17 13:19 - 00000000 __RHD C:\MSOCache
2016-12-17 13:13 - 2016-12-17 13:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2016-12-17 13:13 - 2016-12-17 13:13 - 00000000 ____D C:\Program Files\7-Zip
2016-12-14 00:20 - 2016-12-09 11:18 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2016-12-14 00:20 - 2016-12-09 11:18 - 00989024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2016-12-14 00:20 - 2016-12-09 11:18 - 00947552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi
2016-12-14 00:20 - 2016-12-09 11:18 - 00811872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe
2016-12-14 00:20 - 2016-12-09 11:15 - 08168000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-12-14 00:20 - 2016-12-09 11:14 - 01274712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-12-14 00:20 - 2016-12-09 11:01 - 02323728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-12-14 00:20 - 2016-12-09 10:57 - 01852720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-12-14 00:20 - 2016-12-09 10:41 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2016-12-14 00:20 - 2016-12-09 10:38 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-12-14 00:20 - 2016-12-09 10:36 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-12-14 00:20 - 2016-12-09 10:36 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-12-14 00:20 - 2016-12-09 10:33 - 01589760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-12-14 00:20 - 2016-12-09 10:31 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-12-14 00:20 - 2016-12-09 10:30 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-12-14 00:20 - 2016-12-09 10:28 - 03306496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-12-14 00:20 - 2016-12-09 10:22 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-12-14 00:20 - 2016-12-09 10:18 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-12-14 00:20 - 2016-12-09 10:16 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-12-14 00:20 - 2016-12-09 10:15 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-12-14 00:20 - 2016-12-09 10:15 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-12-14 00:20 - 2016-12-09 10:15 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2016-12-14 00:19 - 2016-12-09 11:32 - 07816032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-12-14 00:19 - 2016-12-09 11:29 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-12-14 00:19 - 2016-12-09 11:19 - 01293152 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-12-14 00:19 - 2016-12-09 11:15 - 01988560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-12-14 00:19 - 2016-12-09 11:10 - 01461200 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-12-14 00:19 - 2016-12-09 11:01 - 01503544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-12-14 00:19 - 2016-12-09 10:52 - 01435896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-12-14 00:19 - 2016-12-09 10:51 - 00117240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2016-12-14 00:19 - 2016-12-09 10:45 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-12-14 00:19 - 2016-12-09 10:45 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2016-12-14 00:19 - 2016-12-09 10:40 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2016-12-14 00:19 - 2016-12-09 10:37 - 00411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-12-14 00:19 - 2016-12-09 10:36 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-12-14 00:19 - 2016-12-09 10:36 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2016-12-14 00:19 - 2016-12-09 10:33 - 03777536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-12-14 00:19 - 2016-12-09 10:29 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-12-14 00:19 - 2016-12-09 10:27 - 13084160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-12-14 00:19 - 2016-12-09 10:27 - 05114368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-12-14 00:19 - 2016-12-09 10:27 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-14 00:19 - 2016-12-09 10:26 - 01692672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-12-14 00:19 - 2016-12-09 10:24 - 02275840 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-12-14 00:19 - 2016-12-09 10:23 - 12177920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-12-14 00:19 - 2016-12-09 10:22 - 02820096 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-12-14 00:19 - 2016-12-09 10:21 - 03616768 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-12-14 00:19 - 2016-12-09 10:21 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-12-14 00:19 - 2016-12-09 10:19 - 01121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-12-14 00:19 - 2016-12-09 10:19 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-12-14 00:19 - 2016-12-09 10:19 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-12-14 00:19 - 2016-12-09 10:19 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-12-14 00:19 - 2016-12-09 10:19 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2016-12-14 00:19 - 2016-12-09 10:16 - 02998272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2016-12-14 00:19 - 2016-11-02 11:25 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-12-14 00:17 - 2016-12-09 11:28 - 00764392 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-12-14 00:17 - 2016-12-09 11:14 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2016-12-14 00:17 - 2016-12-09 11:09 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2016-12-14 00:17 - 2016-12-09 10:31 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-12-14 00:16 - 2016-12-09 11:42 - 01637728 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-12-14 00:16 - 2016-12-09 11:42 - 00137568 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-12-14 00:16 - 2016-12-09 11:34 - 01051112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-12-14 00:16 - 2016-12-09 11:34 - 00894096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-12-14 00:16 - 2016-12-09 11:33 - 01354320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-12-14 00:16 - 2016-12-09 11:33 - 01173496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-12-14 00:16 - 2016-12-09 11:30 - 00377184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2016-12-14 00:16 - 2016-12-09 11:20 - 00658784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-12-14 00:16 - 2016-12-09 11:20 - 00402272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-12-14 00:16 - 2016-12-09 11:19 - 00168424 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2016-12-14 00:16 - 2016-12-09 11:18 - 02913144 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-12-14 00:16 - 2016-12-09 11:18 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-12-14 00:16 - 2016-12-09 11:18 - 00624048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-12-14 00:16 - 2016-12-09 11:10 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2016-12-14 00:16 - 2016-12-09 11:01 - 00861024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-12-14 00:16 - 2016-12-09 11:00 - 00106896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2016-12-14 00:16 - 2016-12-09 10:59 - 02166752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-12-14 00:16 - 2016-12-09 10:59 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-12-14 00:16 - 2016-12-09 10:57 - 06668040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-14 00:16 - 2016-12-09 10:52 - 01415752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2016-12-14 00:16 - 2016-12-09 10:41 - 00380928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2016-12-14 00:16 - 2016-12-09 10:37 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
2016-12-14 00:16 - 2016-12-09 10:37 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-12-14 00:16 - 2016-12-09 10:34 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2016-12-14 00:16 - 2016-12-09 10:34 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2016-12-14 00:16 - 2016-12-09 10:32 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2016-12-14 00:16 - 2016-12-09 10:30 - 23677952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-12-14 00:16 - 2016-12-09 10:28 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-12-14 00:16 - 2016-12-09 10:26 - 08129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-12-14 00:16 - 2016-12-09 10:22 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-12-14 00:16 - 2016-12-09 10:21 - 04746752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-12-14 00:16 - 2016-12-09 10:21 - 01512960 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-12-14 00:16 - 2016-12-09 10:20 - 06044160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-12-14 00:16 - 2016-12-09 10:20 - 03198464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-12-14 00:16 - 2016-12-09 10:20 - 00730624 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-12-14 00:16 - 2016-12-09 10:20 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-12-14 00:16 - 2016-12-09 10:20 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-12-14 00:16 - 2016-12-09 10:18 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-12-14 00:16 - 2016-12-09 10:18 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-12-14 00:16 - 2016-12-09 10:17 - 00886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2016-12-14 00:16 - 2016-12-09 10:17 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2016-12-14 00:16 - 2016-12-09 10:16 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-12-14 00:16 - 2016-12-09 09:54 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-12-14 00:16 - 2016-11-02 11:28 - 00807424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-14 00:16 - 2016-09-15 17:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-12-14 00:15 - 2016-12-09 11:27 - 00172528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-12-14 00:15 - 2016-12-09 11:20 - 02677544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-12-14 00:15 - 2016-12-09 11:20 - 02189664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-12-14 00:15 - 2016-12-09 11:20 - 01738560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-12-14 00:15 - 2016-12-09 11:11 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-12-14 00:15 - 2016-12-09 10:56 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-12-14 00:15 - 2016-12-09 10:47 - 22563328 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-12-14 00:15 - 2016-12-09 10:42 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-12-14 00:15 - 2016-12-09 10:36 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2016-12-14 00:15 - 2016-12-09 10:31 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll
2016-12-14 00:15 - 2016-12-09 10:30 - 19413504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-12-14 00:15 - 2016-12-09 10:27 - 19417088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-12-14 00:15 - 2016-12-09 10:25 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2016-12-11 23:45 - 2016-12-11 23:46 - 00000185 _____ C:\Users\J\Desktop\janbenda Seznam alb – rajce.net.url
2016-12-11 14:08 - 2016-12-11 14:08 - 00000220 _____ C:\Users\J\Desktop\ STUDENT AGENCY STUDENT AGENCY letenky.url
2016-12-09 21:47 - 2016-11-11 11:22 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-12-09 21:47 - 2016-11-11 11:14 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-12-09 21:47 - 2016-11-11 11:13 - 01886344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-12-09 21:47 - 2016-11-11 11:01 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-12-09 21:47 - 2016-11-11 10:57 - 22224480 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-12-09 21:47 - 2016-11-11 10:56 - 00534096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-12-09 21:47 - 2016-11-11 10:29 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-12-09 21:47 - 2016-11-11 10:24 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-12-09 21:47 - 2016-11-11 10:22 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-12-09 21:47 - 2016-11-11 10:21 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-12-09 21:47 - 2016-11-11 10:20 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-12-09 21:47 - 2016-11-11 10:20 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-12-09 21:47 - 2016-11-11 10:18 - 17188352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-12-09 21:47 - 2016-11-11 10:18 - 00967168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-12-09 21:47 - 2016-11-11 10:14 - 00615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2016-12-09 21:47 - 2016-11-11 10:11 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-12-09 21:47 - 2016-11-11 10:11 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-12-09 21:47 - 2016-11-11 10:08 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-12-09 21:47 - 2016-11-11 10:07 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2016-12-09 21:47 - 2016-11-11 10:06 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-12-09 21:47 - 2016-11-11 10:04 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-12-09 21:47 - 2016-11-11 10:04 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-12-09 21:47 - 2016-11-11 10:03 - 00842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-12-09 21:47 - 2016-11-11 08:04 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2016-12-09 21:46 - 2016-11-11 11:15 - 00198856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2016-12-09 21:46 - 2016-11-11 11:15 - 00101216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll
2016-12-09 21:46 - 2016-11-11 11:14 - 02482280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2016-12-09 21:46 - 2016-11-11 11:14 - 02186896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-12-09 21:46 - 2016-11-11 11:13 - 00352096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-12-09 21:46 - 2016-11-11 11:12 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-12-09 21:46 - 2016-11-11 11:03 - 01069720 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2016-12-09 21:46 - 2016-11-11 11:03 - 00266544 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-12-09 21:46 - 2016-11-11 11:02 - 02828376 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-12-09 21:46 - 2016-11-11 11:02 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-12-09 21:46 - 2016-11-11 11:01 - 00637400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-12-09 21:46 - 2016-11-11 11:00 - 00219488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-12-09 21:46 - 2016-11-11 10:56 - 00424616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2016-12-09 21:46 - 2016-11-11 10:56 - 00418952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-12-09 21:46 - 2016-11-11 10:56 - 00163752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTWorkQ.dll
2016-12-09 21:46 - 2016-11-11 10:55 - 01600624 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-12-09 21:46 - 2016-11-11 10:55 - 00882680 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-12-09 21:46 - 2016-11-11 10:55 - 00743224 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-12-09 21:46 - 2016-11-11 10:54 - 01418312 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-12-09 21:46 - 2016-11-11 10:51 - 00454592 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2016-12-09 21:46 - 2016-11-11 10:31 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-12-09 21:46 - 2016-11-11 10:27 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpremove.exe
2016-12-09 21:46 - 2016-11-11 10:26 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-12-09 21:46 - 2016-11-11 10:26 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-12-09 21:46 - 2016-11-11 10:26 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReportingCSP.dll
2016-12-09 21:46 - 2016-11-11 10:25 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-12-09 21:46 - 2016-11-11 10:25 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2016-12-09 21:46 - 2016-11-11 10:25 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-12-09 21:46 - 2016-11-11 10:24 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-12-09 21:46 - 2016-11-11 10:24 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-12-09 21:46 - 2016-11-11 10:24 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-12-09 21:46 - 2016-11-11 10:24 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-09 21:46 - 2016-11-11 10:24 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2016-12-09 21:46 - 2016-11-11 10:23 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-12-09 21:46 - 2016-11-11 10:23 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-12-09 21:46 - 2016-11-11 10:23 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\EAMProgressHandler.dll
2016-12-09 21:46 - 2016-11-11 10:22 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\EDPCleanup.exe
2016-12-09 21:46 - 2016-11-11 10:21 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-12-09 21:46 - 2016-11-11 10:21 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-12-09 21:46 - 2016-11-11 10:20 - 00641024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-12-09 21:46 - 2016-11-11 10:20 - 00574464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-12-09 21:46 - 2016-11-11 10:20 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-12-09 21:46 - 2016-11-11 10:20 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2016-12-09 21:46 - 2016-11-11 10:20 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-12-09 21:46 - 2016-11-11 10:19 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2016-12-09 21:46 - 2016-11-11 10:19 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-12-09 21:46 - 2016-11-11 10:19 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2016-12-09 21:46 - 2016-11-11 10:19 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-09 21:46 - 2016-11-11 10:19 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-12-09 21:46 - 2016-11-11 10:18 - 02084352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-12-09 21:46 - 2016-11-11 10:18 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2016-12-09 21:46 - 2016-11-11 10:17 - 01220096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2016-12-09 21:46 - 2016-11-11 10:17 - 01002496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-12-09 21:46 - 2016-11-11 10:16 - 01477632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2016-12-09 21:46 - 2016-11-11 10:16 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-12-09 21:46 - 2016-11-11 10:16 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-12-09 21:46 - 2016-11-11 10:16 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-12-09 21:46 - 2016-11-11 10:15 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
2016-12-09 21:46 - 2016-11-11 10:14 - 02104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-12-09 21:46 - 2016-11-11 10:13 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-12-09 21:46 - 2016-11-11 10:13 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcuiu.dll
2016-12-09 21:46 - 2016-11-11 10:09 - 01366016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-12-09 21:46 - 2016-11-11 10:07 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-12-09 21:46 - 2016-11-11 10:07 - 02009600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-12-09 21:46 - 2016-11-11 10:07 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2016-12-09 21:46 - 2016-11-11 10:06 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-12-09 21:46 - 2016-11-11 10:05 - 04136448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-12-09 21:46 - 2016-11-11 10:05 - 02852864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-09 21:46 - 2016-11-11 10:05 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-12-09 21:46 - 2016-11-11 10:04 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-12-09 21:46 - 2016-11-11 10:04 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-12-09 21:46 - 2016-11-11 10:04 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-12-09 21:46 - 2016-11-11 10:03 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-12-09 21:46 - 2016-11-11 10:03 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-12-09 21:46 - 2016-11-11 10:02 - 03542016 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-12-09 21:46 - 2016-11-11 10:02 - 01726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-12-09 21:46 - 2016-11-11 09:39 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-12-09 21:46 - 2016-11-11 08:59 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-12-09 21:46 - 2016-11-11 08:49 - 00869848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2016-12-09 21:46 - 2016-11-11 08:49 - 00263472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2016-12-09 21:46 - 2016-11-11 08:49 - 00248480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-12-09 21:46 - 2016-11-11 08:48 - 02277248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-12-09 21:46 - 2016-11-11 08:47 - 00527880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-12-09 21:46 - 2016-11-11 08:42 - 03892864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-12-09 21:46 - 2016-11-11 08:42 - 01123912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-12-09 21:46 - 2016-11-11 08:42 - 00952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-12-09 21:46 - 2016-11-11 08:42 - 00382784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2016-12-09 21:46 - 2016-11-11 08:42 - 00152416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTWorkQ.dll
2016-12-09 21:46 - 2016-11-11 08:42 - 00091936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfaudiocnv.dll
2016-12-09 21:46 - 2016-11-11 08:41 - 04311736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-12-09 21:46 - 2016-11-11 08:41 - 00157536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudStorageWizard.exe
2016-12-09 21:46 - 2016-11-11 08:38 - 01263856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-12-09 21:46 - 2016-11-11 08:28 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-12-09 21:46 - 2016-11-11 08:27 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-12-09 21:46 - 2016-11-11 08:25 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-12-09 21:46 - 2016-11-11 08:25 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-12-09 21:46 - 2016-11-11 08:24 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll
2016-12-09 21:46 - 2016-11-11 08:24 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-12-09 21:46 - 2016-11-11 08:24 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-09 21:46 - 2016-11-11 08:23 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-12-09 21:46 - 2016-11-11 08:23 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2016-12-09 21:46 - 2016-11-11 08:22 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-12-09 21:46 - 2016-11-11 08:21 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-12-09 21:46 - 2016-11-11 08:19 - 13868544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-12-09 21:46 - 2016-11-11 08:19 - 01755136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll
2016-12-09 21:46 - 2016-11-11 08:19 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2016-12-09 21:46 - 2016-11-11 08:19 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2016-12-09 21:46 - 2016-11-11 08:19 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2016-12-09 21:46 - 2016-11-11 08:19 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2016-12-09 21:46 - 2016-11-11 08:18 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2016-12-09 21:46 - 2016-11-11 08:18 - 01336320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2016-12-09 21:46 - 2016-11-11 08:18 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2016-12-09 21:46 - 2016-11-11 08:17 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2016-12-09 21:46 - 2016-11-11 08:17 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2016-12-09 21:46 - 2016-11-11 08:15 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-12-09 21:46 - 2016-11-11 08:15 - 01357824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-12-09 21:46 - 2016-11-11 08:15 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-12-09 21:46 - 2016-11-11 08:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2016-12-09 21:46 - 2016-11-11 08:14 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2016-12-09 21:46 - 2016-11-11 08:10 - 06109184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-12-09 21:46 - 2016-11-11 08:10 - 00746496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcprx.dll
2016-12-09 21:46 - 2016-11-11 08:09 - 05380608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-12-09 21:46 - 2016-11-11 08:09 - 00545280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-12-09 21:46 - 2016-11-11 08:06 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2016-12-09 21:46 - 2016-11-11 08:06 - 02362880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2016-12-09 21:46 - 2016-11-11 08:06 - 02109952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2016-12-09 21:46 - 2016-11-11 08:06 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2016-12-09 21:46 - 2016-11-11 08:06 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-12-09 21:46 - 2016-11-11 08:06 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxclu.dll
2016-12-09 21:46 - 2016-11-11 08:05 - 04423680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-12-09 21:46 - 2016-11-11 08:05 - 03370496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-12-09 21:46 - 2016-11-11 08:04 - 01992704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-12-09 21:46 - 2016-11-11 08:04 - 01595392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-12-09 21:46 - 2016-11-11 08:04 - 00912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2016-12-09 21:46 - 2016-11-11 08:04 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-12-09 21:46 - 2016-11-11 08:04 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2016-12-09 21:46 - 2016-11-11 08:03 - 02484736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2016-12-09 21:46 - 2016-11-11 08:03 - 02256384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-12-09 21:46 - 2016-11-11 08:03 - 01576448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-12-09 21:46 - 2016-11-11 08:03 - 01556480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-12-09 21:46 - 2016-11-11 08:03 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-12-09 21:46 - 2016-11-11 08:03 - 00565248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-12-09 21:46 - 2016-11-11 08:02 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-12-09 21:45 - 2016-11-11 11:13 - 02213760 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-12-09 21:45 - 2016-11-11 11:08 - 00142176 _____ (Microsoft Corporation) C:\WINDOWS\system32\migisol.dll
2016-12-09 21:45 - 2016-11-11 11:03 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-12-09 21:45 - 2016-11-11 11:01 - 07219672 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-12-09 21:45 - 2016-11-11 11:00 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-12-09 21:45 - 2016-11-11 11:00 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-12-09 21:45 - 2016-11-11 10:59 - 00433504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-12-09 21:45 - 2016-11-11 10:57 - 04130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-12-09 21:45 - 2016-11-11 10:57 - 01473048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-12-09 21:45 - 2016-11-11 10:56 - 04673304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-12-09 21:45 - 2016-11-11 10:56 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-12-09 21:45 - 2016-11-11 10:56 - 00187520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudStorageWizard.exe
2016-12-09 21:45 - 2016-11-11 10:56 - 00126568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfaudiocnv.dll
2016-12-09 21:45 - 2016-11-11 10:28 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-12-09 21:45 - 2016-11-11 10:26 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\modem.sys
2016-12-09 21:45 - 2016-11-11 10:26 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2016-12-09 21:45 - 2016-11-11 10:25 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRHelper.dll
2016-12-09 21:45 - 2016-11-11 10:25 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-12-09 21:45 - 2016-11-11 10:24 - 00170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-12-09 21:45 - 2016-11-11 10:23 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-12-09 21:45 - 2016-11-11 10:21 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-12-09 21:45 - 2016-11-11 10:20 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-12-09 21:45 - 2016-11-11 10:20 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-12-09 21:45 - 2016-11-11 10:19 - 09131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-12-09 21:45 - 2016-11-11 10:19 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-12-09 21:45 - 2016-11-11 10:19 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-12-09 21:45 - 2016-11-11 10:19 - 00388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-12-09 21:45 - 2016-11-11 10:19 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2016-12-09 21:45 - 2016-11-11 10:17 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll
2016-12-09 21:45 - 2016-11-11 10:16 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-12-09 21:45 - 2016-11-11 10:16 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll
2016-12-09 21:45 - 2016-11-11 10:15 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-12-09 21:45 - 2016-11-11 10:15 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-12-09 21:45 - 2016-11-11 10:14 - 07654400 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-12-09 21:45 - 2016-11-11 10:14 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-12-09 21:45 - 2016-11-11 10:14 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppnp.dll
2016-12-09 21:45 - 2016-11-11 10:12 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll
2016-12-09 21:45 - 2016-11-11 10:11 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-12-09 21:45 - 2016-11-11 10:09 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2016-12-09 21:45 - 2016-11-11 10:07 - 01691136 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-12-09 21:45 - 2016-11-11 10:05 - 01779712 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-12-09 21:45 - 2016-11-11 10:04 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-12-09 21:45 - 2016-11-11 10:04 - 02611200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-12-09 21:45 - 2016-11-11 10:04 - 02317312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-12-09 21:45 - 2016-11-11 10:04 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-12-09 21:45 - 2016-11-11 10:04 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2016-12-09 21:45 - 2016-11-11 10:04 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2016-12-09 21:45 - 2016-11-11 10:03 - 04708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-12-09 21:45 - 2016-11-11 10:03 - 02669056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-12-09 21:45 - 2016-11-11 10:03 - 02287616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-12-09 21:45 - 2016-11-11 10:03 - 00905216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-12-09 21:45 - 2016-11-11 10:03 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2016-12-09 21:45 - 2016-11-11 10:02 - 00936448 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-12-09 21:45 - 2016-11-11 09:00 - 01706488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-12-09 21:45 - 2016-11-11 08:54 - 00122208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\migisol.dll
2016-12-09 21:45 - 2016-11-11 08:47 - 05722832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-12-09 21:45 - 2016-11-11 08:47 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-12-09 21:45 - 2016-11-11 08:42 - 00374448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2016-12-09 21:45 - 2016-11-11 08:24 - 00519168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2016-12-09 21:45 - 2016-11-11 08:22 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll
2016-12-09 21:45 - 2016-11-11 08:21 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-12-09 21:45 - 2016-11-11 08:21 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-09 21:45 - 2016-11-11 08:20 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-12-09 21:45 - 2016-11-11 08:20 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-12-09 21:45 - 2016-11-11 08:20 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
2016-12-09 21:45 - 2016-11-11 08:18 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2016-12-09 21:45 - 2016-11-11 08:15 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-12-09 21:45 - 2016-11-11 08:13 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-12-09 21:45 - 2016-11-11 08:12 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcuiu.dll
2016-12-09 21:45 - 2016-11-11 08:08 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xolehlp.dll
2016-12-09 21:44 - 2016-11-11 10:28 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CbtBackgroundManagerPolicy.dll
2016-12-09 21:44 - 2016-11-11 10:27 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-12-09 21:44 - 2016-11-11 10:25 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-12-09 21:44 - 2016-11-11 10:25 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-12-09 21:44 - 2016-11-11 10:24 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2016-12-09 21:44 - 2016-11-11 10:22 - 00489472 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-12-09 21:44 - 2016-11-11 10:22 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-12-09 21:44 - 2016-11-11 10:21 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2016-12-09 21:44 - 2016-11-11 10:21 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-12-09 21:44 - 2016-11-11 10:20 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2016-12-09 21:44 - 2016-11-11 10:20 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-12-09 21:44 - 2016-11-11 10:20 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe
2016-12-09 21:44 - 2016-11-11 10:13 - 07812096 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-12-09 21:44 - 2016-11-11 10:11 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpoext.dll
2016-12-09 21:44 - 2016-11-11 10:07 - 03441152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2016-12-09 21:44 - 2016-11-11 10:07 - 02953216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2016-12-09 21:44 - 2016-11-11 10:07 - 01060864 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-12-09 21:44 - 2016-11-11 10:06 - 03400192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2016-12-09 21:44 - 2016-11-11 10:05 - 01031680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-12-09 21:44 - 2016-11-11 10:03 - 00632320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-12-09 21:44 - 2016-11-11 09:01 - 02206496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2016-12-09 21:44 - 2016-11-11 09:01 - 01969912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll
2016-12-09 21:44 - 2016-11-11 09:01 - 00167848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2016-12-09 21:44 - 2016-11-11 08:42 - 20969928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-12-09 21:44 - 2016-11-11 08:27 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetCfgNotifyObjectHost.exe
2016-12-09 21:44 - 2016-11-11 08:26 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgentc.exe
2016-12-09 21:44 - 2016-11-11 08:19 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-12-09 21:44 - 2016-11-11 08:19 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2016-12-09 21:44 - 2016-11-11 08:18 - 01196544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2016-12-09 21:44 - 2016-11-11 08:18 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll
2016-12-09 21:44 - 2016-11-11 08:16 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-09 21:44 - 2016-11-11 08:03 - 00772608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2016-12-07 00:19 - 2016-12-07 23:30 - 00000000 ____D C:\ProgramData\tmp
2016-12-07 00:19 - 2016-12-07 00:19 - 00000000 ____D C:\ProgramData\hps
2016-12-07 00:17 - 2016-12-07 00:17 - 00001080 _____ C:\Users\Public\Desktop\CEWE FOTOIMPORTER.lnk
2016-12-07 00:17 - 2016-12-07 00:17 - 00001075 _____ C:\Users\Public\Desktop\Fotolab Fotosvet.lnk
2016-12-07 00:17 - 2016-12-07 00:17 - 00001070 _____ C:\Users\Public\Desktop\CEWE prezentace.lnk
2016-12-07 00:17 - 2016-12-07 00:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fotolab Fotosvet
2016-12-07 00:10 - 2016-12-07 00:10 - 00000000 ____D C:\Program Files\Fotolab
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-12-18 14:16 - 2016-09-29 07:07 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-12-18 11:48 - 2016-05-28 22:41 - 00000000 ____D C:\Users\J\AppData\Local\CrashDumps
2016-12-18 10:41 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-12-18 00:40 - 2016-05-28 10:56 - 00002209 _____ C:\Users\J\AppData\Roaming\J-PC.MTBF.txt
2016-12-18 00:40 - 2016-05-27 21:55 - 00000349 _____ C:\Users\Public\Documents\PCLECHAL.INI
2016-12-18 00:40 - 2016-05-27 21:52 - 00000000 ____D C:\Users\J\AppData\Local\Pinnacle
2016-12-17 19:18 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps
2016-12-17 19:12 - 2016-09-29 07:09 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-12-17 19:12 - 2016-07-16 12:45 - 00000000 ____D C:\WINDOWS\INF
2016-12-17 19:12 - 2016-05-21 17:46 - 00000000 __SHD C:\Users\J\IntelGraphicsProfiles
2016-12-17 19:11 - 2016-09-29 07:37 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-12-17 19:09 - 2016-07-23 15:39 - 00000000 ____D C:\AdwCleaner
2016-12-17 19:09 - 2016-07-16 07:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI
2016-12-17 17:51 - 2016-05-21 17:33 - 00002409 _____ C:\Users\J\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-12-17 17:51 - 2016-05-21 17:33 - 00000000 ___RD C:\Users\J\OneDrive
2016-12-17 17:48 - 2016-09-29 07:14 - 00000000 ____D C:\Users\J
2016-12-17 17:45 - 2016-09-29 07:06 - 00451568 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-12-17 17:43 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\ShellExperiences
2016-12-17 13:25 - 2016-09-29 07:50 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-12-17 13:22 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-12-17 13:21 - 2009-07-14 03:34 - 00000478 _____ C:\WINDOWS\win.ini
2016-12-16 23:36 - 2016-07-16 12:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-12-16 23:25 - 2016-05-25 12:32 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-12-16 23:20 - 2016-05-25 12:32 - 135632432 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-12-16 22:41 - 2016-09-29 07:37 - 00003470 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-12-16 22:41 - 2016-09-29 07:37 - 00003346 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-12-15 23:08 - 2016-07-26 19:39 - 00002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-12-15 23:08 - 2016-07-26 19:39 - 00002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-12-15 22:37 - 2016-07-16 23:25 - 01097900 _____ C:\WINDOWS\system32\perfh005.dat
2016-12-15 22:37 - 2016-07-16 23:25 - 00276146 _____ C:\WINDOWS\system32\perfc005.dat
2016-12-15 22:37 - 2016-05-21 17:25 - 02702496 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-12-10 08:49 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\rescache
2016-12-10 01:11 - 2016-02-13 14:12 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-12-10 01:07 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-12-10 01:07 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2016-12-10 01:07 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-12-10 01:07 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-12-10 01:07 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-12-10 01:07 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-12-10 01:07 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-12-10 01:07 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-12-10 01:07 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\servicing
2016-12-09 12:41 - 2016-07-16 12:42 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-12-03 00:09 - 2016-05-21 17:30 - 00000000 ____D C:\Users\J\AppData\Local\Packages
==================== Files in the root of some directories =======
2016-05-28 10:56 - 2016-12-18 00:40 - 0002209 _____ () C:\Users\J\AppData\Roaming\J-PC.MTBF.txt
2016-05-28 10:56 - 2016-11-14 20:31 - 0000678 _____ () C:\Users\J\AppData\Roaming\__AvidCloudManager.log
2016-05-28 10:56 - 2016-11-14 20:24 - 0000788 _____ () C:\Users\J\AppData\Roaming\__AvidCloudManagerPrevious.log
2016-10-19 21:38 - 2016-10-19 21:38 - 0003584 _____ () C:\Users\J\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-09-29 07:09 - 2016-09-29 07:09 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Some files in TEMP:
====================
C:\Users\J\AppData\Local\Temp\libeay32.dll
C:\Users\J\AppData\Local\Temp\msvcr120.dll
C:\Users\J\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Smart Security 9.0.407.0 (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET Smart Security 9.0.407.0 (Enabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Personální firewall (Enabled) {D426EE12-AE7E-4602-F40F-BBCA8137EB0B}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\J\Desktop" je 2581 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
==================== End Of Log ==============================
Ran by J (administrator) on J-PC (18-12-2016 14:23:29)
Running from C:\Users\J\Desktop
Loaded Profiles: J (Available Profiles: J)
Platform: Windows 10 Home Version 1607 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(arvato digital services llc) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.16112.10221.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(forum.viry.cz) C:\Users\J\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16405744 2015-08-23] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776 2016-05-02] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Corel Update Helper] => c:\Program Files\Corel\Corel VideoStudio X9\pua.exe [2012104 2016-03-01] (Corel Corporation)
HKLM\...\Run: [GoPro Tray App] => C:\Program Files\GoPro\GoPro Desktop App\GoProDesktopSystemTray.exe [866224 2016-10-11] ()
HKLM\...\Run: [AutoKMS] => C:\WINDOWS\AutoKMS.exe [615936 2016-12-17] ()
HKLM-x32\...\Run: [NeroFilterCheck] => C:\WINDOWS\SysWOW64\NeroCheck.exe [155648 2001-07-09] (Ahead Software Gmbh)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.5 192.168.2.80
Tcpip\..\Interfaces\{3fbd1d4f-420c-47d3-babc-183f1ffced0e}: [DhcpNameServer] 192.168.1.5 192.168.2.80
Tcpip\..\Interfaces\{817c6a71-484c-4f81-8950-bfa559c67427}: [DhcpNameServer] 192.168.1.5
Internet Explorer:
==================
HKU\S-1-5-21-2098665849-2437875990-499209516-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR DefaultSearchURL: Default -> hxxp://90.179.223.50:5555/favicon.ico
CHR Profile: C:\Users\J\AppData\Local\Google\Chrome\User Data\Default [2016-12-11]
CHR Extension: (Prezentace Google) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-05-21]
CHR Extension: (Dokumenty Google) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-05-21]
CHR Extension: (Disk Google) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-05-21]
CHR Extension: (YouTube) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-05-21]
CHR Extension: (Tabulky Google) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-05-21]
CHR Extension: (Dokumenty Google offline) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-21]
CHR Extension: (Sunny WebBox 250) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkekciifgefgmbffkcfkkbnnihpihhec [2016-06-23]
CHR Extension: (Sunny WebBox 32) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgpfnlgmbpjfllmpjbokahbngleagjgb [2016-06-23]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-21]
CHR Extension: (Gmail) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-05-21]
CHR Extension: (Chrome Media Router) - C:\Users\J\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-26]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2771848 2016-11-10] (ESET)
S3 Futuremark SystemInfo Service; D:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2016-04-13] (Futuremark)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1165368 2016-05-02] (NVIDIA Corporation)
R2 GoProDeviceDetectionService; C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe [37808 2016-10-11] ()
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [361384 2015-09-10] (Intel Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1881144 2016-05-02] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3634232 2016-05-02] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-05-02] (NVIDIA Corporation)
R2 PSI_SVC_2_x64; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [337776 2014-04-30] (arvato digital services llc)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [262792 2016-11-10] (ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15488 2016-06-28] (ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [197248 2016-11-10] (ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [153216 2016-11-10] (ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [208520 2016-11-10] (ESET)
R1 EpfwLWF; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [61568 2016-11-10] (ESET)
R0 epfwwfp; C:\WINDOWS\System32\DRIVERS\epfwwfp.sys [84616 2016-11-10] (ESET)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [349960 2016-07-12] (Intel Corporation)
R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [129312 2014-09-30] (Intel Corporation)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3485696 2016-07-16] (Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvacwu.inf_amd64_9934c34dc6ca0c4b\nvlddmkm.sys [13754936 2016-09-12] (NVIDIA Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-05-02] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [589824 2016-07-16] (Realtek )
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [761600 2015-08-29] (Realsil Semiconductor Corporation)
R3 SynRMIHID; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [56520 2015-09-08] (Synaptics Incorporated)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
U3 idsvc; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-12-18 14:23 - 2016-12-18 14:24 - 00012198 _____ C:\Users\J\Desktop\FRST.txt
2016-12-18 14:23 - 2016-12-18 14:23 - 00000000 ____D C:\FRST
2016-12-18 14:21 - 2016-12-18 14:23 - 02420224 _____ (Farbar) C:\Users\J\Desktop\FRST64.exe
2016-12-18 14:20 - 2016-12-18 14:22 - 00112640 _____ (forum.viry.cz) C:\Users\J\Desktop\FRSTLauncher.exe
2016-12-17 19:06 - 2016-12-17 19:06 - 03977168 _____ C:\Users\J\Desktop\adwcleaner_6.041.exe
2016-12-17 17:51 - 2016-12-17 17:51 - 00003260 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
2016-12-17 17:47 - 2016-12-12 00:56 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-12-17 17:47 - 2016-12-12 00:56 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-12-17 13:43 - 2016-12-17 13:43 - 00615936 _____ C:\WINDOWS\AutoKMS.exe
2016-12-17 13:43 - 2016-12-17 13:43 - 00000161 _____ C:\WINDOWS\AutoKMS.ini
2016-12-17 13:35 - 2016-12-17 19:14 - 00000000 ____D C:\Program Files\trend micro
2016-12-17 13:35 - 2016-12-17 13:35 - 00000000 ____D C:\rsit
2016-12-17 13:34 - 2016-12-17 13:35 - 01222144 _____ C:\Users\J\Desktop\RSITx64.exe
2016-12-17 13:26 - 2016-12-17 13:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2016-12-17 13:26 - 2016-12-17 13:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-12-17 13:24 - 2016-12-17 13:24 - 00000000 ____D C:\WINDOWS\PCHEALTH
2016-12-17 13:24 - 2016-12-17 13:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services
2016-12-17 13:24 - 2016-12-17 13:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Sync Framework
2016-12-17 13:24 - 2016-12-17 13:24 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2016-12-17 13:22 - 2016-12-17 13:22 - 00000000 ____D C:\WINDOWS\System32\Tasks\OfficeSoftwareProtectionPlatform
2016-12-17 13:21 - 2016-12-17 13:21 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2016-12-17 13:20 - 2016-12-17 13:25 - 00000000 ____D C:\WINDOWS\SHELLNEW
2016-12-17 13:20 - 2016-12-17 13:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-12-17 13:20 - 2016-12-17 13:20 - 00000000 ____D C:\Users\J\AppData\Local\Microsoft Help
2016-12-17 13:20 - 2016-12-17 13:20 - 00000000 ____D C:\Program Files\Microsoft Office
2016-12-17 13:20 - 2016-12-17 13:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2016-12-17 13:19 - 2016-12-17 13:19 - 00000000 __RHD C:\MSOCache
2016-12-17 13:13 - 2016-12-17 13:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2016-12-17 13:13 - 2016-12-17 13:13 - 00000000 ____D C:\Program Files\7-Zip
2016-12-14 00:20 - 2016-12-09 11:18 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2016-12-14 00:20 - 2016-12-09 11:18 - 00989024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2016-12-14 00:20 - 2016-12-09 11:18 - 00947552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi
2016-12-14 00:20 - 2016-12-09 11:18 - 00811872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe
2016-12-14 00:20 - 2016-12-09 11:15 - 08168000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-12-14 00:20 - 2016-12-09 11:14 - 01274712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-12-14 00:20 - 2016-12-09 11:01 - 02323728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-12-14 00:20 - 2016-12-09 10:57 - 01852720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-12-14 00:20 - 2016-12-09 10:41 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2016-12-14 00:20 - 2016-12-09 10:38 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-12-14 00:20 - 2016-12-09 10:36 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-12-14 00:20 - 2016-12-09 10:36 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-12-14 00:20 - 2016-12-09 10:33 - 01589760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-12-14 00:20 - 2016-12-09 10:31 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-12-14 00:20 - 2016-12-09 10:30 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-12-14 00:20 - 2016-12-09 10:28 - 03306496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-12-14 00:20 - 2016-12-09 10:22 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-12-14 00:20 - 2016-12-09 10:18 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-12-14 00:20 - 2016-12-09 10:16 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-12-14 00:20 - 2016-12-09 10:15 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-12-14 00:20 - 2016-12-09 10:15 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-12-14 00:20 - 2016-12-09 10:15 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2016-12-14 00:19 - 2016-12-09 11:32 - 07816032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-12-14 00:19 - 2016-12-09 11:29 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-12-14 00:19 - 2016-12-09 11:19 - 01293152 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-12-14 00:19 - 2016-12-09 11:15 - 01988560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-12-14 00:19 - 2016-12-09 11:10 - 01461200 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-12-14 00:19 - 2016-12-09 11:01 - 01503544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-12-14 00:19 - 2016-12-09 10:52 - 01435896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-12-14 00:19 - 2016-12-09 10:51 - 00117240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2016-12-14 00:19 - 2016-12-09 10:45 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-12-14 00:19 - 2016-12-09 10:45 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2016-12-14 00:19 - 2016-12-09 10:40 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2016-12-14 00:19 - 2016-12-09 10:37 - 00411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-12-14 00:19 - 2016-12-09 10:36 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-12-14 00:19 - 2016-12-09 10:36 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2016-12-14 00:19 - 2016-12-09 10:33 - 03777536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-12-14 00:19 - 2016-12-09 10:29 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-12-14 00:19 - 2016-12-09 10:27 - 13084160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-12-14 00:19 - 2016-12-09 10:27 - 05114368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-12-14 00:19 - 2016-12-09 10:27 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-14 00:19 - 2016-12-09 10:26 - 01692672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-12-14 00:19 - 2016-12-09 10:24 - 02275840 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-12-14 00:19 - 2016-12-09 10:23 - 12177920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-12-14 00:19 - 2016-12-09 10:22 - 02820096 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-12-14 00:19 - 2016-12-09 10:21 - 03616768 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-12-14 00:19 - 2016-12-09 10:21 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-12-14 00:19 - 2016-12-09 10:19 - 01121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-12-14 00:19 - 2016-12-09 10:19 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-12-14 00:19 - 2016-12-09 10:19 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-12-14 00:19 - 2016-12-09 10:19 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-12-14 00:19 - 2016-12-09 10:19 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2016-12-14 00:19 - 2016-12-09 10:16 - 02998272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2016-12-14 00:19 - 2016-11-02 11:25 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-12-14 00:17 - 2016-12-09 11:28 - 00764392 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-12-14 00:17 - 2016-12-09 11:14 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2016-12-14 00:17 - 2016-12-09 11:09 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2016-12-14 00:17 - 2016-12-09 10:31 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-12-14 00:16 - 2016-12-09 11:42 - 01637728 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-12-14 00:16 - 2016-12-09 11:42 - 00137568 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-12-14 00:16 - 2016-12-09 11:34 - 01051112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-12-14 00:16 - 2016-12-09 11:34 - 00894096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-12-14 00:16 - 2016-12-09 11:33 - 01354320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-12-14 00:16 - 2016-12-09 11:33 - 01173496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-12-14 00:16 - 2016-12-09 11:30 - 00377184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2016-12-14 00:16 - 2016-12-09 11:20 - 00658784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-12-14 00:16 - 2016-12-09 11:20 - 00402272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-12-14 00:16 - 2016-12-09 11:19 - 00168424 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2016-12-14 00:16 - 2016-12-09 11:18 - 02913144 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-12-14 00:16 - 2016-12-09 11:18 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-12-14 00:16 - 2016-12-09 11:18 - 00624048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-12-14 00:16 - 2016-12-09 11:10 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2016-12-14 00:16 - 2016-12-09 11:01 - 00861024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-12-14 00:16 - 2016-12-09 11:00 - 00106896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2016-12-14 00:16 - 2016-12-09 10:59 - 02166752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-12-14 00:16 - 2016-12-09 10:59 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-12-14 00:16 - 2016-12-09 10:57 - 06668040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-14 00:16 - 2016-12-09 10:52 - 01415752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2016-12-14 00:16 - 2016-12-09 10:41 - 00380928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2016-12-14 00:16 - 2016-12-09 10:37 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
2016-12-14 00:16 - 2016-12-09 10:37 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-12-14 00:16 - 2016-12-09 10:34 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2016-12-14 00:16 - 2016-12-09 10:34 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2016-12-14 00:16 - 2016-12-09 10:32 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2016-12-14 00:16 - 2016-12-09 10:30 - 23677952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-12-14 00:16 - 2016-12-09 10:28 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-12-14 00:16 - 2016-12-09 10:26 - 08129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-12-14 00:16 - 2016-12-09 10:22 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-12-14 00:16 - 2016-12-09 10:21 - 04746752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-12-14 00:16 - 2016-12-09 10:21 - 01512960 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-12-14 00:16 - 2016-12-09 10:20 - 06044160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-12-14 00:16 - 2016-12-09 10:20 - 03198464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-12-14 00:16 - 2016-12-09 10:20 - 00730624 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-12-14 00:16 - 2016-12-09 10:20 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-12-14 00:16 - 2016-12-09 10:20 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-12-14 00:16 - 2016-12-09 10:18 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-12-14 00:16 - 2016-12-09 10:18 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-12-14 00:16 - 2016-12-09 10:17 - 00886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2016-12-14 00:16 - 2016-12-09 10:17 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2016-12-14 00:16 - 2016-12-09 10:16 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-12-14 00:16 - 2016-12-09 09:54 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-12-14 00:16 - 2016-11-02 11:28 - 00807424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-14 00:16 - 2016-09-15 17:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-12-14 00:15 - 2016-12-09 11:27 - 00172528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-12-14 00:15 - 2016-12-09 11:20 - 02677544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-12-14 00:15 - 2016-12-09 11:20 - 02189664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-12-14 00:15 - 2016-12-09 11:20 - 01738560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-12-14 00:15 - 2016-12-09 11:11 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-12-14 00:15 - 2016-12-09 10:56 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-12-14 00:15 - 2016-12-09 10:47 - 22563328 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-12-14 00:15 - 2016-12-09 10:42 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-12-14 00:15 - 2016-12-09 10:36 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2016-12-14 00:15 - 2016-12-09 10:31 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll
2016-12-14 00:15 - 2016-12-09 10:30 - 19413504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-12-14 00:15 - 2016-12-09 10:27 - 19417088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-12-14 00:15 - 2016-12-09 10:25 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2016-12-11 23:45 - 2016-12-11 23:46 - 00000185 _____ C:\Users\J\Desktop\janbenda Seznam alb – rajce.net.url
2016-12-11 14:08 - 2016-12-11 14:08 - 00000220 _____ C:\Users\J\Desktop\ STUDENT AGENCY STUDENT AGENCY letenky.url
2016-12-09 21:47 - 2016-11-11 11:22 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-12-09 21:47 - 2016-11-11 11:14 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-12-09 21:47 - 2016-11-11 11:13 - 01886344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-12-09 21:47 - 2016-11-11 11:01 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-12-09 21:47 - 2016-11-11 10:57 - 22224480 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-12-09 21:47 - 2016-11-11 10:56 - 00534096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-12-09 21:47 - 2016-11-11 10:29 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-12-09 21:47 - 2016-11-11 10:24 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-12-09 21:47 - 2016-11-11 10:22 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-12-09 21:47 - 2016-11-11 10:21 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-12-09 21:47 - 2016-11-11 10:20 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-12-09 21:47 - 2016-11-11 10:20 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-12-09 21:47 - 2016-11-11 10:18 - 17188352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-12-09 21:47 - 2016-11-11 10:18 - 00967168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-12-09 21:47 - 2016-11-11 10:14 - 00615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2016-12-09 21:47 - 2016-11-11 10:11 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-12-09 21:47 - 2016-11-11 10:11 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-12-09 21:47 - 2016-11-11 10:08 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-12-09 21:47 - 2016-11-11 10:07 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2016-12-09 21:47 - 2016-11-11 10:06 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-12-09 21:47 - 2016-11-11 10:04 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-12-09 21:47 - 2016-11-11 10:04 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-12-09 21:47 - 2016-11-11 10:03 - 00842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-12-09 21:47 - 2016-11-11 08:04 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2016-12-09 21:46 - 2016-11-11 11:15 - 00198856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2016-12-09 21:46 - 2016-11-11 11:15 - 00101216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll
2016-12-09 21:46 - 2016-11-11 11:14 - 02482280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2016-12-09 21:46 - 2016-11-11 11:14 - 02186896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-12-09 21:46 - 2016-11-11 11:13 - 00352096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-12-09 21:46 - 2016-11-11 11:12 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-12-09 21:46 - 2016-11-11 11:03 - 01069720 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2016-12-09 21:46 - 2016-11-11 11:03 - 00266544 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-12-09 21:46 - 2016-11-11 11:02 - 02828376 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-12-09 21:46 - 2016-11-11 11:02 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-12-09 21:46 - 2016-11-11 11:01 - 00637400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-12-09 21:46 - 2016-11-11 11:00 - 00219488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-12-09 21:46 - 2016-11-11 10:56 - 00424616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2016-12-09 21:46 - 2016-11-11 10:56 - 00418952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-12-09 21:46 - 2016-11-11 10:56 - 00163752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTWorkQ.dll
2016-12-09 21:46 - 2016-11-11 10:55 - 01600624 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-12-09 21:46 - 2016-11-11 10:55 - 00882680 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-12-09 21:46 - 2016-11-11 10:55 - 00743224 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-12-09 21:46 - 2016-11-11 10:54 - 01418312 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-12-09 21:46 - 2016-11-11 10:51 - 00454592 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2016-12-09 21:46 - 2016-11-11 10:31 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-12-09 21:46 - 2016-11-11 10:27 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpremove.exe
2016-12-09 21:46 - 2016-11-11 10:26 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-12-09 21:46 - 2016-11-11 10:26 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-12-09 21:46 - 2016-11-11 10:26 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReportingCSP.dll
2016-12-09 21:46 - 2016-11-11 10:25 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-12-09 21:46 - 2016-11-11 10:25 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2016-12-09 21:46 - 2016-11-11 10:25 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-12-09 21:46 - 2016-11-11 10:24 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-12-09 21:46 - 2016-11-11 10:24 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-12-09 21:46 - 2016-11-11 10:24 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-12-09 21:46 - 2016-11-11 10:24 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-09 21:46 - 2016-11-11 10:24 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2016-12-09 21:46 - 2016-11-11 10:23 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-12-09 21:46 - 2016-11-11 10:23 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-12-09 21:46 - 2016-11-11 10:23 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\EAMProgressHandler.dll
2016-12-09 21:46 - 2016-11-11 10:22 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\EDPCleanup.exe
2016-12-09 21:46 - 2016-11-11 10:21 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-12-09 21:46 - 2016-11-11 10:21 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-12-09 21:46 - 2016-11-11 10:20 - 00641024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-12-09 21:46 - 2016-11-11 10:20 - 00574464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-12-09 21:46 - 2016-11-11 10:20 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-12-09 21:46 - 2016-11-11 10:20 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2016-12-09 21:46 - 2016-11-11 10:20 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-12-09 21:46 - 2016-11-11 10:19 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2016-12-09 21:46 - 2016-11-11 10:19 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-12-09 21:46 - 2016-11-11 10:19 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2016-12-09 21:46 - 2016-11-11 10:19 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-09 21:46 - 2016-11-11 10:19 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-12-09 21:46 - 2016-11-11 10:18 - 02084352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-12-09 21:46 - 2016-11-11 10:18 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2016-12-09 21:46 - 2016-11-11 10:17 - 01220096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2016-12-09 21:46 - 2016-11-11 10:17 - 01002496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-12-09 21:46 - 2016-11-11 10:16 - 01477632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2016-12-09 21:46 - 2016-11-11 10:16 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-12-09 21:46 - 2016-11-11 10:16 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-12-09 21:46 - 2016-11-11 10:16 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-12-09 21:46 - 2016-11-11 10:15 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
2016-12-09 21:46 - 2016-11-11 10:14 - 02104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-12-09 21:46 - 2016-11-11 10:13 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-12-09 21:46 - 2016-11-11 10:13 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcuiu.dll
2016-12-09 21:46 - 2016-11-11 10:09 - 01366016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-12-09 21:46 - 2016-11-11 10:07 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-12-09 21:46 - 2016-11-11 10:07 - 02009600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-12-09 21:46 - 2016-11-11 10:07 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2016-12-09 21:46 - 2016-11-11 10:06 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-12-09 21:46 - 2016-11-11 10:05 - 04136448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-12-09 21:46 - 2016-11-11 10:05 - 02852864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-09 21:46 - 2016-11-11 10:05 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-12-09 21:46 - 2016-11-11 10:04 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-12-09 21:46 - 2016-11-11 10:04 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-12-09 21:46 - 2016-11-11 10:04 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-12-09 21:46 - 2016-11-11 10:03 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-12-09 21:46 - 2016-11-11 10:03 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-12-09 21:46 - 2016-11-11 10:02 - 03542016 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-12-09 21:46 - 2016-11-11 10:02 - 01726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-12-09 21:46 - 2016-11-11 09:39 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-12-09 21:46 - 2016-11-11 08:59 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-12-09 21:46 - 2016-11-11 08:49 - 00869848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2016-12-09 21:46 - 2016-11-11 08:49 - 00263472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2016-12-09 21:46 - 2016-11-11 08:49 - 00248480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-12-09 21:46 - 2016-11-11 08:48 - 02277248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-12-09 21:46 - 2016-11-11 08:47 - 00527880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-12-09 21:46 - 2016-11-11 08:42 - 03892864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-12-09 21:46 - 2016-11-11 08:42 - 01123912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-12-09 21:46 - 2016-11-11 08:42 - 00952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-12-09 21:46 - 2016-11-11 08:42 - 00382784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2016-12-09 21:46 - 2016-11-11 08:42 - 00152416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTWorkQ.dll
2016-12-09 21:46 - 2016-11-11 08:42 - 00091936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfaudiocnv.dll
2016-12-09 21:46 - 2016-11-11 08:41 - 04311736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-12-09 21:46 - 2016-11-11 08:41 - 00157536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudStorageWizard.exe
2016-12-09 21:46 - 2016-11-11 08:38 - 01263856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-12-09 21:46 - 2016-11-11 08:28 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-12-09 21:46 - 2016-11-11 08:27 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-12-09 21:46 - 2016-11-11 08:25 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-12-09 21:46 - 2016-11-11 08:25 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-12-09 21:46 - 2016-11-11 08:24 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll
2016-12-09 21:46 - 2016-11-11 08:24 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-12-09 21:46 - 2016-11-11 08:24 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-09 21:46 - 2016-11-11 08:23 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-12-09 21:46 - 2016-11-11 08:23 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2016-12-09 21:46 - 2016-11-11 08:22 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-12-09 21:46 - 2016-11-11 08:21 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-12-09 21:46 - 2016-11-11 08:19 - 13868544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-12-09 21:46 - 2016-11-11 08:19 - 01755136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll
2016-12-09 21:46 - 2016-11-11 08:19 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2016-12-09 21:46 - 2016-11-11 08:19 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2016-12-09 21:46 - 2016-11-11 08:19 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2016-12-09 21:46 - 2016-11-11 08:19 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2016-12-09 21:46 - 2016-11-11 08:18 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2016-12-09 21:46 - 2016-11-11 08:18 - 01336320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2016-12-09 21:46 - 2016-11-11 08:18 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2016-12-09 21:46 - 2016-11-11 08:17 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2016-12-09 21:46 - 2016-11-11 08:17 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2016-12-09 21:46 - 2016-11-11 08:15 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-12-09 21:46 - 2016-11-11 08:15 - 01357824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-12-09 21:46 - 2016-11-11 08:15 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-12-09 21:46 - 2016-11-11 08:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2016-12-09 21:46 - 2016-11-11 08:14 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2016-12-09 21:46 - 2016-11-11 08:10 - 06109184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-12-09 21:46 - 2016-11-11 08:10 - 00746496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcprx.dll
2016-12-09 21:46 - 2016-11-11 08:09 - 05380608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-12-09 21:46 - 2016-11-11 08:09 - 00545280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-12-09 21:46 - 2016-11-11 08:06 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2016-12-09 21:46 - 2016-11-11 08:06 - 02362880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2016-12-09 21:46 - 2016-11-11 08:06 - 02109952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2016-12-09 21:46 - 2016-11-11 08:06 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2016-12-09 21:46 - 2016-11-11 08:06 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-12-09 21:46 - 2016-11-11 08:06 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxclu.dll
2016-12-09 21:46 - 2016-11-11 08:05 - 04423680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-12-09 21:46 - 2016-11-11 08:05 - 03370496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-12-09 21:46 - 2016-11-11 08:04 - 01992704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-12-09 21:46 - 2016-11-11 08:04 - 01595392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-12-09 21:46 - 2016-11-11 08:04 - 00912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2016-12-09 21:46 - 2016-11-11 08:04 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-12-09 21:46 - 2016-11-11 08:04 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2016-12-09 21:46 - 2016-11-11 08:03 - 02484736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2016-12-09 21:46 - 2016-11-11 08:03 - 02256384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-12-09 21:46 - 2016-11-11 08:03 - 01576448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-12-09 21:46 - 2016-11-11 08:03 - 01556480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-12-09 21:46 - 2016-11-11 08:03 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-12-09 21:46 - 2016-11-11 08:03 - 00565248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-12-09 21:46 - 2016-11-11 08:02 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-12-09 21:45 - 2016-11-11 11:13 - 02213760 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-12-09 21:45 - 2016-11-11 11:08 - 00142176 _____ (Microsoft Corporation) C:\WINDOWS\system32\migisol.dll
2016-12-09 21:45 - 2016-11-11 11:03 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-12-09 21:45 - 2016-11-11 11:01 - 07219672 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-12-09 21:45 - 2016-11-11 11:00 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-12-09 21:45 - 2016-11-11 11:00 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-12-09 21:45 - 2016-11-11 10:59 - 00433504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-12-09 21:45 - 2016-11-11 10:57 - 04130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-12-09 21:45 - 2016-11-11 10:57 - 01473048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-12-09 21:45 - 2016-11-11 10:56 - 04673304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-12-09 21:45 - 2016-11-11 10:56 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-12-09 21:45 - 2016-11-11 10:56 - 00187520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudStorageWizard.exe
2016-12-09 21:45 - 2016-11-11 10:56 - 00126568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfaudiocnv.dll
2016-12-09 21:45 - 2016-11-11 10:28 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-12-09 21:45 - 2016-11-11 10:26 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\modem.sys
2016-12-09 21:45 - 2016-11-11 10:26 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2016-12-09 21:45 - 2016-11-11 10:25 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRHelper.dll
2016-12-09 21:45 - 2016-11-11 10:25 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-12-09 21:45 - 2016-11-11 10:24 - 00170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-12-09 21:45 - 2016-11-11 10:23 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-12-09 21:45 - 2016-11-11 10:21 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-12-09 21:45 - 2016-11-11 10:20 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-12-09 21:45 - 2016-11-11 10:20 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-12-09 21:45 - 2016-11-11 10:19 - 09131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-12-09 21:45 - 2016-11-11 10:19 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-12-09 21:45 - 2016-11-11 10:19 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-12-09 21:45 - 2016-11-11 10:19 - 00388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-12-09 21:45 - 2016-11-11 10:19 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2016-12-09 21:45 - 2016-11-11 10:17 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll
2016-12-09 21:45 - 2016-11-11 10:16 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-12-09 21:45 - 2016-11-11 10:16 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll
2016-12-09 21:45 - 2016-11-11 10:15 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-12-09 21:45 - 2016-11-11 10:15 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-12-09 21:45 - 2016-11-11 10:14 - 07654400 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-12-09 21:45 - 2016-11-11 10:14 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-12-09 21:45 - 2016-11-11 10:14 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppnp.dll
2016-12-09 21:45 - 2016-11-11 10:12 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll
2016-12-09 21:45 - 2016-11-11 10:11 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-12-09 21:45 - 2016-11-11 10:09 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2016-12-09 21:45 - 2016-11-11 10:07 - 01691136 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-12-09 21:45 - 2016-11-11 10:05 - 01779712 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-12-09 21:45 - 2016-11-11 10:04 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-12-09 21:45 - 2016-11-11 10:04 - 02611200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-12-09 21:45 - 2016-11-11 10:04 - 02317312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-12-09 21:45 - 2016-11-11 10:04 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-12-09 21:45 - 2016-11-11 10:04 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2016-12-09 21:45 - 2016-11-11 10:04 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2016-12-09 21:45 - 2016-11-11 10:03 - 04708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-12-09 21:45 - 2016-11-11 10:03 - 02669056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-12-09 21:45 - 2016-11-11 10:03 - 02287616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-12-09 21:45 - 2016-11-11 10:03 - 00905216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-12-09 21:45 - 2016-11-11 10:03 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2016-12-09 21:45 - 2016-11-11 10:02 - 00936448 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-12-09 21:45 - 2016-11-11 09:00 - 01706488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-12-09 21:45 - 2016-11-11 08:54 - 00122208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\migisol.dll
2016-12-09 21:45 - 2016-11-11 08:47 - 05722832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-12-09 21:45 - 2016-11-11 08:47 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-12-09 21:45 - 2016-11-11 08:42 - 00374448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2016-12-09 21:45 - 2016-11-11 08:24 - 00519168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2016-12-09 21:45 - 2016-11-11 08:22 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll
2016-12-09 21:45 - 2016-11-11 08:21 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-12-09 21:45 - 2016-11-11 08:21 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-09 21:45 - 2016-11-11 08:20 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-12-09 21:45 - 2016-11-11 08:20 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-12-09 21:45 - 2016-11-11 08:20 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
2016-12-09 21:45 - 2016-11-11 08:18 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2016-12-09 21:45 - 2016-11-11 08:15 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-12-09 21:45 - 2016-11-11 08:13 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-12-09 21:45 - 2016-11-11 08:12 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcuiu.dll
2016-12-09 21:45 - 2016-11-11 08:08 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xolehlp.dll
2016-12-09 21:44 - 2016-11-11 10:28 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CbtBackgroundManagerPolicy.dll
2016-12-09 21:44 - 2016-11-11 10:27 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-12-09 21:44 - 2016-11-11 10:25 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-12-09 21:44 - 2016-11-11 10:25 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-12-09 21:44 - 2016-11-11 10:24 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2016-12-09 21:44 - 2016-11-11 10:22 - 00489472 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-12-09 21:44 - 2016-11-11 10:22 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-12-09 21:44 - 2016-11-11 10:21 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2016-12-09 21:44 - 2016-11-11 10:21 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-12-09 21:44 - 2016-11-11 10:20 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2016-12-09 21:44 - 2016-11-11 10:20 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-12-09 21:44 - 2016-11-11 10:20 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe
2016-12-09 21:44 - 2016-11-11 10:13 - 07812096 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-12-09 21:44 - 2016-11-11 10:11 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpoext.dll
2016-12-09 21:44 - 2016-11-11 10:07 - 03441152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2016-12-09 21:44 - 2016-11-11 10:07 - 02953216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2016-12-09 21:44 - 2016-11-11 10:07 - 01060864 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-12-09 21:44 - 2016-11-11 10:06 - 03400192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2016-12-09 21:44 - 2016-11-11 10:05 - 01031680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-12-09 21:44 - 2016-11-11 10:03 - 00632320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-12-09 21:44 - 2016-11-11 09:01 - 02206496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2016-12-09 21:44 - 2016-11-11 09:01 - 01969912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll
2016-12-09 21:44 - 2016-11-11 09:01 - 00167848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2016-12-09 21:44 - 2016-11-11 08:42 - 20969928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-12-09 21:44 - 2016-11-11 08:27 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetCfgNotifyObjectHost.exe
2016-12-09 21:44 - 2016-11-11 08:26 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgentc.exe
2016-12-09 21:44 - 2016-11-11 08:19 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-12-09 21:44 - 2016-11-11 08:19 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2016-12-09 21:44 - 2016-11-11 08:18 - 01196544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2016-12-09 21:44 - 2016-11-11 08:18 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll
2016-12-09 21:44 - 2016-11-11 08:16 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-09 21:44 - 2016-11-11 08:03 - 00772608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2016-12-07 00:19 - 2016-12-07 23:30 - 00000000 ____D C:\ProgramData\tmp
2016-12-07 00:19 - 2016-12-07 00:19 - 00000000 ____D C:\ProgramData\hps
2016-12-07 00:17 - 2016-12-07 00:17 - 00001080 _____ C:\Users\Public\Desktop\CEWE FOTOIMPORTER.lnk
2016-12-07 00:17 - 2016-12-07 00:17 - 00001075 _____ C:\Users\Public\Desktop\Fotolab Fotosvet.lnk
2016-12-07 00:17 - 2016-12-07 00:17 - 00001070 _____ C:\Users\Public\Desktop\CEWE prezentace.lnk
2016-12-07 00:17 - 2016-12-07 00:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fotolab Fotosvet
2016-12-07 00:10 - 2016-12-07 00:10 - 00000000 ____D C:\Program Files\Fotolab
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-12-18 14:16 - 2016-09-29 07:07 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-12-18 11:48 - 2016-05-28 22:41 - 00000000 ____D C:\Users\J\AppData\Local\CrashDumps
2016-12-18 10:41 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-12-18 00:40 - 2016-05-28 10:56 - 00002209 _____ C:\Users\J\AppData\Roaming\J-PC.MTBF.txt
2016-12-18 00:40 - 2016-05-27 21:55 - 00000349 _____ C:\Users\Public\Documents\PCLECHAL.INI
2016-12-18 00:40 - 2016-05-27 21:52 - 00000000 ____D C:\Users\J\AppData\Local\Pinnacle
2016-12-17 19:18 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps
2016-12-17 19:12 - 2016-09-29 07:09 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-12-17 19:12 - 2016-07-16 12:45 - 00000000 ____D C:\WINDOWS\INF
2016-12-17 19:12 - 2016-05-21 17:46 - 00000000 __SHD C:\Users\J\IntelGraphicsProfiles
2016-12-17 19:11 - 2016-09-29 07:37 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-12-17 19:09 - 2016-07-23 15:39 - 00000000 ____D C:\AdwCleaner
2016-12-17 19:09 - 2016-07-16 07:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI
2016-12-17 17:51 - 2016-05-21 17:33 - 00002409 _____ C:\Users\J\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-12-17 17:51 - 2016-05-21 17:33 - 00000000 ___RD C:\Users\J\OneDrive
2016-12-17 17:48 - 2016-09-29 07:14 - 00000000 ____D C:\Users\J
2016-12-17 17:45 - 2016-09-29 07:06 - 00451568 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-12-17 17:43 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\ShellExperiences
2016-12-17 13:25 - 2016-09-29 07:50 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-12-17 13:22 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-12-17 13:21 - 2009-07-14 03:34 - 00000478 _____ C:\WINDOWS\win.ini
2016-12-16 23:36 - 2016-07-16 12:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-12-16 23:25 - 2016-05-25 12:32 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-12-16 23:20 - 2016-05-25 12:32 - 135632432 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-12-16 22:41 - 2016-09-29 07:37 - 00003470 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-12-16 22:41 - 2016-09-29 07:37 - 00003346 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-12-15 23:08 - 2016-07-26 19:39 - 00002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-12-15 23:08 - 2016-07-26 19:39 - 00002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-12-15 22:37 - 2016-07-16 23:25 - 01097900 _____ C:\WINDOWS\system32\perfh005.dat
2016-12-15 22:37 - 2016-07-16 23:25 - 00276146 _____ C:\WINDOWS\system32\perfc005.dat
2016-12-15 22:37 - 2016-05-21 17:25 - 02702496 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-12-10 08:49 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\rescache
2016-12-10 01:11 - 2016-02-13 14:12 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-12-10 01:07 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-12-10 01:07 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2016-12-10 01:07 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-12-10 01:07 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-12-10 01:07 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-12-10 01:07 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-12-10 01:07 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-12-10 01:07 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-12-10 01:07 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\servicing
2016-12-09 12:41 - 2016-07-16 12:42 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-12-03 00:09 - 2016-05-21 17:30 - 00000000 ____D C:\Users\J\AppData\Local\Packages
==================== Files in the root of some directories =======
2016-05-28 10:56 - 2016-12-18 00:40 - 0002209 _____ () C:\Users\J\AppData\Roaming\J-PC.MTBF.txt
2016-05-28 10:56 - 2016-11-14 20:31 - 0000678 _____ () C:\Users\J\AppData\Roaming\__AvidCloudManager.log
2016-05-28 10:56 - 2016-11-14 20:24 - 0000788 _____ () C:\Users\J\AppData\Roaming\__AvidCloudManagerPrevious.log
2016-10-19 21:38 - 2016-10-19 21:38 - 0003584 _____ () C:\Users\J\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-09-29 07:09 - 2016-09-29 07:09 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Some files in TEMP:
====================
C:\Users\J\AppData\Local\Temp\libeay32.dll
C:\Users\J\AppData\Local\Temp\msvcr120.dll
C:\Users\J\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Smart Security 9.0.407.0 (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET Smart Security 9.0.407.0 (Enabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Personální firewall (Enabled) {D426EE12-AE7E-4602-F40F-BBCA8137EB0B}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\J\Desktop" je 2581 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
==================== End Of Log ==============================
- Přílohy
-
- Addition.zip
- (9.87 KiB) Staženo 50 x
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Velice pomalý ntb
Otevřte poznámkový blok a zkopírujte do něj:
Z logu:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
HKLM\...\Run: [AutoKMS] => C:\WINDOWS\AutoKMS.exe [615936 2016-12-17] ()
C:\WINDOWS\AutoKMS.exe
HKLM-x32\...\Run: [NeroFilterCheck] => C:\WINDOWS\SysWOW64\NeroCheck.exe [155648 2001-07-09] (Ahead Software Gmbh)
CHR DefaultSearchURL: Default -> hxxp://90.179.223.50:5555/favicon.ico
U3 idsvc; no ImagePath
C:\WINDOWS\AutoKMS.ini
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\J\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\ProgramData\DP45977C.lfl
C:\Users\J\AppData\Local\Temp
EmptyTemp:
End
Z logu:
To je příliš mnoho a může to zpomalovat start systému. Vytvořte v C:\Users\J novou složku, do které přesuňte všechna data z plochy (kromě zástupců). Na plochu si pak dejte zástupce té složky pro snazší přístup.Velikost slozky "C:\Users\J\Desktop" je 2581 MB.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Velice pomalý ntb
Zdravím, přikládám log po výše uvedených činnostech.
Fix result of Farbar Recovery Scan Tool (x64) Version: 21-12-2016
Ran by J (23-12-2016 10:32:11) Run:1
Running from C:\Users\J\Desktop
Loaded Profiles: J (Available Profiles: J)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKLM\...\Run: [AutoKMS] => C:\WINDOWS\AutoKMS.exe [615936 2016-12-17] ()
C:\WINDOWS\AutoKMS.exe
HKLM-x32\...\Run: [NeroFilterCheck] => C:\WINDOWS\SysWOW64\NeroCheck.exe [155648 2001-07-09] (Ahead Software Gmbh)
CHR DefaultSearchURL: Default -> hxxp://90.179.223.50:5555/favicon.ico
U3 idsvc; no ImagePath
C:\WINDOWS\AutoKMS.ini
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\J\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\ProgramData\DP45977C.lfl
C:\Users\J\AppData\Local\Temp
EmptyTemp:
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AutoKMS => value removed successfully
C:\WINDOWS\AutoKMS.exe => moved successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\NeroFilterCheck => value removed successfully
Chrome DefaultSearchURL => removed successfully
idsvc => service removed successfully
C:\WINDOWS\AutoKMS.ini => moved successfully
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
C:\Users\J\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => moved successfully
C:\ProgramData\DP45977C.lfl => moved successfully
"C:\Users\J\AppData\Local\Temp" folder move:
Could not move "C:\Users\J\AppData\Local\Temp" => Scheduled to move on reboot.
=========== EmptyTemp: ==========
BITS transfer queue => 859088 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 974659283 B
Java, Flash, Steam htmlcache => 506 B
Windows/system/drivers => 13250419 B
Edge => 5542583 B
Chrome => 35492239 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 32668 B
NetworkService => 1931858 B
J => 952105024 B
RecycleBin => 0 B
EmptyTemp: => 1.8 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 23-12-2016 10:36:58)
C:\Users\J\AppData\Local\Temp => moved successfully
==== End of Fixlog 10:37:01 ====
Fix result of Farbar Recovery Scan Tool (x64) Version: 21-12-2016
Ran by J (23-12-2016 10:32:11) Run:1
Running from C:\Users\J\Desktop
Loaded Profiles: J (Available Profiles: J)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKLM\...\Run: [AutoKMS] => C:\WINDOWS\AutoKMS.exe [615936 2016-12-17] ()
C:\WINDOWS\AutoKMS.exe
HKLM-x32\...\Run: [NeroFilterCheck] => C:\WINDOWS\SysWOW64\NeroCheck.exe [155648 2001-07-09] (Ahead Software Gmbh)
CHR DefaultSearchURL: Default -> hxxp://90.179.223.50:5555/favicon.ico
U3 idsvc; no ImagePath
C:\WINDOWS\AutoKMS.ini
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\J\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\ProgramData\DP45977C.lfl
C:\Users\J\AppData\Local\Temp
EmptyTemp:
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AutoKMS => value removed successfully
C:\WINDOWS\AutoKMS.exe => moved successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\NeroFilterCheck => value removed successfully
Chrome DefaultSearchURL => removed successfully
idsvc => service removed successfully
C:\WINDOWS\AutoKMS.ini => moved successfully
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
C:\Users\J\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => moved successfully
C:\ProgramData\DP45977C.lfl => moved successfully
"C:\Users\J\AppData\Local\Temp" folder move:
Could not move "C:\Users\J\AppData\Local\Temp" => Scheduled to move on reboot.
=========== EmptyTemp: ==========
BITS transfer queue => 859088 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 974659283 B
Java, Flash, Steam htmlcache => 506 B
Windows/system/drivers => 13250419 B
Edge => 5542583 B
Chrome => 35492239 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 32668 B
NetworkService => 1931858 B
J => 952105024 B
RecycleBin => 0 B
EmptyTemp: => 1.8 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 23-12-2016 10:36:58)
C:\Users\J\AppData\Local\Temp => moved successfully
==== End of Fixlog 10:37:01 ====
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Velice pomalý ntb
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Velice pomalý ntb
Zdravím,
obávám se, že znatelná změna bohužel nenastala, ale jak jsem v úvodním příspěvku poukazoval, tak i po čistě instalaci se ntb jeví jako zpomalený ve smyslu dlouhé odezvy při nějaké interakci + chování například v Pinnacle studiu, kde se jeví jako nepoužitelný.
obávám se, že znatelná změna bohužel nenastala, ale jak jsem v úvodním příspěvku poukazoval, tak i po čistě instalaci se ntb jeví jako zpomalený ve smyslu dlouhé odezvy při nějaké interakci + chování například v Pinnacle studiu, kde se jeví jako nepoužitelný.
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Velice pomalý ntb
Máte nainstalovány všechny ovladače hardwaru?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Velice pomalý ntb
Vše je nainstalováno a jeví se jako funkční(což dokazují benchmarky)
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Velice pomalý ntb
Sekala ihned čistá instalace, nebo se to začalo dít až po istalaci nějaké aplikace?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Velice pomalý ntb
Ihned po instalaci se systém jevil, že s ním není něco v pořádku, odezva v průzkumníku souboru, či po kliku na start byla delší než by měla být. Zkoušel jsem 7čky, které jsem následně upgradnul na 10tky.
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Velice pomalý ntb
OK. Koukneme se na disk. Stáhněte, nanistalujte a spusťte CrystalDiskInfo: http://www.stahuj.centrum.cz/utility_a_ ... ldiskinfo/ a přes Úpravy>kopírovat sem dejte log.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?