Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Nejdou kliknutim otevrit okna ze "systray" /oznameni,apod./

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
tominaxx
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 20 zář 2006 00:03
Kontaktovat uživatele:

Nejdou kliknutim otevrit okna ze "systray" /oznameni,apod./

#1 Příspěvek od tominaxx »

Prosim o kontrolu logu .. ve W10 nejdou spustit aplikace a okna ze systraye jako napr. hlasitost, kalendar, rychle akce, apod. Nejde take otevrit tlacitko Start ci zadat text do vyhledavani. Nejde tez zvolit vychozim prohlizecem Firefox. Avast free nic nenasel. Diky.

Logfile of random's system information tool 1.16 (written by random/random)
Run by Lenunka at 2017-04-11 01:10:13
Microsoft Windows 10 Home
System drive C: has 94 GB (20%) free of 460 GB
Total RAM: 3987 MB (38% free)
X64

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 1:10:20, on 11. 4. 2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0953)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\RSUPPORT\MobizenService\MobizenTray.exe
C:\Program Files (x86)\Lenovo\QuickControl\QuickControl.exe
C:\PROGRAM FILES (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\NaturalPoint\SmartNav\SmartNAV.exe
C:\Program Files (x86)\NaturalPoint\SmartNav\DwellClicker.exe
C:\Program Files (x86)\Lenovo\OneLink Dock\onelinkpromgn.exe
C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe
C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Lenunka\AppData\Local\SweetLabs App Platform\Engine\ServiceHostApp.exe
C:\Users\Lenunka\AppData\Local\SweetLabs App Platform\Engine\ServiceHostApp.exe
C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
C:\WINDOWS\SysWOW64\ctfmon.exe
C:\Program Files\Lenovo\Communications Utility\tpknrres.exe
C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
C:\Program Files (x86)\Click-N-Type\Click-N-Type.exe
C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_25_0_0_127.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_25_0_0_127.exe
C:\Program Files (x86)\Altap Salamander\salamand.exe
C:\WINDOWS\SysWOW64\DllHost.exe
C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe
C:\Program Files\trend micro\Lenunka_RSITx64.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13-comm.msn.com/?pc=LNJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: Microsoft OneDrive for Business Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office16\GROOVEEX.DLL
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [Fastboot] "C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe" /analysis
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Lenunka\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Viber] "C:\Users\Lenunka\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [NaturalPoint] C:\Program Files (x86)\NaturalPoint\SmartNav\SmartNAV.exe
O4 - HKCU\..\Run: [WinThrusterReminder] C:\Program Files (x86)\WinThruster\WinThruster.exe -rem
O4 - HKCU\..\RunOnce: [Application Restart #1] C:\Users\Lenunka\AppData\Local\SweetLabs App Platform\Engine\ServiceHostApp.exe --disable-internal-flash --noerrdialogs --no-message-box --disable-extensions --disable-web-security --disable-web-resources --disable-client-side-phishing-detection --enable-file-cookies --disable-sync --disable-breakpad --disable-bundled-ppapi-flash --disable-sync-tabs --disable-speech-input --disable-custom-jumplist --process-per-tab --debug-devtools-frontend="C:\Users\Lenunka\AppData\Local\SweetLabs App Platform\Engine\inspector" --no-first-run --lang=en-US --disable-component-update --disable-prompt-on-repost --no-startup-window --disable-translate --disable-logging --disable-desktop-notifications --disable-gpu-process-prelaunch --flag-switches-begin --flag-switches-end --restore-last-session
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: RAC Server.lnk = C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe
O4 - Global Startup: ThinkPad OneLink Dock Management.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~2\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: Prevést cíl vazby do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Prevést cíl vazby do existujícího PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Prevést do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Pridat do stávajícího PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE16\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AVControlCenter - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) - Alcohol Soft Development Team - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe
O23 - Service: Alcohol Virtual AHCI Controller Management Service (AxVirtualAHCISrv) - Alcohol Soft Development Team - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAHCIServiceEx.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: FastbootService - Lenovo - C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem100.inf,%ibm.svcDesc0%;Lenovo PM Service (IBMPMSVC) - Unknown owner - C:\WINDOWS\system32\ibmpmsvc.exe (file missing)
O23 - Service: @oem33.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\system32\ibtsiva (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: System Interface Foundation Service (ImControllerService) - Lenovo Group Limited - C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Small Business Advantage (intelsba) - Intel Corporation - C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe
O23 - Service: IObit Uninstaller Service (IObitUnSvr) - IObit - C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Lenovo Settings Service - Lenovo Group Limited - C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe
O23 - Service: Lenovo AVFramework Camera Privacy Controller (LENOVO.CAMMUTE) - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\cammute.exe
O23 - Service: Lenovo Microphone Mute (LENOVO.MICMUTE) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
O23 - Service: Lenovo AVFramework Microphone Volume Controller and Dolby Interface (LENOVO.TPKNRSVC) - Lenovo Group Limited - C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe
O23 - Service: Lenovo AVFramework Virtual Camera Controller Service (LENOVO.TVTVCAM) - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
O23 - Service: Lenovo Auto Scroll (Lenovo.VIRTSCRLSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: lnvDiscoveryWinSvc - Lenovo - C:\Program Files\Lenovo\Lenovo Peer Connect\LenovoDiscoverySvc.exe
O23 - Service: LocationTaskManager - Unknown owner - C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
O23 - Service: Lenovo Solution Center System Service (LSC.Services.SystemService) - Lenovo - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe
O23 - Service: Mobizen plugin - Rsupport Corporation - C:\Program Files (x86)\RSUPPORT\MobizenService\MobizenService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: PCNetSoftware RAC Server - Miloslav Novotny N+P - C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe
O23 - Service: Lenovo Settings Power Service (Power Manager DBC Service) - Lenovo - C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
O23 - Service: Lenovo QuickControl Master Service (QuickControlMasterSvc) - Lenovo Group Limited - C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe
O23 - Service: Lenovo QuickControl Service (QuickControlService) - Lenovo Group Limited - C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Service KMSELDI - @ByELDI - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: TeamViewer 10 (TeamViewer) - Unknown owner - (no file)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Unknown owner - C:\WINDOWS\System32\TPHDEXLG64.exe (file missing)
O23 - Service: Lenovo Hotkey Client Loader (TPHKLOAD) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @oem89.inf,%WBFService_SvcDesc%;Synaptics FP WBF Policy Service (valWBFPolicyService) - Unknown owner - C:\WINDOWS\system32\valWBFPolicyService.exe (file missing)
O23 - Service: @oem89.inf,%BioSyncService_SvcDesc%;BiometricSensorDataSynchronization (valWbioSyncSvc) - Unknown owner - C:\WINDOWS\system32\valWbioSyncSvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 18374 bytes

====== Enumerating Processes ======

C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\dwm.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-cc6831f5-adf4-43d8-b02f-07329c0881b8 -SystemEventPortName:HostProcess-a0a40e57-b082-440d-a5e0-4977c80f5136 -IoCancelEventPortName:HostProcess-686d821f-9d44-4d3d-8a51-b5c21612c493 -NonStateChangingEventPortName:HostProcess-409145ad-0dba-4a69-930a-714117b941db -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:4d236424-d0a0-4ccc-aee1-94723399646b -DeviceGroupId:
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-e57c5bba-25b2-41bb-a711-330c0ec18b70 -SystemEventPortName:HostProcess-ef6efd19-5c82-4340-b0d5-617321b636c7 -IoCancelEventPortName:HostProcess-44931d61-5aac-4760-ae2b-e3314a3b3b3b -NonStateChangingEventPortName:HostProcess-0ca5b7a8-1368-40d2-9bad-9079a5772f87 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:9b517325-1595-4926-8c8e-916b559a01b7 -DeviceGroupId:WpdFsGroup
C:\WINDOWS\system32\ibmpmsvc.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-de251b51-48df-45c8-acc8-baa0e9cf87cd -SystemEventPortName:HostProcess-29ad2abe-6552-47d3-b13d-9092f84b6c37 -IoCancelEventPortName:HostProcess-f494415a-eec7-4961-8772-a14a98b236c0 -NonStateChangingEventPortName:HostProcess-52e336ab-4073-4895-824b-ebd1f4a4b037 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:cb5b462b-29df-4155-a79c-b3b8837bd93f -DeviceGroupId:
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b5c80762-ea87-4d7b-8cca-d92b4810897f -SystemEventPortName:HostProcess-f6010647-32dd-47c4-967f-fa7a413d9979 -IoCancelEventPortName:HostProcess-d12027e6-cc25-4af8-aa7e-11afb3fe9b4a -NonStateChangingEventPortName:HostProcess-8fbf303a-8f4b-403e-b094-fe76a391795a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:dcd82d51-ca4b-463f-b2bd-99765c474dbe -DeviceGroupId:
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-39497701-702e-41f3-ae0d-ec7c0acdf980 -SystemEventPortName:HostProcess-10f5aca2-bc39-435d-970b-310875b68ece -IoCancelEventPortName:HostProcess-4dbc3fa8-5d19-4582-89c1-ea26db0a5151 -NonStateChangingEventPortName:HostProcess-c5f334d2-62b5-407e-b9ce-2f8e553bfcab -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:1e5887c5-d878-4fe6-869f-bbdf75a28cc9 -DeviceGroupId:
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\dashost.exe
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe"
C:\WINDOWS\system32\ibtsiva.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAHCIServiceEx.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
"C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe"
"C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe"
"C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe"
"C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe"
"C:\Program Files (x86)\RSUPPORT\MobizenService\MobizenService.exe"
"C:\Program Files\KMSpico\Service_KMS.exe"
"C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\valWBFPolicyService.exe
C:\WINDOWS\system32\valWbioSyncSvc.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\sihost.exe
"C:\Program Files\Synaptics\SynFp\Shared\SensorDBSynch.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\PROGRA~1\LENOVO\VIRTSCRL\virtscrl.exe
C:\Program Files\LENOVO\HOTKEY\tpnumlkd.exe
C:\PROGRA~1\Lenovo\HOTKEY\TPOSD.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.OnScreenDisplay
C:\PROGRA~1\Lenovo\HOTKEY\SHTCTKY.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.ShortcutKey
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\Explorer.EXE
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\WINDOWS\system32\taskhostw.exe
"C:\Users\Lenunka\AppData\Local\SweetLabs App Platform\Engine\ServiceHostAppUpdater.exe" /LOGON
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
C:\WINDOWS\system32\igfxEM.exe
C:\WINDOWS\system32\igfxHK.exe
C:\Program Files\Classic Shell\ClassicStartMenu.exe
C:\WINDOWS\system32\rundll32.exe "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.dll",PwrMgrBkGndMonitor
"C:\Program Files (x86)\RSUPPORT\MobizenService\MobizenTray.exe"
"C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe"
"C:\Program Files\Synaptics\SynTP\SynTPLpr.exe"
"C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Lenovo\QuickControl\QuickControl.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\PROGRAM FILES (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Windows\RtsCM64.exe"
"C:\Windows\System32\TpShocks.exe"
C:\Program Files\AVAST Software\Avast\AvastUI.exe
"C:\Program Files (x86)\NaturalPoint\SmartNav\SmartNAV.exe"
"C:\Program Files (x86)\NaturalPoint\SmartNav\DwellClicker.exe"
"C:\Program Files (x86)\Lenovo\OneLink Dock\onelinkpromgn.exe" 1.08.25
"C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe" /analysis
"C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe" /FORCE
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Users\Lenunka\AppData\Local\SweetLabs App Platform\Engine\ServiceHostApp.exe"
"C:\Users\Lenunka\AppData\Local\SweetLabs App Platform\Engine\ServiceHostApp.exe" --type=renderer --disable-breakpad --disable-desktop-notifications --disable-logging --disable-speech-input --lang=en-US --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/OmniboxDisallowInlineHQP/Standard/OmniboxSearchSuggest/15/OneClickSignIn/Standard/Prefetch/ContentPrefetchPrefetchOn/Prerender/Prerender15minTTL/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V1/SpdyCwnd/cwndMin10/SpeculativePrefetchingLearning/SpeculativePrefetchingLearningEnabled/Test0PercentDefault/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_17/UMA-Uniformity-Trial-1-Percent/group_28/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/last_accessed_socket/ --noerrdialogs --disable-client-side-phishing-detection --disable-bundled-ppapi-flash --channel="7452.2.1941072949\121579309" /prefetch:3
C:\WINDOWS\system32\fontdrvhost.exe
"C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe" /showasync
"C:\Users\Lenunka\AppData\Local\SweetLabs App Platform\Engine\ServiceStartMenuIndexer.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Lenovo\Lenovo Peer Connect\LenovoDiscoverySvc.exe"
"C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe"
C:\WINDOWS\SysWOW64\ctfmon.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\Lenovo\Communications Utility\tpknrres.exe"
"C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files (x86)\Click-N-Type\Click-N-Type.exe"
C:\Windows\System32\InstallAgent.exe -Embedding
C:\Windows\System32\InstallAgentUserBroker.exe -Embedding
C:\WINDOWS\system32\cmd.exe /c C:\ProgramData\MAX\start.cmd
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\ProgramData\Oracle\Java\javapath\javaw.exe
"C:\Program Files\Conexant\ForteConfig\fmapp.exe"
"C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe"
"C:\WINDOWS\system32\CxAudMsg64.exe"
C:\WINDOWS\system32\taskhostw.exe
"C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe"
"C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe"
"C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe"
"C:\Program Files\Lenovo\Communications Utility\cammute.exe"
"C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe"
"C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe"
"C:\WINDOWS\system32\taskmgr.exe" /4
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel="1716.0.1719292128\668124373" "C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_127.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 1716 "\\.\pipe\gecko-crash-server-pipe.1716" plugin
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_25_0_0_127.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_25_0_0_127.exe
"C:\Program Files (x86)\Altap Salamander\salamand.exe"
C:\WINDOWS\SysWOW64\DllHost.exe /Processid:{3AD05575-8857-4850-9277-11B85BDB8E09}
"C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe"
C:\WINDOWS\system32\AUDIODG.EXE 0x42c
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe29_ Global\UsGthrCtrlFltPipeMssGthrPipe29 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 636 640 648 8192 644
"C:\Users\Lenunka\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe

====== Scheduled tasks folder ======

C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\tasks\Uninstaller_SkipUac_Lenunka.job - C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
C:\WINDOWS\tasks\WinThruster_DEFAULT.job - C:\Program Files (x86)\WinThruster\WinThruster.exe -default
C:\WINDOWS\tasks\WinThruster_UPDATES.job - C:\Program Files (x86)\WinThruster\WinThruster.exe -updatecheck
C:\WINDOWS\system32\tasks\Adobe Flash Player Updater - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\system32\tasks\AutoPico Daily Restart - "C:\Program Files\KMSpico\AutoPico.exe" /silent
C:\WINDOWS\system32\tasks\Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
C:\WINDOWS\system32\tasks\CLMLSvc - C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task - C:\Users\Lenunka\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\SafeZone scheduled Autoupdate 1469386493 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\WINDOWS\system32\tasks\StartPowerDVDService - "C:\PROGRAM FILES (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe"
C:\WINDOWS\system32\tasks\SweetLabs App Platform - %LOCALAPPDATA%\SweetLabs App Platform\Engine\ServiceHostAppUpdater.exe /LOGON
C:\WINDOWS\system32\tasks\Synaptics TouchPad Enhancements - "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\WINDOWS\system32\tasks\Uninstaller_SkipUac_Lenunka - C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
C:\WINDOWS\system32\tasks\WinThruster_DEFAULT - C:\Program Files (x86)\WinThruster\WinThruster.exe -default
C:\WINDOWS\system32\tasks\WinThruster_UPDATES - C:\Program Files (x86)\WinThruster\WinThruster.exe -updatecheck
C:\WINDOWS\system32\tasks\{B75EC942-0054-444D-A0B1-BF45104A9929} - "c:\program files\internet explorer\iexplore.exe" http://www.skype.com/go/downloading?sou ... rror=12007
C:\WINDOWS\system32\tasks\TVT\TVSUUpdateTask - "C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe" /CM -search C -action INSTALL -includerebootpackages 1,3,4 -noicon -noreboot -nolicense -defaultupdate -schtask
C:\WINDOWS\system32\tasks\TVT\TVSUUpdateTask_UserLogOn - "C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe" PendingTask
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join - %SystemRoot%\System32\AutoWorkplace.exe join
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network - C:\windows\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval - C:\WINDOWS\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe RebootDialog
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - C:\windows\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - C:\windows\system32\MusNotification.exe ReadyToReboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemovalTools\MRT_HB - C:\windows\system32\MRT.exe /EHB /Q
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\PLA\LSC Memory - C:\windows\system32\rundll32.exe C:\windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)"
C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\WINDOWS\system32\tasks\Microsoft\Office\Office 15 Subscription Heartbeat - %ProgramFiles%\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe
C:\WINDOWS\system32\tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 - "C:\Program Files\Microsoft Office\Office16\msoia.exe" scan upload mininterval:2880
C:\WINDOWS\system32\tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 - "C:\Program Files\Microsoft Office\Office16\msoia.exe" scan upload
C:\WINDOWS\system32\tasks\Lenovo\Lenovo Customer Feedback Program - "%ProgramFiles%\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe"
C:\WINDOWS\system32\tasks\Lenovo\Lenovo Customer Feedback Program 64 - "%ProgramFiles(x86)%\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe"
C:\WINDOWS\system32\tasks\Lenovo\Lenovo Customer Feedback Program 64 35 - "%ProgramFiles(x86)%\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe"
C:\WINDOWS\system32\tasks\Lenovo\Lenovo Settings Power - "C:\WINDOWS\system32\rundll32.exe" "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.dll",PwrMgrBkGndMonitor
C:\WINDOWS\system32\tasks\Lenovo\Lenovo Solution Center Launcher - %programfiles%\lenovo\lenovo solution center\App\LSC.Services.UpdateStatusService.exe UpdateStatus
C:\WINDOWS\system32\tasks\Lenovo\LSC\Lenovo Solution Center Notifications - %programfiles%\Lenovo\Lenovo Solution Center\LSCNotify.exe /show
C:\WINDOWS\system32\tasks\Lenovo\LSC\LSCHardwareScan - "C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe" -diag HWScan
C:\WINDOWS\system32\tasks\Lenovo\LSC\LSCHardwareScanPostpone - "C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe" -diag HWScan
C:\WINDOWS\system32\tasks\Lenovo\LSC\LSCTaskService - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCTaskService.exe
C:\WINDOWS\system32\tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance - %windir%\system32\sc.exe START ImControllerService
C:\WINDOWS\system32\tasks\Lenovo\ImController\TimeBasedEvents\3fc26789-1d92-4c13-8627-9b6c9a3a8058 - powershell.exe -nologo -noninteractive "& {New-Item -Path Registry::HKCU\Software\Lenovo\ImController\ScheduledTasks\3fc26789-1d92-4c13-8627-9b6c9a3a8058 -type directory -force;$conter=Get-Date;$conter=$conter.ToUniversalTime();Set-ItemProperty -Path Registry::HKCU\Software\Lenovo\ImController\ScheduledTasks\3fc26789-1d92-4c13-8627-9b6c9a3a8058 -Name ExecutionTime -Value $conter;}"
C:\WINDOWS\system32\tasks\Lenovo\ImController\TimeBasedEvents\680f048f-1504-4bbe-a9bd-b33a507ecc7a - powershell.exe -nologo -noninteractive "& {New-Item -Path Registry::HKCU\Software\Lenovo\ImController\ScheduledTasks\680f048f-1504-4bbe-a9bd-b33a507ecc7a -type directory -force;$conter=Get-Date;$conter=$conter.ToUniversalTime();Set-ItemProperty -Path Registry::HKCU\Software\Lenovo\ImController\ScheduledTasks\680f048f-1504-4bbe-a9bd-b33a507ecc7a -Name ExecutionTime -Value $conter;}"
C:\WINDOWS\system32\tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask - %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
C:\WINDOWS\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs

=========Mozilla firefox=========

ProfilePath - C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default

prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.127 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_127.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50905.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.127 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_25_0_0_127.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.121.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.121.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_121\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50905.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office16\NPSPWRAP.DLL


C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\addons.json
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
Download Manager (S3) - extension - s3download@statusbar
Classic Theme Restorer - extension - ClassicThemeRestorer@ArisT2Noia4dev
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\extensions.json
Classic Theme Restorer - extension - ClassicThemeRestorer@ArisT2Noia4dev - C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\extensions\ClassicThemeRestorer@ArisT2Noia4dev.xpi
Avast Online Security - extension - wrc@avast.com - C:\Program Files\AVAST Software\Avast\WebRep\FF
Avast SafePrice - extension - sp@avast.com - C:\Program Files\AVAST Software\Avast\SafePrice\FF
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b} - C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
Download Manager (S3) - extension - s3download@statusbar - C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\extensions\s3download@statusbar.xpi
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} - C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Firefox Hello - extension - loop@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\loop@mozilla.org.xpi
Websense Helper - extension - websensehelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\websensehelper@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi

C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\pluginreg.dat
Plugin - Adobe Acrobat - 9.0.0.332 - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\browser\nppdf32.dll
Plugin - VLC Web Plugin - 2.2.4.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
Plugin - Google Update - 1.3.32.7 - C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
Plugin - Photo Gallery - 16.4.3528.331 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
Plugin - Microsoft Office 2016 - 16.0.4266.1001 - C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL
Plugin - Silverlight Plug-In - 5.1.50905.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.50905.0\npctrl.dll
Plugin - Intel® Identity Protection Technology - 4.0.5.0 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
Plugin - Intel® Identity Protection Technology - 4.0.5.0 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
Plugin - Shockwave Flash - 25.0.0.127 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_127.dll

=========Google Chrome=========

C:\Users\Lenunka\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension bgjpfhpjcgdppjbgnpnjllokbmcdllig 0 Seznam Lištička - Email 1.4.2
Extension blmojkbhnkkphngknkmgccmlenfaelkd 0 Seznam Lištička - Slovník 1.4.6
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.60
Extension daanglpcpkjjlkhcbladppjphglbigam 0 Avast Online Security (BETA) 12.0.208
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension ennkphjdgehloodpbhlhldgbnhmacadg 1 Settings 0.2
Extension eofcbnmajmjmplflapaojjnihcjkigck 0 Avast SafePrice 12.0.199
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 0 Dokumenty Google offline 1.4
Extension gomekmidlodglbbmalcneegieacbdmki 0 Avast Online Security 12.0.209
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension lmjegmlicamnimmfhcmpkclmigmmcbeh 1 Application Launcher for Drive (by Google) 3.2
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mfffpogegjflfpflabcdkioaeobkgjik 1 GaiaAuthExtension 0.0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf 1 Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.2
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.2
Extension olfeabkoenfaoljndfecamgilllcpiak 0 Seznam Lištička - Rychlá volba 1.8.7
Extension pafkbggdmjlpgkdkcbjmhmfcdpncadgh 1 Google Now 1.2.0.1
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5717.116.0.4
Homepage: http://www.seznam.cz/
default_search_provider.search_url:
C:\Users\Lenunka\AppData\Local\Google\Chrome\User Data\Default\Preferences
Homepage:
default_search_provider.search_url:

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\daanglpcpkjjlkhcbladppjphglbigam]
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck]
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki]
"Path"=


======Registry dump ======


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={BC96DFF4-51D5-4C9C-98D0-2908478C7C1C}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BC96DFF4-51D5-4C9C-98D0-2908478C7C1C}]
"URL"=http://www.bing.com/search?q={searchTer ... TR&pc=LNJB


[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={BC96DFF4-51D5-4C9C-98D0-2908478C7C1C}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{BC96DFF4-51D5-4C9C-98D0-2908478C7C1C}]
"URL"=http://www.bing.com/search?q={searchTer ... TR&pc=LNJB

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2016-05-23 2478880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30 883160]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-04-06 571456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-04-06 234560]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2016-07-30 759768]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft OneDrive for Business Browser Helper - C:\PROGRA~2\MICROS~1\Office16\GROOVEEX.DLL [2017-02-22 1524528]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30 883160]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2016-07-30 759768]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtsCM"=RTSCM64.EXE []
"IgfxTray"=C:\windows\system32\igfxtray.exe [2016-04-29 385520]
"TpShocks"=TpShocks.exe []
"LENOVO.TPKNRRES"=C:\Program Files\Lenovo\Communications Utility\LibStartStub.dll [2014-03-04 74288]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-04-05 213824]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2016-07-30 163800]
"ForteConfig"=C:\Program Files\Conexant\ForteConfig\fmapp.exe [2010-10-26 49056]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2014-11-25 935104]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2014-04-10 1830616]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Lenunka\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-04-08 1518808]
"Viber"=C:\Users\Lenunka\AppData\Local\Viber\Viber.exe [2017-02-15 34978896]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2017-03-21 23819304]
"NaturalPoint"=C:\Program Files (x86)\NaturalPoint\SmartNav\SmartNAV.exe [2012-07-30 394864]
"WinThrusterReminder"=C:\Program Files (x86)\WinThruster\WinThruster.exe [2015-11-25 7129208]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Application Restart #1"=C:\Users\Lenunka\AppData\Local\SweetLabs App Platform\Engine\ServiceHostApp.exe [2016-11-16 7873512]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IMSS"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [2013-09-16 134616]
"Fastboot"=C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe [2014-09-03 750320]
"IJNetworkScannerSelectorEX"=C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [2012-08-31 452272]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-12-12 587288]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
ThinkPad OneLink Dock Management.lnk - C:\Program Files (x86)\Lenovo\OneLink Dock\onelinkpromgn.exe

C:\Users\Lenunka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
RAC Server.lnk - C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"undockwithoutlogon"=1
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"EnableLinkedConnections"=1
"SoftwareSASGeneration"=1
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe" = "C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe:*:Enabled:Remote Administrator Control Server"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
"StubPath" = %SystemRoot%\inf\unregmp2.exe /ShowWMP

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

====== File associations ======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

tominaxx
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 20 zář 2006 00:03
Kontaktovat uživatele:

Re: Nejdou kliknutim otevrit okna ze "systray" /oznameni,apo

#2 Příspěvek od tominaxx »

====== List of files/folders created in the last 1 month ======

2017-04-11 01:10:13 ----D---- C:\rsit
2017-04-11 01:10:13 ----D---- C:\Program Files\trend micro
2017-04-10 19:58:18 ----A---- C:\WINDOWS\SYSWOW64\RACServerLogon.dll
2017-04-10 13:00:04 ----D---- C:\WINDOWS\Cnxt
2017-04-10 12:59:09 ----A---- C:\WINDOWS\SYSWOW64\SASrv.exe
2017-04-10 12:59:01 ----A---- C:\WINDOWS\system32\drivers\CxSfPt.dat
2017-04-10 12:58:52 ----A---- C:\WINDOWS\system32\CxAudMsg64.exe
2017-04-10 12:58:45 ----A---- C:\WINDOWS\system32\drivers\SamSfPa.dat
2017-04-10 12:45:08 ----D---- C:\Program Files (x86)\MozBackup
2017-04-10 12:36:57 ----D---- C:\ProgramData\SWCUTemp
2017-04-10 12:21:10 ----D---- C:\Users\Lenunka\AppData\Roaming\Solvusoft
2017-04-10 12:21:07 ----A---- C:\WINDOWS\system32\roboot64.exe
2017-04-10 12:21:03 ----D---- C:\Program Files (x86)\WinThruster
2017-04-10 12:13:10 ----D---- C:\Program Files (x86)\WinASO
2017-04-10 09:19:13 ----D---- C:\WINDOWS\SoftwareDistribution
2017-04-10 03:26:14 ----D---- C:\ProgramData\ClassicShell
2017-04-10 03:26:13 ----D---- C:\Users\Lenunka\AppData\Roaming\ClassicShell
2017-04-10 03:25:50 ----D---- C:\Program Files\Classic Shell
2017-04-08 20:16:16 ----D---- C:\Users\Lenunka\AppData\Roaming\Imaging Intelligence
2017-04-08 01:08:19 ----A---- C:\WINDOWS\system32\RtNicProp64.dll
2017-04-08 01:08:19 ----A---- C:\WINDOWS\system32\drivers\Rt630x64.sys
2017-04-08 01:00:45 ----A---- C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2017-04-08 01:00:44 ----A---- C:\WINDOWS\SYSWOW64\Intel_OpenCL_ICD32.dll
2017-04-08 01:00:44 ----A---- C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2017-04-08 01:00:43 ----A---- C:\WINDOWS\SYSWOW64\IntelOpenCL32.dll
2017-04-08 01:00:43 ----A---- C:\WINDOWS\SYSWOW64\IntelCpHeciSvc.exe
2017-04-08 01:00:43 ----A---- C:\WINDOWS\system32\IntelWiDiUMS64.exe
2017-04-08 01:00:43 ----A---- C:\WINDOWS\system32\IntelWiDiMCComp64.dll
2017-04-08 01:00:43 ----A---- C:\WINDOWS\system32\IntelOpenCL64.dll
2017-04-08 01:00:43 ----A---- C:\WINDOWS\system32\IntelCpHDCPSvc.exe
2017-04-08 01:00:43 ----A---- C:\WINDOWS\system32\igfxCoIn_v4416.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\SYSWOW64\iglhsip32.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\SYSWOW64\iglhcp32.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\SYSWOW64\igfxexps32.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\SYSWOW64\igfxcmrt32.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\SYSWOW64\igfxcmjit32.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\SYSWOW64\igfx11cmrt32.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\iglhsip64.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\iglhcp64.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxTray.exe
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxSDKLibv2_0.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxSDKLib.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxSDK.exe
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxOSP.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxLHMLib.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxext.exe
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxEMLibv2_0.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxEMLib.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxDILibv2_0.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxDILib.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxDHLibv2_0.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxDHLib.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxCUIServicePS.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxcmrt64.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfxcmjit64.dll
2017-04-08 01:00:42 ----A---- C:\WINDOWS\system32\igfx11cmrt64.dll
2017-04-08 01:00:38 ----A---- C:\WINDOWS\system32\igdumdim64.dll
2017-04-08 01:00:33 ----A---- C:\WINDOWS\SYSWOW64\igdrcl32.dll
2017-04-08 01:00:33 ----A---- C:\WINDOWS\SYSWOW64\igdmd32.dll
2017-04-08 01:00:33 ----A---- C:\WINDOWS\system32\igdrcl64.dll
2017-04-08 01:00:33 ----A---- C:\WINDOWS\system32\igdmd64.dll
2017-04-08 01:00:32 ----A---- C:\WINDOWS\system32\igdmcl64.dll
2017-04-08 01:00:31 ----A---- C:\WINDOWS\SYSWOW64\igdmcl32.dll
2017-04-08 01:00:29 ----A---- C:\WINDOWS\SYSWOW64\igdfcl32.dll
2017-04-08 01:00:29 ----A---- C:\WINDOWS\SYSWOW64\igdde32.dll
2017-04-08 01:00:29 ----A---- C:\WINDOWS\system32\igdfcl64.dll
2017-04-08 01:00:29 ----A---- C:\WINDOWS\system32\igdde64.dll
2017-04-08 01:00:28 ----A---- C:\WINDOWS\SYSWOW64\igdbcl32.dll
2017-04-08 01:00:28 ----A---- C:\WINDOWS\SYSWOW64\igdail32.dll
2017-04-08 01:00:28 ----A---- C:\WINDOWS\SYSWOW64\igd12umd32.dll
2017-04-08 01:00:28 ----A---- C:\WINDOWS\system32\igdbcl64.dll
2017-04-08 01:00:28 ----A---- C:\WINDOWS\system32\igdail64.dll
2017-04-08 01:00:28 ----A---- C:\WINDOWS\system32\igd12umd64.dll
2017-04-08 01:00:28 ----A---- C:\WINDOWS\system32\igd11dxva64.dll
2017-04-08 01:00:27 ----A---- C:\WINDOWS\SYSWOW64\igd11dxva32.dll
2017-04-08 01:00:26 ----A---- C:\WINDOWS\SYSWOW64\igd10idpp32.dll
2017-04-08 01:00:26 ----A---- C:\WINDOWS\system32\igd10idpp64.dll
2017-04-08 01:00:26 ----A---- C:\WINDOWS\system32\igc64.dll
2017-04-08 01:00:25 ----A---- C:\WINDOWS\SYSWOW64\igc32.dll
2017-04-08 01:00:24 ----A---- C:\WINDOWS\SYSWOW64\ig75icd32.dll
2017-04-08 01:00:24 ----A---- C:\WINDOWS\system32\ig75icd64.dll
2017-04-08 01:00:24 ----A---- C:\WINDOWS\system32\Gfxv4_0.exe
2017-04-08 01:00:24 ----A---- C:\WINDOWS\system32\Gfxv2_0.exe
2017-04-08 01:00:24 ----A---- C:\WINDOWS\system32\GfxUIEx.exe
2017-04-08 01:00:23 ----A---- C:\WINDOWS\system32\GfxResources.dll
2017-04-08 01:00:23 ----A---- C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2017-04-08 01:00:23 ----A---- C:\WINDOWS\system32\DPTopologyApp.exe
2017-04-08 01:00:23 ----A---- C:\WINDOWS\system32\difx64.exe
2017-04-08 01:00:20 ----A---- C:\WINDOWS\SYSWOW64\common_clang32.dll
2017-04-08 01:00:20 ----A---- C:\WINDOWS\system32\drivers\IntcDAud.sys
2017-04-08 01:00:20 ----A---- C:\WINDOWS\system32\common_clang64.dll
2017-04-08 00:24:57 ----A---- C:\WINDOWS\SYSWOW64\CompPkgSup.dll
2017-04-08 00:24:49 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-04-08 00:24:49 ----A---- C:\WINDOWS\system32\edgehtml.dll
2017-04-08 00:24:47 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2017-04-08 00:24:46 ----A---- C:\WINDOWS\system32\sppobjs.dll
2017-04-08 00:24:46 ----A---- C:\WINDOWS\system32\CompPkgSup.dll
2017-04-08 00:24:46 ----A---- C:\WINDOWS\system32\appraiser.dll
2017-04-08 00:24:46 ----A---- C:\WINDOWS\system32\acmigration.dll
2017-04-07 22:59:15 ----A---- C:\WINDOWS\system32\Vestris.ResourceLib.dll
2017-04-07 22:59:14 ----AD---- C:\Program Files\KMSpico
2017-04-07 22:50:33 ----D---- C:\Program Files\Microsoft.NET
2017-04-07 22:50:03 ----AD---- C:\Program Files\Common Files\DESIGNER
2017-04-07 22:49:49 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2017-04-07 22:49:46 ----D---- C:\Program Files\Microsoft SQL Server
2017-04-07 22:47:57 ----D---- C:\Program Files\Microsoft Analysis Services
2017-04-07 22:47:57 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2017-04-07 22:46:49 ----RHD---- C:\MSOCache
2017-04-07 22:40:20 ----D---- C:\ProgramData\Alcohol Soft
2017-04-07 20:59:11 ----D---- C:\ProgramData\InstallShield
2017-04-07 20:00:10 ----A---- C:\WINDOWS\system32\drivers\sptd2.sys
2017-04-07 19:38:24 ----D---- C:\Program Files (x86)\Alcohol Soft
2017-04-07 19:04:15 ----AD---- C:\Program Files (x86)\Altap Salamander
2017-04-07 17:40:47 ----A---- C:\WINDOWS\SECOH-QAD.exe
2017-04-07 17:40:47 ----A---- C:\WINDOWS\SECOH-QAD.dll
2017-04-06 19:21:50 ----D---- C:\ProgramData\ProgDVB
2017-04-06 16:25:12 ----AD---- C:\Program Files (x86)\CNT Language Development Kit
2017-04-06 16:17:14 ----AD---- C:\Program Files (x86)\Click-N-Type
2017-04-06 14:49:30 ----D---- C:\Program Files (x86)\Macro Express Pro
2017-04-06 11:26:58 ----D---- C:\Program Files (x86)\NaturalPoint
2017-04-05 00:53:15 ----A---- C:\WINDOWS\system32\aswBoot.exe
2017-04-04 18:03:39 ----D---- C:\ProgramData\ProductData
2017-04-04 18:03:27 ----D---- C:\Program Files (x86)\IObit
2017-04-04 18:03:11 ----D---- C:\Users\Lenunka\AppData\Roaming\IObit
2017-04-04 18:03:11 ----D---- C:\ProgramData\IObit
2017-04-04 12:37:37 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2017-03-25 00:06:22 ----RD---- C:\Program Files (x86)\Skype
2017-03-21 00:09:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-03-21 00:09:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2017-03-21 00:09:30 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2017-03-21 00:09:29 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2017-03-21 00:09:29 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2017-03-21 00:09:29 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2017-03-21 00:09:29 ----A---- C:\WINDOWS\SYSWOW64\icm32.dll
2017-03-21 00:09:29 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2017-03-21 00:09:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2017-03-21 00:09:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2017-03-21 00:09:28 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2017-03-21 00:09:27 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2017-03-21 00:09:27 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2017-03-21 00:09:27 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2017-03-21 00:09:27 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2017-03-21 00:09:27 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2017-03-21 00:09:27 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2017-03-21 00:09:26 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2017-03-21 00:09:26 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2017-03-21 00:09:26 ----A---- C:\WINDOWS\SYSWOW64\tapi32.dll
2017-03-21 00:09:26 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2017-03-21 00:09:26 ----A---- C:\WINDOWS\SYSWOW64\mscms.dll
2017-03-21 00:09:25 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2017-03-21 00:09:25 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2017-03-21 00:09:25 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2017-03-21 00:09:25 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2017-03-21 00:09:24 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2017-03-21 00:09:24 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2017-03-21 00:09:24 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-03-21 00:09:23 ----A---- C:\WINDOWS\SYSWOW64\rasgcw.dll
2017-03-21 00:09:23 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2017-03-21 00:09:23 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2017-03-21 00:09:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.FaceAnalysis.dll
2017-03-21 00:09:22 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2017-03-21 00:09:22 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2017-03-21 00:09:22 ----A---- C:\WINDOWS\SYSWOW64\imapi2fs.dll
2017-03-21 00:09:21 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2017-03-21 00:09:21 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2017-03-21 00:09:20 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2017-03-21 00:09:20 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2017-03-21 00:09:20 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2017-03-21 00:09:20 ----A---- C:\WINDOWS\SYSWOW64\Pimstore.dll
2017-03-21 00:09:20 ----A---- C:\WINDOWS\SYSWOW64\DavSyncProvider.dll
2017-03-21 00:09:20 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2017-03-21 00:09:19 ----A---- C:\WINDOWS\SYSWOW64\mmc.exe
2017-03-21 00:09:19 ----A---- C:\WINDOWS\SYSWOW64\fontext.dll
2017-03-21 00:09:18 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2017-03-21 00:09:17 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2017-03-21 00:09:17 ----A---- C:\WINDOWS\SYSWOW64\scksp.dll
2017-03-21 00:09:17 ----A---- C:\WINDOWS\SYSWOW64\basecsp.dll
2017-03-21 00:09:16 ----A---- C:\WINDOWS\SYSWOW64\WwaApi.dll
2017-03-21 00:09:16 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2017-03-21 00:09:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Maps.dll
2017-03-21 00:09:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Phone.dll
2017-03-21 00:09:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2017-03-21 00:09:15 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2017-03-21 00:09:14 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2017-03-21 00:09:14 ----A---- C:\WINDOWS\SYSWOW64\msctfp.dll
2017-03-21 00:09:14 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2017-03-21 00:09:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2017-03-21 00:09:13 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2017-03-21 00:09:13 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2017-03-21 00:09:13 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2017-03-21 00:09:12 ----A---- C:\WINDOWS\SYSWOW64\wsp_sr.dll
2017-03-21 00:09:12 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2017-03-21 00:09:12 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2017-03-21 00:09:12 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2017-03-21 00:09:12 ----A---- C:\WINDOWS\SYSWOW64\MSVPXENC.dll
2017-03-21 00:09:12 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2017-03-21 00:09:12 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2017-03-21 00:09:11 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2017-03-21 00:09:11 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2017-03-21 00:09:11 ----A---- C:\WINDOWS\SYSWOW64\vaultcli.dll
2017-03-21 00:09:11 ----A---- C:\WINDOWS\SYSWOW64\tbauth.dll
2017-03-21 00:09:11 ----A---- C:\WINDOWS\SYSWOW64\PlayToReceiver.dll
2017-03-21 00:09:11 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2017-03-21 00:09:11 ----A---- C:\WINDOWS\SYSWOW64\MSPhotography.dll
2017-03-21 00:09:11 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2017-03-21 00:09:11 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2017-03-21 00:09:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-03-21 00:09:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2017-03-21 00:09:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2017-03-21 00:09:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.UI.GameBar.dll
2017-03-21 00:09:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
2017-03-21 00:09:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.LowLevel.dll
2017-03-21 00:09:10 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2017-03-21 00:09:10 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2017-03-21 00:09:10 ----A---- C:\WINDOWS\SYSWOW64\MCCSEngineShared.dll
2017-03-21 00:09:10 ----A---- C:\WINDOWS\SYSWOW64\GamePanelExternalHook.dll
2017-03-21 00:09:10 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2017-03-21 00:09:10 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2017-03-21 00:09:10 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2017-03-21 00:09:09 ----A---- C:\WINDOWS\SYSWOW64\WinRtTracing.dll
2017-03-21 00:09:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2017-03-21 00:09:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2017-03-21 00:09:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2017-03-21 00:09:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.dll
2017-03-21 00:09:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SerialCommunication.dll
2017-03-21 00:09:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2017-03-21 00:09:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Picker.dll
2017-03-21 00:09:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2017-03-21 00:09:09 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2017-03-21 00:09:09 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2017-03-21 00:09:09 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2017-03-21 00:09:09 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2017-03-21 00:09:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.SystemManagement.dll
2017-03-21 00:09:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Perception.Stub.dll
2017-03-21 00:09:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-03-21 00:09:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2017-03-21 00:09:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-03-21 00:09:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Input.dll
2017-03-21 00:09:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFiDirect.dll
2017-03-21 00:09:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2017-03-21 00:09:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-03-21 00:09:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2017-03-21 00:09:08 ----A---- C:\WINDOWS\SYSWOW64\mbsmsapi.dll
2017-03-21 00:09:08 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetails.dll
2017-03-21 00:09:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Diagnostics.dll
2017-03-21 00:09:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2017-03-21 00:09:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Ocr.dll
2017-03-21 00:09:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2017-03-21 00:09:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.PointOfService.dll
2017-03-21 00:09:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Midi.dll
2017-03-21 00:09:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2017-03-21 00:09:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.AllJoyn.dll
2017-03-21 00:09:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
2017-03-21 00:09:06 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2017-03-21 00:09:06 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2017-03-21 00:09:06 ----A---- C:\WINDOWS\SYSWOW64\findnetprinters.dll
2017-03-21 00:09:05 ----A---- C:\WINDOWS\SYSWOW64\wlidprov.dll
2017-03-21 00:09:05 ----A---- C:\WINDOWS\SYSWOW64\regedit.exe
2017-03-21 00:09:05 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2017-03-21 00:09:05 ----A---- C:\WINDOWS\SYSWOW64\puiapi.dll
2017-03-21 00:09:04 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-03-21 00:09:04 ----A---- C:\WINDOWS\SYSWOW64\azroleui.dll
2017-03-21 00:09:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2017-03-21 00:09:03 ----A---- C:\WINDOWS\SYSWOW64\netiougc.exe
2017-03-21 00:09:02 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2017-03-21 00:09:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2017-03-21 00:09:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2017-03-21 00:09:02 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2017-03-21 00:09:02 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2017-03-21 00:09:02 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2017-03-21 00:09:02 ----A---- C:\WINDOWS\SYSWOW64\mssphtb.dll
2017-03-21 00:09:02 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2017-03-21 00:09:02 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2017-03-21 00:09:01 ----A---- C:\WINDOWS\SYSWOW64\TSWorkspace.dll
2017-03-21 00:09:01 ----A---- C:\WINDOWS\SYSWOW64\sud.dll
2017-03-21 00:09:01 ----A---- C:\WINDOWS\SYSWOW64\NaturalLanguage6.dll
2017-03-21 00:09:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Search.dll
2017-03-21 00:09:00 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2017-03-21 00:09:00 ----A---- C:\WINDOWS\SYSWOW64\IPHLPAPI.DLL
2017-03-21 00:09:00 ----A---- C:\WINDOWS\SYSWOW64\input.dll
2017-03-21 00:09:00 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2017-03-21 00:09:00 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2017-03-21 00:08:59 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2017-03-21 00:08:58 ----A---- C:\WINDOWS\system32\drivers\storahci.sys
2017-03-21 00:08:58 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2017-03-21 00:08:58 ----A---- C:\WINDOWS\system32\drivers\IPMIDrv.sys
2017-03-21 00:08:57 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2017-03-21 00:08:57 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2017-03-21 00:08:57 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2017-03-21 00:08:57 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2017-03-21 00:08:57 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2017-03-21 00:08:57 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2017-03-21 00:08:56 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2017-03-21 00:08:56 ----A---- C:\WINDOWS\SYSWOW64\PrintDialogs.dll
2017-03-21 00:08:56 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2017-03-21 00:08:56 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2017-03-21 00:08:56 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2017-03-21 00:08:56 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2017-03-21 00:08:55 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-03-21 00:08:55 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2017-03-21 00:08:55 ----A---- C:\WINDOWS\SYSWOW64\ddraw.dll
2017-03-21 00:08:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.HostName.dll
2017-03-21 00:08:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2017-03-21 00:08:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2017-03-21 00:08:53 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2017-03-21 00:08:53 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2017-03-21 00:08:53 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2017-03-21 00:08:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2017-03-21 00:08:52 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2017-03-21 00:08:52 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2017-03-21 00:08:52 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2017-03-21 00:08:51 ----A---- C:\WINDOWS\SYSWOW64\WMVSENCD.DLL
2017-03-21 00:08:51 ----A---- C:\WINDOWS\SYSWOW64\wlanui.dll
2017-03-21 00:08:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2017-03-21 00:08:51 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2017-03-21 00:08:51 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2017-03-21 00:08:50 ----A---- C:\WINDOWS\SYSWOW64\UserLanguagesCpl.dll
2017-03-21 00:08:50 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-03-21 00:08:50 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2017-03-21 00:08:50 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2017-03-21 00:08:50 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2017-03-21 00:08:50 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2017-03-21 00:08:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Usb.dll
2017-03-21 00:08:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2017-03-21 00:08:49 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.Ngc.dll
2017-03-21 00:08:49 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.dll
2017-03-21 00:08:49 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2017-03-21 00:08:49 ----A---- C:\WINDOWS\SYSWOW64\PCPTpm12.dll
2017-03-21 00:08:49 ----A---- C:\WINDOWS\SYSWOW64\CloudBackupSettings.dll
2017-03-21 00:08:49 ----A---- C:\WINDOWS\SYSWOW64\CameraCaptureUI.dll
2017-03-21 00:08:48 ----A---- C:\WINDOWS\SYSWOW64\msutb.dll
2017-03-21 00:08:48 ----A---- C:\WINDOWS\SYSWOW64\msctfui.dll
2017-03-21 00:08:48 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2017-03-21 00:08:48 ----A---- C:\WINDOWS\SYSWOW64\mscandui.dll
2017-03-21 00:08:48 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2017-03-21 00:08:48 ----A---- C:\WINDOWS\SYSWOW64\ddrawex.dll
2017-03-21 00:08:47 ----A---- C:\WINDOWS\SYSWOW64\XInputUap.dll
2017-03-21 00:08:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2017-03-21 00:08:47 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2017-03-21 00:08:47 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2017-03-21 00:08:47 ----A---- C:\WINDOWS\SYSWOW64\MMDevAPI.dll
2017-03-21 00:08:47 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2017-03-21 00:08:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2017-03-21 00:08:45 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2017-03-21 00:08:45 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2017-03-21 00:08:45 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2017-03-21 00:08:44 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2017-03-21 00:08:44 ----A---- C:\WINDOWS\SYSWOW64\RADCUI.dll
2017-03-21 00:08:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2017-03-21 00:08:43 ----A---- C:\WINDOWS\SYSWOW64\tcpipcfg.dll
2017-03-21 00:08:43 ----A---- C:\WINDOWS\SYSWOW64\netiohlp.dll
2017-03-21 00:08:43 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2017-03-21 00:08:43 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2017-03-21 00:08:43 ----A---- C:\WINDOWS\SYSWOW64\accountaccessor.dll
2017-03-21 00:08:42 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2017-03-21 00:08:42 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2017-03-21 00:08:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2017-03-21 00:08:41 ----A---- C:\WINDOWS\SYSWOW64\ProximityCommon.dll
2017-03-21 00:08:40 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2017-03-21 00:08:40 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2017-03-21 00:08:40 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2017-03-21 00:08:40 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2017-03-21 00:08:40 ----A---- C:\WINDOWS\SYSWOW64\BrowserSettingSync.dll
2017-03-21 00:08:40 ----A---- C:\WINDOWS\SYSWOW64\AuthBroker.dll
2017-03-21 00:08:39 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2017-03-21 00:08:39 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2017-03-21 00:08:39 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2017-03-21 00:08:39 ----A---- C:\WINDOWS\SYSWOW64\DafPrintProvider.dll
2017-03-21 00:08:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2017-03-21 00:08:38 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2017-03-21 00:08:38 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2017-03-21 00:08:38 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2017-03-21 00:08:37 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2017-03-21 00:08:37 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll
2017-03-21 00:08:37 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2017-03-21 00:08:37 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2017-03-21 00:08:36 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2017-03-21 00:08:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2017-03-21 00:08:36 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerCookies.exe
2017-03-21 00:08:36 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2017-03-21 00:08:36 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2017-03-21 00:08:35 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2017-03-21 00:08:35 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2017-03-21 00:08:35 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2017-03-21 00:08:35 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2017-03-21 00:08:35 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2017-03-21 00:08:35 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll
2017-03-21 00:08:35 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2017-03-21 00:08:34 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2017-03-21 00:08:34 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2017-03-21 00:08:34 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2017-03-21 00:08:34 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2017-03-21 00:08:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2017-03-21 00:08:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2017-03-21 00:08:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2017-03-21 00:08:33 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2017-03-21 00:08:33 ----A---- C:\WINDOWS\SYSWOW64\CryptoWinRT.dll
2017-03-21 00:08:33 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2017-03-21 00:08:32 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2017-03-21 00:08:32 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2017-03-21 00:08:32 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2017-03-21 00:08:32 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2017-03-21 00:08:32 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2017-03-21 00:08:32 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2017-03-21 00:08:32 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2017-03-21 00:08:32 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2017-03-21 00:08:31 ----A---- C:\WINDOWS\SYSWOW64\WsmWmiPl.dll
2017-03-21 00:08:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2017-03-21 00:08:31 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2017-03-21 00:08:31 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2017-03-21 00:08:31 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2017-03-21 00:08:31 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2017-03-21 00:08:31 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2017-03-21 00:08:31 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2017-03-21 00:08:30 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2017-03-21 00:08:30 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2017-03-21 00:08:30 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2017-03-21 00:08:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-03-21 00:08:29 ----A---- C:\WINDOWS\SYSWOW64\MSVP9DEC.dll
2017-03-21 00:08:29 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2017-03-21 00:08:29 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2017-03-21 00:08:29 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2017-03-21 00:08:29 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2017-03-21 00:08:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2017-03-21 00:08:28 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2017-03-21 00:08:28 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2017-03-21 00:08:24 ----A---- C:\WINDOWS\system32\wwansvc.dll
2017-03-21 00:08:24 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2017-03-21 00:08:24 ----A---- C:\WINDOWS\system32\WwaApi.dll
2017-03-21 00:08:24 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2017-03-21 00:08:24 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2017-03-21 00:08:23 ----A---- C:\WINDOWS\SYSWOW64\WPDShServiceObj.dll
2017-03-21 00:08:23 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2017-03-21 00:08:23 ----A---- C:\WINDOWS\system32\WWAHost.exe
2017-03-21 00:08:23 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2017-03-21 00:08:23 ----A---- C:\WINDOWS\system32\tquery.dll
2017-03-21 00:08:23 ----A---- C:\WINDOWS\system32\mssitlb.dll
2017-03-21 00:08:22 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2017-03-21 00:08:22 ----A---- C:\WINDOWS\SYSWOW64\wmpmde.dll
2017-03-21 00:08:22 ----A---- C:\WINDOWS\system32\wmpmde.dll
2017-03-21 00:08:22 ----A---- C:\WINDOWS\system32\wlanui.dll
2017-03-21 00:08:22 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2017-03-21 00:08:22 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2017-03-21 00:08:22 ----A---- C:\WINDOWS\system32\mssrch.dll
2017-03-21 00:08:21 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2017-03-21 00:08:21 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2017-03-21 00:08:21 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2017-03-21 00:08:21 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2017-03-21 00:08:21 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2017-03-21 00:08:21 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2017-03-21 00:08:21 ----A---- C:\WINDOWS\system32\mssphtb.dll
2017-03-21 00:08:21 ----A---- C:\WINDOWS\system32\mssph.dll
2017-03-21 00:08:20 ----A---- C:\WINDOWS\system32\wwanmm.dll
2017-03-21 00:08:20 ----A---- C:\WINDOWS\system32\wwanconn.dll
2017-03-21 00:08:20 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2017-03-21 00:08:20 ----A---- C:\WINDOWS\system32\mssvp.dll
2017-03-21 00:08:17 ----A---- C:\WINDOWS\system32\nshwfp.dll
2017-03-21 00:08:08 ----A---- C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2017-03-21 00:08:07 ----A---- C:\WINDOWS\system32\WinRtTracing.dll
2017-03-21 00:08:07 ----A---- C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2017-03-21 00:08:07 ----A---- C:\WINDOWS\system32\Windows.Devices.Perception.dll
2017-03-21 00:08:07 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2017-03-21 00:08:07 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2017-03-21 00:08:07 ----A---- C:\WINDOWS\system32\mssprxy.dll
2017-03-21 00:08:06 ----A---- C:\WINDOWS\system32\XblGameSaveExt.dll
2017-03-21 00:08:06 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-03-21 00:08:06 ----A---- C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2017-03-21 00:08:06 ----A---- C:\WINDOWS\system32\Windows.Gaming.UI.GameBar.dll
2017-03-21 00:08:06 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-03-21 00:08:02 ----A---- C:\WINDOWS\system32\wuuhext.dll
2017-03-21 00:08:02 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2017-03-21 00:08:01 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSetup.exe
2017-03-21 00:08:01 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2017-03-21 00:08:00 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2017-03-21 00:08:00 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2017-03-21 00:08:00 ----A---- C:\WINDOWS\system32\wfdprov.dll
2017-03-21 00:08:00 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2017-03-21 00:07:59 ----A---- C:\WINDOWS\system32\wmp.dll
2017-03-21 00:07:57 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-03-21 00:07:56 ----A---- C:\WINDOWS\system32\wlansec.dll
2017-03-21 00:07:56 ----A---- C:\WINDOWS\system32\wlanapi.dll
2017-03-21 00:07:56 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2017-03-21 00:07:56 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2017-03-21 00:07:56 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2017-03-21 00:07:56 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2017-03-21 00:07:55 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-03-21 00:07:55 ----A---- C:\WINDOWS\system32\sdshext.dll
2017-03-21 00:07:55 ----A---- C:\WINDOWS\system32\PrintDialogs3D.dll
2017-03-21 00:07:55 ----A---- C:\WINDOWS\system32\netiougc.exe
2017-03-21 00:07:55 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2017-03-21 00:07:55 ----A---- C:\WINDOWS\system32\drivers\tcpipreg.sys
2017-03-21 00:07:55 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2017-03-21 00:07:55 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2017-03-21 00:07:54 ----A---- C:\WINDOWS\system32\VCardParser.dll
2017-03-21 00:07:54 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2017-03-21 00:07:54 ----A---- C:\WINDOWS\system32\MSPhotography.dll
2017-03-21 00:07:54 ----A---- C:\WINDOWS\system32\mfds.dll
2017-03-21 00:07:54 ----A---- C:\WINDOWS\system32\DavSyncProvider.dll
2017-03-21 00:07:54 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2017-03-21 00:07:53 ----A---- C:\WINDOWS\system32\wlansvc.dll
2017-03-21 00:07:53 ----A---- C:\WINDOWS\system32\mprddm.dll
2017-03-21 00:07:53 ----A---- C:\WINDOWS\system32\MMDevAPI.dll
2017-03-21 00:07:53 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2017-03-21 00:07:52 ----A---- C:\WINDOWS\system32\rasgcw.dll
2017-03-21 00:07:52 ----A---- C:\WINDOWS\system32\pnidui.dll
2017-03-21 00:07:52 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2017-03-21 00:07:52 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2017-03-21 00:07:52 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2017-03-21 00:07:51 ----A---- C:\WINDOWS\system32\win32spl.dll
2017-03-21 00:07:51 ----A---- C:\WINDOWS\system32\tapi32.dll
2017-03-21 00:07:51 ----A---- C:\WINDOWS\system32\spoolsv.exe
2017-03-21 00:07:51 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2017-03-21 00:07:51 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2017-03-21 00:07:51 ----A---- C:\WINDOWS\system32\localspl.dll
2017-03-21 00:07:50 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2017-03-21 00:07:50 ----A---- C:\WINDOWS\system32\PrintDialogs.dll
2017-03-21 00:07:50 ----A---- C:\WINDOWS\system32\odbcconf.dll
2017-03-21 00:07:50 ----A---- C:\WINDOWS\system32\msxml3.dll
2017-03-21 00:07:49 ----A---- C:\WINDOWS\system32\Unistore.dll
2017-03-21 00:07:49 ----A---- C:\WINDOWS\system32\sdengin2.dll
2017-03-21 00:07:49 ----A---- C:\WINDOWS\system32\Pimstore.dll
2017-03-21 00:07:49 ----A---- C:\WINDOWS\system32\mmc.exe
2017-03-21 00:07:49 ----A---- C:\WINDOWS\system32\ExSMime.dll
2017-03-21 00:07:48 ----A---- C:\WINDOWS\system32\Windows.Storage.Search.dll
2017-03-21 00:07:48 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2017-03-21 00:07:48 ----A---- C:\WINDOWS\system32\UserDataService.dll
2017-03-21 00:07:48 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-03-21 00:07:48 ----A---- C:\WINDOWS\system32\ContactApis.dll
2017-03-21 00:07:47 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2017-03-21 00:07:47 ----A---- C:\WINDOWS\system32\internetmail.dll
2017-03-21 00:07:47 ----A---- C:\WINDOWS\system32\AuthHost.exe
2017-03-21 00:07:47 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2017-03-21 00:07:46 ----A---- C:\WINDOWS\system32\shell32.dll
2017-03-21 00:07:45 ----A---- C:\WINDOWS\system32\windows.storage.dll
2017-03-21 00:07:44 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2017-03-21 00:07:44 ----A---- C:\WINDOWS\system32\DafPrintProvider.dll
2017-03-21 00:07:43 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2017-03-21 00:07:43 ----A---- C:\WINDOWS\system32\WpcMon.exe
2017-03-21 00:07:43 ----A---- C:\WINDOWS\system32\Wpc.dll
2017-03-21 00:07:43 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2017-03-21 00:07:43 ----A---- C:\WINDOWS\system32\PrintRenderAPIHost.DLL
2017-03-21 00:07:42 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2017-03-21 00:07:42 ----A---- C:\WINDOWS\system32\mos.dll
2017-03-21 00:07:42 ----A---- C:\WINDOWS\system32\diagtrack.dll
2017-03-21 00:07:41 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2017-03-21 00:07:41 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2017-03-21 00:07:40 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2017-03-21 00:07:40 ----A---- C:\WINDOWS\system32\MSVPXENC.dll
2017-03-21 00:07:39 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2017-03-21 00:07:39 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2017-03-21 00:07:38 ----A---- C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-03-21 00:07:38 ----A---- C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-03-21 00:07:38 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2017-03-21 00:07:38 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
2017-03-21 00:07:38 ----A---- C:\WINDOWS\system32\FrameServer.dll
2017-03-21 00:07:38 ----A---- C:\WINDOWS\system32\BingMaps.dll
2017-03-21 00:07:37 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2017-03-21 00:07:37 ----A---- C:\WINDOWS\system32\mfcore.dll
2017-03-21 00:07:37 ----A---- C:\WINDOWS\system32\mf.dll
2017-03-21 00:07:36 ----A---- C:\WINDOWS\system32\wpnapps.dll
2017-03-21 00:07:36 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2017-03-21 00:07:36 ----A---- C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2017-03-21 00:07:36 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2017-03-21 00:07:36 ----A---- C:\WINDOWS\system32\EmailApis.dll
2017-03-21 00:07:36 ----A---- C:\WINDOWS\system32\DuCsps.dll
2017-03-21 00:07:35 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-03-21 00:07:35 ----A---- C:\WINDOWS\system32\MCCSEngineShared.dll
2017-03-21 00:07:35 ----A---- C:\WINDOWS\system32\ChatApis.dll
2017-03-21 00:07:35 ----A---- C:\WINDOWS\system32\cemapi.dll
2017-03-21 00:07:34 ----A---- C:\WINDOWS\system32\RTMediaFrame.dll
2017-03-21 00:07:34 ----A---- C:\WINDOWS\system32\puiobj.dll
2017-03-21 00:07:34 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2017-03-21 00:07:34 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2017-03-21 00:07:33 ----A---- C:\WINDOWS\system32\SpaceControl.dll
2017-03-21 00:07:33 ----A---- C:\WINDOWS\system32\MapRouter.dll
2017-03-21 00:07:33 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2017-03-21 00:07:33 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-03-21 00:07:32 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2017-03-21 00:07:32 ----A---- C:\WINDOWS\system32\RelPost.exe
2017-03-21 00:07:32 ----A---- C:\WINDOWS\system32\MapsStore.dll
2017-03-21 00:07:31 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2017-03-21 00:07:31 ----A---- C:\WINDOWS\system32\RADCUI.dll
2017-03-21 00:07:30 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-03-21 00:07:30 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2017-03-21 00:07:30 ----A---- C:\WINDOWS\system32\mfplat.dll
2017-03-21 00:07:30 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2017-03-21 00:07:30 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2017-03-21 00:07:30 ----A---- C:\WINDOWS\system32\KernelBase.dll
2017-03-21 00:07:29 ----A---- C:\WINDOWS\system32\wpncore.dll
2017-03-21 00:07:29 ----A---- C:\WINDOWS\system32\wmpps.dll
2017-03-21 00:07:29 ----A---- C:\WINDOWS\system32\MusNotification.exe
2017-03-21 00:07:29 ----A---- C:\WINDOWS\system32\mstscax.dll
2017-03-21 00:07:28 ----A---- C:\WINDOWS\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2017-03-21 00:07:28 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-03-21 00:07:28 ----A---- C:\WINDOWS\system32\usercpl.dll
2017-03-21 00:07:28 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2017-03-21 00:07:27 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2017-03-21 00:07:27 ----A---- C:\WINDOWS\system32\puiapi.dll
2017-03-21 00:07:27 ----A---- C:\WINDOWS\system32\ntshrui.dll
2017-03-21 00:07:27 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-03-21 00:07:27 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2017-03-21 00:07:26 ----A---- C:\WINDOWS\system32\usocore.dll
2017-03-21 00:07:26 ----A---- C:\WINDOWS\system32\usoapi.dll
2017-03-21 00:07:26 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2017-03-21 00:07:26 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2017-03-21 00:07:26 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2017-03-21 00:07:26 ----A---- C:\WINDOWS\system32\moshost.dll
2017-03-21 00:07:26 ----A---- C:\WINDOWS\system32\InputService.dll
2017-03-21 00:07:25 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2017-03-21 00:07:25 ----A---- C:\WINDOWS\system32\mfsvr.dll
2017-03-21 00:07:25 ----A---- C:\WINDOWS\system32\efswrt.dll
2017-03-21 00:07:24 ----A---- C:\WINDOWS\system32\netshell.dll
2017-03-21 00:07:24 ----A---- C:\WINDOWS\system32\MSVP9DEC.dll
2017-03-21 00:07:24 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2017-03-21 00:07:24 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2017-03-21 00:07:23 ----A---- C:\WINDOWS\system32\wpninprc.dll
2017-03-21 00:07:22 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-03-21 00:07:20 ----A---- C:\WINDOWS\system32\SHCore.dll
2017-03-21 00:07:20 ----A---- C:\WINDOWS\HelpPane.exe
2017-03-21 00:07:18 ----A---- C:\WINDOWS\system32\WorkFoldersShell.dll
2017-03-21 00:07:18 ----A---- C:\WINDOWS\system32\WorkFolders.exe
2017-03-21 00:07:18 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2017-03-21 00:07:18 ----A---- C:\WINDOWS\system32\Tabbtn.dll
2017-03-21 00:07:18 ----A---- C:\WINDOWS\system32\IPHLPAPI.DLL
2017-03-21 00:07:18 ----A---- C:\WINDOWS\system32\evr.dll
2017-03-21 00:07:18 ----A---- C:\WINDOWS\system32\CameraCaptureUI.dll
2017-03-21 00:07:17 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2017-03-21 00:07:17 ----A---- C:\WINDOWS\system32\Windows.Networking.HostName.dll
2017-03-21 00:07:17 ----A---- C:\WINDOWS\system32\tbauth.dll
2017-03-21 00:07:17 ----A---- C:\WINDOWS\system32\Geolocation.dll
2017-03-21 00:07:17 ----A---- C:\WINDOWS\system32\FntCache.dll
2017-03-21 00:07:17 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2017-03-21 00:07:17 ----A---- C:\WINDOWS\system32\CloudBackupSettings.dll
2017-03-21 00:07:16 ----A---- C:\WINDOWS\system32\thumbcache.dll
2017-03-21 00:07:16 ----A---- C:\WINDOWS\system32\SettingSync.dll
2017-03-21 00:07:16 ----A---- C:\WINDOWS\system32\quartz.dll
2017-03-21 00:07:16 ----A---- C:\WINDOWS\system32\FlightSettings.dll
2017-03-21 00:07:15 ----A---- C:\WINDOWS\system32\werconcpl.dll
2017-03-21 00:07:15 ----A---- C:\WINDOWS\system32\uDWM.dll
2017-03-21 00:07:15 ----A---- C:\WINDOWS\system32\ddrawex.dll
2017-03-21 00:07:15 ----A---- C:\WINDOWS\system32\ddraw.dll
2017-03-21 00:07:14 ----A---- C:\WINDOWS\system32\XboxNetApiSvc.dll
2017-03-21 00:07:14 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2017-03-21 00:07:14 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-03-21 00:07:14 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2017-03-21 00:07:14 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2017-03-21 00:07:13 ----A---- C:\WINDOWS\system32\NaturalLanguage6.dll
2017-03-21 00:07:13 ----A---- C:\WINDOWS\system32\inetcomm.dll
2017-03-21 00:07:13 ----A---- C:\WINDOWS\system32\comsvcs.dll
2017-03-21 00:07:12 ----A---- C:\WINDOWS\system32\icm32.dll
2017-03-21 00:07:12 ----A---- C:\WINDOWS\system32\DWrite.dll
2017-03-21 00:07:11 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2017-03-21 00:07:11 ----A---- C:\WINDOWS\system32\schannel.dll
2017-03-21 00:07:11 ----A---- C:\WINDOWS\system32\dnsapi.dll
2017-03-21 00:07:11 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2017-03-21 00:07:10 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2017-03-21 00:07:09 ----A---- C:\WINDOWS\system32\wlidprov.dll
2017-03-21 00:07:09 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2017-03-21 00:07:09 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2017-03-21 00:07:09 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2017-03-21 00:07:09 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2017-03-21 00:07:08 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2017-03-21 00:07:08 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2017-03-21 00:07:08 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2017-03-21 00:07:08 ----A---- C:\WINDOWS\system32\msftedit.dll
2017-03-21 00:07:08 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2017-03-21 00:07:06 ----A---- C:\WINDOWS\SYSWOW64\PhotoScreensaver.scr
2017-03-21 00:07:06 ----A---- C:\WINDOWS\system32\PhotoScreensaver.scr
2017-03-21 00:07:06 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2017-03-21 00:07:05 ----A---- C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2017-03-21 00:07:05 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2017-03-21 00:07:05 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2017-03-21 00:07:05 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2017-03-21 00:07:05 ----A---- C:\WINDOWS\system32\DMRServer.dll
2017-03-21 00:07:05 ----A---- C:\WINDOWS\system32\dialclient.dll
2017-03-21 00:07:04 ----A---- C:\WINDOWS\system32\WorkFoldersGPExt.dll
2017-03-21 00:07:04 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2017-03-21 00:07:04 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll
2017-03-21 00:07:04 ----A---- C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2017-03-21 00:07:04 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
2017-03-21 00:07:04 ----A---- C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2017-03-21 00:07:04 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2017-03-21 00:07:04 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2017-03-21 00:07:04 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2017-03-21 00:07:04 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
2017-03-21 00:07:04 ----A---- C:\WINDOWS\system32\shutdownux.dll
2017-03-21 00:07:04 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2017-03-21 00:07:03 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2017-03-21 00:07:03 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2017-03-21 00:07:03 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2017-03-21 00:07:03 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2017-03-21 00:07:02 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-03-21 00:07:00 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-03-21 00:07:00 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-03-21 00:06:58 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-03-21 00:06:56 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-03-21 00:06:55 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-03-21 00:06:54 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2017-03-21 00:06:54 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2017-03-21 00:06:53 ----A---- C:\WINDOWS\system32\wininet.dll
2017-03-21 00:06:53 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-03-21 00:06:53 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2017-03-21 00:06:53 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2017-03-21 00:06:52 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-03-21 00:06:51 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2017-03-21 00:06:51 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2017-03-21 00:06:51 ----A---- C:\WINDOWS\system32\Chakra.dll
2017-03-21 00:06:51 ----A---- C:\WINDOWS\system32\dwmcore.dll
2017-03-21 00:06:50 ----A---- C:\WINDOWS\system32\d3d11.dll
2017-03-21 00:06:49 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-03-21 00:06:49 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2017-03-21 00:06:48 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2017-03-21 00:06:48 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-03-21 00:06:47 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2017-03-21 00:06:47 ----A---- C:\WINDOWS\system32\msdtctm.dll
2017-03-21 00:06:47 ----A---- C:\WINDOWS\system32\dxgi.dll
2017-03-21 00:06:46 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2017-03-21 00:06:46 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2017-03-21 00:06:46 ----A---- C:\WINDOWS\system32\BrowserSettingSync.dll
2017-03-21 00:06:45 ----A---- C:\WINDOWS\system32\winmde.dll
2017-03-21 00:06:45 ----A---- C:\WINDOWS\system32\win32kbase.sys
2017-03-21 00:06:45 ----A---- C:\WINDOWS\system32\vpnike.dll
2017-03-21 00:06:45 ----A---- C:\WINDOWS\system32\rasmans.dll
2017-03-21 00:06:45 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2017-03-21 00:06:45 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2017-03-21 00:06:44 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2017-03-21 00:06:44 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2017-03-21 00:06:43 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2017-03-21 00:06:42 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-03-21 00:06:42 ----A---- C:\WINDOWS\system32\RDXService.dll
2017-03-21 00:06:40 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2017-03-21 00:06:39 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2017-03-21 00:06:39 ----A---- C:\WINDOWS\system32\MFPlay.dll
2017-03-21 00:06:39 ----A---- C:\WINDOWS\system32\LogonController.dll
2017-03-21 00:06:39 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2017-03-21 00:06:39 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2017-03-21 00:06:38 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2017-03-21 00:06:38 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2017-03-21 00:06:38 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2017-03-21 00:06:37 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2017-03-21 00:06:37 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2017-03-21 00:06:37 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2017-03-21 00:06:36 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2017-03-21 00:06:36 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2017-03-21 00:06:36 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2017-03-21 00:06:36 ----A---- C:\WINDOWS\system32\fhcfg.dll
2017-03-21 00:06:36 ----A---- C:\WINDOWS\system32\aadtb.dll
2017-03-21 00:06:35 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2017-03-21 00:06:34 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2017-03-21 00:06:27 ----A---- C:\WINDOWS\system32\spaceman.exe
2017-03-21 00:06:27 ----A---- C:\WINDOWS\system32\SpaceAgent.exe
2017-03-21 00:06:26 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2017-03-21 00:06:26 ----A---- C:\WINDOWS\system32\wsp_sr.dll
2017-03-21 00:06:26 ----A---- C:\WINDOWS\system32\wsp_health.dll
2017-03-21 00:06:26 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2017-03-21 00:06:26 ----A---- C:\WINDOWS\system32\storagewmi.dll
2017-03-21 00:06:26 ----A---- C:\WINDOWS\system32\mispace.dll
2017-03-21 00:06:26 ----A---- C:\WINDOWS\system32\icsvcext.dll
2017-03-21 00:06:26 ----A---- C:\WINDOWS\system32\clusapi.dll
2017-03-21 00:06:25 ----A---- C:\WINDOWS\system32\VSSVC.exe
2017-03-21 00:06:25 ----A---- C:\WINDOWS\system32\resutils.dll
2017-03-21 00:06:25 ----A---- C:\WINDOWS\system32\GamePanel.exe
2017-03-21 00:06:24 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2017-03-21 00:06:24 ----A---- C:\WINDOWS\system32\vssapi.dll
2017-03-21 00:06:24 ----A---- C:\WINDOWS\system32\dbgeng.dll
2017-03-21 00:06:22 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-03-21 00:06:21 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2017-03-21 00:06:21 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2017-03-21 00:06:21 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2017-03-21 00:06:21 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2017-03-21 00:06:20 ----A---- C:\WINDOWS\system32\drivers\vmbkmclr.sys
2017-03-21 00:06:20 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2017-03-21 00:06:20 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2017-03-21 00:06:19 ----A---- C:\WINDOWS\system32\msxml6.dll
2017-03-21 00:06:19 ----A---- C:\WINDOWS\system32\drivers\vmbkmcl.sys
2017-03-21 00:06:19 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2017-03-21 00:06:19 ----A---- C:\WINDOWS\system32\drivers\hvsocket.sys
2017-03-21 00:06:18 ----A---- C:\WINDOWS\system32\wbengine.exe
2017-03-21 00:06:18 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2017-03-21 00:06:17 ----A---- C:\WINDOWS\system32\themecpl.dll
2017-03-21 00:06:17 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2017-03-21 00:06:16 ----A---- C:\WINDOWS\system32\werui.dll
2017-03-21 00:06:16 ----A---- C:\WINDOWS\system32\wer.dll
2017-03-21 00:06:16 ----A---- C:\WINDOWS\system32\scksp.dll
2017-03-21 00:06:16 ----A---- C:\WINDOWS\system32\basecsp.dll
2017-03-21 00:06:15 ----A---- C:\WINDOWS\system32\XInputUap.dll
2017-03-21 00:06:15 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2017-03-21 00:06:15 ----A---- C:\WINDOWS\system32\Windows.Devices.Radios.dll
2017-03-21 00:06:15 ----A---- C:\WINDOWS\system32\Windows.Devices.Midi.dll
2017-03-21 00:06:15 ----A---- C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2017-03-21 00:06:15 ----A---- C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2017-03-21 00:06:15 ----A---- C:\WINDOWS\system32\Family.SyncEngine.dll
2017-03-21 00:06:15 ----A---- C:\WINDOWS\system32\ErrorDetails.dll
2017-03-21 00:06:15 ----A---- C:\WINDOWS\system32\EnterpriseAPNCsp.dll
2017-03-21 00:06:15 ----A---- C:\WINDOWS\system32\daxexec.dll
2017-03-21 00:06:15 ----A---- C:\WINDOWS\system32\CspCellularSettings.dll
2017-03-21 00:06:15 ----A---- C:\WINDOWS\system32\CfgSPCellular.dll
2017-03-21 00:06:15 ----A---- C:\WINDOWS\system32\BluetoothDesktopHandlers.dll
2017-03-21 00:06:14 ----A---- C:\WINDOWS\system32\Windows.System.SystemManagement.dll
2017-03-21 00:06:14 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2017-03-21 00:06:14 ----A---- C:\WINDOWS\system32\Windows.Gaming.Input.dll
2017-03-21 00:06:14 ----A---- C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2017-03-21 00:06:14 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.dll
2017-03-21 00:06:14 ----A---- C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2017-03-21 00:06:14 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2017-03-21 00:06:14 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2017-03-21 00:06:14 ----A---- C:\WINDOWS\system32\CloudExperienceHostUser.dll
2017-03-21 00:06:13 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2017-03-21 00:06:13 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2017-03-21 00:06:12 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2017-03-21 00:06:12 ----A---- C:\WINDOWS\system32\reseteng.dll
2017-03-21 00:06:12 ----A---- C:\WINDOWS\system32\ReAgent.dll
2017-03-21 00:06:12 ----A---- C:\WINDOWS\system32\GamePanelExternalHook.dll
2017-03-21 00:06:12 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2017-03-21 00:06:10 ----A---- C:\WINDOWS\system32\ubpm.dll
2017-03-21 00:06:10 ----A---- C:\WINDOWS\system32\gpapi.dll
2017-03-21 00:06:09 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2017-03-21 00:06:09 ----A---- C:\WINDOWS\system32\twinapi.dll
2017-03-21 00:06:09 ----A---- C:\WINDOWS\system32\ApplicationFrame.dll
2017-03-21 00:06:08 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2017-03-21 00:06:08 ----A---- C:\WINDOWS\system32\vaultcli.dll
2017-03-21 00:06:08 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2017-03-21 00:06:08 ----A---- C:\WINDOWS\system32\PCPTpm12.dll
2017-03-21 00:06:07 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2017-03-21 00:06:07 ----A---- C:\WINDOWS\system32\vds.exe
2017-03-21 00:06:07 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2017-03-21 00:06:07 ----A---- C:\WINDOWS\system32\gpsvc.dll
2017-03-21 00:06:07 ----A---- C:\WINDOWS\system32\AppContracts.dll
2017-03-21 00:06:06 ----A---- C:\WINDOWS\system32\twinui.dll
2017-03-21 00:06:06 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2017-03-21 00:06:05 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-03-21 00:06:05 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2017-03-21 00:06:04 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2017-03-21 00:06:04 ----A---- C:\WINDOWS\system32\dui70.dll
2017-03-21 00:06:04 ----A---- C:\WINDOWS\system32\aepic.dll
2017-03-21 00:06:04 ----A---- C:\WINDOWS\system32\aeinv.dll
2017-03-21 00:06:03 ----A---- C:\WINDOWS\system32\winhttp.dll
2017-03-21 00:06:03 ----A---- C:\WINDOWS\system32\generaltel.dll
2017-03-21 00:06:03 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2017-03-21 00:06:03 ----A---- C:\WINDOWS\system32\dcntel.dll
2017-03-21 00:06:03 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2017-03-21 00:06:02 ----A---- C:\WINDOWS\system32\uReFS.dll
2017-03-21 00:06:02 ----A---- C:\WINDOWS\system32\sud.dll
2017-03-21 00:06:02 ----A---- C:\WINDOWS\system32\MultiDigiMon.exe
2017-03-21 00:06:02 ----A---- C:\WINDOWS\system32\imapi2fs.dll
2017-03-21 00:06:02 ----A---- C:\WINDOWS\system32\hgcpl.dll
2017-03-21 00:06:02 ----A---- C:\WINDOWS\system32\DXP.dll
2017-03-21 00:06:02 ----A---- C:\WINDOWS\system32\appinfo.dll
2017-03-21 00:06:01 ----A---- C:\WINDOWS\system32\tabcal.exe
2017-03-21 00:06:01 ----A---- C:\WINDOWS\system32\bisrv.dll
2017-03-21 00:06:01 ----A---- C:\WINDOWS\explorer.exe
2017-03-21 00:06:00 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2017-03-21 00:06:00 ----A---- C:\WINDOWS\system32\ci.dll
2017-03-21 00:06:00 ----A---- C:\WINDOWS\system32\atmfd.dll
2017-03-21 00:05:59 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-03-21 00:05:59 ----A---- C:\WINDOWS\system32\authui.dll
2017-03-21 00:05:59 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-03-21 00:05:58 ----A---- C:\WINDOWS\system32\UserLanguagesCpl.dll
2017-03-21 00:05:58 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-03-21 00:05:58 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2017-03-21 00:05:57 ----A---- C:\WINDOWS\system32\msutb.dll
2017-03-21 00:05:57 ----A---- C:\WINDOWS\system32\msctfui.dll
2017-03-21 00:05:57 ----A---- C:\WINDOWS\system32\mscandui.dll
2017-03-21 00:05:57 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2017-03-21 00:05:57 ----A---- C:\WINDOWS\regedit.exe
2017-03-21 00:05:56 ----A---- C:\WINDOWS\system32\wintrust.dll
2017-03-21 00:05:56 ----A---- C:\WINDOWS\system32\win32kfull.sys
2017-03-21 00:05:56 ----A---- C:\WINDOWS\system32\oleacc.dll
2017-03-21 00:05:56 ----A---- C:\WINDOWS\system32\msctf.dll
2017-03-21 00:05:56 ----A---- C:\WINDOWS\system32\input.dll
2017-03-21 00:05:56 ----A---- C:\WINDOWS\system32\devinv.dll
2017-03-21 00:05:55 ----A---- C:\WINDOWS\system32\bootux.dll
2017-03-21 00:05:54 ----A---- C:\WINDOWS\system32\netiohlp.dll
2017-03-21 00:05:54 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2017-03-21 00:05:53 ----A---- C:\WINDOWS\system32\winload.exe
2017-03-21 00:05:53 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2017-03-21 00:05:52 ----A---- C:\WINDOWS\system32\systemreset.exe
2017-03-21 00:05:52 ----A---- C:\WINDOWS\system32\invagent.dll
2017-03-21 00:05:52 ----A---- C:\WINDOWS\system32\gdi32full.dll
2017-03-21 00:05:51 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2017-03-21 00:05:25 ----A---- C:\WINDOWS\system32\winresume.exe
2017-03-21 00:05:23 ----A---- C:\WINDOWS\system32\wuaueng.dll
2017-03-21 00:05:23 ----A---- C:\WINDOWS\system32\msctfp.dll
2017-03-21 00:05:23 ----A---- C:\WINDOWS\system32\icfupgd.dll
2017-03-21 00:05:23 ----A---- C:\WINDOWS\system32\hvloader.exe
2017-03-21 00:05:22 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2017-03-21 00:05:22 ----A---- C:\WINDOWS\system32\gameux.dll
2017-03-21 00:05:19 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2017-03-21 00:05:18 ----A---- C:\WINDOWS\system32\lsasrv.dll
2017-03-21 00:05:17 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-03-21 00:05:17 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2017-03-21 00:05:16 ----A---- C:\WINDOWS\system32\wuapi.dll
2017-03-21 00:05:16 ----A---- C:\WINDOWS\system32\policymanager.dll
2017-03-21 00:05:15 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-03-21 00:05:14 ----A---- C:\WINDOWS\system32\stobject.dll
2017-03-21 00:05:13 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2017-03-21 00:05:12 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll
2017-03-21 00:05:12 ----A---- C:\WINDOWS\system32\WinTypes.dll
2017-03-21 00:05:12 ----A---- C:\WINDOWS\system32\combase.dll
2017-03-21 00:05:12 ----A---- C:\WINDOWS\system32\certprop.dll
2017-03-21 00:05:12 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2017-03-21 00:05:11 ----A---- C:\WINDOWS\system32\ShareHost.dll
2017-03-21 00:05:11 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2017-03-21 00:05:11 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2017-03-21 00:05:11 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2017-03-21 00:05:11 ----A---- C:\WINDOWS\system32\AudioSes.dll
2017-03-21 00:05:10 ----A---- C:\WINDOWS\system32\hvix64.exe
2017-03-21 00:05:10 ----A---- C:\WINDOWS\system32\hvax64.exe
2017-03-21 00:05:09 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2017-03-21 00:05:09 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2017-03-21 00:05:08 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2017-03-21 00:05:08 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2017-03-21 00:05:07 ----A---- C:\WINDOWS\system32\wups.dll
2017-03-21 00:05:06 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2017-03-21 00:05:05 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2017-03-21 00:05:05 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-03-21 00:05:03 ----A---- C:\WINDOWS\system32\mspaint.exe
2017-03-21 00:05:02 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2017-03-21 00:05:02 ----A---- C:\WINDOWS\system32\rascustom.dll
2017-03-21 00:05:01 ----A---- C:\WINDOWS\system32\winsrv.dll
2017-03-21 00:05:01 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2017-03-21 00:05:01 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2017-03-21 00:05:01 ----A---- C:\WINDOWS\system32\apprepsync.dll
2017-03-21 00:05:01 ----A---- C:\WINDOWS\system32\apprepapi.dll
2017-03-21 00:04:59 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2017-03-21 00:04:58 ----A---- C:\WINDOWS\system32\cdp.dll
2017-03-20 23:18:43 ----A---- C:\WINDOWS\system32\WudfUpdate_01011.dll
2017-03-20 23:15:29 ----D---- C:\DRIVERS

====== List of files/folders modified in the last 1 month ======

2017-04-11 01:10:13 ----RD---- C:\Program Files
2017-04-11 01:09:47 ----D---- C:\WINDOWS\Temp
2017-04-11 01:01:24 ----D---- C:\WINDOWS\Prefetch
2017-04-11 00:47:00 ----D---- C:\WINDOWS\system32\sru
2017-04-10 19:58:18 ----D---- C:\WINDOWS\SysWOW64
2017-04-10 19:33:23 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2017-04-10 19:33:19 ----AD---- C:\Program Files (x86)\Mozilla Thunderbird
2017-04-10 19:32:56 ----SHDC---- C:\WINDOWS\Installer
2017-04-10 19:29:05 ----D---- C:\WINDOWS\system32\SleepStudy
2017-04-10 13:00:04 ----D---- C:\Windows
2017-04-10 12:59:53 ----RD---- C:\WINDOWS\Microsoft.NET
2017-04-10 12:59:01 ----D---- C:\WINDOWS\system32\drivers
2017-04-10 12:58:52 ----D---- C:\WINDOWS\System32
2017-04-10 12:58:39 ----AD---- C:\Program Files\Dolby Digital Plus
2017-04-10 12:58:14 ----D---- C:\WINDOWS\INF
2017-04-10 12:50:32 ----AD---- C:\ProgramData\MAX
2017-04-10 12:45:32 ----D---- C:\WINDOWS\AppReadiness
2017-04-10 12:45:08 ----RD---- C:\Program Files (x86)
2017-04-10 12:43:07 ----HD---- C:\Program Files\WindowsApps
2017-04-10 12:41:27 ----RSD---- C:\WINDOWS\assembly
2017-04-10 12:36:57 ----HD---- C:\ProgramData
2017-04-10 12:36:18 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-04-10 12:36:15 ----D---- C:\ProgramData\Synaptics
2017-04-10 12:26:32 ----SHD---- C:\System Volume Information
2017-04-10 12:21:16 ----D---- C:\WINDOWS\Tasks
2017-04-10 12:21:16 ----D---- C:\WINDOWS\system32\Tasks
2017-04-10 09:50:58 ----D---- C:\WINDOWS\system32\NDF
2017-04-10 08:50:06 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2017-04-10 01:45:12 ----SD---- C:\Users\Lenunka\AppData\Roaming\Microsoft
2017-04-10 00:41:50 ----D---- C:\WINDOWS\system32\wbem
2017-04-10 00:18:40 ----D---- C:\WINDOWS\registration
2017-04-09 14:11:48 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-04-09 14:04:30 ----D---- C:\WINDOWS\Minidump
2017-04-09 10:35:54 ----D---- C:\Users\Lenunka\AppData\Roaming\ICQ
2017-04-08 21:58:49 ----D---- C:\Users\Lenunka\AppData\Roaming\vlc
2017-04-08 12:49:45 ----D---- C:\WINDOWS\debug
2017-04-08 09:33:40 ----D---- C:\ProgramData\Lenovo
2017-04-08 09:33:18 ----D---- C:\Program Files (x86)\Lenovo
2017-04-08 05:57:44 ----D---- C:\WINDOWS\system32\config
2017-04-08 05:56:23 ----D---- C:\WINDOWS\WinSxS
2017-04-08 05:53:12 ----D---- C:\WINDOWS\system32\catroot2
2017-04-08 05:53:12 ----D---- C:\WINDOWS\system32\CatRoot
2017-04-08 05:52:51 ----D---- C:\WINDOWS\system32\appraiser
2017-04-08 05:52:50 ----D---- C:\WINDOWS\system32\DriverStore
2017-04-08 01:29:19 ----D---- C:\ProgramData\Microsoft Help
2017-04-08 01:24:02 ----D---- C:\WINDOWS\CbsTemp
2017-04-08 01:08:18 ----D---- C:\Program Files (x86)\Realtek
2017-04-08 01:06:17 ----A---- C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2017-04-07 22:50:52 ----RSD---- C:\WINDOWS\Fonts
2017-04-07 22:50:33 ----AD---- C:\Program Files (x86)\Microsoft.NET
2017-04-07 22:50:22 ----AD---- C:\ProgramData\regid.1991-06.com.microsoft
2017-04-07 22:50:10 ----AD---- C:\Program Files\Common Files\microsoft shared
2017-04-07 22:50:03 ----D---- C:\Program Files\Common Files
2017-04-07 22:49:47 ----AD---- C:\Program Files\Microsoft Office
2017-04-07 22:49:46 ----SD---- C:\ProgramData\Microsoft
2017-04-07 22:47:58 ----D---- C:\WINDOWS\ShellNew
2017-04-07 22:47:27 ----D---- C:\Program Files (x86)\Microsoft Office
2017-04-07 21:01:53 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2017-04-07 18:57:17 ----D---- C:\WINDOWS\system32\WDI
2017-04-07 18:40:17 ----D---- C:\Users\Lenunka\AppData\Roaming\NewtonVoice
2017-04-07 18:40:16 ----D---- C:\Program Files (x86)\Common Files
2017-04-06 14:59:42 ----D---- C:\Program Files\Java
2017-04-06 14:58:49 ----A---- C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2017-04-05 15:16:22 ----D---- C:\WINDOWS\Logs
2017-04-05 10:55:20 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2017-04-04 18:09:13 ----D---- C:\Program Files (x86)\Google
2017-04-03 23:21:46 ----D---- C:\Users\Lenunka\AppData\Roaming\ViberPC
2017-04-03 02:53:24 ----D---- C:\WINDOWS\system32\Macromed
2017-04-03 02:53:22 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2017-04-03 00:37:55 ----D---- C:\WINDOWS\rescache
2017-03-26 22:42:39 ----RSD---- C:\WINDOWS\Media
2017-03-26 22:20:51 ----SD---- C:\WINDOWS\SYSWOW64\F12
2017-03-26 22:20:51 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS
2017-03-26 22:20:51 ----D---- C:\WINDOWS\SYSWOW64\setup
2017-03-26 22:20:51 ----D---- C:\WINDOWS\SYSWOW64\migration
2017-03-26 22:20:50 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-03-26 22:20:50 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2017-03-26 22:20:39 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2017-03-26 22:20:39 ----D---- C:\WINDOWS\system32\setup
2017-03-26 22:20:39 ----D---- C:\WINDOWS\system32\oobe
2017-03-26 22:20:38 ----D---- C:\WINDOWS\system32\migration
2017-03-26 22:20:35 ----SD---- C:\WINDOWS\system32\F12
2017-03-26 22:20:35 ----D---- C:\WINDOWS\system32\en-US
2017-03-26 22:20:35 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2017-03-26 22:20:35 ----D---- C:\WINDOWS\system32\cs-CZ
2017-03-26 22:20:34 ----D---- C:\WINDOWS\system32\Boot
2017-03-26 22:20:19 ----D---- C:\WINDOWS\ShellExperiences
2017-03-26 22:20:18 ----RD---- C:\WINDOWS\PrintDialog
2017-03-26 22:20:13 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-03-26 22:20:13 ----D---- C:\WINDOWS\bcastdvr
2017-03-26 22:20:13 ----D---- C:\WINDOWS\AppPatch
2017-03-26 22:20:12 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-03-26 22:20:12 ----D---- C:\Program Files (x86)\Windows Mail
2017-03-26 22:20:12 ----D---- C:\Program Files (x86)\Windows Defender
2017-03-26 22:20:12 ----D---- C:\Program Files (x86)\Internet Explorer
2017-03-26 22:20:11 ----RD---- C:\Program Files\Windows Defender
2017-03-26 22:20:11 ----D---- C:\Program Files\Windows Photo Viewer
2017-03-26 22:20:11 ----D---- C:\Program Files\Windows Mail
2017-03-26 22:20:11 ----D---- C:\Program Files\Internet Explorer
2017-03-26 22:07:34 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2017-03-26 22:07:34 ----AD---- C:\Program Files\Microsoft Silverlight
2017-03-25 00:29:54 ----D---- C:\WINDOWS\system32\MRT
2017-03-25 00:24:21 ----AC---- C:\WINDOWS\system32\MRT.exe
2017-03-25 00:06:49 ----D---- C:\ProgramData\Skype
2017-03-21 01:08:22 ----D---- C:\Program Files (x86)\ThinkPad
2017-03-21 01:06:19 ----D---- C:\WINDOWS\system32\drivers\UMDF
2017-03-20 23:18:23 ----D---- C:\ProgramData\Package Cache

File C:\WINDOWS\system32\winlogon.exe is digitally signed
File C:\WINDOWS\system32\wininit.exe is digitally signed
File C:\WINDOWS\explorer.exe is digitally signed
File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
File C:\WINDOWS\system32\svchost.exe is digitally signed
File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
File C:\WINDOWS\system32\services.exe is digitally signed
File C:\WINDOWS\system32\User32.dll is digitally signed
File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
File C:\WINDOWS\system32\userinit.exe is digitally signed
File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
File C:\WINDOWS\system32\rpcss.dll is digitally signed
File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed

====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======

R0 aswbidsh;aswbidsh; C:\WINDOWS\system32\drivers\aswbidsha.sys [2017-04-05 189768]
R0 aswblog;aswblog; C:\WINDOWS\system32\drivers\aswbloga.sys [2017-04-05 334088]
R0 aswbuniv;aswbuniv; C:\WINDOWS\system32\drivers\aswbuniva.sys [2017-04-05 48528]
R0 aswRvrt;aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [2017-04-05 75704]
R0 aswVmm;aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [2017-04-05 339696]
R0 Fastboot;Fastboot; C:\WINDOWS\System32\DRIVERS\fastboot.sys [2014-09-03 65928]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-08-02 644968]
R0 IntelHSWPcc;IntelHSWPcc; C:\WINDOWS\System32\drivers\IntelPcc.sys [2013-08-19 77456]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R0 Shockprf;Shockprf; C:\WINDOWS\System32\DRIVERS\Apsx64.sys [2014-01-29 152888]
R0 sptd2;SPTD2; C:\WINDOWS\System32\Drivers\sptd2.sys [2017-04-07 203296]
R1 aswbidsdriver;aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdrivera.sys [2017-04-05 307736]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2017-04-05 32600]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2017-04-05 101152]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2017-04-05 1005048]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2017-04-05 556784]
R1 lmimirr;lmimirr; C:\WINDOWS\system32\DRIVERS\lmimirr.sys [2014-10-31 11552]
R1 SMIDriver;@oem89.inf,%SMIDevice.SVCDESC%;Synaptics SMI Driver; C:\WINDOWS\system32\DRIVERS\smi.sys [2016-07-13 39488]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2017-04-05 127112]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2017-04-05 164064]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-10-20 84992]
R3 CnxtHdAudService;@oem85.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2015-08-05 1561728]
R3 IBMPMDRV;IBMPMDRV; C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys [2015-06-26 72400]
R3 ibtusb;@oem33.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\system32\DRIVERS\ibtusb.sys [2016-12-12 230656]
R3 KMWDFILTER;HIDServiceDesc; C:\WINDOWS\System32\drivers\KMWDFILTER.sys [2009-04-29 30208]
R3 NETwNb64;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\WINDOWS\System32\drivers\Netwbw02.sys [2016-07-16 3485696]
R3 npusbio;npusbio; C:\WINDOWS\System32\Drivers\npusbio_x64.sys [2012-07-10 38400]
R3 RTL8168;@oem29.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\System32\drivers\Rt630x64.sys [2014-06-17 873688]
R3 RTSPER;@oem94.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2015-06-15 761600]
R3 rtsuvc;@oem38.inf,%rtsuvc.DeviceDesc%;Integrated Camera; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [2013-06-19 8244312]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-10-25 51320]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-20 64352]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S2 RACDriver;RAC driver; \??\C:\Program Files (x86)\PCNetSoftware\RAC Server\RACDriver.sys [2007-03-20 8208]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 aswHdsKe;aswHdsKe; \??\C:\WINDOWS\system32\drivers\aswHdsKe.sys [2016-09-01 83312]
S3 aswHwid;aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [2017-04-05 38296]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-10-20 114176]
S3 BthLEEnum;@BthLEEnum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2016-10-20 249856]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-10-20 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-11-11 967168]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-10-20 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-10-18 39320]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-07-16 183808]
S3 rt640x64;@oem72.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-06-18 895256]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 SWIX64;SWIX64; \??\C:\Program Files (x86)\Lenovo\System Update\tvsuhd64.sys [2017-01-18 34168]

====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-04-05 261712]
R2 AxVirtualAHCISrv;Alcohol Virtual AHCI Controller Management Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAHCIServiceEx.exe [2015-12-04 99712]
R2 CxAudMsg;@C:\WINDOWS\system32\CxAudMsg64.exe,-100; C:\WINDOWS\system32\CxAudMsg64.exe [2013-07-25 206552]
R2 FastbootService;FastbootService; C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe [2014-09-03 140016]
R2 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
R2 IBMPMSVC;@oem100.inf,%ibm.svcDesc0%;Lenovo PM Service; C:\WINDOWS\system32\ibmpmsvc.exe [2015-06-26 131312]
R2 ibtsiva;@oem33.inf,%SERVICE_NAME%;Intel Bluetooth Service; C:\WINDOWS\system32\ibtsiva []
R2 ImControllerService;System Interface Foundation Service; C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2017-03-03 58688]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management;Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [2013-09-05 157128]
R2 IObitUnSvr;IObit Uninstaller Service; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [2016-10-28 360736]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-16 169432]
R2 Lenovo Settings Service;Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2014-03-10 2085184]
R2 LENOVO.MICMUTE;Lenovo Microphone Mute; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [2016-12-19 117320]
R2 Lenovo.VIRTSCRLSVC;Lenovo Auto Scroll; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [2012-08-11 136288]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-16 390616]
R2 lnvDiscoveryWinSvc;lnvDiscoveryWinSvc; C:\Program Files\Lenovo\Lenovo Peer Connect\LenovoDiscoverySvc.exe [2014-02-22 22576]
R2 LocationTaskManager;LocationTaskManager; C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe [2013-12-12 468288]
R2 Mobizen plugin;Mobizen plugin; C:\Program Files (x86)\RSUPPORT\MobizenService\MobizenService.exe [2017-02-02 1277768]
R2 OneSyncSvc_493ce;Hostitel synchronizace_493ce; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
R2 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2012-04-24 390632]
R2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2015-12-02 743616]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-04-05 7398336]
R3 AVControlCenter;AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [2014-03-04 573488]
R3 LENOVO.CAMMUTE;Lenovo AVFramework Camera Privacy Controller; C:\Program Files\Lenovo\Communications Utility\cammute.exe [2014-03-04 512048]
R3 LENOVO.TPKNRSVC;Lenovo AVFramework Microphone Volume Controller and Dolby Interface; C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe [2014-03-04 527920]
R3 LENOVO.TVTVCAM;Lenovo AVFramework Virtual Camera Controller Service; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [2014-03-04 702512]
R3 Power Manager DBC Service;Lenovo Settings Power Service; C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE [2017-02-20 106872]
R3 QuickControlService;Lenovo QuickControl Service; C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe [2014-02-12 322608]
S2 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2015-03-12 39376]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" = %SystemRoot%\System32\CDPUserSvc.dll
S2 CDPUserSvc_493ce;CDPUserSvc_493ce; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
S2 PCNetSoftware RAC Server;PCNetSoftware RAC Server; C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe [2008-11-24 3186688]
S2 QuickControlMasterSvc;Lenovo QuickControl Master Service; C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe [2014-02-12 59440]
S2 SAService;Conexant SmartAudio service; C:\WINDOWS\system32\SAsrv.exe []
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2017-02-27 317400]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2015-01-03 651720]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll" = %SystemRoot%\system32\FrameServer.dll
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\hvhostsvc.dll
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 intelsba;Intel(R) Small Business Advantage; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [2013-09-25 54976]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\irmon.dll
S3 LSC.Services.SystemService;Lenovo Solution Center System Service; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe [2016-04-20 273232]
S3 MessagingService_493ce;Služba zasílání zpráv_493ce; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2017-03-06 147400]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2015-07-31 242864]
S3 PimIndexMaintenanceSvc_493ce;Data kontaktů_493ce; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\RMapi.dll
S3 SUService;System Update; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [2017-01-18 23416]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; %SystemRoot%\System32\svchost.exe -k netsvcs;"ServiceDll" = %systemroot%\system32\Windows.SharedPC.AccountManager.dll

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119670
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Nejdou kliknutim otevrit okna ze "systray" /oznameni,apo

#3 Příspěvek od Rudy »

Zdravím!
Zkuste obnovu systému k datu, kdy korketně fungoval.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

tominaxx
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 20 zář 2006 00:03
Kontaktovat uživatele:

Re: Nejdou kliknutim otevrit okna ze "systray" /oznameni,apo

#4 Příspěvek od tominaxx »

Zdravim, to jsem zkousel, byly tam 3 body obnovy, ale bohuzel, pri kazde z nich to po delsi dobe napise, ze se obnova nezdarila :-(

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119670
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Nejdou kliknutim otevrit okna ze "systray" /oznameni,apo

#5 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

tominaxx
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 20 zář 2006 00:03
Kontaktovat uživatele:

Re: Nejdou kliknutim otevrit okna ze "systray" /oznameni,apo

#6 Příspěvek od tominaxx »

Zkusil jsem dle navodu, zadne poskozene soubory nebyly nalezeny. Presto jsem udelal i tu obnovu souboru, vysledek zadny. Zkusil jsem i hardreset a odinstalovat Avast, jaxem se nekde docetl v diskuzich .. stale nic. Asi mi zbude jednine, ze ?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119670
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Nejdou kliknutim otevrit okna ze "systray" /oznameni,apo

#7 Příspěvek od Rudy »

Ještě byste mohl zkusit obnovu do tov. nastavení.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

tominaxx
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 20 zář 2006 00:03
Kontaktovat uživatele:

Re: Nejdou kliknutim otevrit okna ze "systray" /oznameni,apo

#8 Příspěvek od tominaxx »

No, to jsem myslel. Zkusim s tim chvili vydrzet .. na spousteni Startu jsem nainstaloval nejaky Shell, bez nejakych ikon v systray se obejdu. Mohu poprosit jeste o jednu vec ? Odinstaloval jsem Avast Free, jakozto moznou pricinu problemu dle rad v diskuzich .. sice to nepomohlo, ale chtel bych tu nechat bezet pouze W Defender. Chtel jsem jej zapnout, ale pise to, ze to neni mozne, jelikoz v realnem case chrani PC jiny antivir. Ja tu mel pouze ten Avas, nikdy zadny jiny. Mohl byste se mi kouknout do logu, co mi tu jeste bezi nebo brani v zapnuti Defenderu ?
Diky moc.

Logfile of random's system information tool 1.16 (written by random/random)
Run by Lenunka at 2017-04-12 18:15:57
Microsoft Windows 10 Home
System drive C: has 96 GB (21%) free of 460 GB
Total RAM: 3987 MB (45% free)
X64

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:16:01, on 12. 4. 2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0953)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
C:\PROGRAM FILES (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Lenovo\QuickControl\QuickControl.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\NaturalPoint\SmartNav\SmartNAV.exe
C:\Program Files (x86)\Lenovo\OneLink Dock\onelinkpromgn.exe
C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe
C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe
C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\NaturalPoint\SmartNav\DwellClicker.exe
C:\Program Files (x86)\PCNetSoftware\RAC Client\RACclient.exe
C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Program Files\Lenovo\Communications Utility\tpknrres.exe
C:\Program Files (x86)\Altap Salamander\salamand.exe
C:\Program Files (x86)\Click-N-Type\Click-N-Type.exe
C:\Program Files (x86)\PCNetSoftware\RAC Client\RACclient.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_25_0_0_127.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_25_0_0_127.exe
C:\Program Files\trend micro\Lenunka_RSITx64.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13-comm.msn.com/?pc=LNJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: Microsoft OneDrive for Business Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office16\GROOVEEX.DLL
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [Fastboot] "C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe" /analysis
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Lenunka\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Viber] "C:\Users\Lenunka\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [NaturalPoint] C:\Program Files (x86)\NaturalPoint\SmartNav\SmartNAV.exe
O4 - HKCU\..\RunOnce: [Application Restart #1] C:\Users\Lenunka\AppData\Local\SweetLabs App Platform\Engine\ServiceHostApp.exe --disable-internal-flash --noerrdialogs --no-message-box --disable-extensions --disable-web-security --disable-web-resources --disable-client-side-phishing-detection --enable-file-cookies --disable-sync --disable-breakpad --disable-bundled-ppapi-flash --disable-sync-tabs --disable-speech-input --disable-custom-jumplist --process-per-tab --debug-devtools-frontend="C:\Users\Lenunka\AppData\Local\SweetLabs App Platform\Engine\inspector" --no-first-run --lang=en-US --disable-component-update --disable-prompt-on-repost --no-startup-window --disable-translate --disable-logging --disable-desktop-notifications --disable-gpu-process-prelaunch --flag-switches-begin --flag-switches-end --restore-last-session
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: RAC Server.lnk = C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe
O4 - Global Startup: ThinkPad OneLink Dock Management.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~2\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: Prevést cíl vazby do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Prevést cíl vazby do existujícího PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Prevést do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Pridat do stávajícího PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE16\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AVControlCenter - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) - Alcohol Soft Development Team - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe
O23 - Service: Alcohol Virtual AHCI Controller Management Service (AxVirtualAHCISrv) - Alcohol Soft Development Team - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAHCIServiceEx.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: FastbootService - Lenovo - C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem100.inf,%ibm.svcDesc0%;Lenovo PM Service (IBMPMSVC) - Unknown owner - C:\WINDOWS\system32\ibmpmsvc.exe (file missing)
O23 - Service: @oem33.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\system32\ibtsiva (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: System Interface Foundation Service (ImControllerService) - Lenovo Group Limited - C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Small Business Advantage (intelsba) - Intel Corporation - C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe
O23 - Service: IObit Uninstaller Service (IObitUnSvr) - IObit - C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Lenovo Settings Service - Lenovo Group Limited - C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe
O23 - Service: Lenovo AVFramework Camera Privacy Controller (LENOVO.CAMMUTE) - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\cammute.exe
O23 - Service: Lenovo Microphone Mute (LENOVO.MICMUTE) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
O23 - Service: Lenovo AVFramework Microphone Volume Controller and Dolby Interface (LENOVO.TPKNRSVC) - Lenovo Group Limited - C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe
O23 - Service: Lenovo AVFramework Virtual Camera Controller Service (LENOVO.TVTVCAM) - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
O23 - Service: Lenovo Auto Scroll (Lenovo.VIRTSCRLSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: lnvDiscoveryWinSvc - Lenovo - C:\Program Files\Lenovo\Lenovo Peer Connect\LenovoDiscoverySvc.exe
O23 - Service: LocationTaskManager - Unknown owner - C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
O23 - Service: Lenovo Solution Center System Service (LSC.Services.SystemService) - Lenovo - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe
O23 - Service: Mobizen plugin - Rsupport Corporation - C:\Program Files (x86)\RSUPPORT\MobizenService\MobizenService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: PCNetSoftware RAC Server - Miloslav Novotny N+P - C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe
O23 - Service: Lenovo Settings Power Service (Power Manager DBC Service) - Lenovo - C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
O23 - Service: Lenovo QuickControl Master Service (QuickControlMasterSvc) - Lenovo Group Limited - C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe
O23 - Service: Lenovo QuickControl Service (QuickControlService) - Lenovo Group Limited - C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Service KMSELDI - @ByELDI - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: TeamViewer 10 (TeamViewer) - Unknown owner - (no file)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Unknown owner - C:\WINDOWS\System32\TPHDEXLG64.exe (file missing)
O23 - Service: Lenovo Hotkey Client Loader (TPHKLOAD) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @oem89.inf,%WBFService_SvcDesc%;Synaptics FP WBF Policy Service (valWBFPolicyService) - Unknown owner - C:\WINDOWS\system32\valWBFPolicyService.exe (file missing)
O23 - Service: @oem89.inf,%BioSyncService_SvcDesc%;BiometricSensorDataSynchronization (valWbioSyncSvc) - Unknown owner - C:\WINDOWS\system32\valWbioSyncSvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 17827 bytes

====== Enumerating Processes ======

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-886ee0c3-67f0-4aaa-a8d4-f71eb4bbf609 -SystemEventPortName:HostProcess-a2122c4c-6d8f-4456-a82d-1eb47913d2ca -IoCancelEventPortName:HostProcess-a48d3ce5-6432-4c51-b67e-46c7a984a570 -NonStateChangingEventPortName:HostProcess-2d1eeba0-1c62-486b-b534-61d59bb186eb -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:687a59a8-9aea-4b99-865d-f5781dbd8947 -DeviceGroupId:
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\ibmpmsvc.exe
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\spoolsv.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-3bf3f86c-46a1-4649-9945-0f5a622b510f -SystemEventPortName:HostProcess-c3afdf22-311e-488b-80f2-53a8913891c1 -IoCancelEventPortName:HostProcess-ae0301a1-0cf9-41f8-aaf2-0f1c1f972df2 -NonStateChangingEventPortName:HostProcess-2726b89c-dc7f-47e4-907a-35df0d8562a3 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:f3b038a7-09d0-4025-898d-0cc8a59405dc -DeviceGroupId:WpdFsGroup
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-87882e8d-3e52-428d-ae13-ac40a056997c -SystemEventPortName:HostProcess-42c999c5-5335-4b0e-8ce8-bc41d6489723 -IoCancelEventPortName:HostProcess-57bb6969-efd8-4613-9ea6-72e85cd6443e -NonStateChangingEventPortName:HostProcess-681c7794-3df7-44d2-9346-4d36667569fd -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:3621c56b-f645-4aee-8866-63ed3a796784 -DeviceGroupId:
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-86e52001-7e2c-4e6b-bea2-819cda833fdf -SystemEventPortName:HostProcess-9c0d26ec-1ce1-483d-addd-e22253db71ab -IoCancelEventPortName:HostProcess-5948b8b2-561d-48d4-8da6-6edb82528848 -NonStateChangingEventPortName:HostProcess-60696470-ee50-47ef-82dc-a7b7375042e2 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:2a99cd0c-bdda-4520-a5ad-070230b26b3b -DeviceGroupId:
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-5d337fb3-29b8-4186-9021-e223d7c1dabb -SystemEventPortName:HostProcess-d195cee8-41aa-4ea3-9396-4709e614dd26 -IoCancelEventPortName:HostProcess-a1e0926d-5466-4b7e-b8f2-c91317712471 -NonStateChangingEventPortName:HostProcess-f467648e-7f19-4b2a-af89-37c24f86c88a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:f5c9304c-55fb-489a-98a6-ca46df4c9846 -DeviceGroupId:
C:\WINDOWS\system32\dashost.exe
"C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe"
"C:\WINDOWS\system32\CxAudMsg64.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAHCIServiceEx.exe"
C:\WINDOWS\system32\ibtsiva.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
"C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe"
"C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe"
"C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe"
"C:\Program Files (x86)\RSUPPORT\MobizenService\MobizenService.exe"
"C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe"
"C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe" -service
"C:\Program Files\KMSpico\Service_KMS.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe"
C:\WINDOWS\system32\valWbioSyncSvc.exe
C:\WINDOWS\system32\valWBFPolicyService.exe
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Lenovo\System Update\SUService.exe"
"C:\Program Files\Lenovo\Lenovo Peer Connect\LenovoDiscoverySvc.exe"
"C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE"
"C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe"
"C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe"
"C:\Program Files\Lenovo\Communications Utility\cammute.exe"
"C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe"
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
C:\WINDOWS\System32\dwm.exe
C:\Program Files (x86)\RSUPPORT\MobizenService\dat\adb.exe
C:\PROGRA~1\LENOVO\VIRTSCRL\virtscrl.exe
"C:\Program Files\Synaptics\SynFp\Shared\SensorDBSynch.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\taskhostw.exe
C:\WINDOWS\system32\igfxEM.exe
C:\WINDOWS\system32\igfxHK.exe
"C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.dll",PwrMgrBkGndMonitor
"C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Synaptics\SynTP\SynTPLpr.exe"
"C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe"
C:\Program Files\LENOVO\HOTKEY\tpnumlkd.exe
C:\PROGRA~1\Lenovo\HOTKEY\TPOSD.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.OnScreenDisplay
C:\PROGRA~1\Lenovo\HOTKEY\SHTCTKY.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.ShortcutKey
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\PROGRAM FILES (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe"
"C:\Program Files (x86)\Lenovo\QuickControl\QuickControl.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Program Files\Classic Shell\ClassicStartMenu.exe
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Windows\RtsCM64.exe"
"C:\Windows\System32\TpShocks.exe"
"C:\Program Files\CONEXANT\ForteConfig\fmapp.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Program Files\Windows Defender\MSASCuiL.exe"
"C:\Program Files (x86)\NaturalPoint\SmartNav\SmartNAV.exe"
"C:\Program Files (x86)\Lenovo\OneLink Dock\onelinkpromgn.exe" 1.08.25
"C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe"
"C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe" /analysis
"C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe" /FORCE
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\NaturalPoint\SmartNav\DwellClicker.exe"
"C:\Program Files (x86)\PCNetSoftware\RAC Client\RACclient.exe"
"C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe" /showasync
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe"
"C:\Program Files\Lenovo\Communications Utility\tpknrres.exe"
"C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe"
C:\Windows\System32\InstallAgent.exe -Embedding
C:\Windows\System32\InstallAgentUserBroker.exe -Embedding
"C:\Program Files (x86)\Altap Salamander\salamand.exe"
"C:\Program Files (x86)\Click-N-Type\Click-N-Type.exe"
"C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe" -InstanceSession
"C:\Program Files (x86)\PCNetSoftware\RAC Client\RACclient.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel="1072.0.536536344\1459268981" "C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_127.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 1072 "\\.\pipe\gecko-crash-server-pipe.1072" plugin
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_25_0_0_127.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_25_0_0_127.exe
"C:\Users\Lenunka\Downloads\RSITx64.exe"
C:\Program Files\Windows Defender\MpCmdRun.exe

====== Scheduled tasks folder ======

C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\tasks\Uninstaller_SkipUac_Lenunka.job - C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
C:\WINDOWS\tasks\WinThruster_DEFAULT.job - C:\Program Files (x86)\WinThruster\WinThruster.exe -default
C:\WINDOWS\tasks\WinThruster_UPDATES.job - C:\Program Files (x86)\WinThruster\WinThruster.exe -updatecheck
C:\WINDOWS\system32\tasks\Adobe Flash Player Updater - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\system32\tasks\AutoPico Daily Restart - "C:\Program Files\KMSpico\AutoPico.exe" /silent
C:\WINDOWS\system32\tasks\CLMLSvc - C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task - C:\Users\Lenunka\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\StartPowerDVDService - "C:\PROGRAM FILES (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe"
C:\WINDOWS\system32\tasks\Synaptics TouchPad Enhancements - "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\WINDOWS\system32\tasks\Uninstaller_SkipUac_Lenunka - C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
C:\WINDOWS\system32\tasks\WinThruster_DEFAULT - C:\Program Files (x86)\WinThruster\WinThruster.exe -default
C:\WINDOWS\system32\tasks\WinThruster_UPDATES - C:\Program Files (x86)\WinThruster\WinThruster.exe -updatecheck
C:\WINDOWS\system32\tasks\{B75EC942-0054-444D-A0B1-BF45104A9929} - "c:\program files\internet explorer\iexplore.exe" http://www.skype.com/go/downloading?sou ... rror=12007
C:\WINDOWS\system32\tasks\TVT\TVSUUpdateTask - "C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe" /CM -search C -action INSTALL -includerebootpackages 1,3,4 -noicon -noreboot -nolicense -defaultupdate -schtask
C:\WINDOWS\system32\tasks\TVT\TVSUUpdateTask_UserLogOn - "C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe" PendingTask
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join - %SystemRoot%\System32\AutoWorkplace.exe join
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network - C:\windows\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance - C:\Program Files\Windows Defender\\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup - C:\Program Files\Windows Defender\\MpCmdRun.exe -IdleTask -TaskName WdCleanup
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan - C:\Program Files\Windows Defender\\MpCmdRun.exe Scan -ScheduleJob
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification - C:\Program Files\Windows Defender\\MpCmdRun.exe -IdleTask -TaskName WdVerification
C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval - C:\WINDOWS\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe RebootDialog
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - C:\windows\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - C:\windows\system32\MusNotification.exe ReadyToReboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemovalTools\MRT_HB - C:\windows\system32\MRT.exe /EHB /Q
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\PLA\LSC Memory - C:\windows\system32\rundll32.exe C:\windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)"
C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\WINDOWS\system32\tasks\Microsoft\Office\Office 15 Subscription Heartbeat - %ProgramFiles%\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe
C:\WINDOWS\system32\tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 - "C:\Program Files\Microsoft Office\Office16\msoia.exe" scan upload mininterval:2880
C:\WINDOWS\system32\tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 - "C:\Program Files\Microsoft Office\Office16\msoia.exe" scan upload
C:\WINDOWS\system32\tasks\Lenovo\Lenovo Customer Feedback Program - "%ProgramFiles%\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe"
C:\WINDOWS\system32\tasks\Lenovo\Lenovo Customer Feedback Program 64 - "%ProgramFiles(x86)%\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe"
C:\WINDOWS\system32\tasks\Lenovo\Lenovo Customer Feedback Program 64 35 - "%ProgramFiles(x86)%\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe"
C:\WINDOWS\system32\tasks\Lenovo\Lenovo Settings Power - "C:\WINDOWS\system32\rundll32.exe" "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.dll",PwrMgrBkGndMonitor
C:\WINDOWS\system32\tasks\Lenovo\Lenovo Solution Center Launcher - %programfiles%\lenovo\lenovo solution center\App\LSC.Services.UpdateStatusService.exe UpdateStatus
C:\WINDOWS\system32\tasks\Lenovo\LSC\Lenovo Solution Center Notifications - %programfiles%\Lenovo\Lenovo Solution Center\LSCNotify.exe /show
C:\WINDOWS\system32\tasks\Lenovo\LSC\LSCHardwareScan - "C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe" -diag HWScan
C:\WINDOWS\system32\tasks\Lenovo\LSC\LSCHardwareScanPostpone - "C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe" -diag HWScan
C:\WINDOWS\system32\tasks\Lenovo\LSC\LSCTaskService - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCTaskService.exe
C:\WINDOWS\system32\tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance - %windir%\system32\sc.exe START ImControllerService
C:\WINDOWS\system32\tasks\Lenovo\ImController\TimeBasedEvents\2512020d-c345-4edc-91fa-a3b62f8e943f - powershell.exe -nologo -noninteractive "& {New-Item -Path Registry::HKCU\Software\Lenovo\ImController\ScheduledTasks\2512020d-c345-4edc-91fa-a3b62f8e943f -type directory -force;$conter=Get-Date;$conter=$conter.ToUniversalTime();Set-ItemProperty -Path Registry::HKCU\Software\Lenovo\ImController\ScheduledTasks\2512020d-c345-4edc-91fa-a3b62f8e943f -Name ExecutionTime -Value $conter;}"
C:\WINDOWS\system32\tasks\Lenovo\ImController\TimeBasedEvents\601e0b0a-247d-47be-b4a7-1189d7a0b91a - powershell.exe -nologo -noninteractive "& {New-Item -Path Registry::HKCU\Software\Lenovo\ImController\ScheduledTasks\601e0b0a-247d-47be-b4a7-1189d7a0b91a -type directory -force;$conter=Get-Date;$conter=$conter.ToUniversalTime();Set-ItemProperty -Path Registry::HKCU\Software\Lenovo\ImController\ScheduledTasks\601e0b0a-247d-47be-b4a7-1189d7a0b91a -Name ExecutionTime -Value $conter;}"
C:\WINDOWS\system32\tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask - %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32

=========Mozilla firefox=========

ProfilePath - C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default

prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.127 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_127.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.127 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_25_0_0_127.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.121.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.121.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_121\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office16\NPSPWRAP.DLL


C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\addons.json
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
Firefox Hello Beta (discontinued) - extension - loop@mozilla.org
Download Manager (S3) - extension - s3download@statusbar
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b}
Classic Theme Restorer - extension - ClassicThemeRestorer@ArisT2Noia4dev

C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\extensions.json
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b} - C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
Download Manager (S3) - extension - s3download@statusbar - C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\extensions\s3download@statusbar.xpi
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} - C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Firefox Hello - extension - loop@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\loop@mozilla.org.xpi
Websense Helper - extension - websensehelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\websensehelper@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Classic Theme Restorer - extension - ClassicThemeRestorer@ArisT2Noia4dev - C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\extensions\ClassicThemeRestorer@ArisT2Noia4dev.xpi

C:\Users\Lenunka\AppData\Roaming\Mozilla\Firefox\Profiles\kwciu4oa.default\pluginreg.dat
Plugin - Adobe Acrobat - 9.0.0.332 - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\browser\nppdf32.dll
Plugin - VLC Web Plugin - 2.2.4.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
Plugin - Google Update - 1.3.33.3 - C:\Program Files (x86)\Google\Update\1.3.33.3\npGoogleUpdate3.dll
Plugin - Photo Gallery - 16.4.3528.331 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
Plugin - Microsoft Office 2016 - 16.0.4266.1001 - C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL
Plugin - Silverlight Plug-In - 5.1.50906.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll
Plugin - Intel® Identity Protection Technology - 4.0.5.0 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
Plugin - Intel® Identity Protection Technology - 4.0.5.0 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
Plugin - Shockwave Flash - 25.0.0.127 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_127.dll

=========Google Chrome=========

C:\Users\Lenunka\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension bgjpfhpjcgdppjbgnpnjllokbmcdllig 0 Seznam Lištička - Email 1.4.2
Extension blmojkbhnkkphngknkmgccmlenfaelkd 0 Seznam Lištička - Slovník 1.4.6
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.60
Extension daanglpcpkjjlkhcbladppjphglbigam 0 Avast Online Security (BETA) 12.0.208
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension ennkphjdgehloodpbhlhldgbnhmacadg 1 Settings 0.2
Extension eofcbnmajmjmplflapaojjnihcjkigck 0 Avast SafePrice 12.0.199
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 0 Dokumenty Google offline 1.4
Extension gomekmidlodglbbmalcneegieacbdmki 0 Avast Online Security 12.0.209
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension lmjegmlicamnimmfhcmpkclmigmmcbeh 1 Application Launcher for Drive (by Google) 3.2
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mfffpogegjflfpflabcdkioaeobkgjik 1 GaiaAuthExtension 0.0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf 1 Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.2
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.2
Extension olfeabkoenfaoljndfecamgilllcpiak 0 Seznam Lištička - Rychlá volba 1.8.7
Extension pafkbggdmjlpgkdkcbjmhmfcdpncadgh 1 Google Now 1.2.0.1
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5717.116.0.4
Homepage: http://www.seznam.cz/
default_search_provider.search_url:
C:\Users\Lenunka\AppData\Local\Google\Chrome\User Data\Default\Preferences
Homepage:
default_search_provider.search_url:

======Registry dump ======


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={BC96DFF4-51D5-4C9C-98D0-2908478C7C1C}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BC96DFF4-51D5-4C9C-98D0-2908478C7C1C}]
"URL"=http://www.bing.com/search?q={searchTer ... TR&pc=LNJB


[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={BC96DFF4-51D5-4C9C-98D0-2908478C7C1C}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{BC96DFF4-51D5-4C9C-98D0-2908478C7C1C}]
"URL"=http://www.bing.com/search?q={searchTer ... TR&pc=LNJB

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2016-05-23 2478880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30 883160]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-04-06 571456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-04-06 234560]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2016-07-30 759768]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft OneDrive for Business Browser Helper - C:\PROGRA~2\MICROS~1\Office16\GROOVEEX.DLL [2017-02-22 1524528]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30 883160]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2016-07-30 759768]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtsCM"=C:\WINDOWS\RTSCM64.EXE [2013-06-19 147160]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2016-04-29 385520]
"TpShocks"=C:\WINDOWS\system32\TpShocks.exe [2014-02-18 384344]
"LENOVO.TPKNRRES"=C:\Program Files\Lenovo\Communications Utility\LibStartStub.dll [2014-03-04 74288]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2016-07-30 163800]
"ForteConfig"=C:\Program Files\Conexant\ForteConfig\fmapp.exe [2010-10-26 49056]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2014-11-25 935104]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2014-04-10 1830616]
"WindowsDefender"=C:\Program Files\Windows Defender\MSASCuiL.exe [2017-03-28 631808]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Lenunka\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-04-08 1518808]
"Viber"=C:\Users\Lenunka\AppData\Local\Viber\Viber.exe [2017-02-15 34978896]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2017-03-21 23819304]
"NaturalPoint"=C:\Program Files (x86)\NaturalPoint\SmartNav\SmartNAV.exe [2012-07-30 394864]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Application Restart #1"=C:\Users\Lenunka\AppData\Local\SweetLabs App Platform\Engine\ServiceHostApp.exe --disable-internal-flash --noerrdialogs --no-message-box --disable-extensions --disable-web-security --disable-web-resources --disable-client-side-phishing-detection --enable-file-cookies --disable-sync --disable-breakpad --disable-bundled-ppapi-flash --disable-sync-tabs --disable-speech-input --disable-custom-jumplist --process-per-tab --debug-devtools-frontend=C:\Users\Lenunka\AppData\Local\SweetLabs App Platform\Engine\inspector --no-first-run --lang=en-US --disable-component-update --disable-prompt-on-repost --no-startup-window --disable-translate --disable-logging --disable-desktop-notifications --disable-gpu-process-prelaunch --flag-switches-begin --flag-switches-end --restore-last-session []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IMSS"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [2013-09-16 134616]
"Fastboot"=C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe [2014-09-03 750320]
"IJNetworkScannerSelectorEX"=C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [2012-08-31 452272]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-12-12 587288]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
ThinkPad OneLink Dock Management.lnk - C:\Program Files (x86)\Lenovo\OneLink Dock\onelinkpromgn.exe

C:\Users\Lenunka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
RAC Server.lnk - C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"undockwithoutlogon"=1
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"EnableLinkedConnections"=1
"SoftwareSASGeneration"=1
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe" = "C:\Program Files (x86)\PCNetSoftware\RAC Server\RACs.exe:*:Enabled:Remote Administrator Control Server"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
"StubPath" = %SystemRoot%\inf\unregmp2.exe /ShowWMP

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

====== File associations ======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119670
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Nejdou kliknutim otevrit okna ze "systray" /oznameni,apo

#9 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

tominaxx
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 20 zář 2006 00:03
Kontaktovat uživatele:

Re: Nejdou kliknutim otevrit okna ze "systray" /oznameni,apo

#10 Příspěvek od tominaxx »

Vratil jsem tam Avast a necham to tak.
Mozna byste mi mohl pomoci s problemem u druheho NB. Daval jsem novy systemovy SSD a instaloval W7 HP x64. Dva dny jsem do toho hrnul instalace a ted kdyz mam hotovo a chtel jsem udelat bitovou kopii, tak mi nejde NB vypnout a misto toho se objevi blue screen a restartuje se. Pred lety jste radil nekomu se stejnym problemem spustit nejaky hotfix - nemate reseni i pro me?
Diky moc.

tominaxx
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 20 zář 2006 00:03
Kontaktovat uživatele:

Re: Nejdou kliknutim otevrit okna ze "systray" /oznameni,apo

#11 Příspěvek od tominaxx »

Bylo to v tomto tematu https://forum.viry.cz/viewtopic.php?f=6 ... 838448b0fc
Ikdyz jsem stahnul hotfix pro W7 x64 SP1 a rozbalil ho do rootu a spustil, napsalo mi to, ze to neni urceno pro muj system. :-(

tominaxx
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 20 zář 2006 00:03
Kontaktovat uživatele:

Re: Nejdou kliknutim otevrit okna ze "systray" /oznameni,apo

#12 Příspěvek od tominaxx »

Jo a samozrejme body obnovy jsou k nicemu a nepovedou se vzdy obnovit.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119670
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Nejdou kliknutim otevrit okna ze "systray" /oznameni,apo

#13 Příspěvek od Rudy »

To bych musel vidět minidump. Koukněte do windows\minidump, soubor/soubory zabalte do raru a přiložte k vašemu příštímu postu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

tominaxx
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 20 zář 2006 00:03
Kontaktovat uživatele:

Re: Nejdou kliknutim otevrit okna ze "systray" /oznameni,apo

#14 Příspěvek od tominaxx »

Prikladam dump soubor ...
Přílohy
041317-15678-01.rar
(24.18 KiB) Staženo 43 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119670
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Nejdou kliknutim otevrit okna ze "systray" /oznameni,apo

#15 Příspěvek od Rudy »

Problém by měl způsobovat NDAS software. Máte něco takového nainstalováno? Něco o tom je tady: https://translate.google.cz/translate?h ... rev=search . Začal bych postupem označeným jako Metoda 2.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno