Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Preventivní kontrola - spoamalený chod notebooku.

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
paolov
Návštěvník
Návštěvník
Příspěvky: 251
Registrován: 30 srp 2006 20:17
Bydliště: Jih Moravy.

Re: Preventivní kontrola - spoamalený chod notebooku.

#16 Příspěvek od paolov »

oprava
Naposledy upravil(a) paolov dne 03 srp 2016 06:43, celkem upraveno 1 x.

paolov
Návštěvník
Návštěvník
Příspěvky: 251
Registrován: 30 srp 2006 20:17
Bydliště: Jih Moravy.

Re: Preventivní kontrola - spoamalený chod notebooku.

#17 Příspěvek od paolov »

Při instalu přes utilitu Intel, ostatní návody jak jsi psal dodám později. Díky za ochotu.

[1A64:1EE4][2016-08-02T21:31:59]i001: Burn v3.7.1224.0, Windows v6.2 (Build 9200: Service Pack 0), path: C:\Users\Marcelka a Pavlíček\Downloads\Intel Components\SetupChipset.exe, cmdline: '-burn.unelevated BurnPipe.{61926F3E-A2BC-4FF1-B3C8-E4D04138417D} {5E66D6EF-4F50-40A8-AE85-9B4B1F676354} 7680'
[1A64:1EE4][2016-08-02T21:31:59]i000: Initializing string variable 'IIF_ProductVersion' to value '10.1.1.14'
[1A64:1EE4][2016-08-02T21:31:59]i000: Initializing string variable 'IIF_InstallerVersion' to value '3.1.6'
[1A64:1EE4][2016-08-02T21:31:59]i000: Initializing string variable 'IIF_ExtractionMapping_SetupChipsetx86.msi' to value ';NullDrivers.cab;NOT VersionNT64'
[1A64:1EE4][2016-08-02T21:31:59]i000: Initializing string variable 'IIF_ExtractionMapping_SetupChipsetx64.msi' to value ';NullDrivers.cab;VersionNT64'
[1A64:1EE4][2016-08-02T21:31:59]i000: Setting string variable 'WixBundleLog' to value 'C:\Users\MARCEL~1\AppData\Local\Temp\Intel\Logs\Chipset_20160802213159.log'
[1A64:1EE4][2016-08-02T21:31:59]i000: Setting string variable 'WixBundleOriginalSource' to value 'C:\Users\Marcelka a Pavlíček\Downloads\Intel Components\SetupChipset.exe'
[1A64:1EE4][2016-08-02T21:31:59]i052: Condition 'VersionNT >= v6.1 OR (VersionNT = v6.0 AND NTProductType = 3)' evaluates to true.
[1A64:1EE4][2016-08-02T21:31:59]i000: Loading managed bootstrapper application.
[1A64:1EE4][2016-08-02T21:32:00]i000: Creating BA thread to run asynchronously.
[1A64:1174][2016-08-02T21:32:00]i000: ** MBA ** Command line:
[1A64:1174][2016-08-02T21:32:00]i000: Setting string variable 'WixBundleName' to value 'Intel® Chipset Device Software'
[1A64:1174][2016-08-02T21:32:00]i000: ** MBA ** Calling Engine.Detect()
[1A64:1EE4][2016-08-02T21:32:00]i100: Detect begin, 3 packages
[1A64:1EE4][2016-08-02T21:32:00]i000: Setting string variable 'DotNet35' to value '1'
[1A64:1EE4][2016-08-02T21:32:00]i000: Setting string variable 'DotNet40Client' to value '1'
[1A64:1EE4][2016-08-02T21:32:00]i000: Setting string variable 'DotNet40Full' to value '1'
[1A64:1EE4][2016-08-02T21:32:00]i000: Setting string variable 'DotNet45' to value '394254'
[1A64:1EE4][2016-08-02T21:32:00]i052: Condition 'DotNet35 OR DotNet40Client OR DotNet40Full OR (DotNet45 >= 378389)' evaluates to true.
[1A64:1EE4][2016-08-02T21:32:00]i103: Detected related package: {FEBB7B48-CC1C-4A50-A497-FA21413F6BE9}, scope: PerMachine, version: 10.1.1.14, language: 0 operation: MajorUpgrade
[1A64:1EE4][2016-08-02T21:32:00]i101: Detected package: DotNet45, state: Present, cached: None
[1A64:1EE4][2016-08-02T21:32:00]i101: Detected package: SetupChipsetx86.msi, state: Absent, cached: None
[1A64:1EE4][2016-08-02T21:32:00]i104: Detected package: SetupChipsetx86.msi, feature: NullDriverFeature, state: Absent
[1A64:1EE4][2016-08-02T21:32:00]i104: Detected package: SetupChipsetx86.msi, feature: PackageVersionFeature, state: Absent
[1A64:1EE4][2016-08-02T21:32:00]i104: Detected package: SetupChipsetx86.msi, feature: LicenseAgreementFeature, state: Absent
[1A64:1EE4][2016-08-02T21:32:00]i101: Detected package: SetupChipsetx64.msi, state: Present, cached: Complete
[1A64:1EE4][2016-08-02T21:32:00]i104: Detected package: SetupChipsetx64.msi, feature: NullDriverFeature, state: Local
[1A64:1EE4][2016-08-02T21:32:00]i104: Detected package: SetupChipsetx64.msi, feature: PackageVersionFeature, state: Local
[1A64:1EE4][2016-08-02T21:32:00]i104: Detected package: SetupChipsetx64.msi, feature: LicenseAgreementFeature, state: Local
[1A64:1EE4][2016-08-02T21:32:00]i199: Detect complete, result: 0x0
[1A64:1EE4][2016-08-02T21:32:03]i200: Plan begin, 3 packages, action: Install
[1A64:1EE4][2016-08-02T21:32:03]w321: Skipping dependency registration on package with no dependency providers: DotNet45
[1A64:1EE4][2016-08-02T21:32:03]i052: Condition 'NOT VersionNT64' evaluates to false.
[1A64:1EE4][2016-08-02T21:32:03]i204: Plan 3 msi features for package: SetupChipsetx86.msi
[1A64:1EE4][2016-08-02T21:32:03]i203: Planned feature: NullDriverFeature, state: Absent, default requested: Unknown, ba requested: Unknown, execute action: None, rollback action: None
[1A64:1EE4][2016-08-02T21:32:03]i203: Planned feature: PackageVersionFeature, state: Absent, default requested: Unknown, ba requested: Unknown, execute action: None, rollback action: None
[1A64:1EE4][2016-08-02T21:32:03]i203: Planned feature: LicenseAgreementFeature, state: Absent, default requested: Unknown, ba requested: Unknown, execute action: None, rollback action: None
[1A64:1EE4][2016-08-02T21:32:03]i052: Condition 'VersionNT64' evaluates to true.
[1A64:1EE4][2016-08-02T21:32:03]i000: ** MBA ** SetupChipsetx64.msi: Converting 'Install' to 'Repair'.
[1A64:1EE4][2016-08-02T21:32:03]i204: Plan 3 msi features for package: SetupChipsetx64.msi
[1A64:1EE4][2016-08-02T21:32:03]i203: Planned feature: NullDriverFeature, state: Local, default requested: Unknown, ba requested: Unknown, execute action: None, rollback action: None
[1A64:1EE4][2016-08-02T21:32:03]i203: Planned feature: PackageVersionFeature, state: Local, default requested: Unknown, ba requested: Unknown, execute action: None, rollback action: None
[1A64:1EE4][2016-08-02T21:32:03]i203: Planned feature: LicenseAgreementFeature, state: Local, default requested: Unknown, ba requested: Unknown, execute action: None, rollback action: None
[1A64:1EE4][2016-08-02T21:32:03]i000: Setting string variable 'WixBundleLog_SetupChipsetx64.msi' to value 'C:\Users\MARCEL~1\AppData\Local\Temp\Intel\Logs\Chipset_20160802213159_0_SetupChipsetx64.msi.log'
[1A64:1EE4][2016-08-02T21:32:03]i201: Planned package: DotNet45, state: Present, default requested: Present, ba requested: Present, execute: None, rollback: None, cache: No, uncache: No, dependency: None
[1A64:1EE4][2016-08-02T21:32:03]i201: Planned package: SetupChipsetx86.msi, state: Absent, default requested: Absent, ba requested: Absent, execute: None, rollback: None, cache: No, uncache: No, dependency: None
[1A64:1EE4][2016-08-02T21:32:03]i201: Planned package: SetupChipsetx64.msi, state: Present, default requested: Present, ba requested: Repair, execute: Repair, rollback: None, cache: No, uncache: No, dependency: Register
[1A64:1EE4][2016-08-02T21:32:03]i299: Plan complete, result: 0x0
[1A64:1174][2016-08-02T21:32:03]i000: Setting string variable 'IIF_MSI_SWITCHES' to value ''
[1A64:1174][2016-08-02T21:32:03]i000: ** MBA ** Getting window handle.
[1A64:1174][2016-08-02T21:32:03]i000: ** MBA ** Calling Engine.Apply(). Window handle: 394626
[1A64:1EE4][2016-08-02T21:32:03]i300: Apply begin
[1A64:1EE4][2016-08-02T21:32:03]i000: ** MBA ** Apply complete. Status: '-2147024546' Restart: 'RestartRequired' Result: 'None'
[1A64:1EE4][2016-08-02T21:32:03]i399: Apply complete, result: 0x8007015e, restart: Required, ba requested restart: No
[1A64:1174][2016-08-02T21:32:03]e000: ** MBA ** Neznámá chyba.

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Preventivní kontrola - spoamalený chod notebooku.

#18 Příspěvek od Roli »

Bezva, ještě dotaz, v PC byli od začátku Win 10 nebo proběhlo upgrade z osmiček ?

Pokud upgrade, byla provedena čistá instalace nebo jen aktualizací ?
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

paolov
Návštěvník
Návštěvník
Příspěvky: 251
Registrován: 30 srp 2006 20:17
Bydliště: Jih Moravy.

Re: Preventivní kontrola - spoamalený chod notebooku.

#19 Příspěvek od paolov »

Na win 10 byl přechod z win7 formou aktualizace, ne čisté instalace.

Tak test pamětí proběhl v pořádku 10 pass 0 error.

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Preventivní kontrola - spoamalený chod notebooku.

#20 Příspěvek od Roli »

paolov píše:Na win 10 byl přechod z win7 formou aktualizace, ne čisté instalace.
No kort u takového skoku je lepší čistá instalace, ne vždy se to tam všechno správně porovná :(
paolov píše:Tak test pamětí proběhl v pořádku 10 pass 0 error.
Bezva ještě pro klid duše můžem testnout HDD.

Stáhni HD Tune a otestuj HDD.

Benchmark - Test disku Klikni na tlačítko Start a vyčkej dokud se nezaplní celý graf. Poté se dozvíš přenosovou rychlost a přístupový čas pevného disku.

Info Přesná kapacita, souborový systém, podporované funkce, verze firmware, sériové číslo a typ zapojení disků.

Health - Kondice Seznam důležitých parametrů a jejich hodnoty. Ideální je mít všude OK.

Když je nějaká položka žlutá pravděpodobně brzy změní status na failed. Když je červená má status failed, to by znamenalo výměnu disku.

Error Scan - Hledání chyb Klikni na tlačítko Start a program prozkoumá disk zda na něm nejsou vadné bloky.

Pokud na konci testu jsou všechny zelené, je vše v pořádku. Když je byť jeden z nich červený, doporučuji zazálohovat data a počítat s výměnou disku.

Teplota Teploměr nahoře a číslo vedle něj znázorňují teplotu disku. Normální hodnota je pod 50°C. Teplota ale nesmí přesáhnout 60°C, program upozorní když dosáhne hranice 55°C.


Pak dej vědět jak to dopadlo.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

paolov
Návštěvník
Návštěvník
Příspěvky: 251
Registrován: 30 srp 2006 20:17
Bydliště: Jih Moravy.

Re: Preventivní kontrola - spoamalený chod notebooku.

#21 Příspěvek od paolov »

HD Tune: WDC WD7500BPVT-24HXZ Benchmark
Transfer Rate Minimum : 0.1 MB/sec
Transfer Rate Maximum : 68.3 MB/sec
Transfer Rate Average : 7.4 MB/sec
Access Time : 35.4 ms
Burst Rate : 71.2 MB/sec
CPU Usage : 5.3%

HD Tune: WDC WD7500BPVT-24HXZ Information

Firmware version : 03.01A03
Serial number : WD-WX51A91P9816
Capacity : 698.6 GB (~750.2 GB)
Buffer size : 8192 KB
Standard : ATA/ATAPI-8 - SATA II
Supported mode : UDMA Mode 6 (Ultra ATA/133)
Current mode : UDMA Mode 7 (Ultra ATA/512)

S.M.A.R.T : yes
48-bit Address : yes
Read Look-Ahead : yes
Write Cache : yes
Host Protected Area : yes
Device Configuration Overlay : yes
Automatic Acoustic Management: no
Power Management : yes
Advanced Power Management : yes
Power-up in Standby : no
Security Mode : yes
Firmware Upgradable : yes

Partition : 1
Drive letter :
Label :
Capacity : 200 MB
Usage : 0.00%
Type : NTFS
Bootable : Yes

Partition : 2
Drive letter : C:\
Label :
Capacity : 670402 MB
Usage : 30.14%
Type : NTFS
Bootable : No

Partition : 3
Drive letter :
Label :
Capacity : 15108 MB
Usage : 0.00%
Type : unknown (12h)
Bootable : No

Partition : 4
Drive letter : D:\
Label : LENOVO
Capacity : 29692 MB
Usage : 33.49%
Type : NTFS
Bootable : No

Health - vše ok

HD Tune: WDC WD7500BPVT-24HXZ Error Scan

Scanned data : 715118 MB
Damaged Blocks : 0.0 %
Elapsed Time : 0:53

teplota 40 stupnu

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Preventivní kontrola - spoamalený chod notebooku.

#22 Příspěvek od Roli »

HDD byť lehce pomalejší (dáno jeho typem) také v pořádku.

Tak že, breberky odstraněny, hardware v pořádku :?:

Dej mi sem aktuální log z Rsit, mrknu co by se dalo ještě stopnout a pak už nevím, jediné co mi napadá, že si nový systém nesedl - dost možná by to vyřešil čistý reinstal a nebo se nesnese s některým kusem hardware s tím však nic neuděláme.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

paolov
Návštěvník
Návštěvník
Příspěvky: 251
Registrován: 30 srp 2006 20:17
Bydliště: Jih Moravy.

Re: Preventivní kontrola - spoamalený chod notebooku.

#23 Příspěvek od paolov »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Marcelka a Pavlíček at 2016-08-11 07:32:23
Microsoft Windows 10 Home
System drive C: has 468 GB (70%) free of 670 GB
Total RAM: 4040 MB (51% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:32:26, on 11.8.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0545)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files\trend micro\Marcelka a Pavlíček.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\Antivirus\avgnt.exe" /min
O4 - HKLM\..\Run: [Avira SystrayStartTrigger] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [PlaysTV] "C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe" --startup
O4 - HKLM\..\Run: [Raptr] "C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe" --startup
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\17.3.5930.0814] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\17.3.5930.0814"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {26E1BEAF-C1A1-482B-8714-08844F1BCF7F} (GTileContainerCtl Class) - http://90.182.35.27/webviewer.cab
O16 - DPF: {816BE035-1450-40D0-8A3B-BA7825A83A77} (IASRunner Class) - http://support.lenovo.com/Resources/Len ... etect2.cab
O16 - DPF: {BF776FD3-69B4-4151-AC97-3A2A64753E18} (GVersionManager Class) - http://90.182.35.27/GVersionMan.cab
O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} (SysInfo Class) - http://content.systemrequirementslab.co ... .5.1.0.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{684524be-261e-4487-aedf-b0da1d816460}: NameServer = 156.154.70.25,156.154.71.25
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: Avira Mail Protection (AntiVirMailService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avguard.exe
O23 - Service: Avira Web Protection (AntiVirWebService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
O23 - Service: Avira Service Host (Avira.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Energy Server Service WILLAMETTE (ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Plays.tv Update Service (PlaysService) - Plays.tv, LLC - C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE (SystemUsageReportSvc_WILLAMETTE) - Unknown owner - C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: User Energy Server Service WILLAMETTE (USER_ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11407 bytes

======Listing Processes======








C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
winlogon.exe
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\Antivirus\sched.exe"
dashost.exe {e83c5c49-87dc-4664-a84c7df6f3e0d78e}
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files (x86)\Avira\Antivirus\avguard.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\system32\mqsvc.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe"
"C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
"C:\Program Files (x86)\Avira\Antivirus\avshadow.exe" avshadowcontrol0_00000888
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe" "--AUTO_START" "--start" "--address" "127.0.0.1" "--port" "49330" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC_WILLAMETTE" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=w output_folder='C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_process_input.dll','process_input_options.txt' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_system_power_state_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_quality_and_reliability_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\acpi_battery_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\sema_thermal_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\wifi_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\devices_use_input.dll','service=yes' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_disktrace_input.dll','pause=60000 working_dir=C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData override_existing_tracing=no limit_output_by_filesize_mb=10' os='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\os_counters.txt' "
atieclxx
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"" "--start" "--register_port" "--address" "127.0.0.1" "--port" "49331" "--pause_on_user_switching" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC_WILLAMETTE" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=no output_folder='C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData\userlogs' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\foreground_window_input.dll' "
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files (x86)\Avira\Antivirus\avgnt.exe" /min
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe" /connectToHost
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
"C:\WINDOWS\System32\NetworkUXBroker.exe" -ServerName:Windows.Networking.UX
C:\WINDOWS\system32\DllHost.exe /Processid:{478B41E6-3257-4519-BDA8-E971F9843849}
"C:\Users\Marcelka a Pavlíček\AppData\Local\Apps\2.0\0869Z8V5.CRQ\WBBZ2QZC.YD5\lsb...tion_2d7b41b05b24775e_0001.0006_6a5d43d0bdf9db4a\LSB.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 432 620 640 8192 628
"C:\Users\Marcelka a Pavlíček\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Marcelka a Pavlíček\AppData\Roaming\Mozilla\Firefox\Profiles\cmk6eupj.default-1469684642737

prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1224194.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.101.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.101.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@playstation.com/PsndlCheck,version=1.00]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.4.0]
"Description"=
"Path"=C:\windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-07-22 473152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-07-22 186944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2011-10-08 9753024]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2011-10-08 5908928]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe [2000-01-01 307768]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-01 3952800]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-01-02 551112]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-07-13 8891608]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\17.3.5930.0814"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ocster Backup]
C:\Program Files\Ocster Backup\bin\backupClient-ox.exe --hidden []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VeriFaceManager]
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [2011-10-08 329056]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk]
C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-29 136488]
"avgnt"=C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2016-07-28 831064]
"Avira SystrayStartTrigger"=C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [2016-07-11 67840]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-08-04 767176]
"PlaysTV"=C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe [2016-08-02 71440]
"Raptr"=C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [2016-07-21 58640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-08-10 19:46:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2016-08-10 19:46:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2016-08-10 19:46:59 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-08-10 19:46:59 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-08-10 19:46:59 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2016-08-10 19:46:59 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-08-10 19:46:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2016-08-10 19:46:58 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-08-10 19:46:57 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-08-10 19:46:57 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-08-10 19:46:56 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-08-10 19:46:56 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-08-10 19:46:55 ----A---- C:\WINDOWS\system32\wmp.dll
2016-08-10 19:46:54 ----A---- C:\WINDOWS\SYSWOW64\wldp.dll
2016-08-10 19:46:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-08-10 19:46:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2016-08-10 19:46:54 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-08-10 19:46:54 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-08-10 19:46:53 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-08-10 19:46:53 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-08-10 19:46:52 ----A---- C:\WINDOWS\system32\wevtutil.exe
2016-08-10 19:46:51 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.dll
2016-08-10 19:46:51 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-08-10 19:46:49 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-08-10 19:46:49 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-08-10 19:46:49 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2016-08-10 19:46:49 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-08-10 19:46:49 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-08-10 19:46:49 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-08-10 19:46:48 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-08-10 19:46:48 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-08-10 19:46:48 ----A---- C:\WINDOWS\system32\cdd.dll
2016-08-10 19:46:48 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-08-10 19:46:47 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-08-10 19:46:47 ----A---- C:\WINDOWS\system32\usocore.dll
2016-08-10 19:46:47 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2016-08-10 19:46:46 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-08-10 19:46:45 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-08-10 19:46:45 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-08-10 19:46:45 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-08-10 19:46:44 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-08-10 19:46:43 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2016-08-10 19:46:43 ----A---- C:\WINDOWS\SYSWOW64\tdlrecover.exe
2016-08-10 19:46:43 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-08-10 19:46:42 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-08-10 19:46:42 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2016-08-10 19:46:42 ----A---- C:\WINDOWS\system32\winsrv.dll
2016-08-10 19:46:41 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-08-10 19:46:41 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2016-08-10 19:46:41 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-08-10 19:46:40 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-08-10 19:46:40 ----A---- C:\WINDOWS\SYSWOW64\wshbth.dll
2016-08-10 19:46:40 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll
2016-08-10 19:46:40 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-08-10 19:46:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-08-10 19:46:38 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-08-10 19:46:38 ----A---- C:\WINDOWS\system32\sppwinob.dll
2016-08-10 19:46:37 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-08-10 19:46:37 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-08-10 19:46:37 ----A---- C:\WINDOWS\system32\wininet.dll
2016-08-10 19:46:37 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-08-10 19:46:37 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-08-10 19:46:36 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-08-10 19:46:36 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-08-10 19:46:35 ----A---- C:\WINDOWS\SYSWOW64\wevtutil.exe
2016-08-10 19:46:35 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-08-10 19:46:35 ----A---- C:\WINDOWS\system32\wshbth.dll
2016-08-10 19:46:35 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2016-08-10 19:46:35 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2016-08-10 19:46:34 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-08-10 19:46:33 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-08-10 19:46:32 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-08-10 19:46:32 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-08-10 19:46:31 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-08-10 19:46:31 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-08-10 19:46:31 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-08-10 19:46:31 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-08-10 19:46:30 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-08-10 19:46:30 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-08-10 19:46:30 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-08-10 19:46:29 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-08-10 19:46:29 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-08-10 19:46:28 ----A---- C:\WINDOWS\system32\wldp.dll
2016-08-10 19:46:28 ----A---- C:\WINDOWS\system32\tdlrecover.exe
2016-08-10 19:46:28 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-08-10 19:46:28 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-08-10 19:46:27 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-08-10 19:46:27 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-08-10 19:46:26 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-08-10 19:46:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-08-10 19:46:26 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2016-08-10 19:46:26 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-08-10 19:46:25 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-08-10 19:46:25 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-08-10 19:46:24 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-08-10 19:46:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-08-10 19:46:23 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-08-10 19:46:23 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-08-10 19:46:22 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-08-10 19:46:22 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-08-10 19:46:21 ----A---- C:\WINDOWS\SYSWOW64\IdCtrls.dll
2016-08-10 19:46:21 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-08-10 19:46:21 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-08-10 19:46:20 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-08-10 19:46:19 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-08-10 19:46:18 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-08-10 19:46:18 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-08-10 19:46:17 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-08-10 19:46:17 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-08-10 19:46:16 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-08-10 19:46:15 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-08-10 19:46:14 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-08-10 19:46:14 ----A---- C:\WINDOWS\system32\ole32.dll
2016-08-10 19:46:14 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-08-10 19:46:14 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-08-10 19:46:13 ----A---- C:\WINDOWS\system32\shell32.dll
2016-08-10 19:46:13 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-08-10 19:46:06 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2016-08-10 19:46:06 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2016-08-10 19:46:06 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2016-08-10 19:46:06 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-08-10 19:46:05 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-08-10 19:46:05 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-08-10 19:46:05 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-08-10 19:46:05 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-08-10 19:46:05 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2016-08-10 19:46:05 ----A---- C:\WINDOWS\system32\bthserv.dll
2016-08-09 19:12:10 ----D---- C:\Program Files (x86)\HD Tune
2016-08-05 21:34:36 ----D---- C:\z flašky
2016-08-02 10:38:57 ----D---- C:\ProgramData\IntelDLM
2016-08-02 10:37:33 ----A---- C:\WINDOWS\system32\drivers\semav6msr64.sys
2016-08-02 10:37:31 ----AD---- C:\Program Files (x86)\Intel Driver Update Utility
2016-08-02 10:37:20 ----D---- C:\Program Files\Intel
2016-07-27 12:38:26 ----D---- C:\ProgramData\ATI
2016-07-27 09:01:18 ----D---- C:\Users\Marcelka a Pavlíček\AppData\Roaming\PlaysTV
2016-07-27 08:59:35 ----D---- C:\Users\Marcelka a Pavlíček\AppData\Roaming\library_dir
2016-07-27 08:59:29 ----D---- C:\Program Files (x86)\Raptr Inc
2016-07-27 08:58:38 ----D---- C:\Users\Marcelka a Pavlíček\AppData\Roaming\Raptr
2016-07-27 08:58:38 ----D---- C:\Program Files (x86)\Raptr
2016-07-27 08:57:49 ----AD---- C:\Program Files (x86)\AMD
2016-07-23 02:01:36 ----D---- C:\Users\Marcelka a Pavlíček\AppData\Roaming\Avira
2016-07-23 01:59:15 ----A---- C:\WINDOWS\system32\drivers\avnetflt.sys
2016-07-23 01:59:15 ----A---- C:\WINDOWS\system32\drivers\avkmgr.sys
2016-07-23 01:59:15 ----A---- C:\WINDOWS\system32\drivers\avipbb.sys
2016-07-23 01:59:15 ----A---- C:\WINDOWS\system32\drivers\avgntflt.sys
2016-07-23 01:58:37 ----D---- C:\ProgramData\Avira
2016-07-23 01:58:37 ----D---- C:\Program Files (x86)\Avira
2016-07-23 01:50:31 ----SD---- C:\WINDOWS\SYSWOW64\Microsoft
2016-07-22 23:46:40 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2016-07-22 23:38:35 ----AD---- C:\Program Files (x86)\7-Zip
2016-07-22 23:32:34 ----D---- C:\Program Files (x86)\FinalWire
2016-07-21 10:11:17 ----AD---- C:\Program Files (x86)\LibreOffice 5
2016-07-13 13:01:25 ----A---- C:\WINDOWS\SYSWOW64\WPDShServiceObj.dll
2016-07-13 13:01:25 ----A---- C:\WINDOWS\SYSWOW64\wpdshext.dll
2016-07-13 13:01:25 ----A---- C:\WINDOWS\SYSWOW64\wlanui.dll
2016-07-13 13:01:25 ----A---- C:\WINDOWS\SYSWOW64\WLanConn.dll
2016-07-13 13:01:24 ----A---- C:\WINDOWS\SYSWOW64\wiaaut.dll
2016-07-13 13:01:24 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2016-07-13 13:01:24 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2016-07-13 13:01:24 ----A---- C:\WINDOWS\SYSWOW64\UserLanguagesCpl.dll
2016-07-13 13:01:24 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-07-13 13:01:24 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2016-07-13 13:01:24 ----A---- C:\WINDOWS\SYSWOW64\taskeng.exe
2016-07-13 13:01:23 ----A---- C:\WINDOWS\SYSWOW64\taskcomp.dll
2016-07-13 13:01:23 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2016-07-13 13:01:20 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2016-07-13 13:01:20 ----A---- C:\WINDOWS\SYSWOW64\WSClient.dll
2016-07-13 13:01:20 ----A---- C:\WINDOWS\SYSWOW64\sud.dll
2016-07-13 13:01:20 ----A---- C:\WINDOWS\SYSWOW64\SimCfg.dll
2016-07-13 13:01:20 ----A---- C:\WINDOWS\SYSWOW64\SimAuth.dll
2016-07-13 13:01:17 ----A---- C:\WINDOWS\SYSWOW64\WSSync.dll
2016-07-13 13:01:17 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2016-07-13 13:01:17 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-07-13 13:01:17 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-07-13 13:01:17 ----A---- C:\WINDOWS\SYSWOW64\SettingMonitor.dll
2016-07-13 13:01:17 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2016-07-13 13:01:17 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll
2016-07-13 13:01:17 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2016-07-13 13:01:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2016-07-13 13:01:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
2016-07-13 13:01:16 ----A---- C:\WINDOWS\SYSWOW64\rasgcw.dll
2016-07-13 13:01:16 ----A---- C:\WINDOWS\SYSWOW64\ntprint.dll
2016-07-13 13:01:13 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-07-13 13:01:13 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2016-07-13 13:01:13 ----A---- C:\WINDOWS\SYSWOW64\netplwiz.dll
2016-07-13 13:01:13 ----A---- C:\WINDOWS\SYSWOW64\netcenter.dll
2016-07-13 13:01:12 ----A---- C:\WINDOWS\SYSWOW64\SyncCenter.dll
2016-07-13 13:01:12 ----A---- C:\WINDOWS\SYSWOW64\msieftp.dll
2016-07-13 13:01:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Search.dll
2016-07-13 13:01:06 ----A---- C:\WINDOWS\SYSWOW64\IconCodecService.dll
2016-07-13 13:01:03 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2016-07-13 13:01:03 ----A---- C:\WINDOWS\SYSWOW64\duser.dll
2016-07-13 13:01:03 ----A---- C:\WINDOWS\SYSWOW64\dui70.dll
2016-07-13 13:01:03 ----A---- C:\WINDOWS\SYSWOW64\dot3ui.dll
2016-07-13 13:01:03 ----A---- C:\WINDOWS\SYSWOW64\dmdskmgr.dll
2016-07-13 13:01:03 ----A---- C:\WINDOWS\SYSWOW64\Display.dll
2016-07-13 13:01:03 ----A---- C:\WINDOWS\SYSWOW64\ActionCenterCPL.dll
2016-07-13 13:01:02 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-07-13 13:01:02 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2016-07-13 13:01:00 ----A---- C:\WINDOWS\SYSWOW64\xpsservices.dll
2016-07-13 13:01:00 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2016-07-13 13:01:00 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2016-07-13 13:00:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-07-13 13:00:59 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2016-07-13 13:00:59 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2016-07-13 13:00:59 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2016-07-13 13:00:59 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2016-07-13 13:00:59 ----A---- C:\WINDOWS\SYSWOW64\oemlicense.dll
2016-07-13 13:00:59 ----A---- C:\WINDOWS\SYSWOW64\licensingdiag.exe
2016-07-13 13:00:59 ----A---- C:\WINDOWS\SYSWOW64\Clipc.dll
2016-07-13 13:00:59 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2016-07-13 13:00:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2016-07-13 13:00:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2016-07-13 13:00:58 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2016-07-13 13:00:58 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2016-07-13 13:00:58 ----A---- C:\WINDOWS\SYSWOW64\mssphtb.dll
2016-07-13 13:00:58 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2016-07-13 13:00:58 ----A---- C:\WINDOWS\SYSWOW64\msscntrs.dll
2016-07-13 13:00:57 ----A---- C:\WINDOWS\SYSWOW64\zipfldr.dll
2016-07-13 13:00:57 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2016-07-13 13:00:57 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2016-07-13 13:00:56 ----A---- C:\WINDOWS\SYSWOW64\WmpDui.dll
2016-07-13 13:00:56 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-07-13 13:00:56 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2016-07-13 13:00:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-07-13 13:00:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.dll
2016-07-13 13:00:56 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-07-13 13:00:55 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecsRaw.dll
2016-07-13 13:00:55 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecsExt.dll
2016-07-13 13:00:55 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-07-13 13:00:55 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2016-07-13 13:00:54 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2016-07-13 13:00:54 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2016-07-13 13:00:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-07-13 13:00:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2016-07-13 13:00:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2016-07-13 13:00:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2016-07-13 13:00:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-07-13 13:00:50 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-07-13 13:00:50 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2016-07-13 13:00:50 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2016-07-13 13:00:50 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2016-07-13 13:00:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-07-13 13:00:49 ----A---- C:\WINDOWS\SYSWOW64\themeui.dll
2016-07-13 13:00:49 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-07-13 13:00:49 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-07-13 13:00:49 ----A---- C:\WINDOWS\SYSWOW64\sbe.dll
2016-07-13 13:00:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Speech.Pal.dll
2016-07-13 13:00:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2016-07-13 13:00:46 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2016-07-13 13:00:45 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-07-13 13:00:45 ----A---- C:\WINDOWS\SYSWOW64\schtasks.exe
2016-07-13 13:00:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2016-07-13 13:00:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-07-13 13:00:44 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2016-07-13 13:00:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2016-07-13 13:00:42 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2016-07-13 13:00:42 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2016-07-13 13:00:42 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2016-07-13 13:00:42 ----A---- C:\WINDOWS\SYSWOW64\winmsipc.dll
2016-07-13 13:00:42 ----A---- C:\WINDOWS\SYSWOW64\winipcsecproc.dll
2016-07-13 13:00:42 ----A---- C:\WINDOWS\SYSWOW64\winipcfile.dll
2016-07-13 13:00:42 ----A---- C:\WINDOWS\SYSWOW64\ProximityCommon.dll
2016-07-13 13:00:42 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2016-07-13 13:00:42 ----A---- C:\WINDOWS\SYSWOW64\PrintDialogs.dll
2016-07-13 13:00:42 ----A---- C:\WINDOWS\SYSWOW64\PlayToReceiver.dll
2016-07-13 13:00:42 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2016-07-13 13:00:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2016-07-13 13:00:41 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2016-07-13 13:00:40 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2016-07-13 13:00:40 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2016-07-13 13:00:40 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2016-07-13 13:00:39 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-07-13 13:00:39 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2016-07-13 13:00:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2016-07-13 13:00:38 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-07-13 13:00:38 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-07-13 13:00:38 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2016-07-13 13:00:38 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-07-13 13:00:38 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe
2016-07-13 13:00:38 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2016-07-13 13:00:37 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-07-13 13:00:37 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-07-13 13:00:37 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-07-13 13:00:37 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-07-13 13:00:37 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-07-13 13:00:37 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-07-13 13:00:37 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-07-13 13:00:36 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-07-13 13:00:36 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-07-13 13:00:36 ----A---- C:\WINDOWS\SYSWOW64\mbsmsapi.dll
2016-07-13 13:00:36 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2016-07-13 13:00:36 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2016-07-13 13:00:36 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-07-13 13:00:35 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2016-07-13 13:00:35 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2016-07-13 13:00:35 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2016-07-13 13:00:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2016-07-13 13:00:31 ----A---- C:\WINDOWS\SYSWOW64\GlobCollationHost.dll
2016-07-13 13:00:31 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2016-07-13 13:00:31 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-07-13 13:00:31 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-07-13 13:00:30 ----A---- C:\WINDOWS\SYSWOW64\ExecModelClient.dll
2016-07-13 13:00:30 ----A---- C:\WINDOWS\SYSWOW64\edputil.dll
2016-07-13 13:00:30 ----A---- C:\WINDOWS\SYSWOW64\eappprxy.dll
2016-07-13 13:00:30 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2016-07-13 13:00:30 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2016-07-13 13:00:30 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2016-07-13 13:00:30 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2016-07-13 13:00:30 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-07-13 13:00:30 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-07-13 13:00:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFiDirect.dll
2016-07-13 13:00:29 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2016-07-13 13:00:29 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2016-07-13 13:00:29 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2016-07-13 13:00:29 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2016-07-13 13:00:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.dll
2016-07-13 13:00:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Picker.dll
2016-07-13 13:00:28 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-07-13 13:00:28 ----A---- C:\WINDOWS\SYSWOW64\dlnashext.dll
2016-07-13 13:00:28 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2016-07-13 13:00:28 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2016-07-13 13:00:25 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-07-13 13:00:24 ----A---- C:\WINDOWS\SYSWOW64\credprovs.dll
2016-07-13 13:00:24 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-07-13 13:00:24 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2016-07-13 13:00:24 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2016-07-13 13:00:23 ----A---- C:\WINDOWS\SYSWOW64\Taskmgr.exe
2016-07-13 13:00:23 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2016-07-13 13:00:23 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-07-13 13:00:22 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2016-07-13 12:53:27 ----A---- C:\WINDOWS\system32\tquery.dll
2016-07-13 12:53:27 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2016-07-13 12:53:27 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2016-07-13 12:53:27 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2016-07-13 12:53:27 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-07-13 12:53:27 ----A---- C:\WINDOWS\system32\mssrch.dll
2016-07-13 12:53:27 ----A---- C:\WINDOWS\system32\mssphtb.dll
2016-07-13 12:53:27 ----A---- C:\WINDOWS\system32\mssph.dll
2016-07-13 12:53:27 ----A---- C:\WINDOWS\system32\msscntrs.dll
2016-07-13 12:53:26 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-07-13 12:53:26 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-07-13 12:53:24 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-07-13 12:52:42 ----A---- C:\WINDOWS\system32\zipfldr.dll
2016-07-13 12:52:42 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2016-07-13 12:52:42 ----A---- C:\WINDOWS\system32\GamePanel.exe
2016-07-13 12:52:41 ----A---- C:\WINDOWS\system32\wwanmm.dll
2016-07-13 12:52:41 ----A---- C:\WINDOWS\system32\wwanconn.dll
2016-07-13 12:52:41 ----A---- C:\WINDOWS\system32\WPDShServiceObj.dll
2016-07-13 12:52:41 ----A---- C:\WINDOWS\system32\wpdshext.dll
2016-07-13 12:52:41 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-07-13 12:52:40 ----A---- C:\WINDOWS\system32\WmpDui.dll
2016-07-13 12:52:40 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-07-13 12:52:40 ----A---- C:\WINDOWS\system32\wmicmiplugin.dll
2016-07-13 12:52:40 ----A---- C:\WINDOWS\system32\wlanui.dll
2016-07-13 12:52:39 ----A---- C:\WINDOWS\system32\WLanConn.dll
2016-07-13 12:52:39 ----A---- C:\WINDOWS\system32\winmde.dll
2016-07-13 12:52:39 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-07-13 12:52:39 ----A---- C:\WINDOWS\system32\Windows.Graphics.dll
2016-07-13 12:52:38 ----A---- C:\WINDOWS\system32\WindowsCodecsRaw.dll
2016-07-13 12:52:38 ----A---- C:\WINDOWS\system32\WindowsCodecsExt.dll
2016-07-13 12:52:38 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-07-13 12:52:38 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-07-13 12:52:37 ----A---- C:\WINDOWS\system32\wiaaut.dll
2016-07-13 12:52:37 ----A---- C:\WINDOWS\system32\webio.dll
2016-07-13 12:52:36 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2016-07-13 12:52:35 ----A---- C:\WINDOWS\system32\wmpmde.dll
2016-07-13 12:52:35 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2016-07-13 12:52:34 ----A---- C:\WINDOWS\system32\UserLanguagesCpl.dll
2016-07-13 12:52:34 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-07-13 12:52:33 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-07-13 12:52:33 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-07-13 12:52:33 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-07-13 12:52:33 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2016-07-13 12:52:33 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2016-07-13 12:52:32 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-07-13 12:52:32 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-07-13 12:52:32 ----A---- C:\WINDOWS\system32\diagtrack_win.dll
2016-07-13 12:52:28 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-07-13 12:52:28 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2016-07-13 12:52:28 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-07-13 12:52:23 ----A---- C:\WINDOWS\system32\twinui.dll
2016-07-13 12:51:52 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2016-07-13 12:51:52 ----A---- C:\WINDOWS\system32\twinapi.dll
2016-07-13 12:51:52 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2016-07-13 12:51:52 ----A---- C:\WINDOWS\system32\themeui.dll
2016-07-13 12:51:51 ----A---- C:\WINDOWS\system32\themecpl.dll
2016-07-13 12:51:51 ----A---- C:\WINDOWS\system32\taskeng.exe
2016-07-13 12:51:51 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-07-13 12:51:51 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-07-13 12:51:49 ----A---- C:\WINDOWS\system32\taskcomp.dll
2016-07-13 12:51:49 ----A---- C:\WINDOWS\system32\RADCUI.dll
2016-07-13 12:51:48 ----A---- C:\WINDOWS\system32\systemreset.exe
2016-07-13 12:51:48 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-07-13 12:51:48 ----A---- C:\WINDOWS\system32\rdpcore.dll
2016-07-13 12:51:45 ----A---- C:\WINDOWS\system32\WSService.dll
2016-07-13 12:51:45 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-07-13 12:51:45 ----A---- C:\WINDOWS\system32\sud.dll
2016-07-13 12:51:45 ----A---- C:\WINDOWS\system32\sbe.dll
2016-07-13 12:51:44 ----A---- C:\WINDOWS\system32\WSShared.dll
2016-07-13 12:51:44 ----A---- C:\WINDOWS\system32\WSClient.dll
2016-07-13 12:51:44 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-07-13 12:51:42 ----A---- C:\WINDOWS\system32\StikyNot.exe
2016-07-13 12:51:42 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-07-13 12:51:42 ----A---- C:\WINDOWS\system32\SRH.dll
2016-07-13 12:51:40 ----A---- C:\WINDOWS\system32\Windows.Speech.Pal.dll
2016-07-13 12:51:40 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2016-07-13 12:51:39 ----A---- C:\WINDOWS\system32\SimCfg.dll
2016-07-13 12:51:39 ----A---- C:\WINDOWS\system32\SimAuth.dll
2016-07-13 12:51:38 ----A---- C:\WINDOWS\system32\shutdownux.dll
2016-07-13 12:51:34 ----A---- C:\WINDOWS\system32\SHCore.dll
2016-07-13 12:51:34 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-07-13 12:51:33 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-07-13 12:51:33 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-07-13 12:51:33 ----A---- C:\WINDOWS\system32\SettingMonitor.dll
2016-07-13 12:51:33 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-07-13 12:51:32 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-07-13 12:51:32 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-07-13 12:51:32 ----A---- C:\WINDOWS\system32\sppsvc.exe
2016-07-13 12:51:32 ----A---- C:\WINDOWS\system32\phoneactivate.exe
2016-07-13 12:51:30 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2016-07-13 12:51:30 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-07-13 12:51:29 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-07-13 12:51:29 ----A---- C:\WINDOWS\system32\schtasks.exe
2016-07-13 12:51:28 ----A---- C:\WINDOWS\system32\sdshext.dll
2016-07-13 12:51:28 ----A---- C:\WINDOWS\system32\sdrsvc.dll
2016-07-13 12:51:28 ----A---- C:\WINDOWS\system32\sdengin2.dll
2016-07-13 12:51:28 ----A---- C:\WINDOWS\system32\NetworkDesktopSettings.dll
2016-07-13 12:51:27 ----A---- C:\WINDOWS\system32\SettingsHandlers_Maps.dll
2016-07-13 12:51:27 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-07-13 12:51:27 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-07-13 12:51:27 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2016-07-13 12:51:26 ----A---- C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-07-13 12:51:26 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-07-13 12:51:26 ----A---- C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-07-13 12:51:25 ----A---- C:\WINDOWS\system32\OneBackupHandler.dll
2016-07-13 12:51:25 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-07-13 12:51:23 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-07-13 12:51:23 ----A---- C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-07-13 12:51:20 ----A---- C:\WINDOWS\system32\ApplicationFrame.dll
2016-07-13 12:51:17 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-07-13 12:51:17 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-07-13 12:51:17 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2016-07-13 12:51:17 ----A---- C:\WINDOWS\system32\efswrt.dll
2016-07-13 12:51:17 ----A---- C:\WINDOWS\system32\easwrt.dll
2016-07-13 12:51:08 ----A---- C:\WINDOWS\system32\WSSync.dll
2016-07-13 12:51:04 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-07-13 12:51:04 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-07-13 12:51:03 ----A---- C:\WINDOWS\system32\rasgcw.dll
2016-07-13 12:51:03 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-07-13 12:51:01 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-07-13 12:51:00 ----A---- C:\WINDOWS\system32\winmsipc.dll
2016-07-13 12:51:00 ----A---- C:\WINDOWS\system32\winipcsecproc.dll
2016-07-13 12:51:00 ----A---- C:\WINDOWS\system32\winipcfile.dll
2016-07-13 12:51:00 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-07-13 12:51:00 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-07-13 12:50:59 ----A---- C:\WINDOWS\system32\provops.dll
2016-07-13 12:50:59 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2016-07-13 12:50:59 ----A---- C:\WINDOWS\system32\provhandlers.dll
2016-07-13 12:50:59 ----A---- C:\WINDOWS\system32\provengine.dll
2016-07-13 12:50:59 ----A---- C:\WINDOWS\system32\propsys.dll
2016-07-13 12:50:59 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-07-13 12:50:58 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-07-13 12:50:58 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-07-13 12:50:58 ----A---- C:\WINDOWS\system32\PrintDialogs3D.dll
2016-07-13 12:50:58 ----A---- C:\WINDOWS\system32\PrintDialogs.dll
2016-07-13 12:50:57 ----A---- C:\WINDOWS\system32\pnidui.dll
2016-07-13 12:50:57 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2016-07-13 12:50:57 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2016-07-13 12:50:57 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2016-07-13 12:50:57 ----A---- C:\WINDOWS\system32\PhotoScreensaver.scr
2016-07-13 12:50:56 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2016-07-13 12:50:56 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2016-07-13 12:50:56 ----A---- C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
2016-07-13 12:50:56 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-07-13 12:50:55 ----A---- C:\WINDOWS\system32\Wpc.dll
2016-07-13 12:50:55 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-07-13 12:50:55 ----A---- C:\WINDOWS\system32\ntprint.dll
2016-07-13 12:50:55 ----A---- C:\WINDOWS\system32\localspl.dll
2016-07-13 12:50:55 ----A---- C:\WINDOWS\system32\inetpp.dll
2016-07-13 12:50:52 ----A---- C:\WINDOWS\system32\wpncore.dll
2016-07-13 12:50:52 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2016-07-13 12:50:52 ----A---- C:\WINDOWS\system32\WpcMon.exe
2016-07-13 12:50:41 ----A---- C:\WINDOWS\system32\ntshrui.dll
2016-07-13 12:50:41 ----A---- C:\WINDOWS\system32\LegacyNetUXHost.exe
2016-07-13 12:50:41 ----A---- C:\WINDOWS\system32\LegacyNetUX.dll
2016-07-13 12:50:40 ----A---- C:\WINDOWS\system32\netcenter.dll
2016-07-13 12:50:40 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-07-13 12:50:39 ----A---- C:\WINDOWS\system32\netshell.dll
2016-07-13 12:50:39 ----A---- C:\WINDOWS\system32\netplwiz.dll
2016-07-13 12:50:37 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2016-07-13 12:50:37 ----A---- C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-07-13 12:50:37 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2016-07-13 12:50:36 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-07-13 12:50:35 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-07-13 12:50:35 ----A---- C:\WINDOWS\system32\mspaint.exe
2016-07-13 12:50:34 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2016-07-13 12:50:34 ----A---- C:\WINDOWS\system32\msieftp.dll
2016-07-13 12:50:34 ----A---- C:\WINDOWS\system32\msftedit.dll
2016-07-13 12:50:34 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-07-13 12:50:33 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2016-07-13 12:50:32 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-07-13 12:50:32 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-07-13 12:50:31 ----A---- C:\WINDOWS\system32\wmpps.dll
2016-07-13 12:50:30 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-07-13 12:50:30 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-07-13 12:50:30 ----A---- C:\WINDOWS\system32\mfpmp.exe
2016-07-13 12:50:30 ----A---- C:\WINDOWS\system32\mf.dll
2016-07-13 12:50:29 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-07-13 12:50:29 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-07-13 12:50:29 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-07-13 12:50:29 ----A---- C:\WINDOWS\system32\APHostService.dll
2016-07-13 12:50:28 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-07-13 12:50:28 ----A---- C:\WINDOWS\system32\moshost.dll
2016-07-13 12:50:28 ----A---- C:\WINDOWS\system32\mos.dll
2016-07-13 12:50:28 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-07-13 12:50:28 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-07-13 12:50:28 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-07-13 12:50:28 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-07-13 12:50:28 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-07-13 12:50:27 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-07-13 12:50:27 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-07-13 12:50:27 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-07-13 12:50:19 ----A---- C:\WINDOWS\system32\Windows.Storage.Search.dll
2016-07-13 12:50:19 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-07-13 12:50:19 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-07-13 12:50:19 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
2016-07-13 12:50:18 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-07-13 12:50:18 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2016-07-13 12:50:18 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2016-07-13 12:50:17 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-07-13 12:50:16 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-07-13 12:50:16 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-07-13 12:50:11 ----A---- C:\WINDOWS\system32\webcheck.dll
2016-07-13 12:50:11 ----A---- C:\WINDOWS\system32\dxtrans.dll
2016-07-13 12:50:10 ----A---- C:\WINDOWS\system32\ieui.dll
2016-07-13 12:50:10 ----A---- C:\WINDOWS\system32\IconCodecService.dll
2016-07-13 12:49:56 ----A---- C:\WINDOWS\system32\ListSvc.dll
2016-07-13 12:49:56 ----A---- C:\WINDOWS\system32\hgcpl.dll
2016-07-13 12:49:55 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2016-07-13 12:49:55 ----A---- C:\WINDOWS\system32\ActionCenterCPL.dll
2016-07-13 12:49:55 ----A---- C:\WINDOWS\HelpPane.exe
2016-07-13 12:49:54 ----A---- C:\WINDOWS\system32\GlobCollationHost.dll
2016-07-13 12:49:54 ----A---- C:\WINDOWS\system32\gameux.dll
2016-07-13 12:49:53 ----A---- C:\WINDOWS\system32\FingerprintEnrollment.dll
2016-07-13 12:49:53 ----A---- C:\WINDOWS\system32\fhsettingsprovider.dll
2016-07-13 12:49:53 ----A---- C:\WINDOWS\system32\fhengine.dll
2016-07-13 12:49:53 ----A---- C:\WINDOWS\system32\fhcfg.dll
2016-07-13 12:49:51 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-07-13 12:49:51 ----A---- C:\WINDOWS\system32\ExecModelClient.dll
2016-07-13 12:49:51 ----A---- C:\WINDOWS\explorer.exe
2016-07-13 12:49:50 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2016-07-13 12:49:50 ----A---- C:\WINDOWS\system32\werui.dll
2016-07-13 12:49:50 ----A---- C:\WINDOWS\system32\werconcpl.dll
2016-07-13 12:49:50 ----A---- C:\WINDOWS\system32\edputil.dll
2016-07-13 12:49:49 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-07-13 12:49:49 ----A---- C:\WINDOWS\system32\eappprxy.dll
2016-07-13 12:49:49 ----A---- C:\WINDOWS\system32\eapphost.dll
2016-07-13 12:49:49 ----A---- C:\WINDOWS\system32\eappgnui.dll
2016-07-13 12:49:49 ----A---- C:\WINDOWS\system32\eappcfg.dll
2016-07-13 12:49:49 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2016-07-13 12:49:49 ----A---- C:\WINDOWS\system32\duser.dll
2016-07-13 12:49:48 ----A---- C:\WINDOWS\system32\dui70.dll
2016-07-13 12:49:48 ----A---- C:\WINDOWS\system32\dot3ui.dll
2016-07-13 12:49:48 ----A---- C:\WINDOWS\system32\DMRServer.dll
2016-07-13 12:49:48 ----A---- C:\WINDOWS\system32\dmdskmgr.dll
2016-07-13 12:49:48 ----A---- C:\WINDOWS\system32\Display.dll
2016-07-13 12:49:47 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-07-13 12:49:47 ----A---- C:\WINDOWS\system32\d3d9.dll
2016-07-13 12:49:47 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-07-13 12:49:47 ----A---- C:\WINDOWS\system32\d3d10_1.dll
2016-07-13 12:49:47 ----A---- C:\WINDOWS\system32\d3d10.dll
2016-07-13 12:49:46 ----A---- C:\WINDOWS\system32\FntCache.dll
2016-07-13 12:49:46 ----A---- C:\WINDOWS\system32\DWrite.dll
2016-07-13 12:49:46 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2016-07-13 12:49:45 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2016-07-13 12:49:45 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-07-13 12:49:45 ----A---- C:\WINDOWS\system32\qdvd.dll
2016-07-13 12:49:45 ----A---- C:\WINDOWS\system32\dcomp.dll
2016-07-13 12:49:44 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-07-13 12:49:44 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-07-13 12:49:44 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-07-13 12:49:44 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-07-13 12:49:43 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-07-13 12:49:43 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-07-13 12:49:42 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-07-13 12:49:42 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-07-13 12:49:41 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-07-13 12:49:41 ----A---- C:\WINDOWS\system32\dlnashext.dll
2016-07-13 12:49:40 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2016-07-13 12:49:40 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
2016-07-13 12:49:39 ----A---- C:\WINDOWS\system32\dmcsps.dll
2016-07-13 12:49:38 ----A---- C:\WINDOWS\system32\crypt32.dll
2016-07-13 12:49:35 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-07-13 12:49:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-07-13 12:49:33 ----A---- C:\WINDOWS\system32\comdlg32.dll
2016-07-13 12:49:33 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2016-07-13 12:49:33 ----A---- C:\WINDOWS\system32\cdpreference.exe
2016-07-13 12:49:32 ----A---- C:\WINDOWS\system32\xpsservices.dll
2016-07-13 12:49:32 ----A---- C:\WINDOWS\system32\certcli.dll
2016-07-13 12:49:25 ----A---- C:\WINDOWS\system32\diagperf.dll
2016-07-13 12:49:25 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-07-13 12:49:22 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2016-07-13 12:49:22 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-07-13 12:49:20 ----A---- C:\WINDOWS\system32\credprovs.dll
2016-07-13 12:49:16 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-07-13 12:49:16 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-07-13 12:49:15 ----A---- C:\WINDOWS\system32\winresume.exe
2016-07-13 12:49:15 ----A---- C:\WINDOWS\system32\winload.exe
2016-07-13 12:48:44 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-07-13 12:48:44 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-07-13 12:48:43 ----A---- C:\WINDOWS\system32\apprepsync.dll
2016-07-13 12:48:43 ----A---- C:\WINDOWS\system32\apprepapi.dll
2016-07-13 12:48:42 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-07-13 12:48:42 ----A---- C:\WINDOWS\system32\Taskmgr.exe
2016-07-13 12:48:42 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-07-13 12:48:42 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2016-07-13 12:48:41 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2016-07-13 12:48:41 ----A---- C:\WINDOWS\system32\invagent.dll
2016-07-13 12:48:41 ----A---- C:\WINDOWS\system32\devinv.dll
2016-07-13 12:48:41 ----A---- C:\WINDOWS\system32\aepic.dll
2016-07-13 12:48:41 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-07-13 12:48:40 ----A---- C:\WINDOWS\system32\authui.dll
2016-07-13 12:48:33 ----A---- C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2016-07-13 12:48:33 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2016-07-13 12:48:32 ----A---- C:\WINDOWS\system32\ShareHost.dll
2016-07-13 12:48:32 ----A---- C:\WINDOWS\system32\NotificationController.dll
2016-07-13 12:48:31 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-07-13 12:48:31 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-07-13 12:48:30 ----A---- C:\WINDOWS\system32\oemlicense.dll
2016-07-13 12:48:30 ----A---- C:\WINDOWS\system32\licensingdiag.exe
2016-07-13 12:48:30 ----A---- C:\WINDOWS\system32\ClipUp.exe
2016-07-13 12:48:30 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-07-13 12:48:30 ----A---- C:\WINDOWS\system32\Clipc.dll

======List of files/folders modified in the last 1 month======

2016-08-11 07:32:23 ----D---- C:\Program Files\trend micro
2016-08-11 07:31:30 ----D---- C:\WINDOWS\Prefetch
2016-08-11 07:31:27 ----D---- C:\WINDOWS\Temp
2016-08-11 07:25:15 ----D---- C:\WINDOWS\system32\config
2016-08-11 07:16:35 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-08-11 07:16:22 ----D---- C:\WINDOWS\INF
2016-08-11 07:16:12 ----D---- C:\WINDOWS\WinSxS
2016-08-11 07:13:34 ----D---- C:\WINDOWS\system32\DriverStore
2016-08-10 21:44:09 ----D---- C:\WINDOWS\system32\sru
2016-08-10 21:42:08 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-08-10 21:42:08 ----AD---- C:\WINDOWS\SysWOW64
2016-08-10 21:42:07 ----D---- C:\WINDOWS\system32\en-US
2016-08-10 21:42:07 ----D---- C:\WINDOWS\system32\cs-CZ
2016-08-10 21:42:07 ----D---- C:\WINDOWS\system32\appraiser
2016-08-10 21:42:07 ----D---- C:\WINDOWS\System32
2016-08-10 21:42:06 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-08-10 21:42:06 ----D---- C:\WINDOWS\system32\drivers
2016-08-10 21:42:06 ----D---- C:\Program Files\Windows Journal
2016-08-10 21:42:06 ----D---- C:\Program Files\Internet Explorer
2016-08-10 21:42:06 ----D---- C:\Program Files (x86)\Internet Explorer
2016-08-10 20:53:10 ----D---- C:\WINDOWS\CbsTemp
2016-08-10 20:53:08 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2016-08-10 20:53:05 ----D---- C:\WINDOWS\system32\MRT
2016-08-10 20:35:08 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-08-10 20:30:02 ----SHD---- C:\System Volume Information
2016-08-10 20:29:14 ----D---- C:\WINDOWS\Microsoft.NET
2016-08-10 19:53:16 ----D---- C:\WINDOWS\AppReadiness
2016-08-10 19:34:06 ----HD---- C:\Program Files\WindowsApps
2016-08-10 19:26:39 ----D---- C:\Windows
2016-08-10 19:26:23 ----D---- C:\WINDOWS\system32\catroot2
2016-08-10 01:43:12 ----D---- C:\Users\Marcelka a Pavlíček\AppData\Roaming\Skype
2016-08-09 23:14:25 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-08-09 23:11:58 ----AD---- C:\Program Files (x86)\Kingo Android ROOT
2016-08-09 19:12:10 ----RD---- C:\Program Files (x86)
2016-08-06 21:49:08 ----D---- C:\Users\Marcelka a Pavlíček\AppData\Roaming\vlc
2016-08-03 20:48:45 ----D---- C:\Users\Marcelka a Pavlíček\AppData\Roaming\gtk-2.0
2016-08-02 17:04:09 ----SHDC---- C:\WINDOWS\Installer
2016-08-02 17:04:09 ----SHD---- C:\Config.Msi
2016-08-02 10:39:49 ----D---- C:\ProgramData\Package Cache
2016-08-02 10:38:57 ----HD---- C:\ProgramData
2016-08-02 10:37:36 ----D---- C:\WINDOWS\system32\Tasks
2016-08-02 10:37:33 ----D---- C:\ProgramData\Intel
2016-08-02 10:37:20 ----RD---- C:\Program Files
2016-08-01 19:36:55 ----D---- C:\WINDOWS\debug
2016-08-01 07:02:07 ----D---- C:\WINDOWS\SoftwareDistribution
2016-07-27 12:21:38 ----D---- C:\WINDOWS\system32\CatRoot
2016-07-27 08:53:07 ----D---- C:\Program Files\AMD
2016-07-27 08:53:03 ----AD---- C:\Program Files\ATI Technologies
2016-07-27 08:52:41 ----AD---- C:\Program Files (x86)\ATI Technologies
2016-07-27 08:49:52 ----D---- C:\AMD
2016-07-26 19:54:19 ----D---- C:\WINDOWS\system32\NDF
2016-07-23 01:52:31 ----D---- C:\ProgramData\AVAST Software
2016-07-23 00:18:09 ----AD---- C:\Program Files\CCleaner
2016-07-22 23:45:29 ----D---- C:\Program Files (x86)\Java
2016-07-22 23:45:26 ----D---- C:\Program Files (x86)\Common Files
2016-07-21 10:12:09 ----RD---- C:\WINDOWS\assembly
2016-07-21 10:11:38 ----RSD---- C:\WINDOWS\Fonts
2016-07-17 11:14:19 ----D---- C:\WINDOWS\rescache
2016-07-14 18:16:04 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-07-14 18:15:58 ----D---- C:\WINDOWS\system32\wbem
2016-07-14 18:15:58 ----D---- C:\WINDOWS\system32\oobe
2016-07-14 18:15:58 ----D---- C:\WINDOWS\system32\migration
2016-07-14 18:15:54 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2016-07-14 18:15:46 ----RD---- C:\WINDOWS\PrintDialog
2016-07-14 18:15:46 ----D---- C:\WINDOWS\Provisioning
2016-07-14 18:15:46 ----D---- C:\WINDOWS\PolicyDefinitions
2016-07-14 18:15:45 ----RD---- C:\WINDOWS\DevicesFlow
2016-07-14 18:15:45 ----D---- C:\WINDOWS\bcastdvr
2016-07-14 18:15:45 ----D---- C:\WINDOWS\AppPatch
2016-07-14 18:15:45 ----D---- C:\Program Files\Windows Photo Viewer
2016-07-14 18:15:45 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2016-07-14 18:15:45 ----D---- C:\Program Files (x86)\Windows Mail
2016-07-14 18:15:45 ----D---- C:\Program Files (x86)\Windows Defender
2016-07-14 18:15:44 ----D---- C:\Program Files\Windows Mail
2016-07-14 18:15:44 ----D---- C:\Program Files\Windows Defender
2016-07-12 15:52:51 ----D---- C:\WINDOWS\system32\Macromed
2016-07-12 15:52:45 ----D---- C:\WINDOWS\SYSWOW64\Macromed

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdkmpfd;@oem144.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2015-06-04 73976]
R0 fbfmon;fbfmon; C:\WINDOWS\system32\drivers\fbfmon.sys [2011-10-08 57952]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2011-10-08 39008]
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2016-07-28 154392]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2016-04-04 35488]
R1 BPntDrv;BPntDrv; C:\WINDOWS\system32\drivers\BPntDrv.sys [2011-10-08 13408]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2010-12-17 40816]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-04-23 87552]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2016-07-28 144664]
R2 avnetflt;avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [2016-04-04 78208]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 ACPIVPC;@oem89.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2011-10-08 29792]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-08-09 21631512]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-08-09 673816]
R3 BCM43XX;@netbc64.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 – ovladač síťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [2015-10-30 7585280]
R3 clwvd;@oem91.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 CnxtHdAudService;@oem26.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2000-01-01 1581184]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]
R3 IntcDAud;@oem0.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C63x64.sys [2015-10-30 121344]
R3 MEIx64;@oem76.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2010-10-19 56344]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-01-02 175616]
R3 RTSUER;@oem162.inf,%RtsUER%;Realtek USB Card Reader - UER; C:\WINDOWS\system32\Drivers\RtsUer.sys [2015-12-09 402960]
R3 seehcri;@oem92.inf,%seehcrirf.SvcDesc%;Sony Ericsson seehcri Device Driver; C:\WINDOWS\System32\drivers\seehcri.sys [2012-07-11 34032]
R3 semav6msr64;semav6msr64; \??\C:\WINDOWS\system32\drivers\semav6msr64.sys [2015-06-04 21984]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-09-01 44192]
R3 SPUVCbv;@oem13.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys [2012-08-25 1059064]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 aswTap;@oem104.inf,%DeviceDescription%;avast! SecureLine TAP Adapter v3; C:\WINDOWS\System32\drivers\aswTap.sys [2014-07-05 44640]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-01-02 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 intelkmd;intelkmd; C:\WINDOWS\system32\DRIVERS\igdpmd64.sys [2012-09-05 9004384]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 PcaSp60;Rawether NDIS 6.X SPR Protocol Driver; C:\WINDOWS\system32\DRIVERS\PcaSp60.sys [2010-05-19 38912]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-06-25 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-08-09 255512]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [2016-07-28 472112]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\Antivirus\sched.exe [2016-07-28 472112]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Avira.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [2016-07-11 309384]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 ESRV_SVC_WILLAMETTE;Energy Server Service WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [2016-06-08 416408]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-21 325656]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-01-02 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 OneSyncSvc_83d47;Hostitel synchronizace_83d47; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 PimIndexMaintenanceSvc_83d47;Data kontaktů_83d47; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 AntiVirMailService;Avira Mail Protection; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [2016-07-28 989696]
S2 AntiVirWebService;Avira Web Protection; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [2016-07-28 1453696]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_14c4004;Hostitel synchronizace_14c4004; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1b8de49;Hostitel synchronizace_1b8de49; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1d88369;Hostitel synchronizace_1d88369; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_25d0724;Hostitel synchronizace_25d0724; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_27f547f;Hostitel synchronizace_27f547f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2c50f78;Hostitel synchronizace_2c50f78; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3555a55;Hostitel synchronizace_3555a55; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4032068;Hostitel synchronizace_4032068; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4a465;Hostitel synchronizace_4a465; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_53740;Hostitel synchronizace_53740; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_584d1;Hostitel synchronizace_584d1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_6463ca8;Hostitel synchronizace_6463ca8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_95c869a;Hostitel synchronizace_95c869a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_99a844;Hostitel synchronizace_99a844; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_aabd3;Hostitel synchronizace_aabd3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_ad5781;Hostitel synchronizace_ad5781; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_b79b03;Hostitel synchronizace_b79b03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_beae11;Hostitel synchronizace_beae11; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_e60507;Hostitel synchronizace_e60507; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_fe822c;Hostitel synchronizace_fe822c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 PlaysService;Plays.tv Update Service; C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [2016-08-02 32528]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-05-23 324224]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-12 270016]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_14c4004;Služba zasílání zpráv_14c4004; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1b8de49;Služba zasílání zpráv_1b8de49; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1d88369;Služba zasílání zpráv_1d88369; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_25d0724;Služba zasílání zpráv_25d0724; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_27f547f;Služba zasílání zpráv_27f547f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2c50f78;Služba zasílání zpráv_2c50f78; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3555a55;Služba zasílání zpráv_3555a55; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4032068;Služba zasílání zpráv_4032068; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4a465;Služba zasílání zpráv_4a465; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_53740;Služba zasílání zpráv_53740; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_584d1;Služba zasílání zpráv_584d1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_6463ca8;Služba zasílání zpráv_6463ca8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_83d47;Služba zasílání zpráv_83d47; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_95c869a;Služba zasílání zpráv_95c869a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_99a844;Služba zasílání zpráv_99a844; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_aabd3;Služba zasílání zpráv_aabd3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_ad5781;Služba zasílání zpráv_ad5781; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_b79b03;Služba zasílání zpráv_b79b03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_beae11;Služba zasílání zpráv_beae11; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_e60507;Služba zasílání zpráv_e60507; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_fe822c;Služba zasílání zpráv_fe822c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-06-10 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_14c4004;Data kontaktů_14c4004; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_1b8de49;Data kontaktů_1b8de49; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_1d88369;Data kontaktů_1d88369; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_25d0724;Data kontaktů_25d0724; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_27f547f;Data kontaktů_27f547f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2c50f78;Data kontaktů_2c50f78; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3555a55;Data kontaktů_3555a55; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4032068;Data kontaktů_4032068; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4a465;Data kontaktů_4a465; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_53740;Data kontaktů_53740; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_584d1;Data kontaktů_584d1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_6463ca8;Data kontaktů_6463ca8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_95c869a;Data kontaktů_95c869a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_99a844;Data kontaktů_99a844; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_aabd3;Data kontaktů_aabd3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_ad5781;Data kontaktů_ad5781; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_b79b03;Data kontaktů_b79b03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_beae11;Data kontaktů_beae11; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_e60507;Data kontaktů_e60507; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_fe822c;Data kontaktů_fe822c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]

-----------------EOF-----------------

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Preventivní kontrola - spoamalený chod notebooku.

#24 Příspěvek od Roli »

Stáhni a spusť OTMoveIt

do levého okna aplikace pod Paste Instructions for Items to be Moved zkopíruj tento text:

Kód: Vybrat vše

:processes
explorer.exe       

:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

:commands
[purity]
[emptytemp]
[start explorer]
klikni na MoveIt! a v pravém zeleném okně aplikace se Ti objeví info o provedene akci, obsah okna zkopíruj sem,

pokud aplikace bude požadovat restart, klikni na YES

v tom případě sem zkopíruj obsah logu uloženého na C:\_OTMoveIt\MovedFiles\


P.S. Zkus jet nějakou chvilku úplně bez antiviru co to bude dělat.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

paolov
Návštěvník
Návštěvník
Příspěvky: 251
Registrován: 30 srp 2006 20:17
Bydliště: Jih Moravy.

Re: Preventivní kontrola - spoamalený chod notebooku.

#25 Příspěvek od paolov »

All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
========== FILES ==========
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 313840 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default.migrated

User: DefaultAppPool
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 313848 bytes

User: Marca a Pavka
->Temp folder emptied: 10665984 bytes
->Temporary Internet Files folder emptied: 0 bytes
->FireFox cache emptied: 1310984 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Marcelka a Pavlí

User: Marcelka a Pavlíček
->Temp folder emptied: 99753408 bytes
->Temporary Internet Files folder emptied: 9497142 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 377718503 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 770 bytes

User: Marcelka a Pavló«ek

User: Marcelka a Pavlˇźek

User: Marcelka a Pavl��ek

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 42374589 bytes
%systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 725 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 517,00 mb


OTM by OldTimer - Version 3.1.21.0 log created on 08122016_130636

Files moved on Reboot...
File C:\Users\Marcelka a Pavlíček\AppData\Local\Temp\etilqs_hA6scpeTuNGPi2c not found!
File C:\Users\Marcelka a Pavlíček\AppData\Local\Temp\etilqs_zpSvIzTksytlSpX not found!
C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.
File move failed. C:\WINDOWS\temp\_avast_\AvastLock.txt scheduled to be moved on reboot.

Registry entries deleted on Reboot...

Antivir jsem dal opět avast místo té aviry, přestala se aktualizovat. Nyní jsou všechny štíty vyplé, nebo ho mám kompletně odinstalovat.

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Preventivní kontrola - spoamalený chod notebooku.

#26 Příspěvek od Roli »

Znovu spusť OTMoveIt a nahoře v aplikaci klini na CleanUP!

tímto po sobě uklidí.
paolov píše:Antivir jsem dal opět avast místo té aviry, přestala se aktualizovat. Nyní jsou všechny štíty vyplé, nebo ho mám kompletně odinstalovat.
Vypnuté štíty by měly stačit.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

paolov
Návštěvník
Návštěvník
Příspěvky: 251
Registrován: 30 srp 2006 20:17
Bydliště: Jih Moravy.

Re: Preventivní kontrola - spoamalený chod notebooku.

#27 Příspěvek od paolov »

Uklizeno přiložil jsem nový log rsit. Antivir jsem znovu aktivoval seká se to i bez něj.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Marcelka a Pavlíček at 2016-08-13 22:12:04
Microsoft Windows 10 Home
System drive C: has 468 GB (70%) free of 670 GB
Total RAM: 4040 MB (37% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:12:17, on 13.8.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0545)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\Marcelka a Pavlíček\Downloads\FSDownloader.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\WINDOWS\SysWOW64\ctfmon.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_22_0_0_209.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_22_0_0_209.exe
C:\Program Files\trend micro\Marcelka a Pavlíček.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [PlaysTV] "C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe" --startup
O4 - HKLM\..\Run: [Raptr] "C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe" --startup
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\17.3.5930.0814] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\17.3.5930.0814"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {26E1BEAF-C1A1-482B-8714-08844F1BCF7F} (GTileContainerCtl Class) - http://90.182.35.27/webviewer.cab
O16 - DPF: {816BE035-1450-40D0-8A3B-BA7825A83A77} (IASRunner Class) - http://support.lenovo.com/Resources/Len ... etect2.cab
O16 - DPF: {BF776FD3-69B4-4151-AC97-3A2A64753E18} (GVersionManager Class) - http://90.182.35.27/GVersionMan.cab
O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} (SysInfo Class) - http://content.systemrequirementslab.co ... .5.1.0.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{684524be-261e-4487-aedf-b0da1d816460}: NameServer = 156.154.70.25,156.154.71.25
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Energy Server Service WILLAMETTE (ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Plays.tv Update Service (PlaysService) - Plays.tv, LLC - C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE (SystemUsageReportSvc_WILLAMETTE) - Unknown owner - C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: User Energy Server Service WILLAMETTE (USER_ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10974 bytes

======Listing Processes======







C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
dashost.exe {663e694b-4034-40fc-a651cafb99745f29}
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\mqsvc.exe
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe"
"C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe" "--AUTO_START" "--start" "--address" "127.0.0.1" "--port" "49330" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC_WILLAMETTE" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=w output_folder='C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_process_input.dll','process_input_options.txt' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_system_power_state_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_quality_and_reliability_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\acpi_battery_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\sema_thermal_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\wifi_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\devices_use_input.dll','service=yes' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_disktrace_input.dll','pause=60000 working_dir=C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData override_existing_tracing=no limit_output_by_filesize_mb=10' os='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\os_counters.txt' "
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
atieclxx
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
"" "--start" "--register_port" "--address" "127.0.0.1" "--port" "49331" "--pause_on_user_switching" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC_WILLAMETTE" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=no output_folder='C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData\userlogs' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\foreground_window_input.dll' "
\??\C:\WINDOWS\system32\conhost.exe 0x4
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Users\Marcelka a Pavlíček\AppData\Local\Apps\2.0\0869Z8V5.CRQ\WBBZ2QZC.YD5\lsb...tion_2d7b41b05b24775e_0001.0006_6a5d43d0bdf9db4a\LSB.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
taskhostw.exe
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Users\Marcelka a Pavlíček\Downloads\FSDownloader.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
ctfmon.exe
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel="8644.6.190662178\1873459273" "C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 8644 "\\.\pipe\gecko-crash-server-pipe.8644" plugin
"C:\WINDOWS\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_22_0_0_209.exe" --proxy-stub-channel=Flash6808.5F30CFD0.30908 --host-broker-channel=Flash6808.5F30CFD0.11570 --host-pid=6808 --host-npapi-version=29 --plugin-path="C:\WINDOWS\SYSTEM32\Macromed\Flash\NPSWF32_22_0_0_209.dll"
"C:\WINDOWS\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_22_0_0_209.exe" --channel=7912.012FF518.2006841720 --proxy-stub-channel=Flash6808.5F30CFD0.30908 --plugin-path="C:\WINDOWS\SYSTEM32\Macromed\Flash\NPSWF32_22_0_0_209.dll" --host-npapi-version=29 --type=renderer

"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe39_ Global\UsGthrCtrlFltPipeMssGthrPipe39 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
rundll32.exe aeinv.dll,UpdateSoftwareInventory

"C:\WINDOWS\system32\SearchFilterHost.exe" 0 616 628 636 8192 632
"C:\Users\Marcelka a Pavlíček\Downloads\RSITx64.exe"


======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Marcelka a Pavlíček\AppData\Roaming\Mozilla\Firefox\Profiles\cmk6eupj.default-1469684642737

prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1224194.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.101.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.101.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@playstation.com/PsndlCheck,version=1.00]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.4.0]
"Description"=
"Path"=C:\windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-07-22 473152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-07-22 186944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2011-10-08 9753024]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2011-10-08 5908928]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe [2000-01-01 307768]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-01 3952800]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-01-02 551112]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-07-13 8891608]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Marcelka a Pavlíček\AppData\Local\Microsoft\OneDrive\17.3.5930.0814"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ocster Backup]
C:\Program Files\Ocster Backup\bin\backupClient-ox.exe --hidden []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VeriFaceManager]
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [2011-10-08 329056]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk]
C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-29 136488]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-08-04 767176]
"PlaysTV"=C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe [2016-08-09 71440]
"Raptr"=C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [2016-07-21 58640]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-08-11 9071752]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-08-13 22:11:01 ----HD---- C:\WINDOWS\msdownld.tmp
2016-08-13 22:10:59 ----D---- C:\WINDOWS\SYSWOW64\directx
2016-08-12 21:29:42 ----D---- C:\rsit
2016-08-11 08:04:44 ----D---- C:\Users\Marcelka a Pavlíček\AppData\Roaming\AVAST Software
2016-08-11 08:03:49 ----A---- C:\WINDOWS\system32\drivers\aswvmm.sys
2016-08-11 08:03:49 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2016-08-11 08:03:49 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2016-08-11 08:03:49 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2016-08-11 08:03:49 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2016-08-11 08:03:49 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2016-08-11 08:03:49 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2016-08-11 08:03:49 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2016-08-11 08:02:54 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-08-11 08:02:44 ----A---- C:\WINDOWS\avastSS.scr
2016-08-11 08:01:33 ----D---- C:\Program Files\AVAST Software
2016-08-10 19:46:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2016-08-10 19:46:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2016-08-10 19:46:59 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-08-10 19:46:59 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-08-10 19:46:59 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2016-08-10 19:46:59 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-08-10 19:46:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2016-08-10 19:46:58 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-08-10 19:46:57 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-08-10 19:46:57 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-08-10 19:46:56 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-08-10 19:46:56 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-08-10 19:46:55 ----A---- C:\WINDOWS\system32\wmp.dll
2016-08-10 19:46:54 ----A---- C:\WINDOWS\SYSWOW64\wldp.dll
2016-08-10 19:46:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-08-10 19:46:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2016-08-10 19:46:54 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-08-10 19:46:54 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-08-10 19:46:53 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-08-10 19:46:53 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-08-10 19:46:52 ----A---- C:\WINDOWS\system32\wevtutil.exe
2016-08-10 19:46:51 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.dll
2016-08-10 19:46:51 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-08-10 19:46:49 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-08-10 19:46:49 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-08-10 19:46:49 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2016-08-10 19:46:49 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-08-10 19:46:49 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-08-10 19:46:49 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-08-10 19:46:48 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-08-10 19:46:48 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-08-10 19:46:48 ----A---- C:\WINDOWS\system32\cdd.dll
2016-08-10 19:46:48 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-08-10 19:46:47 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-08-10 19:46:47 ----A---- C:\WINDOWS\system32\usocore.dll
2016-08-10 19:46:47 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2016-08-10 19:46:46 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-08-10 19:46:45 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-08-10 19:46:45 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-08-10 19:46:45 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-08-10 19:46:44 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-08-10 19:46:43 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2016-08-10 19:46:43 ----A---- C:\WINDOWS\SYSWOW64\tdlrecover.exe
2016-08-10 19:46:43 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-08-10 19:46:42 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-08-10 19:46:42 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2016-08-10 19:46:42 ----A---- C:\WINDOWS\system32\winsrv.dll
2016-08-10 19:46:41 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-08-10 19:46:41 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2016-08-10 19:46:41 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-08-10 19:46:40 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-08-10 19:46:40 ----A---- C:\WINDOWS\SYSWOW64\wshbth.dll
2016-08-10 19:46:40 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll
2016-08-10 19:46:40 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-08-10 19:46:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-08-10 19:46:38 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-08-10 19:46:38 ----A---- C:\WINDOWS\system32\sppwinob.dll
2016-08-10 19:46:37 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-08-10 19:46:37 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-08-10 19:46:37 ----A---- C:\WINDOWS\system32\wininet.dll
2016-08-10 19:46:37 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-08-10 19:46:37 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-08-10 19:46:36 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-08-10 19:46:36 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-08-10 19:46:35 ----A---- C:\WINDOWS\SYSWOW64\wevtutil.exe
2016-08-10 19:46:35 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-08-10 19:46:35 ----A---- C:\WINDOWS\system32\wshbth.dll
2016-08-10 19:46:35 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2016-08-10 19:46:35 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2016-08-10 19:46:34 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-08-10 19:46:33 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-08-10 19:46:32 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-08-10 19:46:32 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-08-10 19:46:31 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-08-10 19:46:31 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-08-10 19:46:31 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-08-10 19:46:31 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-08-10 19:46:30 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-08-10 19:46:30 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-08-10 19:46:30 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-08-10 19:46:29 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-08-10 19:46:29 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-08-10 19:46:28 ----A---- C:\WINDOWS\system32\wldp.dll
2016-08-10 19:46:28 ----A---- C:\WINDOWS\system32\tdlrecover.exe
2016-08-10 19:46:28 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-08-10 19:46:28 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-08-10 19:46:27 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-08-10 19:46:27 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-08-10 19:46:26 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-08-10 19:46:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-08-10 19:46:26 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2016-08-10 19:46:26 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-08-10 19:46:25 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-08-10 19:46:25 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-08-10 19:46:24 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-08-10 19:46:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-08-10 19:46:23 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-08-10 19:46:23 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-08-10 19:46:22 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-08-10 19:46:22 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-08-10 19:46:21 ----A---- C:\WINDOWS\SYSWOW64\IdCtrls.dll
2016-08-10 19:46:21 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-08-10 19:46:21 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-08-10 19:46:20 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-08-10 19:46:19 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-08-10 19:46:18 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-08-10 19:46:18 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-08-10 19:46:17 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-08-10 19:46:17 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-08-10 19:46:16 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-08-10 19:46:15 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-08-10 19:46:14 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-08-10 19:46:14 ----A---- C:\WINDOWS\system32\ole32.dll
2016-08-10 19:46:14 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-08-10 19:46:14 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-08-10 19:46:13 ----A---- C:\WINDOWS\system32\shell32.dll
2016-08-10 19:46:13 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-08-10 19:46:06 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2016-08-10 19:46:06 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2016-08-10 19:46:06 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2016-08-10 19:46:06 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-08-10 19:46:05 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-08-10 19:46:05 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-08-10 19:46:05 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-08-10 19:46:05 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-08-10 19:46:05 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2016-08-10 19:46:05 ----A---- C:\WINDOWS\system32\bthserv.dll
2016-08-09 19:12:10 ----D---- C:\Program Files (x86)\HD Tune
2016-08-05 21:34:36 ----D---- C:\z flašky
2016-08-02 10:38:57 ----D---- C:\ProgramData\IntelDLM
2016-08-02 10:37:33 ----A---- C:\WINDOWS\system32\drivers\semav6msr64.sys
2016-08-02 10:37:31 ----AD---- C:\Program Files (x86)\Intel Driver Update Utility
2016-08-02 10:37:20 ----D---- C:\Program Files\Intel
2016-07-27 12:38:26 ----D---- C:\ProgramData\ATI
2016-07-27 09:01:18 ----D---- C:\Users\Marcelka a Pavlíček\AppData\Roaming\PlaysTV
2016-07-27 08:59:35 ----D---- C:\Users\Marcelka a Pavlíček\AppData\Roaming\library_dir
2016-07-27 08:59:29 ----D---- C:\Program Files (x86)\Raptr Inc
2016-07-27 08:58:38 ----D---- C:\Users\Marcelka a Pavlíček\AppData\Roaming\Raptr
2016-07-27 08:58:38 ----D---- C:\Program Files (x86)\Raptr
2016-07-27 08:57:49 ----AD---- C:\Program Files (x86)\AMD
2016-07-23 01:58:37 ----D---- C:\Program Files (x86)\Avira
2016-07-23 01:50:31 ----SD---- C:\WINDOWS\SYSWOW64\Microsoft
2016-07-22 23:46:40 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2016-07-22 23:38:35 ----AD---- C:\Program Files (x86)\7-Zip
2016-07-22 23:32:34 ----D---- C:\Program Files (x86)\FinalWire
2016-07-21 10:11:17 ----AD---- C:\Program Files (x86)\LibreOffice 5

======List of files/folders modified in the last 1 month======

2016-08-13 22:12:07 ----D---- C:\Program Files\trend micro
2016-08-13 22:12:04 ----D---- C:\WINDOWS\system32\sru
2016-08-13 22:11:03 ----D---- C:\WINDOWS\Temp
2016-08-13 22:11:03 ----D---- C:\WINDOWS\Prefetch
2016-08-13 22:11:01 ----D---- C:\Windows
2016-08-13 22:10:59 ----AD---- C:\WINDOWS\SysWOW64
2016-08-13 22:10:58 ----D---- C:\WINDOWS\Logs
2016-08-13 22:01:50 ----D---- C:\Users\Marcelka a Pavlíček\AppData\Roaming\Skype
2016-08-13 21:38:00 ----D---- C:\WINDOWS\system32\drivers
2016-08-13 21:34:43 ----SHDC---- C:\WINDOWS\Installer
2016-08-13 21:34:43 ----SHD---- C:\Config.Msi
2016-08-13 19:43:38 ----D---- C:\WINDOWS\rescache
2016-08-13 19:21:55 ----D---- C:\WINDOWS\debug
2016-08-13 19:14:09 ----D---- C:\WINDOWS\AppReadiness
2016-08-13 16:09:05 ----HD---- C:\Program Files\WindowsApps
2016-08-13 10:54:35 ----D---- C:\WINDOWS\Microsoft.NET
2016-08-12 21:16:28 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-08-12 21:11:04 ----D---- C:\WINDOWS\INF
2016-08-12 13:06:37 ----D---- C:\WINDOWS\Tasks
2016-08-11 12:28:19 ----D---- C:\WINDOWS\system32\config
2016-08-11 10:44:44 ----D---- C:\WINDOWS\system32\catroot2
2016-08-11 09:46:25 ----HD---- C:\ProgramData
2016-08-11 08:36:09 ----SHD---- C:\System Volume Information
2016-08-11 08:22:14 ----D---- C:\WINDOWS\WinSxS
2016-08-11 08:22:13 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-08-11 08:22:13 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-08-11 08:15:12 ----D---- C:\ProgramData\Skype
2016-08-11 08:15:09 ----RD---- C:\Program Files (x86)\Skype
2016-08-11 08:04:28 ----D---- C:\WINDOWS\system32\Tasks
2016-08-11 08:02:54 ----D---- C:\WINDOWS\System32
2016-08-11 08:01:33 ----RD---- C:\Program Files
2016-08-11 07:55:14 ----D---- C:\ProgramData\Package Cache
2016-08-11 07:13:34 ----D---- C:\WINDOWS\system32\DriverStore
2016-08-10 21:42:08 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-08-10 21:42:07 ----D---- C:\WINDOWS\system32\en-US
2016-08-10 21:42:07 ----D---- C:\WINDOWS\system32\cs-CZ
2016-08-10 21:42:07 ----D---- C:\WINDOWS\system32\appraiser
2016-08-10 21:42:06 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-08-10 21:42:06 ----D---- C:\Program Files\Windows Journal
2016-08-10 21:42:06 ----D---- C:\Program Files\Internet Explorer
2016-08-10 21:42:06 ----D---- C:\Program Files (x86)\Internet Explorer
2016-08-10 20:53:10 ----D---- C:\WINDOWS\CbsTemp
2016-08-10 20:53:08 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2016-08-10 20:53:05 ----D---- C:\WINDOWS\system32\MRT
2016-08-10 20:35:08 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-08-09 23:14:25 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-08-09 23:11:58 ----AD---- C:\Program Files (x86)\Kingo Android ROOT
2016-08-09 19:12:10 ----RD---- C:\Program Files (x86)
2016-08-06 21:49:08 ----D---- C:\Users\Marcelka a Pavlíček\AppData\Roaming\vlc
2016-08-03 20:48:45 ----D---- C:\Users\Marcelka a Pavlíček\AppData\Roaming\gtk-2.0
2016-08-02 10:37:33 ----D---- C:\ProgramData\Intel
2016-08-01 07:02:07 ----D---- C:\WINDOWS\SoftwareDistribution
2016-07-27 21:25:34 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-07-27 12:21:38 ----D---- C:\WINDOWS\system32\CatRoot
2016-07-27 08:53:07 ----D---- C:\Program Files\AMD
2016-07-27 08:53:03 ----AD---- C:\Program Files\ATI Technologies
2016-07-27 08:52:41 ----AD---- C:\Program Files (x86)\ATI Technologies
2016-07-27 08:49:52 ----D---- C:\AMD
2016-07-26 19:54:19 ----D---- C:\WINDOWS\system32\NDF
2016-07-23 01:52:31 ----D---- C:\ProgramData\AVAST Software
2016-07-23 00:18:09 ----AD---- C:\Program Files\CCleaner
2016-07-22 23:45:29 ----D---- C:\Program Files (x86)\Java
2016-07-22 23:45:26 ----D---- C:\Program Files (x86)\Common Files
2016-07-21 10:12:09 ----RD---- C:\WINDOWS\assembly
2016-07-21 10:11:38 ----RSD---- C:\WINDOWS\Fonts
2016-07-14 18:16:04 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-07-14 18:15:58 ----D---- C:\WINDOWS\system32\wbem
2016-07-14 18:15:58 ----D---- C:\WINDOWS\system32\oobe
2016-07-14 18:15:58 ----D---- C:\WINDOWS\system32\migration
2016-07-14 18:15:54 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2016-07-14 18:15:46 ----RD---- C:\WINDOWS\PrintDialog
2016-07-14 18:15:46 ----D---- C:\WINDOWS\Provisioning
2016-07-14 18:15:46 ----D---- C:\WINDOWS\PolicyDefinitions
2016-07-14 18:15:45 ----RD---- C:\WINDOWS\DevicesFlow
2016-07-14 18:15:45 ----D---- C:\WINDOWS\bcastdvr
2016-07-14 18:15:45 ----D---- C:\WINDOWS\AppPatch
2016-07-14 18:15:45 ----D---- C:\Program Files\Windows Photo Viewer
2016-07-14 18:15:45 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2016-07-14 18:15:45 ----D---- C:\Program Files (x86)\Windows Mail
2016-07-14 18:15:45 ----D---- C:\Program Files (x86)\Windows Defender
2016-07-14 18:15:44 ----D---- C:\Program Files\Windows Mail
2016-07-14 18:15:44 ----D---- C:\Program Files\Windows Defender

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdkmpfd;@oem144.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2015-06-04 73976]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-08-11 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-08-11 292704]
R0 fbfmon;fbfmon; C:\WINDOWS\system32\drivers\fbfmon.sys [2011-10-08 57952]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2011-10-08 39008]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-08-11 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-08-11 968536]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-08-11 513496]
R1 BPntDrv;BPntDrv; C:\WINDOWS\system32\drivers\BPntDrv.sys [2011-10-08 13408]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2010-12-17 40816]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-04-23 87552]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-08-11 37656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-08-11 108816]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-08-11 163416]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 ACPIVPC;@oem89.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2011-10-08 29792]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-08-09 21631512]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-08-09 673816]
R3 BCM43XX;@netbc64.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 – ovladač síťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [2015-10-30 7585280]
R3 clwvd;@oem91.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 CnxtHdAudService;@oem26.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2000-01-01 1581184]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]
R3 IntcDAud;@oem0.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C63x64.sys [2015-10-30 121344]
R3 MEIx64;@oem76.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2010-10-19 56344]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-01-02 175616]
R3 RTSUER;@oem162.inf,%RtsUER%;Realtek USB Card Reader - UER; C:\WINDOWS\system32\Drivers\RtsUer.sys [2015-12-09 402960]
R3 seehcri;@oem92.inf,%seehcrirf.SvcDesc%;Sony Ericsson seehcri Device Driver; C:\WINDOWS\System32\drivers\seehcri.sys [2012-07-11 34032]
R3 semav6msr64;semav6msr64; \??\C:\WINDOWS\system32\drivers\semav6msr64.sys [2015-06-04 21984]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-09-01 44192]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 aswTap;@oem104.inf,%DeviceDescription%;avast! SecureLine TAP Adapter v3; C:\WINDOWS\System32\drivers\aswTap.sys [2014-07-05 44640]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-01-02 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 intelkmd;intelkmd; C:\WINDOWS\system32\DRIVERS\igdpmd64.sys [2012-09-05 9004384]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 PcaSp60;Rawether NDIS 6.X SPR Protocol Driver; C:\WINDOWS\system32\DRIVERS\PcaSp60.sys [2010-05-19 38912]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-06-25 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-08-09 255512]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-08-11 197640]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 ESRV_SVC_WILLAMETTE;Energy Server Service WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [2016-06-08 416408]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-21 325656]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-01-02 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 OneSyncSvc_2a7f944;Hostitel synchronizace_2a7f944; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 PlaysService;Plays.tv Update Service; C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [2016-08-09 32528]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_14c4004;Hostitel synchronizace_14c4004; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1b8de49;Hostitel synchronizace_1b8de49; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1d88369;Hostitel synchronizace_1d88369; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_25d0724;Hostitel synchronizace_25d0724; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_27f547f;Hostitel synchronizace_27f547f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2c50f78;Hostitel synchronizace_2c50f78; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3555a55;Hostitel synchronizace_3555a55; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4032068;Hostitel synchronizace_4032068; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4a465;Hostitel synchronizace_4a465; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_53740;Hostitel synchronizace_53740; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_584d1;Hostitel synchronizace_584d1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_6463ca8;Hostitel synchronizace_6463ca8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_95c869a;Hostitel synchronizace_95c869a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_99a844;Hostitel synchronizace_99a844; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_aabd3;Hostitel synchronizace_aabd3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_ad5781;Hostitel synchronizace_ad5781; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_b79b03;Hostitel synchronizace_b79b03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_beae11;Hostitel synchronizace_beae11; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_e60507;Hostitel synchronizace_e60507; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_fe822c;Hostitel synchronizace_fe822c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-05-23 324224]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-12 270016]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_14c4004;Služba zasílání zpráv_14c4004; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1b8de49;Služba zasílání zpráv_1b8de49; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1d88369;Služba zasílání zpráv_1d88369; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_25d0724;Služba zasílání zpráv_25d0724; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_27f547f;Služba zasílání zpráv_27f547f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2a7f944;Služba zasílání zpráv_2a7f944; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2c50f78;Služba zasílání zpráv_2c50f78; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3555a55;Služba zasílání zpráv_3555a55; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4032068;Služba zasílání zpráv_4032068; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4a465;Služba zasílání zpráv_4a465; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_53740;Služba zasílání zpráv_53740; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_584d1;Služba zasílání zpráv_584d1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_6463ca8;Služba zasílání zpráv_6463ca8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_95c869a;Služba zasílání zpráv_95c869a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_99a844;Služba zasílání zpráv_99a844; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_aabd3;Služba zasílání zpráv_aabd3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_ad5781;Služba zasílání zpráv_ad5781; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_b79b03;Služba zasílání zpráv_b79b03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_beae11;Služba zasílání zpráv_beae11; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_e60507;Služba zasílání zpráv_e60507; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_fe822c;Služba zasílání zpráv_fe822c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-08-11 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_14c4004;Data kontaktů_14c4004; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_1b8de49;Data kontaktů_1b8de49; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_1d88369;Data kontaktů_1d88369; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_25d0724;Data kontaktů_25d0724; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_27f547f;Data kontaktů_27f547f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2a7f944;Data kontaktů_2a7f944; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2c50f78;Data kontaktů_2c50f78; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3555a55;Data kontaktů_3555a55; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4032068;Data kontaktů_4032068; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4a465;Data kontaktů_4a465; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_53740;Data kontaktů_53740; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_584d1;Data kontaktů_584d1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_6463ca8;Data kontaktů_6463ca8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_95c869a;Data kontaktů_95c869a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_99a844;Data kontaktů_99a844; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_aabd3;Data kontaktů_aabd3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_ad5781;Data kontaktů_ad5781; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_b79b03;Data kontaktů_b79b03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_beae11;Data kontaktů_beae11; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_e60507;Data kontaktů_e60507; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_fe822c;Data kontaktů_fe822c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]

-----------------EOF-----------------
Naposledy upravil(a) paolov dne 13 srp 2016 21:42, celkem upraveno 1 x.

paolov
Návštěvník
Návštěvník
Příspěvky: 251
Registrován: 30 srp 2006 20:17
Bydliště: Jih Moravy.

Re: Preventivní kontrola - spoamalený chod notebooku.

#28 Příspěvek od paolov »

Přetrvávají záseky a nyní nefunguje spodní lišta / např. klepnutí na hodiny, zvýšení snížení zvuku, tlačítko start / a ventilátor se stále točí :roll:

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Preventivní kontrola - spoamalený chod notebooku.

#29 Příspěvek od Roli »

paolov píše:Přetrvávají záseky a nyní nefunguje spodní lišta / např. klepnutí na hodiny, zvýšení snížení zvuku, tlačítko start / a ventilátor se stále točí :roll:
Nic špatného tam není a není ani co stopnout aby PC jelo rychleji :(

Hardware jsme v rámci možností otestovali tak že, mě už nic chytrého krom buď vrácení se na sedmičky, pokud to půjde z tovární zálohy nebo reinstal desítek, ale čistý.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

paolov
Návštěvník
Návštěvník
Příspěvky: 251
Registrován: 30 srp 2006 20:17
Bydliště: Jih Moravy.

Re: Preventivní kontrola - spoamalený chod notebooku.

#30 Příspěvek od paolov »

Diky za ochotu a pomoc s problemem. Prechod zpet na 7 asi mozny nebude vyprsela moznost te zpetne navratnosti a cista instalace 10 je me neznama nevim jak bych ji provedl kdyz nemam zdroj kdyz jsem presel z tech win7 tou aktualizaci.

Zamčeno