Nový PC a už zavirovaný
Napsal: 05 črc 2014 12:33
Můj malý brácha dostal nový PC a už mu tam zase po pár dnech běhají reklamy. Některé jsem odstranil, ale některé se pořád znovu po restartu objevují. Co by se s tím dalo dělat?
Logfile of random's system information tool 1.10 (written by random/random)
Run by Admin at 2014-07-05 13:33:29
Microsoft Windows 8.1
System drive C: has 381 GB (84%) free of 454 GB
Total RAM: 6109 MB (47% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:33:43, on 5. 7. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
C:\Program Files (x86)\Origin\Origin.exe
C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Admin.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://localoem.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://localoem.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: CrossriderApp0048292 - {11111111-1111-1111-1111-110411821192} - C:\Program Files (x86)\Sense\Sense-bho.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: YTAHelperBHO - {FCE3FA8B-BA81-467C-81D8-E43C00D1BC71} - C:\ProgramData\YTAHelper\YTAHelper.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
O4 - HKCU\..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-21-987214395-1790064606-4071519516-1005\..\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe" (User 'simulatory')
O4 - HKUS\S-1-5-21-987214395-1790064606-4071519516-1005\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun (User 'simulatory')
O4 - HKUS\S-1-5-21-987214395-1790064606-4071519516-1005\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun (User 'simulatory')
O4 - HKUS\S-1-5-21-987214395-1790064606-4071519516-1005\..\Run: [cz.seznam.software.autoupdate] "C:\Users\simulatory\AppData\Roaming\Seznam.cz\szninstall.exe" -c (User 'simulatory')
O4 - HKUS\S-1-5-21-987214395-1790064606-4071519516-1005\..\Run: [cz.seznam.software.szndesktop] "C:\Users\simulatory\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q (User 'simulatory')
O4 - HKUS\S-1-5-21-987214395-1790064606-4071519516-1005\..\Run: [SPDriver] .\JSDriver\1.37.1.189\jsdrv.exe (User 'simulatory')
O4 - HKUS\S-1-5-21-987214395-1790064606-4071519516-1005\..\Run: [GoobzoYouTubeAccelerator] "C:\Program Files (x86)\YouTube Accelerator\YouTubeAccelerator.exe" /startup (User 'simulatory')
O4 - Global Startup: TP-LINK Wireless Configuration Utility.lnk = C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O20 - AppInit_DLLs:
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @oem4.inf,%ViaKaraokeSrv.SvcDesc%;VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\Windows\system32\viakaraokesrv.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: YouTubeAcceleratorService - GOOBZO - C:\PROGRA~2\YOUTUB~1\YouTubeAcceleratorService.exe
--
End of file - 10228 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
"dwm.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
dashost.exe {3ff36349-0e51-4726-aaf5f3594b7c342a}
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe"
C:\Windows\system32\viakaraokesrv.exe
C:\PROGRA~2\YOUTUB~1\YouTubeAcceleratorService.exe -start -scm
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-32eafa6d-e8ad-443a-9565-95a78bd0e77a -SystemEventPortName:HostProcess-6a821f54-2822-460a-8d04-c564f763d8b8 -IoCancelEventPortName:HostProcess-3079529a-75b7-407f-925b-0afcf64ce16b -NonStateChangingEventPortName:HostProcess-09ecf6a8-1960-4130-b774-c64f6d15622b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:2fa39de5-cff3-4062-ade2-d3e6874e99ab -DeviceGroupId:WpdFsGroup
taskhostex.exe
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe" /TUStart /pid:1784
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
HydraDM64.exe -h:131642 "Maximalizovat na celou plochu" "Maximalizovat k rohům okna" "Obnovit pracovní plochu"
szndesktop.exe default start
"C:\Users\simulatory\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\YouTube Accelerator\YouTubeAccelerator.exe" /startup
"C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe" -nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17044_x64__8wekyb3d8bbwe\glcnd.exe" -ServerName:Microsoft.Reader.AppXtszmc7avrx02s7n8gch63tzwg517wd9k.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\System32\WWAHost.exe" -ServerName:Windows.Store
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2648.0.1474336019\1480447392" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,15 --gpu-vendor-id=0x1002 --gpu-device-id=0x6658 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.251.9001.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.1.1241488402\247623974" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.2.1202064468\1613496247" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.3.1383643214\2111773412" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.4.1850733244\1602246824" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.5.516792420\1245565214" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.7.2105052754\694553666" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.8.340774573\1465020235" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.9.147131345\356654131" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.10.351307697\686000961" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="2648.11.1700085933\1388646688" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.13.687594785\682546794" /prefetch:673131151
winlogon.exe
"dwm.exe"
atieclxx
taskhostex.exe
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe" /TUStart /pid:1784
C:\Windows\Explorer.EXE
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
HydraDM64.exe -h:131634 "Maximalizovat na celou plochu" "Maximalizovat k rohům okna" "Obnovit pracovní plochu"
"C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
"C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe" -nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.17.1412478907\1749839998" /prefetch:673131151
"D:\OMSI\Omsi.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7520.0.533429890\785011504" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,15 --gpu-vendor-id=0x1002 --gpu-device-id=0x6658 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.251.9001.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.2.1169423238\1949132212" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="7520.4.1022022072\1696560688" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.15.805732895\49082222" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.17.1196639470\1115060543" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.18.115991134\563830397" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.19.90926488\360098347" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.21.1852372473\856254974" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.23.1901440146\92135880" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.26.1281930896\1969925194" /prefetch:673131151
C:\Windows\system32\DllHost.exe /Processid:{3AD05575-8857-4850-9277-11B85BDB8E09}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.28.1959605385\991179521" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe12_ Global\UsGthrCtrlFltPipeMssGthrPipe12 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 572 576 584 65536 580
"C:\Users\Admin\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-1.job - C:\Program Files (x86)\Sense\Sense-codedownloader.exe /zigXwvlU /ueHWb=task /HrAWZn='Sense' /uvJwwahMe=48292 /TwVjm='000805' /ppUWRx='0' /OcZPIqwe='eyJkYXRhIjp7ImRhdGUiOiJFNzJ3c210eWNqMQ==PIXGUID(aff=smtycj&sub=1&product=yta)%%,' /AmnRAmQwp=5CC8AF6117D642F1AFEAD8C492215830IE /smfAocSr=8022cbdce1dbb7899006fd1cf9456101 /QMRjhLBG=1_34_07_01 /vTKDBU=1.34.7.1 /KFNlIRBW=1404315659 /rdQgp=http://stats.democlientnet.com /pHNcin=http://errors.democlientnet.com /fvKPgdm=http://js.democlientnet.com /hwrOTohn=ch /uIzbGn='Sense' /HUmUMbf=http://js.clientdemocloud.com /SdwxUC /IghQfo='{"asw":[0, 8388609, 8192]}' /hpnvwI='http://update.democlientnet.com/ie_code ... pdate.json' /ueHWb='task' /XEzpmOQW=''
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-11.job - C:\Program Files (x86)\Sense\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-11.exe /ZxVCZJ=EbsG0uYvsrHOqe17Ze5knNcDQ6KLFQzCRMtfYGyOCE3XtOJm5DBvEAjVjULtRxN4DeaQp6c7HUcB16VI8zvAoiAbVXZNsJGUiFfHZRJKrXEB0bLop4sMNc2PeYCSlWYNUNy5ZBAAA9NVpLQVBGVlaRihNdQvztK+owR4gykS4RCmhUfk0UlkQWVTQ3M4zdtD2lCIof98H5QqFTYvZ4Dvjp+6cdEX8rza0FgESoyuHpL/sNdY2u4tlHeHgyM/muR+/i0/6NKhCKoSd1kxl6umhGHOTs5oej0k+fbYqv8RgrGPm3AS/lqYfG87UesXwWQwzfxIKv27JxQDler/w27WbImnrr0SjT6XaA9ogLNFtHpmrI53nK6Z8nMBkWY7eGEd/sz8aujzLnI7ZDoKJLs/blhppLn0Ya3HnIzbCgyVLpTNbxJViGZrP36Fi9GaXtLvZwQ/DT3BwDsqXYrgEjkLKljEPuVGK/mKj8uxrlIvlmbNfGCR5BUIxWTcKMykBXRbJNVRJ0/y43sDz35LGFj5PyezgBg3kHwm9cvSaBCPicb1eHGxuNgUeoyxs7grtqf9fhOFuvM9OT5kVUGbhtDYwXuvffmPAHws6FKHDt16jxp8JfGnR9rDYke4P/DYez0nLK9YNH59XofyiKCMzWzaAf3bDQ50WSC6z19qIOOt1RS/qlUXIgd892v7QXj7iGv1WsbUFN5ElHRicMXSi0K2gD2zuietRkIb3BqyhHWybjcMehtZf58YVsrpP8dYv3OCqsOkxD4yPGtrxGl44FLSRJhg8+zu4rNMIEOpdH0j5/VZ97VZ1Jje2cbarYRwbeKl/Nt1UQlzwcBGr2zghEda2XJ8yIUpf3AntBLMaQTf3vxFhpd+q6sVcSB94ZG+PSJpucf3r4s7vqwIi3Yh+hf1ee3OaC70fqWFMYobztVnzoc7EsCxm49BLolLs0kJ+r1aReScLhjaE/b/oNS7rvza0F9rqyRO7kq5taoZxGu6cpUL3SqKgxOJOXi+d+3KfcH9tE6nGMRIDNGYnozOpsuRyGYv1ssCxaohlHsbX93RsmbSuW2tGLs+BsQ9u/qNh4Dw8aSyhldq8+HIcx0Xh8dq2MEgYLrXl7swfFk6mkaxufezh5Acja0ThuCbZCcsLwKCTUTxNb2PUQA9XHL4D2KP2c77NPOmz0ex+Orc/cIFzNQB4zez6TqNlIjM3J2PsjjztQK8HkpVIdTQGK90ofsA10/SNsUPQ8QxPtR27EGh3QYdVjU/Ynmp+iCFGU2Gph5HHSbnOguERtp5e5f3fUbAXV4At7rulIZo3xc41uScbn7rfifU2Te9ObC8qqURdiz6lt4vq2uBiWbGmnw2cP/EaqJQOhXIFQUveFvHPcAfba7xQsV+8WI+MrEzW1AxkM76FWVUXCwRdCHAmylhhncV20BTyaiHec3lpBVtl0S//jCUBVOwh3egiBqhCi5S47GiBHPIM/re93F53bp/pxXeHZd4bE+OpCVVvZIwrlfVwVYGGLFjTvuEZPTqFO9rRew6QKi1caXP3AtuuBBJthKWFTdQt4zQtrC4l50EeW75qScidXLuOAToPjNFEH7KKpoqcNQtN8+QyddjUvmn1M2JG2UouR3kXYRhYs0S+ppXeG0tGtf/wGE05dsLhYai4t8ALTGi6jVnHoOQLcnBvtxDxwEeqClfYA5NY3M/SPHgj6M=
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-2.job - C:\Program Files (x86)\Sense\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-2.exe /DyZIFsY /HrAWZn='Sense' /uvJwwahMe=48292 /TwVjm='000805' /ppUWRx='0' /OcZPIqwe='eyJkYXRhIjp7ImRhdGUiOiJFNzJ3c210eWNqMQ==PIXGUID(aff=smtycj&sub=1&product=yta)%%,' /AmnRAmQwp=5CC8AF6117D642F1AFEAD8C492215830IE /smfAocSr=8022cbdce1dbb7899006fd1cf9456101 /QMRjhLBG=1_34_07_01 /KFNlIRBW=1404315659 /rdQgp=http://stats.democlientnet.com /pHNcin=http://errors.democlientnet.com /RAVNSFSVX=11111111-1111-1111-1111-110411821192 /hwrOTohn=ch /SdwxUC /hpnvwI='http://update.democlientnet.com/ie_enab ... pdate.json' /ueHWb='task' /XEzpmOQW=''
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-4.job - C:\Program Files (x86)\Sense\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-4.exe /OeylnCz /HrAWZn='Sense' /XNKaQah='C:\Program Files (x86)\Sense\48292.xpi' /uvJwwahMe=48292 /TwVjm='000805' /ppUWRx='0' /OcZPIqwe='eyJkYXRhIjp7ImRhdGUiOiJFNzJ3c210eWNqMQ==PIXGUID(aff=smtycj&sub=1&product=yta)%%,' /AmnRAmQwp=5CC8AF6117D642F1AFEAD8C492215830IE /smfAocSr=8022cbdce1dbb7899006fd1cf9456101 /QMRjhLBG=1_34_07_01 /vTKDBU=1.34.7.1 /KFNlIRBW=1404315659 /rdQgp=http://stats.democlientnet.com /pHNcin=http://errors.democlientnet.com /AtASe=300 /tmDVVvTR=143f44cf-d99c-4e45-8cd9-ef929de77aa8@bdbf6038-0097-480c-8d8e-fc48e28131a8.com /TgbRDhpDG=0.94 /ogbHecbjv=a143f44cfd99c4e458cd9ef929de77aa8bdbf60380097480c8d8efc48e28131a8com48292 /tfUuUrB=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /48292.rdf /uwHbIW='Sense' /SNhnToP='.' /iyvRcbHwP='Object Browser' /hwrOTohn=ch /IghQfo='{"asw":[0, 8388609, 8192]}' /SdwxUC /MDpWmdncI /OJPwHTgS /hpnvwI='http://update.democlientnet.com/ff_agen ... pdate.json' /ueHWb='task' /XEzpmOQW=''
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-5.job - C:\Program Files (x86)\Sense\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-5.exe /DsGWxDC /HrAWZn='Sense' /uvJwwahMe=48292 /TwVjm='000805' /ppUWRx='0' /OcZPIqwe='eyJkYXRhIjp7ImRhdGUiOiJFNzJ3c210eWNqMQ==PIXGUID(aff=smtycj&sub=1&product=yta)%%,' /AmnRAmQwp=5CC8AF6117D642F1AFEAD8C492215830IE /smfAocSr=8022cbdce1dbb7899006fd1cf9456101 /QMRjhLBG=1_34_07_01 /KFNlIRBW=1404315659 /rdQgp=http://stats.democlientnet.com /pHNcin=http://errors.democlientnet.com /kKikSDII=http://ipgeoapi.com/ /QlvlLa=http://update.democlientnet.com /BjJhTe=2 /AJrBaXO=http://logs.democlientnet.com /hpnvwI='http://update.democlientnet.com/updater ... pdate.json' /ueHWb='task' /XEzpmOQW=''
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-5_user.job - C:\Program Files (x86)\Sense\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-5.exe /DsGWxDC /HrAWZn='Sense' /uvJwwahMe=48292 /TwVjm='000805' /ppUWRx='0' /OcZPIqwe='eyJkYXRhIjp7ImRhdGUiOiJFNzJ3c210eWNqMQ==PIXGUID(aff=smtycj&sub=1&product=yta)%%,' /AmnRAmQwp=5CC8AF6117D642F1AFEAD8C492215830IE /smfAocSr=8022cbdce1dbb7899006fd1cf9456101 /QMRjhLBG=1_34_07_01 /KFNlIRBW=1404315659 /rdQgp=http://stats.democlientnet.com /pHNcin=http://errors.democlientnet.com /kKikSDII=http://ipgeoapi.com/ /QlvlLa=http://update.democlientnet.com /BjJhTe=2 /AJrBaXO=http://logs.democlientnet.com /hpnvwI='http://update.democlientnet.com/updater ... pdate.json' /mWjUXdNvj /ueHWb='task' /XEzpmOQW=''
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-6.job - C:\Program Files (x86)\Sense\Sense-novainstaller.exe /cHsTSwO /HrAWZn='Sense' /uvJwwahMe=48292 /TwVjm='000805' /ppUWRx='0' /OcZPIqwe='eyJkYXRhIjp7ImRhdGUiOiJFNzJ3c210eWNqMQ==PIXGUID(aff=smtycj&sub=1&product=yta)%%,' /AmnRAmQwp=5CC8AF6117D642F1AFEAD8C492215830IE /smfAocSr=8022cbdce1dbb7899006fd1cf9456101 /QMRjhLBG=1_34_07_01 /vTKDBU=1.34.7.1 /KFNlIRBW=1404315659 /rdQgp=http://stats.democlientnet.com /pHNcin=http://errors.democlientnet.com /fvKPgdm=http://js.democlientnet.com /hwrOTohn=ch /YPOgrxFtO /uIzbGn=Sense /jETuHOGYQ='nova' /HUmUMbf=http://js.clientdemocloud.com /IghQfo='{"asw":[0, 8388609, 8192]}' /ueHWb=task /hpnvwI='http://update.democlientnet.com/novacod ... pdate.json' /ueHWb='task' /XEzpmOQW=''
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-7.job - C:\Program Files (x86)\Sense\Sense-nova.exe /HrAWZn='Sense' /uvJwwahMe=48292 /TwVjm='000805' /ppUWRx='0' /OcZPIqwe='eyJkYXRhIjp7ImRhdGUiOiJFNzJ3c210eWNqMQ==PIXGUID(aff=smtycj&sub=1&product=yta)%%,' /AmnRAmQwp=5CC8AF6117D642F1AFEAD8C492215830IE /smfAocSr=8022cbdce1dbb7899006fd1cf9456101 /QMRjhLBG=1_34_07_01 /vTKDBU=1.34.7.1 /KFNlIRBW=1404315659 /rdQgp=http://stats.democlientnet.com /pHNcin=http://errors.democlientnet.com /fvKPgdm=http://js.democlientnet.com /hwrOTohn=ch /YPOgrxFtO /uIzbGn=Sense /jETuHOGYQ='nova' /HUmUMbf=http://js.clientdemocloud.com /IghQfo='{"asw":[0, 8388609, 8192]}' /hpnvwI='http://update.democlientnet.com/novarun ... pdate.json' /ueHWb='task' /XEzpmOQW=''
C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}]
Sense - C:\Program Files (x86)\Sense\Sense-bho64.dll [2014-07-02 869888]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-03-21 6270336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}]
YTAHelper - C:\ProgramData\YTAHelper\YTAHelper64.dll [2014-06-15 522600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}]
Sense - C:\Program Files (x86)\Sense\Sense-bho.dll [2014-07-02 639488]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-03-21 4502400]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}]
YTAHelper - C:\ProgramData\YTAHelper\YTAHelper.dll [2014-06-15 434024]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-06-11 12503184]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"HydraVisionDesktopManager"=C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [2013-12-20 389120]
"EADM"=C:\Program Files (x86)\Origin\Origin.exe [2014-07-01 3595608]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2012-06-08 5123216]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-04-23 766688]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
TP-LINK Wireless Configuration Utility.lnk - C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-07-05 439296]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-07-05 13:33:29 ----D---- C:\rsit
2014-07-05 13:33:29 ----D---- C:\Program Files\trend micro
2014-07-05 13:27:21 ----D---- C:\Program Files (x86)\Electronic Arts
2014-07-05 13:27:19 ----D---- C:\Users\Admin\AppData\Roaming\Macromedia
2014-07-05 13:24:39 ----D---- C:\Users\Admin\AppData\Roaming\DAEMON Tools Lite
2014-07-05 13:18:41 ----D---- C:\Users\Admin\AppData\Roaming\WinRAR
2014-07-05 13:18:24 ----D---- C:\Program Files\WinRAR
2014-07-04 20:31:27 ----D---- C:\Users\Admin\AppData\Roaming\uTorrent
2014-07-04 20:31:11 ----D---- C:\ProgramData\RogueKiller
2014-07-04 20:28:09 ----D---- C:\Users\Admin\AppData\Roaming\Seznam.cz
2014-07-04 20:28:06 ----D---- C:\Users\Admin\AppData\Roaming\TP-LINK
2014-07-02 18:41:38 ----A---- C:\Windows\system32\drivers\{5906ab0f-5417-45a6-a4f5-8bc38ae936d5}Gw64.sys
2014-07-02 17:41:29 ----D---- C:\Program Files (x86)\trolatunt
2014-07-02 17:41:08 ----D---- C:\Program Files (x86)\Sense
2014-07-02 17:40:17 ----D---- C:\ProgramData\8f7c0396b1bb2d9a
2014-07-02 17:40:16 ----D---- C:\ProgramData\CostMin
2014-07-02 17:40:15 ----D---- C:\Program Files (x86)\CostMin
2014-07-02 17:39:09 ----D---- C:\ProgramData\YTAHelper
2014-07-02 17:39:08 ----D---- C:\Program Files (x86)\YTAHelper
2014-07-02 17:39:05 ----AD---- C:\ProgramData\TEMP
2014-07-02 17:38:50 ----D---- C:\Program Files (x86)\globalUpdate
2014-07-02 17:38:49 ----D---- C:\Program Files (x86)\YouTube Accelerator
2014-07-02 17:38:18 ----D---- C:\Program Files (x86)\Seznam.cz
2014-07-02 17:37:53 ----A---- C:\Windows\unins000.exe
2014-07-02 17:37:53 ----A---- C:\Windows\unins000.dat
2014-07-01 22:03:51 ----RD---- C:\Program Files (x86)\Skype
2014-07-01 22:03:49 ----D---- C:\ProgramData\Skype
2014-07-01 22:03:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-07-01 22:03:08 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-07-01 22:03:08 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-07-01 22:03:08 ----A---- C:\Windows\system32\iertutil.dll
2014-07-01 22:03:07 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-07-01 22:03:07 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-07-01 22:03:07 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-07-01 22:03:07 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-07-01 22:03:06 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-07-01 22:03:06 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-07-01 22:03:06 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-07-01 22:03:06 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-07-01 22:03:05 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-07-01 22:03:05 ----A---- C:\Windows\system32\iernonce.dll
2014-07-01 22:03:04 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-07-01 22:03:04 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-07-01 22:03:04 ----A---- C:\Windows\system32\urlmon.dll
2014-07-01 22:03:04 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-07-01 22:03:04 ----A---- C:\Windows\system32\dxtmsft.dll
2014-07-01 22:03:03 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-07-01 22:03:03 ----A---- C:\Windows\system32\msfeeds.dll
2014-07-01 22:03:02 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-07-01 22:03:02 ----A---- C:\Windows\system32\iesetup.dll
2014-07-01 22:03:02 ----A---- C:\Windows\system32\ie4uinit.exe
2014-07-01 22:03:01 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-07-01 22:03:01 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-07-01 22:03:01 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-07-01 22:03:01 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-07-01 22:03:00 ----A---- C:\Windows\system32\mshtmled.dll
2014-07-01 22:03:00 ----A---- C:\Windows\system32\ieUnatt.exe
2014-07-01 22:03:00 ----A---- C:\Windows\system32\ieframe.dll
2014-07-01 22:03:00 ----A---- C:\Windows\system32\dxtrans.dll
2014-07-01 22:02:59 ----A---- C:\Windows\system32\jscript9diag.dll
2014-07-01 22:02:59 ----A---- C:\Windows\system32\jscript9.dll
2014-07-01 22:02:59 ----A---- C:\Windows\system32\ieapfltr.dll
2014-07-01 22:02:58 ----A---- C:\Windows\system32\wininet.dll
2014-07-01 22:02:58 ----A---- C:\Windows\system32\msrating.dll
2014-07-01 22:02:58 ----A---- C:\Windows\system32\jsproxy.dll
2014-07-01 22:02:57 ----A---- C:\Windows\system32\mshtml.dll
2014-07-01 22:02:13 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-07-01 22:02:13 ----A---- C:\Windows\system32\msxml3.dll
2014-07-01 22:02:09 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-07-01 22:02:08 ----A---- C:\Windows\SYSWOW64\wusa.exe
2014-07-01 22:02:08 ----A---- C:\Windows\system32\wusa.exe
2014-07-01 22:02:08 ----A---- C:\Windows\system32\drivers\ks.sys
2014-07-01 22:02:08 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-07-01 22:02:07 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2014-07-01 22:02:07 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-01 22:02:07 ----A---- C:\Windows\system32\WSShared.dll
2014-07-01 22:02:07 ----A---- C:\Windows\system32\WSReset.exe
2014-07-01 22:02:07 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-01 22:02:03 ----A---- C:\Windows\system32\drivers\WdFilter.sys
2014-07-01 22:02:02 ----A---- C:\Windows\system32\drivers\WdNisDrv.sys
2014-07-01 22:02:00 ----A---- C:\Windows\system32\drivers\WdBoot.sys
2014-07-01 22:01:55 ----A---- C:\Windows\system32\wuaueng.dll
2014-07-01 22:01:54 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-07-01 22:01:54 ----A---- C:\Windows\system32\wuapi.dll
2014-07-01 22:01:54 ----A---- C:\Windows\system32\ubpm.dll
2014-07-01 22:01:54 ----A---- C:\Windows\system32\twinapi.appcore.dll
2014-07-01 22:01:53 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-07-01 22:01:53 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-07-01 22:01:53 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-07-01 22:01:53 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-07-01 22:01:53 ----A---- C:\Windows\SYSWOW64\twinui.appcore.dll
2014-07-01 22:01:53 ----A---- C:\Windows\SYSWOW64\twinapi.appcore.dll
2014-07-01 22:01:53 ----A---- C:\Windows\system32\wuwebv.dll
2014-07-01 22:01:53 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2014-07-01 22:01:53 ----A---- C:\Windows\system32\wups.dll
2014-07-01 22:01:53 ----A---- C:\Windows\system32\wudriver.dll
2014-07-01 22:01:53 ----A---- C:\Windows\system32\wucltux.dll
2014-07-01 22:01:53 ----A---- C:\Windows\system32\wuauclt.exe
2014-07-01 22:01:53 ----A---- C:\Windows\system32\wuapp.exe
2014-07-01 22:01:53 ----A---- C:\Windows\system32\twinui.appcore.dll
2014-07-01 22:01:53 ----A---- C:\Windows\system32\storewuauth.dll
2014-07-01 22:01:48 ----A---- C:\Windows\SYSWOW64\mrt100.dll
2014-07-01 22:01:48 ----A---- C:\Windows\SYSWOW64\mrt_map.dll
2014-07-01 22:01:48 ----A---- C:\Windows\system32\rdpcorets.dll
2014-07-01 22:01:48 ----A---- C:\Windows\system32\mrt100.dll
2014-07-01 22:01:48 ----A---- C:\Windows\system32\mrt_map.dll
2014-07-01 22:01:44 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2014-07-01 22:01:44 ----A---- C:\Windows\system32\shell32.dll
2014-07-01 22:01:43 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2014-07-01 22:01:40 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2014-07-01 22:01:39 ----A---- C:\Windows\system32\Windows.UI.Search.dll
2014-07-01 22:01:37 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2014-07-01 22:01:35 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-07-01 22:01:34 ----A---- C:\Windows\system32\SyncEngine.dll
2014-07-01 22:01:33 ----A---- C:\Windows\system32\twinui.dll
2014-07-01 22:01:33 ----A---- C:\Windows\system32\gpsvc.dll
2014-07-01 22:01:32 ----A---- C:\Windows\SYSWOW64\Windows.UI.Search.dll
2014-07-01 22:01:32 ----A---- C:\Windows\system32\win32k.sys
2014-07-01 22:01:32 ----A---- C:\Windows\system32\mfcore.dll
2014-07-01 22:01:32 ----A---- C:\Windows\system32\d3d9.dll
2014-07-01 22:01:31 ----A---- C:\Windows\SYSWOW64\twinui.dll
2014-07-01 22:01:31 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2014-07-01 22:01:31 ----A---- C:\Windows\system32\SettingsHandlers.dll
2014-07-01 22:01:31 ----A---- C:\Windows\system32\mstscax.dll
2014-07-01 22:01:31 ----A---- C:\Windows\system32\mfmpeg2srcsnk.dll
2014-07-01 22:01:30 ----A---- C:\Windows\SYSWOW64\mfmpeg2srcsnk.dll
2014-07-01 22:01:30 ----A---- C:\Windows\SYSWOW64\mfcore.dll
2014-07-01 22:01:30 ----A---- C:\Windows\system32\workfolderssvc.dll
2014-07-01 22:01:30 ----A---- C:\Windows\system32\wmpmde.dll
2014-07-01 22:01:30 ----A---- C:\Windows\system32\winmde.dll
2014-07-01 22:01:29 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-07-01 22:01:29 ----A---- C:\Windows\system32\Windows.Media.Streaming.dll
2014-07-01 22:01:29 ----A---- C:\Windows\system32\services.exe
2014-07-01 22:01:29 ----A---- C:\Windows\system32\drivers\afd.sys
2014-07-01 22:01:28 ----A---- C:\Windows\system32\SearchFolder.dll
2014-07-01 22:01:28 ----A---- C:\Windows\system32\MFMediaEngine.dll
2014-07-01 22:01:28 ----A---- C:\Windows\system32\localspl.dll
2014-07-01 22:01:28 ----A---- C:\Windows\system32\AUDIOKSE.dll
2014-07-01 22:01:27 ----A---- C:\Windows\SYSWOW64\winmde.dll
2014-07-01 22:01:27 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2014-07-01 22:01:27 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2014-07-01 22:01:27 ----A---- C:\Windows\system32\srvsvc.dll
2014-07-01 22:01:27 ----A---- C:\Windows\system32\mfsvr.dll
2014-07-01 22:01:27 ----A---- C:\Windows\system32\lsasrv.dll
2014-07-01 22:01:27 ----A---- C:\Windows\system32\drivers\volsnap.sys
2014-07-01 22:01:27 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-07-01 22:01:27 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2014-07-01 22:01:26 ----A---- C:\Windows\SYSWOW64\Windows.Media.Streaming.dll
2014-07-01 22:01:26 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2014-07-01 22:01:26 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-07-01 22:01:26 ----A---- C:\Windows\system32\Windows.Media.dll
2014-07-01 22:01:26 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-07-01 22:01:25 ----A---- C:\Windows\SYSWOW64\mfsvr.dll
2014-07-01 22:01:25 ----A---- C:\Windows\SYSWOW64\dwmapi.dll
2014-07-01 22:01:25 ----A---- C:\Windows\system32\win32spl.dll
2014-07-01 22:01:25 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe
2014-07-01 22:01:25 ----A---- C:\Windows\system32\GeofenceMonitorService.dll
2014-07-01 22:01:25 ----A---- C:\Windows\system32\dwmapi.dll
2014-07-01 22:01:25 ----A---- C:\Windows\system32\drivers\nwifi.sys
2014-07-01 22:01:25 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2014-07-01 22:01:25 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2014-07-01 22:01:25 ----A---- C:\Windows\system32\defragsvc.dll
2014-07-01 22:01:25 ----A---- C:\Windows\system32\audiosrv.dll
2014-07-01 22:01:24 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-07-01 22:01:24 ----A---- C:\Windows\SYSWOW64\Windows.Media.dll
2014-07-01 22:01:24 ----A---- C:\Windows\SYSWOW64\MFCaptureEngine.dll
2014-07-01 22:01:24 ----A---- C:\Windows\SYSWOW64\GeofenceMonitorService.dll
2014-07-01 22:01:24 ----A---- C:\Windows\system32\swprv.dll
2014-07-01 22:01:24 ----A---- C:\Windows\system32\resutils.dll
2014-07-01 22:01:24 ----A---- C:\Windows\system32\ploptin.dll
2014-07-01 22:01:24 ----A---- C:\Windows\system32\MFCaptureEngine.dll
2014-07-01 22:01:24 ----A---- C:\Windows\system32\MDEServer.exe
2014-07-01 22:01:24 ----A---- C:\Windows\system32\drivers\srvnet.sys
2014-07-01 22:01:24 ----A---- C:\Windows\system32\drivers\fvevol.sys
2014-07-01 22:01:24 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2014-07-01 22:01:23 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2014-07-01 22:01:23 ----A---- C:\Windows\SYSWOW64\MSVideoDSP.dll
2014-07-01 22:01:23 ----A---- C:\Windows\SYSWOW64\gpapi.dll
2014-07-01 22:01:23 ----A---- C:\Windows\system32\wscsvc.dll
2014-07-01 22:01:23 ----A---- C:\Windows\system32\VSSVC.exe
2014-07-01 22:01:23 ----A---- C:\Windows\system32\rpchttp.dll
2014-07-01 22:01:23 ----A---- C:\Windows\system32\rdpencom.dll
2014-07-01 22:01:23 ----A---- C:\Windows\system32\MSVideoDSP.dll
2014-07-01 22:01:23 ----A---- C:\Windows\system32\gpapi.dll
2014-07-01 22:01:23 ----A---- C:\Windows\system32\drivers\storport.sys
2014-07-01 22:01:23 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-07-01 22:01:22 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-07-01 22:01:22 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2014-07-01 22:01:22 ----A---- C:\Windows\SYSWOW64\propsys.dll
2014-07-01 22:01:22 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2014-07-01 22:01:22 ----A---- C:\Windows\SYSWOW64\mf.dll
2014-07-01 22:01:22 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-07-01 22:01:22 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\wintrust.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\propsys.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\mfps.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\mfplat.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\mf.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\energyprov.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\drivers\spaceport.sys
2014-07-01 22:01:22 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2014-07-01 22:01:22 ----A---- C:\Windows\system32\clusapi.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\AudioSes.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\AudioEng.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\audiodg.exe
2014-07-01 22:01:21 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2014-07-01 22:01:21 ----A---- C:\Windows\SYSWOW64\resutils.dll
2014-07-01 22:01:21 ----A---- C:\Windows\SYSWOW64\mispace.dll
2014-07-01 22:01:21 ----A---- C:\Windows\SYSWOW64\d3d8thk.dll
2014-07-01 22:01:21 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\WorkFoldersShell.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\WorkfoldersControl.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\wlansvc.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\tlscsp.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\srcore.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\SkyDriveTelemetry.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\mispace.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\mfpmp.exe
2014-07-01 22:01:21 ----A---- C:\Windows\system32\BootMenuUX.dll
2014-07-01 22:01:20 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2014-07-01 22:01:20 ----A---- C:\Windows\SYSWOW64\wlanhlp.dll
2014-07-01 22:01:20 ----A---- C:\Windows\SYSWOW64\wlanapi.dll
2014-07-01 22:01:20 ----A---- C:\Windows\SYSWOW64\srclient.dll
2014-07-01 22:01:20 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\wlansec.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\wlanmsm.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\wlanhlp.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\wlanapi.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\tsgqec.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\srclient.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\SkyDrive.exe
2014-07-01 22:01:20 ----A---- C:\Windows\system32\rstrui.exe
2014-07-01 22:01:20 ----A---- C:\Windows\system32\rdvidcrl.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2014-07-01 22:01:14 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-07-01 22:01:14 ----A---- C:\Windows\system32\gdi32.dll
2014-07-01 22:01:09 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2014-07-01 22:01:09 ----A---- C:\Windows\system32\DWrite.dll
2014-07-01 22:01:09 ----A---- C:\Windows\system32\drvinst.exe
2014-07-01 22:01:09 ----A---- C:\Windows\system32\drvcfg.exe
2014-07-01 22:01:08 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-07-01 22:01:08 ----A---- C:\Windows\system32\FntCache.dll
2014-07-01 22:00:38 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2014-07-01 22:00:38 ----A---- C:\Windows\system32\WpcWebSync.dll
2014-07-01 22:00:38 ----A---- C:\Windows\system32\WpcMon.exe
2014-07-01 22:00:38 ----A---- C:\Windows\system32\Wpc.dll
2014-07-01 22:00:37 ----A---- C:\Windows\system32\wpccpl.dll
2014-07-01 22:00:37 ----A---- C:\Windows\system32\drivers\wpcfltr.sys
2014-07-01 21:58:02 ----D---- C:\Program Files (x86)\TP-LINK
2014-07-01 21:57:50 ----A---- C:\Windows\system32\drivers\athw8x.sys
2014-07-01 21:57:50 ----A---- C:\Windows\system32\athw8x.sys
2014-07-01 21:57:11 ----D---- C:\ProgramData\TP-LINK
2014-07-01 21:55:00 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-07-01 21:50:47 ----RD---- C:\Windows\BrowserChoice
2014-07-01 18:05:11 ----A---- C:\Windows\system32\WSService.dll
2014-07-01 18:05:04 ----A---- C:\Windows\system32\glcndFilter.dll
2014-07-01 18:04:56 ----A---- C:\Windows\system32\OobeFldr.dll
2014-07-01 18:04:55 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2014-07-01 18:04:41 ----A---- C:\Windows\SYSWOW64\glcndFilter.dll
2014-07-01 18:04:15 ----A---- C:\Windows\system32\wmp.dll
2014-07-01 18:04:14 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-07-01 18:04:13 ----A---- C:\Windows\system32\sppobjs.dll
2014-07-01 18:04:12 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-07-01 18:04:12 ----A---- C:\Windows\system32\tquery.dll
2014-07-01 18:04:11 ----A---- C:\Windows\SYSWOW64\wmp.dll
2014-07-01 18:04:10 ----A---- C:\Windows\system32\sysmain.dll
2014-07-01 18:04:08 ----A---- C:\Windows\system32\mssrch.dll
2014-07-01 18:04:05 ----A---- C:\Windows\SYSWOW64\tquery.dll
2014-07-01 18:04:03 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2014-07-01 18:04:03 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-07-01 18:04:02 ----A---- C:\Windows\system32\combase.dll
2014-07-01 18:03:59 ----A---- C:\Windows\system32\webservices.dll
2014-07-01 18:03:59 ----A---- C:\Windows\system32\actxprxy.dll
2014-07-01 18:03:58 ----A---- C:\Windows\system32\wlidsvc.dll
2014-07-01 18:03:57 ----A---- C:\Windows\system32\dui70.dll
2014-07-01 18:03:56 ----A---- C:\Windows\SYSWOW64\mfsrcsnk.dll
2014-07-01 18:03:56 ----A---- C:\Windows\system32\schedsvc.dll
2014-07-01 18:03:56 ----A---- C:\Windows\system32\msTextPrediction.dll
2014-07-01 18:03:53 ----A---- C:\Windows\system32\mfnetsrc.dll
2014-07-01 18:03:52 ----A---- C:\Windows\system32\UIAutomationCore.dll
2014-07-01 18:03:51 ----A---- C:\Windows\system32\Windows.Globalization.dll
2014-07-01 18:03:51 ----A---- C:\Windows\system32\SRH.dll
2014-07-01 18:03:50 ----A---- C:\Windows\SYSWOW64\combase.dll
2014-07-01 18:03:49 ----A---- C:\Windows\SYSWOW64\webservices.dll
2014-07-01 18:03:48 ----A---- C:\Windows\system32\mfnetcore.dll
2014-07-01 18:03:47 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-07-01 18:03:47 ----A---- C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2014-07-01 18:03:47 ----A---- C:\Windows\system32\ExplorerFrame.dll
2014-07-01 18:03:46 ----A---- C:\Windows\system32\WofTasks.dll
2014-07-01 18:03:46 ----A---- C:\Windows\system32\uDWM.dll
2014-07-01 18:03:46 ----A---- C:\Windows\system32\StructuredQuery.dll
2014-07-01 18:03:46 ----A---- C:\Windows\system32\mfsrcsnk.dll
2014-07-01 18:03:46 ----A---- C:\Windows\system32\mfasfsrcsnk.dll
2014-07-01 18:03:46 ----A---- C:\Windows\system32\DfpCommon.dll
2014-07-01 18:03:45 ----A---- C:\Windows\system32\setupapi.dll
2014-07-01 18:03:45 ----A---- C:\Windows\system32\rpcss.dll
2014-07-01 18:03:44 ----A---- C:\Windows\system32\Windows.UI.Immersive.dll
2014-07-01 18:03:44 ----A---- C:\Windows\system32\SettingSyncHost.exe
2014-07-01 18:03:43 ----A---- C:\Windows\SYSWOW64\UIAutomationCore.dll
2014-07-01 18:03:43 ----A---- C:\Windows\SYSWOW64\dui70.dll
2014-07-01 18:03:43 ----A---- C:\Windows\system32\RacEngn.dll
2014-07-01 18:03:43 ----A---- C:\Windows\system32\ntdll.dll
2014-07-01 18:03:41 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-07-01 18:03:41 ----A---- C:\Windows\SYSWOW64\mfnetsrc.dll
2014-07-01 18:03:41 ----A---- C:\Windows\system32\drivers\acpi.sys
2014-07-01 18:03:40 ----A---- C:\Windows\SYSWOW64\SRH.dll
2014-07-01 18:03:40 ----A---- C:\Windows\system32\msctf.dll
2014-07-01 18:03:39 ----A---- C:\Windows\SYSWOW64\mfasfsrcsnk.dll
2014-07-01 18:03:39 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-07-01 18:03:39 ----A---- C:\Windows\system32\SHCore.dll
2014-07-01 18:03:39 ----A---- C:\Windows\system32\drivers\ndis.sys
2014-07-01 18:03:38 ----A---- C:\Windows\system32\SettingSyncCore.dll
2014-07-01 18:03:37 ----A---- C:\Windows\SYSWOW64\mfnetcore.dll
2014-07-01 18:03:37 ----A---- C:\Windows\system32\TSWorkspace.dll
2014-07-01 18:03:36 ----A---- C:\Windows\SYSWOW64\Windows.UI.Immersive.dll
2014-07-01 18:03:36 ----A---- C:\Windows\system32\wer.dll
2014-07-01 18:03:35 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2014-07-01 18:03:34 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2014-07-01 18:03:34 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2014-07-01 18:03:33 ----A---- C:\Windows\SYSWOW64\Windows.Globalization.dll
2014-07-01 18:03:33 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-07-01 18:03:33 ----A---- C:\Windows\system32\uxtheme.dll
2014-07-01 18:03:33 ----A---- C:\Windows\system32\samsrv.dll
2014-07-01 18:03:32 ----A---- C:\Windows\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2014-07-01 18:03:32 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2014-07-01 18:03:32 ----A---- C:\Windows\system32\Windows.Web.Http.dll
2014-07-01 18:03:32 ----A---- C:\Windows\system32\vpnike.dll
2014-07-01 18:03:32 ----A---- C:\Windows\system32\user32.dll
2014-07-01 18:03:31 ----A---- C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2014-07-01 18:03:31 ----A---- C:\Windows\system32\WebcamUi.dll
2014-07-01 18:03:31 ----A---- C:\Windows\system32\SearchIndexer.exe
2014-07-01 18:03:31 ----A---- C:\Windows\system32\MsSpellCheckingFacility.dll
2014-07-01 18:03:30 ----A---- C:\Windows\system32\msdrm.dll
2014-07-01 18:03:30 ----A---- C:\Windows\system32\mfmp4srcsnk.dll
2014-07-01 18:03:29 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-07-01 18:03:29 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-07-01 18:03:29 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll
2014-07-01 18:03:29 ----A---- C:\Windows\system32\storagewmi.dll
2014-07-01 18:03:28 ----A---- C:\Windows\system32\MMDevAPI.dll
2014-07-01 18:03:27 ----A---- C:\Windows\SYSWOW64\SHCore.dll
2014-07-01 18:03:27 ----A---- C:\Windows\system32\twinapi.dll
2014-07-01 18:03:27 ----A---- C:\Windows\system32\Taskmgr.exe
2014-07-01 18:03:27 ----A---- C:\Windows\system32\d3d10level9.dll
2014-07-01 18:03:26 ----A---- C:\Windows\SYSWOW64\Windows.Web.Http.dll
2014-07-01 18:03:26 ----A---- C:\Windows\system32\WinTypes.dll
2014-07-01 18:03:26 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll
2014-07-01 18:03:26 ----A---- C:\Windows\system32\reseteng.dll
2014-07-01 18:03:25 ----A---- C:\Windows\SYSWOW64\Taskmgr.exe
2014-07-01 18:03:25 ----A---- C:\Windows\system32\schannel.dll
2014-07-01 18:03:25 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2014-07-01 18:03:24 ----A---- C:\Windows\SYSWOW64\WebcamUi.dll
2014-07-01 18:03:24 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2014-07-01 18:03:24 ----A---- C:\Windows\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
2014-07-01 18:03:23 ----A---- C:\Windows\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2014-07-01 18:03:23 ----A---- C:\Windows\SYSWOW64\MsSpellCheckingFacility.dll
2014-07-01 18:03:23 ----A---- C:\Windows\system32\wpncore.dll
2014-07-01 18:03:23 ----A---- C:\Windows\system32\perftrack.dll
2014-07-01 18:03:22 ----A---- C:\Windows\SYSWOW64\msctf.dll
2014-07-01 18:03:22 ----A---- C:\Windows\system32\mfds.dll
2014-07-01 18:03:21 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-07-01 18:03:21 ----A---- C:\Windows\system32\WWAHost.exe
2014-07-01 18:03:21 ----A---- C:\Windows\system32\tpmvsc.dll
2014-07-01 18:03:21 ----A---- C:\Windows\system32\drivers\srv.sys
2014-07-01 18:03:21 ----A---- C:\Windows\system32\dfpinc.dat
2014-07-01 18:03:21 ----A---- C:\Windows\system32\advapi32.dll
2014-07-01 18:03:20 ----A---- C:\Windows\system32\lsm.dll
2014-07-01 18:03:20 ----A---- C:\Windows\system32\hal.dll
2014-07-01 18:03:19 ----A---- C:\Windows\system32\RecoveryDrive.exe
2014-07-01 18:03:19 ----A---- C:\Windows\system32\energy.dll
2014-07-01 18:03:18 ----A---- C:\Windows\SYSWOW64\mfds.dll
2014-07-01 18:03:18 ----A---- C:\Windows\system32\wcmsvc.dll
2014-07-01 18:03:17 ----A---- C:\Windows\SYSWOW64\WWAHost.exe
2014-07-01 18:03:17 ----A---- C:\Windows\SYSWOW64\SettingSyncHost.exe
2014-07-01 18:03:17 ----A---- C:\Windows\system32\mssvp.dll
2014-07-01 18:03:17 ----A---- C:\Windows\system32\apphelp.dll
2014-07-01 18:03:16 ----A---- C:\Windows\system32\tdh.dll
2014-07-01 18:03:16 ----A---- C:\Windows\system32\iuilp.dll
2014-07-01 18:03:15 ----A---- C:\Windows\system32\winload.exe
2014-07-01 18:03:15 ----A---- C:\Windows\system32\pnrpsvc.dll
2014-07-01 18:03:15 ----A---- C:\Windows\system32\eapphost.dll
2014-07-01 18:03:15 ----A---- C:\Windows\system32\drivers\pci.sys
2014-07-01 18:03:14 ----A---- C:\Windows\system32\livessp.dll
2014-07-01 18:03:13 ----A---- C:\Windows\system32\wcncsvc.dll
2014-07-01 18:03:12 ----A---- C:\Windows\SYSWOW64\storagewmi.dll
2014-07-01 18:03:12 ----A---- C:\Windows\SYSWOW64\mssph.dll
2014-07-01 18:03:12 ----A---- C:\Windows\system32\winresume.exe
2014-07-01 18:03:12 ----A---- C:\Windows\system32\winlogon.exe
2014-07-01 18:03:12 ----A---- C:\Windows\system32\DismApi.dll
2014-07-01 18:03:11 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2014-07-01 18:03:11 ----A---- C:\Windows\system32\riched20.dll
2014-07-01 18:03:10 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2014-07-01 18:03:10 ----A---- C:\Windows\system32\mssph.dll
2014-07-01 18:03:09 ----A---- C:\Windows\SYSWOW64\SettingSyncCore.dll
2014-07-01 18:03:09 ----A---- C:\Windows\system32\bcryptprimitives.dll
2014-07-01 18:03:08 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2014-07-01 18:03:08 ----A---- C:\Windows\system32\ActionCenter.dll
2014-07-01 18:03:07 ----A---- C:\Windows\system32\werconcpl.dll
2014-07-01 18:03:07 ----A---- C:\Windows\system32\TetheringMgr.dll
2014-07-01 18:03:06 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-07-01 18:03:06 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2014-07-01 18:03:06 ----A---- C:\Windows\system32\Windows.Graphics.dll
2014-07-01 18:03:06 ----A---- C:\Windows\system32\stobject.dll
2014-07-01 18:03:05 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2014-07-01 18:03:04 ----A---- C:\Windows\SYSWOW64\user32.dll
2014-07-01 18:03:04 ----A---- C:\Windows\SYSWOW64\twinapi.dll
2014-07-01 18:03:03 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2014-07-01 18:03:03 ----A---- C:\Windows\system32\iphlpsvc.dll
2014-07-01 18:03:02 ----A---- C:\Windows\system32\WMALFXGFXDSP.dll
2014-07-01 18:03:01 ----A---- C:\Windows\system32\sspicli.dll
2014-07-01 18:03:00 ----A---- C:\Windows\system32\tsmf.dll
2014-07-01 18:03:00 ----A---- C:\Windows\system32\SettingSync.dll
2014-07-01 18:02:59 ----A---- C:\Windows\system32\WofUtil.dll
2014-07-01 18:02:59 ----A---- C:\Windows\system32\wimgapi.dll
2014-07-01 18:02:59 ----A---- C:\Windows\system32\sppwinob.dll
2014-07-01 18:02:59 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2014-07-01 18:02:59 ----A---- C:\Windows\system32\dpapisrv.dll
2014-07-01 18:02:58 ----A---- C:\Windows\SYSWOW64\Windows.Graphics.dll
2014-07-01 18:02:58 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-07-01 18:02:58 ----A---- C:\Windows\system32\wlidcli.dll
2014-07-01 18:02:58 ----A---- C:\Windows\system32\ntshrui.dll
2014-07-01 18:02:57 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2014-07-01 18:02:57 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2014-07-01 18:02:57 ----A---- C:\Windows\system32\thumbcache.dll
2014-07-01 18:02:57 ----A---- C:\Windows\system32\recimg.exe
2014-07-01 18:02:57 ----A---- C:\Windows\system32\dfp.exe
2014-07-01 18:02:56 ----A---- C:\Windows\SYSWOW64\slc.dll
2014-07-01 18:02:56 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll
2014-07-01 18:02:56 ----A---- C:\Windows\system32\aelupsvc.dll
2014-07-01 18:02:55 ----A---- C:\Windows\system32\Windows.Devices.Usb.dll
2014-07-01 18:02:55 ----A---- C:\Windows\system32\slc.dll
2014-07-01 18:02:55 ----A---- C:\Windows\system32\msra.exe
2014-07-01 18:02:55 ----A---- C:\Windows\system32\MrmIndexer.dll
2014-07-01 18:02:54 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2014-07-01 18:02:54 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2014-07-01 18:02:54 ----A---- C:\Windows\system32\Dism.exe
2014-07-01 18:02:54 ----A---- C:\Windows\system32\bisrv.dll
2014-07-01 18:02:54 ----A---- C:\Windows\system32\AppxPackaging.dll
2014-07-01 18:02:53 ----A---- C:\Windows\SYSWOW64\uxtheme.dll
2014-07-01 18:02:53 ----A---- C:\Windows\SYSWOW64\riched20.dll
2014-07-01 18:02:53 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-07-01 18:02:53 ----A---- C:\Windows\system32\nettrace.dll
2014-07-01 18:02:53 ----A---- C:\Windows\system32\AppReadiness.dll
2014-07-01 18:02:52 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2014-07-01 18:02:52 ----A---- C:\Windows\system32\pnidui.dll
2014-07-01 18:02:52 ----A---- C:\Windows\system32\dwmredir.dll
2014-07-01 18:02:52 ----A---- C:\Windows\system32\comdlg32.dll
2014-07-01 18:02:51 ----A---- C:\Windows\SYSWOW64\stobject.dll
2014-07-01 18:02:51 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2014-07-01 18:02:51 ----A---- C:\Windows\system32\WMPDMC.exe
2014-07-01 18:02:51 ----A---- C:\Windows\system32\WinSCard.dll
2014-07-01 18:02:50 ----A---- C:\Windows\system32\psmsrv.dll
2014-07-01 18:02:49 ----A---- C:\Windows\system32\mftranscode.dll
2014-07-01 18:02:48 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2014-07-01 18:02:48 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2014-07-01 18:02:48 ----A---- C:\Windows\system32\WlanMM.dll
2014-07-01 18:02:48 ----A---- C:\Windows\system32\osk.exe
2014-07-01 18:02:47 ----A---- C:\Windows\SYSWOW64\mftranscode.dll
2014-07-01 18:02:47 ----A---- C:\Windows\system32\VAN.dll
2014-07-01 18:02:47 ----A---- C:\Windows\system32\ninput.dll
2014-07-01 18:02:47 ----A---- C:\Windows\system32\msvproc.dll
2014-07-01 18:02:47 ----A---- C:\Windows\system32\InputSwitch.dll
2014-07-01 18:02:46 ----A---- C:\Windows\system32\authz.dll
2014-07-01 18:02:44 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Usb.dll
2014-07-01 18:02:44 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-07-01 18:02:43 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-07-01 18:02:43 ----A---- C:\Windows\system32\fdprint.dll
2014-07-01 18:02:42 ----A---- C:\Windows\system32\SyncCenter.dll
2014-07-01 18:02:42 ----A---- C:\Windows\system32\pcsvDevice.dll
2014-07-01 18:02:42 ----A---- C:\Windows\system32\conhost.exe
2014-07-01 18:02:41 ----A---- C:\Windows\system32\taskeng.exe
2014-07-01 18:02:41 ----A---- C:\Windows\system32\DscCore.dll
2014-07-01 18:02:40 ----A---- C:\Windows\SYSWOW64\fdprint.dll
2014-07-01 18:02:40 ----A---- C:\Windows\system32\vbscript.dll
2014-07-01 18:02:40 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2014-07-01 18:02:39 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2014-07-01 18:02:39 ----A---- C:\Windows\SYSWOW64\msvproc.dll
2014-07-01 18:02:39 ----A---- C:\Windows\system32\wlidcredprov.dll
2014-07-01 18:02:39 ----A---- C:\Windows\system32\wersvc.dll
2014-07-01 18:02:39 ----A---- C:\Windows\system32\wbiosrvc.dll
2014-07-01 18:02:39 ----A---- C:\Windows\system32\themeui.dll
2014-07-01 18:02:39 ----A---- C:\Windows\system32\rdbui.dll
2014-07-01 18:02:38 ----A---- C:\Windows\system32\sqmapi.dll
2014-07-01 18:02:38 ----A---- C:\Windows\system32\mdmregistration.dll
2014-07-01 18:02:38 ----A---- C:\Windows\system32\drivers\agilevpn.sys
2014-07-01 18:02:37 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2014-07-01 18:02:37 ----A---- C:\Windows\SYSWOW64\ncryptsslp.dll
2014-07-01 18:02:37 ----A---- C:\Windows\SYSWOW64\DismApi.dll
2014-07-01 18:02:37 ----A---- C:\Windows\system32\wbengine.exe
2014-07-01 18:02:37 ----A---- C:\Windows\system32\rdpcore.dll
2014-07-01 18:02:36 ----A---- C:\Windows\SYSWOW64\WSClient.dll
2014-07-01 18:02:36 ----A---- C:\Windows\SYSWOW64\themeui.dll
2014-07-01 18:02:36 ----A---- C:\Windows\SYSWOW64\MrmIndexer.dll
2014-07-01 18:02:36 ----A---- C:\Windows\system32\ncryptsslp.dll
2014-07-01 18:02:35 ----A---- C:\Windows\system32\SndVol.exe
2014-07-01 18:02:34 ----A---- C:\Windows\SYSWOW64\Dism.exe
2014-07-01 18:02:34 ----A---- C:\Windows\system32\Windows.Networking.Connectivity.dll
2014-07-01 18:02:34 ----A---- C:\Windows\system32\WerFault.exe
2014-07-01 18:02:34 ----A---- C:\Windows\system32\DscCoreConfProv.dll
2014-07-01 18:02:33 ----A---- C:\Windows\system32\sti.dll
2014-07-01 18:02:33 ----A---- C:\Windows\system32\SkyDriveShell.dll
2014-07-01 18:02:33 ----A---- C:\Windows\system32\oleaut32.dll
2014-07-01 18:02:32 ----A---- C:\Windows\system32\sppc.dll
2014-07-01 18:02:32 ----A---- C:\Windows\system32\eapp3hst.dll
2014-07-01 18:02:31 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2014-07-01 18:02:31 ----A---- C:\Windows\SYSWOW64\InputSwitch.dll
2014-07-01 18:02:31 ----A---- C:\Windows\SYSWOW64\AppxPackaging.dll
2014-07-01 18:02:31 ----A---- C:\Windows\system32\msieftp.dll
2014-07-01 18:02:31 ----A---- C:\Windows\system32\msctfuimanager.dll
2014-07-01 18:02:31 ----A---- C:\Windows\system32\drivers\SerCx2.sys
2014-07-01 18:02:31 ----A---- C:\Windows\system32\bcrypt.dll
2014-07-01 18:02:27 ----A---- C:\Windows\system32\pcasvc.dll
2014-07-01 18:02:27 ----A---- C:\Windows\system32\msched.dll
2014-07-01 18:02:27 ----A---- C:\Windows\system32\CryptoWinRT.dll
2014-07-01 18:02:27 ----A---- C:\Windows\system32\aepdu.dll
2014-07-01 18:02:26 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2014-07-01 18:02:26 ----A---- C:\Windows\system32\PkgMgr.exe
2014-07-01 18:02:26 ----A---- C:\Windows\system32\kd_02_8086.dll
2014-07-01 18:02:25 ----A---- C:\Windows\SYSWOW64\sppc.dll
2014-07-01 18:02:25 ----A---- C:\Windows\system32\wwanmm.dll
2014-07-01 18:02:25 ----A---- C:\Windows\system32\WSClient.dll
2014-07-01 18:02:25 ----A---- C:\Windows\system32\WLanConn.dll
2014-07-01 18:02:25 ----A---- C:\Windows\system32\wimserv.exe
2014-07-01 18:02:25 ----A---- C:\Windows\system32\drivers\rdbss.sys
2014-07-01 18:02:25 ----A---- C:\Windows\system32\dhcpcore.dll
2014-07-01 18:02:25 ----A---- C:\Windows\system32\ci.dll
2014-07-01 18:02:24 ----A---- C:\Windows\SYSWOW64\VAN.dll
2014-07-01 18:02:24 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2014-07-01 18:02:24 ----A---- C:\Windows\SYSWOW64\rastls.dll
2014-07-01 18:02:24 ----A---- C:\Windows\SYSWOW64\osk.exe
2014-07-01 18:02:24 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2014-07-01 18:02:24 ----A---- C:\Windows\system32\wscinterop.dll
2014-07-01 18:02:24 ----A---- C:\Windows\system32\microsoft-windows-system-events.dll
2014-07-01 18:02:23 ----A---- C:\Windows\SYSWOW64\WerFault.exe
2014-07-01 18:02:23 ----A---- C:\Windows\system32\PurchaseWindowsLicense.dll
2014-07-01 18:02:23 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-07-01 18:02:22 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2014-07-01 18:02:22 ----A---- C:\Windows\SYSWOW64\SkyDriveShell.dll
2014-07-01 18:02:22 ----A---- C:\Windows\system32\gameux.dll
2014-07-01 18:02:22 ----A---- C:\Windows\system32\DeviceCenter.dll
2014-07-01 18:02:21 ----A---- C:\Windows\SYSWOW64\WlanMM.dll
2014-07-01 18:02:21 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2014-07-01 18:02:21 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeui.exe
2014-07-01 18:02:21 ----A---- C:\Windows\system32\fhcfg.dll
2014-07-01 18:02:21 ----A---- C:\Windows\system32\dwm.exe
2014-07-01 18:02:20 ----A---- C:\Windows\SYSWOW64\WinTypes.dll
2014-07-01 18:02:20 ----A---- C:\Windows\SYSWOW64\msctfuimanager.dll
2014-07-01 18:02:20 ----A---- C:\Windows\system32\winsrv.dll
2014-07-01 18:02:20 ----A---- C:\Windows\system32\windows.immersiveshell.serviceprovider.dll
2014-07-01 18:02:20 ----A---- C:\Windows\system32\taskhost.exe
2014-07-01 18:02:19 ----A---- C:\Windows\SYSWOW64\CryptoWinRT.dll
2014-07-01 18:02:19 ----A---- C:\Windows\system32\rasgcw.dll
2014-07-01 18:02:19 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-07-01 18:02:19 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2014-07-01 18:02:19 ----A---- C:\Windows\system32\drivers\luafv.sys
2014-07-01 18:02:18 ----A---- C:\Windows\SYSWOW64\authz.dll
2014-07-01 18:02:18 ----A---- C:\Windows\system32\Faultrep.dll
2014-07-01 18:02:18 ----A---- C:\Windows\system32\dmdskmgr.dll
2014-07-01 18:02:17 ----A---- C:\Windows\system32\wscapi.dll
2014-07-01 18:02:17 ----A---- C:\Windows\system32\wermgr.exe
2014-07-01 18:02:16 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2014-07-01 18:02:16 ----A---- C:\Windows\system32\srchadmin.dll
2014-07-01 18:02:15 ----A---- C:\Windows\system32\usercpl.dll
2014-07-01 18:02:15 ----A---- C:\Windows\system32\drivers\sdbus.sys
2014-07-01 18:02:14 ----A---- C:\Windows\SYSWOW64\ninput.dll
2014-07-01 18:02:14 ----A---- C:\Windows\SYSWOW64\mdmregistration.dll
2014-07-01 18:02:14 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2014-07-01 18:02:10 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-07-01 18:02:10 ----A---- C:\Windows\system32\wsqmcons.exe
2014-07-01 18:02:10 ----A---- C:\Windows\system32\smss.exe
2014-07-01 18:02:10 ----A---- C:\Windows\system32\BioCredProv.dll
2014-07-01 18:02:09 ----A---- C:\Windows\SYSWOW64\sti.dll
2014-07-01 18:02:09 ----A---- C:\Windows\system32\wwanconn.dll
2014-07-01 18:02:09 ----A---- C:\Windows\system32\vmrdvcore.dll
2014-07-01 18:02:09 ----A---- C:\Windows\system32\systemreset.exe
2014-07-01 18:02:09 ----A---- C:\Windows\system32\SndVolSSO.dll
2014-07-01 18:02:09 ----A---- C:\Windows\system32\RASMM.dll
2014-07-01 18:02:09 ----A---- C:\Windows\system32\ipnathlp.dll
2014-07-01 18:02:09 ----A---- C:\Windows\system32\imm32.dll
2014-07-01 18:02:09 ----A---- C:\Windows\system32\AltTab.dll
2014-07-01 18:02:08 ----A---- C:\Windows\system32\vdsbas.dll
2014-07-01 18:02:08 ----A---- C:\Windows\system32\rastls.dll
2014-07-01 18:02:08 ----A---- C:\Windows\system32\PlayToManager.dll
2014-07-01 18:02:08 ----A---- C:\Windows\system32\fhcpl.dll
2014-07-01 18:02:07 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2014-07-01 18:02:07 ----A---- C:\Windows\system32\miutils.dll
2014-07-01 18:02:06 ----A---- C:\Windows\system32\netid.dll
2014-07-01 18:02:06 ----A---- C:\Windows\system32\fsutil.exe
2014-07-01 18:02:05 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2014-07-01 18:02:05 ----A---- C:\Windows\system32\taskhostex.exe
2014-07-01 18:02:05 ----A---- C:\Windows\system32\sharemediacpl.dll
2014-07-01 18:02:05 ----A---- C:\Windows\system32\SensorsClassExtension.dll
2014-07-01 18:02:05 ----A---- C:\Windows\system32\drivers\msgpioclx.sys
2014-07-01 18:02:05 ----A---- C:\Windows\system32\das.dll
2014-07-01 18:02:04 ----A---- C:\Windows\system32\WSDApi.dll
2014-07-01 18:02:04 ----A---- C:\Windows\system32\SearchFilterHost.exe
2014-07-01 18:02:04 ----A---- C:\Windows\system32\sdclt.exe
2014-07-01 18:02:04 ----A---- C:\Windows\system32\printui.dll
2014-07-01 18:02:04 ----A---- C:\Windows\system32\CloudNotifications.exe
2014-07-01 18:02:03 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2014-07-01 18:02:03 ----A---- C:\Windows\SYSWOW64\CloudNotifications.exe
2014-07-01 18:02:03 ----A---- C:\Windows\system32\Windows.Devices.Bluetooth.dll
2014-07-01 18:02:03 ----A---- C:\Windows\system32\UserLanguagesCpl.dll
2014-07-01 18:02:03 ----A---- C:\Windows\system32\imagehlp.dll
Logfile of random's system information tool 1.10 (written by random/random)
Run by Admin at 2014-07-05 13:33:29
Microsoft Windows 8.1
System drive C: has 381 GB (84%) free of 454 GB
Total RAM: 6109 MB (47% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:33:43, on 5. 7. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
C:\Program Files (x86)\Origin\Origin.exe
C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Admin.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://localoem.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://localoem.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: CrossriderApp0048292 - {11111111-1111-1111-1111-110411821192} - C:\Program Files (x86)\Sense\Sense-bho.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: YTAHelperBHO - {FCE3FA8B-BA81-467C-81D8-E43C00D1BC71} - C:\ProgramData\YTAHelper\YTAHelper.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
O4 - HKCU\..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-21-987214395-1790064606-4071519516-1005\..\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe" (User 'simulatory')
O4 - HKUS\S-1-5-21-987214395-1790064606-4071519516-1005\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun (User 'simulatory')
O4 - HKUS\S-1-5-21-987214395-1790064606-4071519516-1005\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun (User 'simulatory')
O4 - HKUS\S-1-5-21-987214395-1790064606-4071519516-1005\..\Run: [cz.seznam.software.autoupdate] "C:\Users\simulatory\AppData\Roaming\Seznam.cz\szninstall.exe" -c (User 'simulatory')
O4 - HKUS\S-1-5-21-987214395-1790064606-4071519516-1005\..\Run: [cz.seznam.software.szndesktop] "C:\Users\simulatory\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q (User 'simulatory')
O4 - HKUS\S-1-5-21-987214395-1790064606-4071519516-1005\..\Run: [SPDriver] .\JSDriver\1.37.1.189\jsdrv.exe (User 'simulatory')
O4 - HKUS\S-1-5-21-987214395-1790064606-4071519516-1005\..\Run: [GoobzoYouTubeAccelerator] "C:\Program Files (x86)\YouTube Accelerator\YouTubeAccelerator.exe" /startup (User 'simulatory')
O4 - Global Startup: TP-LINK Wireless Configuration Utility.lnk = C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O20 - AppInit_DLLs:
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @oem4.inf,%ViaKaraokeSrv.SvcDesc%;VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\Windows\system32\viakaraokesrv.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: YouTubeAcceleratorService - GOOBZO - C:\PROGRA~2\YOUTUB~1\YouTubeAcceleratorService.exe
--
End of file - 10228 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
"dwm.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
dashost.exe {3ff36349-0e51-4726-aaf5f3594b7c342a}
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe"
C:\Windows\system32\viakaraokesrv.exe
C:\PROGRA~2\YOUTUB~1\YouTubeAcceleratorService.exe -start -scm
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-32eafa6d-e8ad-443a-9565-95a78bd0e77a -SystemEventPortName:HostProcess-6a821f54-2822-460a-8d04-c564f763d8b8 -IoCancelEventPortName:HostProcess-3079529a-75b7-407f-925b-0afcf64ce16b -NonStateChangingEventPortName:HostProcess-09ecf6a8-1960-4130-b774-c64f6d15622b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:2fa39de5-cff3-4062-ade2-d3e6874e99ab -DeviceGroupId:WpdFsGroup
taskhostex.exe
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe" /TUStart /pid:1784
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
HydraDM64.exe -h:131642 "Maximalizovat na celou plochu" "Maximalizovat k rohům okna" "Obnovit pracovní plochu"
szndesktop.exe default start
"C:\Users\simulatory\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\YouTube Accelerator\YouTubeAccelerator.exe" /startup
"C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe" -nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17044_x64__8wekyb3d8bbwe\glcnd.exe" -ServerName:Microsoft.Reader.AppXtszmc7avrx02s7n8gch63tzwg517wd9k.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\System32\WWAHost.exe" -ServerName:Windows.Store
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2648.0.1474336019\1480447392" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,15 --gpu-vendor-id=0x1002 --gpu-device-id=0x6658 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.251.9001.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.1.1241488402\247623974" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.2.1202064468\1613496247" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.3.1383643214\2111773412" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.4.1850733244\1602246824" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.5.516792420\1245565214" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.7.2105052754\694553666" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.8.340774573\1465020235" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.9.147131345\356654131" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.10.351307697\686000961" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="2648.11.1700085933\1388646688" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.13.687594785\682546794" /prefetch:673131151
winlogon.exe
"dwm.exe"
atieclxx
taskhostex.exe
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe" /TUStart /pid:1784
C:\Windows\Explorer.EXE
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
HydraDM64.exe -h:131634 "Maximalizovat na celou plochu" "Maximalizovat k rohům okna" "Obnovit pracovní plochu"
"C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
"C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe" -nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/Bootstrap/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=2b:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_61/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="2648.17.1412478907\1749839998" /prefetch:673131151
"D:\OMSI\Omsi.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7520.0.533429890\785011504" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,15 --gpu-vendor-id=0x1002 --gpu-device-id=0x6658 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.251.9001.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.2.1169423238\1949132212" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="7520.4.1022022072\1696560688" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.15.805732895\49082222" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.17.1196639470\1115060543" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.18.115991134\563830397" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.19.90926488\360098347" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.21.1852372473\856254974" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.23.1901440146\92135880" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.26.1281930896\1969925194" /prefetch:673131151
C:\Windows\system32\DllHost.exe /Processid:{3AD05575-8857-4850-9277-11B85BDB8E09}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Disabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/cd=3:LocalPredictor=Disabled/SPDY/SpdyEnabled/SettingsEnforcement/enforce_always_with_extensions/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_66/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7520.28.1959605385\991179521" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe12_ Global\UsGthrCtrlFltPipeMssGthrPipe12 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 572 576 584 65536 580
"C:\Users\Admin\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-1.job - C:\Program Files (x86)\Sense\Sense-codedownloader.exe /zigXwvlU /ueHWb=task /HrAWZn='Sense' /uvJwwahMe=48292 /TwVjm='000805' /ppUWRx='0' /OcZPIqwe='eyJkYXRhIjp7ImRhdGUiOiJFNzJ3c210eWNqMQ==PIXGUID(aff=smtycj&sub=1&product=yta)%%,' /AmnRAmQwp=5CC8AF6117D642F1AFEAD8C492215830IE /smfAocSr=8022cbdce1dbb7899006fd1cf9456101 /QMRjhLBG=1_34_07_01 /vTKDBU=1.34.7.1 /KFNlIRBW=1404315659 /rdQgp=http://stats.democlientnet.com /pHNcin=http://errors.democlientnet.com /fvKPgdm=http://js.democlientnet.com /hwrOTohn=ch /uIzbGn='Sense' /HUmUMbf=http://js.clientdemocloud.com /SdwxUC /IghQfo='{"asw":[0, 8388609, 8192]}' /hpnvwI='http://update.democlientnet.com/ie_code ... pdate.json' /ueHWb='task' /XEzpmOQW=''
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-11.job - C:\Program Files (x86)\Sense\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-11.exe /ZxVCZJ=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
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-2.job - C:\Program Files (x86)\Sense\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-2.exe /DyZIFsY /HrAWZn='Sense' /uvJwwahMe=48292 /TwVjm='000805' /ppUWRx='0' /OcZPIqwe='eyJkYXRhIjp7ImRhdGUiOiJFNzJ3c210eWNqMQ==PIXGUID(aff=smtycj&sub=1&product=yta)%%,' /AmnRAmQwp=5CC8AF6117D642F1AFEAD8C492215830IE /smfAocSr=8022cbdce1dbb7899006fd1cf9456101 /QMRjhLBG=1_34_07_01 /KFNlIRBW=1404315659 /rdQgp=http://stats.democlientnet.com /pHNcin=http://errors.democlientnet.com /RAVNSFSVX=11111111-1111-1111-1111-110411821192 /hwrOTohn=ch /SdwxUC /hpnvwI='http://update.democlientnet.com/ie_enab ... pdate.json' /ueHWb='task' /XEzpmOQW=''
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-4.job - C:\Program Files (x86)\Sense\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-4.exe /OeylnCz /HrAWZn='Sense' /XNKaQah='C:\Program Files (x86)\Sense\48292.xpi' /uvJwwahMe=48292 /TwVjm='000805' /ppUWRx='0' /OcZPIqwe='eyJkYXRhIjp7ImRhdGUiOiJFNzJ3c210eWNqMQ==PIXGUID(aff=smtycj&sub=1&product=yta)%%,' /AmnRAmQwp=5CC8AF6117D642F1AFEAD8C492215830IE /smfAocSr=8022cbdce1dbb7899006fd1cf9456101 /QMRjhLBG=1_34_07_01 /vTKDBU=1.34.7.1 /KFNlIRBW=1404315659 /rdQgp=http://stats.democlientnet.com /pHNcin=http://errors.democlientnet.com /AtASe=300 /tmDVVvTR=143f44cf-d99c-4e45-8cd9-ef929de77aa8@bdbf6038-0097-480c-8d8e-fc48e28131a8.com /TgbRDhpDG=0.94 /ogbHecbjv=a143f44cfd99c4e458cd9ef929de77aa8bdbf60380097480c8d8efc48e28131a8com48292 /tfUuUrB=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /48292.rdf /uwHbIW='Sense' /SNhnToP='.' /iyvRcbHwP='Object Browser' /hwrOTohn=ch /IghQfo='{"asw":[0, 8388609, 8192]}' /SdwxUC /MDpWmdncI /OJPwHTgS /hpnvwI='http://update.democlientnet.com/ff_agen ... pdate.json' /ueHWb='task' /XEzpmOQW=''
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-5.job - C:\Program Files (x86)\Sense\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-5.exe /DsGWxDC /HrAWZn='Sense' /uvJwwahMe=48292 /TwVjm='000805' /ppUWRx='0' /OcZPIqwe='eyJkYXRhIjp7ImRhdGUiOiJFNzJ3c210eWNqMQ==PIXGUID(aff=smtycj&sub=1&product=yta)%%,' /AmnRAmQwp=5CC8AF6117D642F1AFEAD8C492215830IE /smfAocSr=8022cbdce1dbb7899006fd1cf9456101 /QMRjhLBG=1_34_07_01 /KFNlIRBW=1404315659 /rdQgp=http://stats.democlientnet.com /pHNcin=http://errors.democlientnet.com /kKikSDII=http://ipgeoapi.com/ /QlvlLa=http://update.democlientnet.com /BjJhTe=2 /AJrBaXO=http://logs.democlientnet.com /hpnvwI='http://update.democlientnet.com/updater ... pdate.json' /ueHWb='task' /XEzpmOQW=''
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-5_user.job - C:\Program Files (x86)\Sense\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-5.exe /DsGWxDC /HrAWZn='Sense' /uvJwwahMe=48292 /TwVjm='000805' /ppUWRx='0' /OcZPIqwe='eyJkYXRhIjp7ImRhdGUiOiJFNzJ3c210eWNqMQ==PIXGUID(aff=smtycj&sub=1&product=yta)%%,' /AmnRAmQwp=5CC8AF6117D642F1AFEAD8C492215830IE /smfAocSr=8022cbdce1dbb7899006fd1cf9456101 /QMRjhLBG=1_34_07_01 /KFNlIRBW=1404315659 /rdQgp=http://stats.democlientnet.com /pHNcin=http://errors.democlientnet.com /kKikSDII=http://ipgeoapi.com/ /QlvlLa=http://update.democlientnet.com /BjJhTe=2 /AJrBaXO=http://logs.democlientnet.com /hpnvwI='http://update.democlientnet.com/updater ... pdate.json' /mWjUXdNvj /ueHWb='task' /XEzpmOQW=''
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-6.job - C:\Program Files (x86)\Sense\Sense-novainstaller.exe /cHsTSwO /HrAWZn='Sense' /uvJwwahMe=48292 /TwVjm='000805' /ppUWRx='0' /OcZPIqwe='eyJkYXRhIjp7ImRhdGUiOiJFNzJ3c210eWNqMQ==PIXGUID(aff=smtycj&sub=1&product=yta)%%,' /AmnRAmQwp=5CC8AF6117D642F1AFEAD8C492215830IE /smfAocSr=8022cbdce1dbb7899006fd1cf9456101 /QMRjhLBG=1_34_07_01 /vTKDBU=1.34.7.1 /KFNlIRBW=1404315659 /rdQgp=http://stats.democlientnet.com /pHNcin=http://errors.democlientnet.com /fvKPgdm=http://js.democlientnet.com /hwrOTohn=ch /YPOgrxFtO /uIzbGn=Sense /jETuHOGYQ='nova' /HUmUMbf=http://js.clientdemocloud.com /IghQfo='{"asw":[0, 8388609, 8192]}' /ueHWb=task /hpnvwI='http://update.democlientnet.com/novacod ... pdate.json' /ueHWb='task' /XEzpmOQW=''
C:\Windows\tasks\1b0d6781-ba18-4f14-bfb0-5107d267b8fc-7.job - C:\Program Files (x86)\Sense\Sense-nova.exe /HrAWZn='Sense' /uvJwwahMe=48292 /TwVjm='000805' /ppUWRx='0' /OcZPIqwe='eyJkYXRhIjp7ImRhdGUiOiJFNzJ3c210eWNqMQ==PIXGUID(aff=smtycj&sub=1&product=yta)%%,' /AmnRAmQwp=5CC8AF6117D642F1AFEAD8C492215830IE /smfAocSr=8022cbdce1dbb7899006fd1cf9456101 /QMRjhLBG=1_34_07_01 /vTKDBU=1.34.7.1 /KFNlIRBW=1404315659 /rdQgp=http://stats.democlientnet.com /pHNcin=http://errors.democlientnet.com /fvKPgdm=http://js.democlientnet.com /hwrOTohn=ch /YPOgrxFtO /uIzbGn=Sense /jETuHOGYQ='nova' /HUmUMbf=http://js.clientdemocloud.com /IghQfo='{"asw":[0, 8388609, 8192]}' /hpnvwI='http://update.democlientnet.com/novarun ... pdate.json' /ueHWb='task' /XEzpmOQW=''
C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}]
Sense - C:\Program Files (x86)\Sense\Sense-bho64.dll [2014-07-02 869888]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-03-21 6270336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}]
YTAHelper - C:\ProgramData\YTAHelper\YTAHelper64.dll [2014-06-15 522600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}]
Sense - C:\Program Files (x86)\Sense\Sense-bho.dll [2014-07-02 639488]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-03-21 4502400]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}]
YTAHelper - C:\ProgramData\YTAHelper\YTAHelper.dll [2014-06-15 434024]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-06-11 12503184]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"HydraVisionDesktopManager"=C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [2013-12-20 389120]
"EADM"=C:\Program Files (x86)\Origin\Origin.exe [2014-07-01 3595608]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2012-06-08 5123216]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-04-23 766688]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
TP-LINK Wireless Configuration Utility.lnk - C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-07-05 439296]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-07-05 13:33:29 ----D---- C:\rsit
2014-07-05 13:33:29 ----D---- C:\Program Files\trend micro
2014-07-05 13:27:21 ----D---- C:\Program Files (x86)\Electronic Arts
2014-07-05 13:27:19 ----D---- C:\Users\Admin\AppData\Roaming\Macromedia
2014-07-05 13:24:39 ----D---- C:\Users\Admin\AppData\Roaming\DAEMON Tools Lite
2014-07-05 13:18:41 ----D---- C:\Users\Admin\AppData\Roaming\WinRAR
2014-07-05 13:18:24 ----D---- C:\Program Files\WinRAR
2014-07-04 20:31:27 ----D---- C:\Users\Admin\AppData\Roaming\uTorrent
2014-07-04 20:31:11 ----D---- C:\ProgramData\RogueKiller
2014-07-04 20:28:09 ----D---- C:\Users\Admin\AppData\Roaming\Seznam.cz
2014-07-04 20:28:06 ----D---- C:\Users\Admin\AppData\Roaming\TP-LINK
2014-07-02 18:41:38 ----A---- C:\Windows\system32\drivers\{5906ab0f-5417-45a6-a4f5-8bc38ae936d5}Gw64.sys
2014-07-02 17:41:29 ----D---- C:\Program Files (x86)\trolatunt
2014-07-02 17:41:08 ----D---- C:\Program Files (x86)\Sense
2014-07-02 17:40:17 ----D---- C:\ProgramData\8f7c0396b1bb2d9a
2014-07-02 17:40:16 ----D---- C:\ProgramData\CostMin
2014-07-02 17:40:15 ----D---- C:\Program Files (x86)\CostMin
2014-07-02 17:39:09 ----D---- C:\ProgramData\YTAHelper
2014-07-02 17:39:08 ----D---- C:\Program Files (x86)\YTAHelper
2014-07-02 17:39:05 ----AD---- C:\ProgramData\TEMP
2014-07-02 17:38:50 ----D---- C:\Program Files (x86)\globalUpdate
2014-07-02 17:38:49 ----D---- C:\Program Files (x86)\YouTube Accelerator
2014-07-02 17:38:18 ----D---- C:\Program Files (x86)\Seznam.cz
2014-07-02 17:37:53 ----A---- C:\Windows\unins000.exe
2014-07-02 17:37:53 ----A---- C:\Windows\unins000.dat
2014-07-01 22:03:51 ----RD---- C:\Program Files (x86)\Skype
2014-07-01 22:03:49 ----D---- C:\ProgramData\Skype
2014-07-01 22:03:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-07-01 22:03:08 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-07-01 22:03:08 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-07-01 22:03:08 ----A---- C:\Windows\system32\iertutil.dll
2014-07-01 22:03:07 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-07-01 22:03:07 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-07-01 22:03:07 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-07-01 22:03:07 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-07-01 22:03:06 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-07-01 22:03:06 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-07-01 22:03:06 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-07-01 22:03:06 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-07-01 22:03:05 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-07-01 22:03:05 ----A---- C:\Windows\system32\iernonce.dll
2014-07-01 22:03:04 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-07-01 22:03:04 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-07-01 22:03:04 ----A---- C:\Windows\system32\urlmon.dll
2014-07-01 22:03:04 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-07-01 22:03:04 ----A---- C:\Windows\system32\dxtmsft.dll
2014-07-01 22:03:03 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-07-01 22:03:03 ----A---- C:\Windows\system32\msfeeds.dll
2014-07-01 22:03:02 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-07-01 22:03:02 ----A---- C:\Windows\system32\iesetup.dll
2014-07-01 22:03:02 ----A---- C:\Windows\system32\ie4uinit.exe
2014-07-01 22:03:01 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-07-01 22:03:01 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-07-01 22:03:01 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-07-01 22:03:01 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-07-01 22:03:00 ----A---- C:\Windows\system32\mshtmled.dll
2014-07-01 22:03:00 ----A---- C:\Windows\system32\ieUnatt.exe
2014-07-01 22:03:00 ----A---- C:\Windows\system32\ieframe.dll
2014-07-01 22:03:00 ----A---- C:\Windows\system32\dxtrans.dll
2014-07-01 22:02:59 ----A---- C:\Windows\system32\jscript9diag.dll
2014-07-01 22:02:59 ----A---- C:\Windows\system32\jscript9.dll
2014-07-01 22:02:59 ----A---- C:\Windows\system32\ieapfltr.dll
2014-07-01 22:02:58 ----A---- C:\Windows\system32\wininet.dll
2014-07-01 22:02:58 ----A---- C:\Windows\system32\msrating.dll
2014-07-01 22:02:58 ----A---- C:\Windows\system32\jsproxy.dll
2014-07-01 22:02:57 ----A---- C:\Windows\system32\mshtml.dll
2014-07-01 22:02:13 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-07-01 22:02:13 ----A---- C:\Windows\system32\msxml3.dll
2014-07-01 22:02:09 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-07-01 22:02:08 ----A---- C:\Windows\SYSWOW64\wusa.exe
2014-07-01 22:02:08 ----A---- C:\Windows\system32\wusa.exe
2014-07-01 22:02:08 ----A---- C:\Windows\system32\drivers\ks.sys
2014-07-01 22:02:08 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-07-01 22:02:07 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2014-07-01 22:02:07 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-01 22:02:07 ----A---- C:\Windows\system32\WSShared.dll
2014-07-01 22:02:07 ----A---- C:\Windows\system32\WSReset.exe
2014-07-01 22:02:07 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-01 22:02:03 ----A---- C:\Windows\system32\drivers\WdFilter.sys
2014-07-01 22:02:02 ----A---- C:\Windows\system32\drivers\WdNisDrv.sys
2014-07-01 22:02:00 ----A---- C:\Windows\system32\drivers\WdBoot.sys
2014-07-01 22:01:55 ----A---- C:\Windows\system32\wuaueng.dll
2014-07-01 22:01:54 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-07-01 22:01:54 ----A---- C:\Windows\system32\wuapi.dll
2014-07-01 22:01:54 ----A---- C:\Windows\system32\ubpm.dll
2014-07-01 22:01:54 ----A---- C:\Windows\system32\twinapi.appcore.dll
2014-07-01 22:01:53 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-07-01 22:01:53 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-07-01 22:01:53 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-07-01 22:01:53 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-07-01 22:01:53 ----A---- C:\Windows\SYSWOW64\twinui.appcore.dll
2014-07-01 22:01:53 ----A---- C:\Windows\SYSWOW64\twinapi.appcore.dll
2014-07-01 22:01:53 ----A---- C:\Windows\system32\wuwebv.dll
2014-07-01 22:01:53 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2014-07-01 22:01:53 ----A---- C:\Windows\system32\wups.dll
2014-07-01 22:01:53 ----A---- C:\Windows\system32\wudriver.dll
2014-07-01 22:01:53 ----A---- C:\Windows\system32\wucltux.dll
2014-07-01 22:01:53 ----A---- C:\Windows\system32\wuauclt.exe
2014-07-01 22:01:53 ----A---- C:\Windows\system32\wuapp.exe
2014-07-01 22:01:53 ----A---- C:\Windows\system32\twinui.appcore.dll
2014-07-01 22:01:53 ----A---- C:\Windows\system32\storewuauth.dll
2014-07-01 22:01:48 ----A---- C:\Windows\SYSWOW64\mrt100.dll
2014-07-01 22:01:48 ----A---- C:\Windows\SYSWOW64\mrt_map.dll
2014-07-01 22:01:48 ----A---- C:\Windows\system32\rdpcorets.dll
2014-07-01 22:01:48 ----A---- C:\Windows\system32\mrt100.dll
2014-07-01 22:01:48 ----A---- C:\Windows\system32\mrt_map.dll
2014-07-01 22:01:44 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2014-07-01 22:01:44 ----A---- C:\Windows\system32\shell32.dll
2014-07-01 22:01:43 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2014-07-01 22:01:40 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2014-07-01 22:01:39 ----A---- C:\Windows\system32\Windows.UI.Search.dll
2014-07-01 22:01:37 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2014-07-01 22:01:35 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-07-01 22:01:34 ----A---- C:\Windows\system32\SyncEngine.dll
2014-07-01 22:01:33 ----A---- C:\Windows\system32\twinui.dll
2014-07-01 22:01:33 ----A---- C:\Windows\system32\gpsvc.dll
2014-07-01 22:01:32 ----A---- C:\Windows\SYSWOW64\Windows.UI.Search.dll
2014-07-01 22:01:32 ----A---- C:\Windows\system32\win32k.sys
2014-07-01 22:01:32 ----A---- C:\Windows\system32\mfcore.dll
2014-07-01 22:01:32 ----A---- C:\Windows\system32\d3d9.dll
2014-07-01 22:01:31 ----A---- C:\Windows\SYSWOW64\twinui.dll
2014-07-01 22:01:31 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2014-07-01 22:01:31 ----A---- C:\Windows\system32\SettingsHandlers.dll
2014-07-01 22:01:31 ----A---- C:\Windows\system32\mstscax.dll
2014-07-01 22:01:31 ----A---- C:\Windows\system32\mfmpeg2srcsnk.dll
2014-07-01 22:01:30 ----A---- C:\Windows\SYSWOW64\mfmpeg2srcsnk.dll
2014-07-01 22:01:30 ----A---- C:\Windows\SYSWOW64\mfcore.dll
2014-07-01 22:01:30 ----A---- C:\Windows\system32\workfolderssvc.dll
2014-07-01 22:01:30 ----A---- C:\Windows\system32\wmpmde.dll
2014-07-01 22:01:30 ----A---- C:\Windows\system32\winmde.dll
2014-07-01 22:01:29 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-07-01 22:01:29 ----A---- C:\Windows\system32\Windows.Media.Streaming.dll
2014-07-01 22:01:29 ----A---- C:\Windows\system32\services.exe
2014-07-01 22:01:29 ----A---- C:\Windows\system32\drivers\afd.sys
2014-07-01 22:01:28 ----A---- C:\Windows\system32\SearchFolder.dll
2014-07-01 22:01:28 ----A---- C:\Windows\system32\MFMediaEngine.dll
2014-07-01 22:01:28 ----A---- C:\Windows\system32\localspl.dll
2014-07-01 22:01:28 ----A---- C:\Windows\system32\AUDIOKSE.dll
2014-07-01 22:01:27 ----A---- C:\Windows\SYSWOW64\winmde.dll
2014-07-01 22:01:27 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2014-07-01 22:01:27 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2014-07-01 22:01:27 ----A---- C:\Windows\system32\srvsvc.dll
2014-07-01 22:01:27 ----A---- C:\Windows\system32\mfsvr.dll
2014-07-01 22:01:27 ----A---- C:\Windows\system32\lsasrv.dll
2014-07-01 22:01:27 ----A---- C:\Windows\system32\drivers\volsnap.sys
2014-07-01 22:01:27 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-07-01 22:01:27 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2014-07-01 22:01:26 ----A---- C:\Windows\SYSWOW64\Windows.Media.Streaming.dll
2014-07-01 22:01:26 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2014-07-01 22:01:26 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-07-01 22:01:26 ----A---- C:\Windows\system32\Windows.Media.dll
2014-07-01 22:01:26 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-07-01 22:01:25 ----A---- C:\Windows\SYSWOW64\mfsvr.dll
2014-07-01 22:01:25 ----A---- C:\Windows\SYSWOW64\dwmapi.dll
2014-07-01 22:01:25 ----A---- C:\Windows\system32\win32spl.dll
2014-07-01 22:01:25 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe
2014-07-01 22:01:25 ----A---- C:\Windows\system32\GeofenceMonitorService.dll
2014-07-01 22:01:25 ----A---- C:\Windows\system32\dwmapi.dll
2014-07-01 22:01:25 ----A---- C:\Windows\system32\drivers\nwifi.sys
2014-07-01 22:01:25 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2014-07-01 22:01:25 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2014-07-01 22:01:25 ----A---- C:\Windows\system32\defragsvc.dll
2014-07-01 22:01:25 ----A---- C:\Windows\system32\audiosrv.dll
2014-07-01 22:01:24 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-07-01 22:01:24 ----A---- C:\Windows\SYSWOW64\Windows.Media.dll
2014-07-01 22:01:24 ----A---- C:\Windows\SYSWOW64\MFCaptureEngine.dll
2014-07-01 22:01:24 ----A---- C:\Windows\SYSWOW64\GeofenceMonitorService.dll
2014-07-01 22:01:24 ----A---- C:\Windows\system32\swprv.dll
2014-07-01 22:01:24 ----A---- C:\Windows\system32\resutils.dll
2014-07-01 22:01:24 ----A---- C:\Windows\system32\ploptin.dll
2014-07-01 22:01:24 ----A---- C:\Windows\system32\MFCaptureEngine.dll
2014-07-01 22:01:24 ----A---- C:\Windows\system32\MDEServer.exe
2014-07-01 22:01:24 ----A---- C:\Windows\system32\drivers\srvnet.sys
2014-07-01 22:01:24 ----A---- C:\Windows\system32\drivers\fvevol.sys
2014-07-01 22:01:24 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2014-07-01 22:01:23 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2014-07-01 22:01:23 ----A---- C:\Windows\SYSWOW64\MSVideoDSP.dll
2014-07-01 22:01:23 ----A---- C:\Windows\SYSWOW64\gpapi.dll
2014-07-01 22:01:23 ----A---- C:\Windows\system32\wscsvc.dll
2014-07-01 22:01:23 ----A---- C:\Windows\system32\VSSVC.exe
2014-07-01 22:01:23 ----A---- C:\Windows\system32\rpchttp.dll
2014-07-01 22:01:23 ----A---- C:\Windows\system32\rdpencom.dll
2014-07-01 22:01:23 ----A---- C:\Windows\system32\MSVideoDSP.dll
2014-07-01 22:01:23 ----A---- C:\Windows\system32\gpapi.dll
2014-07-01 22:01:23 ----A---- C:\Windows\system32\drivers\storport.sys
2014-07-01 22:01:23 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-07-01 22:01:22 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-07-01 22:01:22 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2014-07-01 22:01:22 ----A---- C:\Windows\SYSWOW64\propsys.dll
2014-07-01 22:01:22 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2014-07-01 22:01:22 ----A---- C:\Windows\SYSWOW64\mf.dll
2014-07-01 22:01:22 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-07-01 22:01:22 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\wintrust.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\propsys.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\mfps.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\mfplat.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\mf.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\energyprov.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\drivers\spaceport.sys
2014-07-01 22:01:22 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2014-07-01 22:01:22 ----A---- C:\Windows\system32\clusapi.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\AudioSes.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\AudioEng.dll
2014-07-01 22:01:22 ----A---- C:\Windows\system32\audiodg.exe
2014-07-01 22:01:21 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2014-07-01 22:01:21 ----A---- C:\Windows\SYSWOW64\resutils.dll
2014-07-01 22:01:21 ----A---- C:\Windows\SYSWOW64\mispace.dll
2014-07-01 22:01:21 ----A---- C:\Windows\SYSWOW64\d3d8thk.dll
2014-07-01 22:01:21 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\WorkFoldersShell.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\WorkfoldersControl.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\wlansvc.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\tlscsp.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\srcore.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\SkyDriveTelemetry.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\mispace.dll
2014-07-01 22:01:21 ----A---- C:\Windows\system32\mfpmp.exe
2014-07-01 22:01:21 ----A---- C:\Windows\system32\BootMenuUX.dll
2014-07-01 22:01:20 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2014-07-01 22:01:20 ----A---- C:\Windows\SYSWOW64\wlanhlp.dll
2014-07-01 22:01:20 ----A---- C:\Windows\SYSWOW64\wlanapi.dll
2014-07-01 22:01:20 ----A---- C:\Windows\SYSWOW64\srclient.dll
2014-07-01 22:01:20 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\wlansec.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\wlanmsm.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\wlanhlp.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\wlanapi.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\tsgqec.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\srclient.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\SkyDrive.exe
2014-07-01 22:01:20 ----A---- C:\Windows\system32\rstrui.exe
2014-07-01 22:01:20 ----A---- C:\Windows\system32\rdvidcrl.dll
2014-07-01 22:01:20 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2014-07-01 22:01:14 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-07-01 22:01:14 ----A---- C:\Windows\system32\gdi32.dll
2014-07-01 22:01:09 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2014-07-01 22:01:09 ----A---- C:\Windows\system32\DWrite.dll
2014-07-01 22:01:09 ----A---- C:\Windows\system32\drvinst.exe
2014-07-01 22:01:09 ----A---- C:\Windows\system32\drvcfg.exe
2014-07-01 22:01:08 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-07-01 22:01:08 ----A---- C:\Windows\system32\FntCache.dll
2014-07-01 22:00:38 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2014-07-01 22:00:38 ----A---- C:\Windows\system32\WpcWebSync.dll
2014-07-01 22:00:38 ----A---- C:\Windows\system32\WpcMon.exe
2014-07-01 22:00:38 ----A---- C:\Windows\system32\Wpc.dll
2014-07-01 22:00:37 ----A---- C:\Windows\system32\wpccpl.dll
2014-07-01 22:00:37 ----A---- C:\Windows\system32\drivers\wpcfltr.sys
2014-07-01 21:58:02 ----D---- C:\Program Files (x86)\TP-LINK
2014-07-01 21:57:50 ----A---- C:\Windows\system32\drivers\athw8x.sys
2014-07-01 21:57:50 ----A---- C:\Windows\system32\athw8x.sys
2014-07-01 21:57:11 ----D---- C:\ProgramData\TP-LINK
2014-07-01 21:55:00 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-07-01 21:50:47 ----RD---- C:\Windows\BrowserChoice
2014-07-01 18:05:11 ----A---- C:\Windows\system32\WSService.dll
2014-07-01 18:05:04 ----A---- C:\Windows\system32\glcndFilter.dll
2014-07-01 18:04:56 ----A---- C:\Windows\system32\OobeFldr.dll
2014-07-01 18:04:55 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2014-07-01 18:04:41 ----A---- C:\Windows\SYSWOW64\glcndFilter.dll
2014-07-01 18:04:15 ----A---- C:\Windows\system32\wmp.dll
2014-07-01 18:04:14 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-07-01 18:04:13 ----A---- C:\Windows\system32\sppobjs.dll
2014-07-01 18:04:12 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-07-01 18:04:12 ----A---- C:\Windows\system32\tquery.dll
2014-07-01 18:04:11 ----A---- C:\Windows\SYSWOW64\wmp.dll
2014-07-01 18:04:10 ----A---- C:\Windows\system32\sysmain.dll
2014-07-01 18:04:08 ----A---- C:\Windows\system32\mssrch.dll
2014-07-01 18:04:05 ----A---- C:\Windows\SYSWOW64\tquery.dll
2014-07-01 18:04:03 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2014-07-01 18:04:03 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-07-01 18:04:02 ----A---- C:\Windows\system32\combase.dll
2014-07-01 18:03:59 ----A---- C:\Windows\system32\webservices.dll
2014-07-01 18:03:59 ----A---- C:\Windows\system32\actxprxy.dll
2014-07-01 18:03:58 ----A---- C:\Windows\system32\wlidsvc.dll
2014-07-01 18:03:57 ----A---- C:\Windows\system32\dui70.dll
2014-07-01 18:03:56 ----A---- C:\Windows\SYSWOW64\mfsrcsnk.dll
2014-07-01 18:03:56 ----A---- C:\Windows\system32\schedsvc.dll
2014-07-01 18:03:56 ----A---- C:\Windows\system32\msTextPrediction.dll
2014-07-01 18:03:53 ----A---- C:\Windows\system32\mfnetsrc.dll
2014-07-01 18:03:52 ----A---- C:\Windows\system32\UIAutomationCore.dll
2014-07-01 18:03:51 ----A---- C:\Windows\system32\Windows.Globalization.dll
2014-07-01 18:03:51 ----A---- C:\Windows\system32\SRH.dll
2014-07-01 18:03:50 ----A---- C:\Windows\SYSWOW64\combase.dll
2014-07-01 18:03:49 ----A---- C:\Windows\SYSWOW64\webservices.dll
2014-07-01 18:03:48 ----A---- C:\Windows\system32\mfnetcore.dll
2014-07-01 18:03:47 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-07-01 18:03:47 ----A---- C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2014-07-01 18:03:47 ----A---- C:\Windows\system32\ExplorerFrame.dll
2014-07-01 18:03:46 ----A---- C:\Windows\system32\WofTasks.dll
2014-07-01 18:03:46 ----A---- C:\Windows\system32\uDWM.dll
2014-07-01 18:03:46 ----A---- C:\Windows\system32\StructuredQuery.dll
2014-07-01 18:03:46 ----A---- C:\Windows\system32\mfsrcsnk.dll
2014-07-01 18:03:46 ----A---- C:\Windows\system32\mfasfsrcsnk.dll
2014-07-01 18:03:46 ----A---- C:\Windows\system32\DfpCommon.dll
2014-07-01 18:03:45 ----A---- C:\Windows\system32\setupapi.dll
2014-07-01 18:03:45 ----A---- C:\Windows\system32\rpcss.dll
2014-07-01 18:03:44 ----A---- C:\Windows\system32\Windows.UI.Immersive.dll
2014-07-01 18:03:44 ----A---- C:\Windows\system32\SettingSyncHost.exe
2014-07-01 18:03:43 ----A---- C:\Windows\SYSWOW64\UIAutomationCore.dll
2014-07-01 18:03:43 ----A---- C:\Windows\SYSWOW64\dui70.dll
2014-07-01 18:03:43 ----A---- C:\Windows\system32\RacEngn.dll
2014-07-01 18:03:43 ----A---- C:\Windows\system32\ntdll.dll
2014-07-01 18:03:41 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-07-01 18:03:41 ----A---- C:\Windows\SYSWOW64\mfnetsrc.dll
2014-07-01 18:03:41 ----A---- C:\Windows\system32\drivers\acpi.sys
2014-07-01 18:03:40 ----A---- C:\Windows\SYSWOW64\SRH.dll
2014-07-01 18:03:40 ----A---- C:\Windows\system32\msctf.dll
2014-07-01 18:03:39 ----A---- C:\Windows\SYSWOW64\mfasfsrcsnk.dll
2014-07-01 18:03:39 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-07-01 18:03:39 ----A---- C:\Windows\system32\SHCore.dll
2014-07-01 18:03:39 ----A---- C:\Windows\system32\drivers\ndis.sys
2014-07-01 18:03:38 ----A---- C:\Windows\system32\SettingSyncCore.dll
2014-07-01 18:03:37 ----A---- C:\Windows\SYSWOW64\mfnetcore.dll
2014-07-01 18:03:37 ----A---- C:\Windows\system32\TSWorkspace.dll
2014-07-01 18:03:36 ----A---- C:\Windows\SYSWOW64\Windows.UI.Immersive.dll
2014-07-01 18:03:36 ----A---- C:\Windows\system32\wer.dll
2014-07-01 18:03:35 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2014-07-01 18:03:34 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2014-07-01 18:03:34 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2014-07-01 18:03:33 ----A---- C:\Windows\SYSWOW64\Windows.Globalization.dll
2014-07-01 18:03:33 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-07-01 18:03:33 ----A---- C:\Windows\system32\uxtheme.dll
2014-07-01 18:03:33 ----A---- C:\Windows\system32\samsrv.dll
2014-07-01 18:03:32 ----A---- C:\Windows\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2014-07-01 18:03:32 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2014-07-01 18:03:32 ----A---- C:\Windows\system32\Windows.Web.Http.dll
2014-07-01 18:03:32 ----A---- C:\Windows\system32\vpnike.dll
2014-07-01 18:03:32 ----A---- C:\Windows\system32\user32.dll
2014-07-01 18:03:31 ----A---- C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2014-07-01 18:03:31 ----A---- C:\Windows\system32\WebcamUi.dll
2014-07-01 18:03:31 ----A---- C:\Windows\system32\SearchIndexer.exe
2014-07-01 18:03:31 ----A---- C:\Windows\system32\MsSpellCheckingFacility.dll
2014-07-01 18:03:30 ----A---- C:\Windows\system32\msdrm.dll
2014-07-01 18:03:30 ----A---- C:\Windows\system32\mfmp4srcsnk.dll
2014-07-01 18:03:29 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-07-01 18:03:29 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-07-01 18:03:29 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll
2014-07-01 18:03:29 ----A---- C:\Windows\system32\storagewmi.dll
2014-07-01 18:03:28 ----A---- C:\Windows\system32\MMDevAPI.dll
2014-07-01 18:03:27 ----A---- C:\Windows\SYSWOW64\SHCore.dll
2014-07-01 18:03:27 ----A---- C:\Windows\system32\twinapi.dll
2014-07-01 18:03:27 ----A---- C:\Windows\system32\Taskmgr.exe
2014-07-01 18:03:27 ----A---- C:\Windows\system32\d3d10level9.dll
2014-07-01 18:03:26 ----A---- C:\Windows\SYSWOW64\Windows.Web.Http.dll
2014-07-01 18:03:26 ----A---- C:\Windows\system32\WinTypes.dll
2014-07-01 18:03:26 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll
2014-07-01 18:03:26 ----A---- C:\Windows\system32\reseteng.dll
2014-07-01 18:03:25 ----A---- C:\Windows\SYSWOW64\Taskmgr.exe
2014-07-01 18:03:25 ----A---- C:\Windows\system32\schannel.dll
2014-07-01 18:03:25 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2014-07-01 18:03:24 ----A---- C:\Windows\SYSWOW64\WebcamUi.dll
2014-07-01 18:03:24 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2014-07-01 18:03:24 ----A---- C:\Windows\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
2014-07-01 18:03:23 ----A---- C:\Windows\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2014-07-01 18:03:23 ----A---- C:\Windows\SYSWOW64\MsSpellCheckingFacility.dll
2014-07-01 18:03:23 ----A---- C:\Windows\system32\wpncore.dll
2014-07-01 18:03:23 ----A---- C:\Windows\system32\perftrack.dll
2014-07-01 18:03:22 ----A---- C:\Windows\SYSWOW64\msctf.dll
2014-07-01 18:03:22 ----A---- C:\Windows\system32\mfds.dll
2014-07-01 18:03:21 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-07-01 18:03:21 ----A---- C:\Windows\system32\WWAHost.exe
2014-07-01 18:03:21 ----A---- C:\Windows\system32\tpmvsc.dll
2014-07-01 18:03:21 ----A---- C:\Windows\system32\drivers\srv.sys
2014-07-01 18:03:21 ----A---- C:\Windows\system32\dfpinc.dat
2014-07-01 18:03:21 ----A---- C:\Windows\system32\advapi32.dll
2014-07-01 18:03:20 ----A---- C:\Windows\system32\lsm.dll
2014-07-01 18:03:20 ----A---- C:\Windows\system32\hal.dll
2014-07-01 18:03:19 ----A---- C:\Windows\system32\RecoveryDrive.exe
2014-07-01 18:03:19 ----A---- C:\Windows\system32\energy.dll
2014-07-01 18:03:18 ----A---- C:\Windows\SYSWOW64\mfds.dll
2014-07-01 18:03:18 ----A---- C:\Windows\system32\wcmsvc.dll
2014-07-01 18:03:17 ----A---- C:\Windows\SYSWOW64\WWAHost.exe
2014-07-01 18:03:17 ----A---- C:\Windows\SYSWOW64\SettingSyncHost.exe
2014-07-01 18:03:17 ----A---- C:\Windows\system32\mssvp.dll
2014-07-01 18:03:17 ----A---- C:\Windows\system32\apphelp.dll
2014-07-01 18:03:16 ----A---- C:\Windows\system32\tdh.dll
2014-07-01 18:03:16 ----A---- C:\Windows\system32\iuilp.dll
2014-07-01 18:03:15 ----A---- C:\Windows\system32\winload.exe
2014-07-01 18:03:15 ----A---- C:\Windows\system32\pnrpsvc.dll
2014-07-01 18:03:15 ----A---- C:\Windows\system32\eapphost.dll
2014-07-01 18:03:15 ----A---- C:\Windows\system32\drivers\pci.sys
2014-07-01 18:03:14 ----A---- C:\Windows\system32\livessp.dll
2014-07-01 18:03:13 ----A---- C:\Windows\system32\wcncsvc.dll
2014-07-01 18:03:12 ----A---- C:\Windows\SYSWOW64\storagewmi.dll
2014-07-01 18:03:12 ----A---- C:\Windows\SYSWOW64\mssph.dll
2014-07-01 18:03:12 ----A---- C:\Windows\system32\winresume.exe
2014-07-01 18:03:12 ----A---- C:\Windows\system32\winlogon.exe
2014-07-01 18:03:12 ----A---- C:\Windows\system32\DismApi.dll
2014-07-01 18:03:11 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2014-07-01 18:03:11 ----A---- C:\Windows\system32\riched20.dll
2014-07-01 18:03:10 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2014-07-01 18:03:10 ----A---- C:\Windows\system32\mssph.dll
2014-07-01 18:03:09 ----A---- C:\Windows\SYSWOW64\SettingSyncCore.dll
2014-07-01 18:03:09 ----A---- C:\Windows\system32\bcryptprimitives.dll
2014-07-01 18:03:08 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2014-07-01 18:03:08 ----A---- C:\Windows\system32\ActionCenter.dll
2014-07-01 18:03:07 ----A---- C:\Windows\system32\werconcpl.dll
2014-07-01 18:03:07 ----A---- C:\Windows\system32\TetheringMgr.dll
2014-07-01 18:03:06 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-07-01 18:03:06 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2014-07-01 18:03:06 ----A---- C:\Windows\system32\Windows.Graphics.dll
2014-07-01 18:03:06 ----A---- C:\Windows\system32\stobject.dll
2014-07-01 18:03:05 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2014-07-01 18:03:04 ----A---- C:\Windows\SYSWOW64\user32.dll
2014-07-01 18:03:04 ----A---- C:\Windows\SYSWOW64\twinapi.dll
2014-07-01 18:03:03 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2014-07-01 18:03:03 ----A---- C:\Windows\system32\iphlpsvc.dll
2014-07-01 18:03:02 ----A---- C:\Windows\system32\WMALFXGFXDSP.dll
2014-07-01 18:03:01 ----A---- C:\Windows\system32\sspicli.dll
2014-07-01 18:03:00 ----A---- C:\Windows\system32\tsmf.dll
2014-07-01 18:03:00 ----A---- C:\Windows\system32\SettingSync.dll
2014-07-01 18:02:59 ----A---- C:\Windows\system32\WofUtil.dll
2014-07-01 18:02:59 ----A---- C:\Windows\system32\wimgapi.dll
2014-07-01 18:02:59 ----A---- C:\Windows\system32\sppwinob.dll
2014-07-01 18:02:59 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2014-07-01 18:02:59 ----A---- C:\Windows\system32\dpapisrv.dll
2014-07-01 18:02:58 ----A---- C:\Windows\SYSWOW64\Windows.Graphics.dll
2014-07-01 18:02:58 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-07-01 18:02:58 ----A---- C:\Windows\system32\wlidcli.dll
2014-07-01 18:02:58 ----A---- C:\Windows\system32\ntshrui.dll
2014-07-01 18:02:57 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2014-07-01 18:02:57 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2014-07-01 18:02:57 ----A---- C:\Windows\system32\thumbcache.dll
2014-07-01 18:02:57 ----A---- C:\Windows\system32\recimg.exe
2014-07-01 18:02:57 ----A---- C:\Windows\system32\dfp.exe
2014-07-01 18:02:56 ----A---- C:\Windows\SYSWOW64\slc.dll
2014-07-01 18:02:56 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll
2014-07-01 18:02:56 ----A---- C:\Windows\system32\aelupsvc.dll
2014-07-01 18:02:55 ----A---- C:\Windows\system32\Windows.Devices.Usb.dll
2014-07-01 18:02:55 ----A---- C:\Windows\system32\slc.dll
2014-07-01 18:02:55 ----A---- C:\Windows\system32\msra.exe
2014-07-01 18:02:55 ----A---- C:\Windows\system32\MrmIndexer.dll
2014-07-01 18:02:54 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2014-07-01 18:02:54 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2014-07-01 18:02:54 ----A---- C:\Windows\system32\Dism.exe
2014-07-01 18:02:54 ----A---- C:\Windows\system32\bisrv.dll
2014-07-01 18:02:54 ----A---- C:\Windows\system32\AppxPackaging.dll
2014-07-01 18:02:53 ----A---- C:\Windows\SYSWOW64\uxtheme.dll
2014-07-01 18:02:53 ----A---- C:\Windows\SYSWOW64\riched20.dll
2014-07-01 18:02:53 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-07-01 18:02:53 ----A---- C:\Windows\system32\nettrace.dll
2014-07-01 18:02:53 ----A---- C:\Windows\system32\AppReadiness.dll
2014-07-01 18:02:52 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2014-07-01 18:02:52 ----A---- C:\Windows\system32\pnidui.dll
2014-07-01 18:02:52 ----A---- C:\Windows\system32\dwmredir.dll
2014-07-01 18:02:52 ----A---- C:\Windows\system32\comdlg32.dll
2014-07-01 18:02:51 ----A---- C:\Windows\SYSWOW64\stobject.dll
2014-07-01 18:02:51 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2014-07-01 18:02:51 ----A---- C:\Windows\system32\WMPDMC.exe
2014-07-01 18:02:51 ----A---- C:\Windows\system32\WinSCard.dll
2014-07-01 18:02:50 ----A---- C:\Windows\system32\psmsrv.dll
2014-07-01 18:02:49 ----A---- C:\Windows\system32\mftranscode.dll
2014-07-01 18:02:48 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2014-07-01 18:02:48 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2014-07-01 18:02:48 ----A---- C:\Windows\system32\WlanMM.dll
2014-07-01 18:02:48 ----A---- C:\Windows\system32\osk.exe
2014-07-01 18:02:47 ----A---- C:\Windows\SYSWOW64\mftranscode.dll
2014-07-01 18:02:47 ----A---- C:\Windows\system32\VAN.dll
2014-07-01 18:02:47 ----A---- C:\Windows\system32\ninput.dll
2014-07-01 18:02:47 ----A---- C:\Windows\system32\msvproc.dll
2014-07-01 18:02:47 ----A---- C:\Windows\system32\InputSwitch.dll
2014-07-01 18:02:46 ----A---- C:\Windows\system32\authz.dll
2014-07-01 18:02:44 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Usb.dll
2014-07-01 18:02:44 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-07-01 18:02:43 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-07-01 18:02:43 ----A---- C:\Windows\system32\fdprint.dll
2014-07-01 18:02:42 ----A---- C:\Windows\system32\SyncCenter.dll
2014-07-01 18:02:42 ----A---- C:\Windows\system32\pcsvDevice.dll
2014-07-01 18:02:42 ----A---- C:\Windows\system32\conhost.exe
2014-07-01 18:02:41 ----A---- C:\Windows\system32\taskeng.exe
2014-07-01 18:02:41 ----A---- C:\Windows\system32\DscCore.dll
2014-07-01 18:02:40 ----A---- C:\Windows\SYSWOW64\fdprint.dll
2014-07-01 18:02:40 ----A---- C:\Windows\system32\vbscript.dll
2014-07-01 18:02:40 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2014-07-01 18:02:39 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2014-07-01 18:02:39 ----A---- C:\Windows\SYSWOW64\msvproc.dll
2014-07-01 18:02:39 ----A---- C:\Windows\system32\wlidcredprov.dll
2014-07-01 18:02:39 ----A---- C:\Windows\system32\wersvc.dll
2014-07-01 18:02:39 ----A---- C:\Windows\system32\wbiosrvc.dll
2014-07-01 18:02:39 ----A---- C:\Windows\system32\themeui.dll
2014-07-01 18:02:39 ----A---- C:\Windows\system32\rdbui.dll
2014-07-01 18:02:38 ----A---- C:\Windows\system32\sqmapi.dll
2014-07-01 18:02:38 ----A---- C:\Windows\system32\mdmregistration.dll
2014-07-01 18:02:38 ----A---- C:\Windows\system32\drivers\agilevpn.sys
2014-07-01 18:02:37 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2014-07-01 18:02:37 ----A---- C:\Windows\SYSWOW64\ncryptsslp.dll
2014-07-01 18:02:37 ----A---- C:\Windows\SYSWOW64\DismApi.dll
2014-07-01 18:02:37 ----A---- C:\Windows\system32\wbengine.exe
2014-07-01 18:02:37 ----A---- C:\Windows\system32\rdpcore.dll
2014-07-01 18:02:36 ----A---- C:\Windows\SYSWOW64\WSClient.dll
2014-07-01 18:02:36 ----A---- C:\Windows\SYSWOW64\themeui.dll
2014-07-01 18:02:36 ----A---- C:\Windows\SYSWOW64\MrmIndexer.dll
2014-07-01 18:02:36 ----A---- C:\Windows\system32\ncryptsslp.dll
2014-07-01 18:02:35 ----A---- C:\Windows\system32\SndVol.exe
2014-07-01 18:02:34 ----A---- C:\Windows\SYSWOW64\Dism.exe
2014-07-01 18:02:34 ----A---- C:\Windows\system32\Windows.Networking.Connectivity.dll
2014-07-01 18:02:34 ----A---- C:\Windows\system32\WerFault.exe
2014-07-01 18:02:34 ----A---- C:\Windows\system32\DscCoreConfProv.dll
2014-07-01 18:02:33 ----A---- C:\Windows\system32\sti.dll
2014-07-01 18:02:33 ----A---- C:\Windows\system32\SkyDriveShell.dll
2014-07-01 18:02:33 ----A---- C:\Windows\system32\oleaut32.dll
2014-07-01 18:02:32 ----A---- C:\Windows\system32\sppc.dll
2014-07-01 18:02:32 ----A---- C:\Windows\system32\eapp3hst.dll
2014-07-01 18:02:31 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2014-07-01 18:02:31 ----A---- C:\Windows\SYSWOW64\InputSwitch.dll
2014-07-01 18:02:31 ----A---- C:\Windows\SYSWOW64\AppxPackaging.dll
2014-07-01 18:02:31 ----A---- C:\Windows\system32\msieftp.dll
2014-07-01 18:02:31 ----A---- C:\Windows\system32\msctfuimanager.dll
2014-07-01 18:02:31 ----A---- C:\Windows\system32\drivers\SerCx2.sys
2014-07-01 18:02:31 ----A---- C:\Windows\system32\bcrypt.dll
2014-07-01 18:02:27 ----A---- C:\Windows\system32\pcasvc.dll
2014-07-01 18:02:27 ----A---- C:\Windows\system32\msched.dll
2014-07-01 18:02:27 ----A---- C:\Windows\system32\CryptoWinRT.dll
2014-07-01 18:02:27 ----A---- C:\Windows\system32\aepdu.dll
2014-07-01 18:02:26 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2014-07-01 18:02:26 ----A---- C:\Windows\system32\PkgMgr.exe
2014-07-01 18:02:26 ----A---- C:\Windows\system32\kd_02_8086.dll
2014-07-01 18:02:25 ----A---- C:\Windows\SYSWOW64\sppc.dll
2014-07-01 18:02:25 ----A---- C:\Windows\system32\wwanmm.dll
2014-07-01 18:02:25 ----A---- C:\Windows\system32\WSClient.dll
2014-07-01 18:02:25 ----A---- C:\Windows\system32\WLanConn.dll
2014-07-01 18:02:25 ----A---- C:\Windows\system32\wimserv.exe
2014-07-01 18:02:25 ----A---- C:\Windows\system32\drivers\rdbss.sys
2014-07-01 18:02:25 ----A---- C:\Windows\system32\dhcpcore.dll
2014-07-01 18:02:25 ----A---- C:\Windows\system32\ci.dll
2014-07-01 18:02:24 ----A---- C:\Windows\SYSWOW64\VAN.dll
2014-07-01 18:02:24 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2014-07-01 18:02:24 ----A---- C:\Windows\SYSWOW64\rastls.dll
2014-07-01 18:02:24 ----A---- C:\Windows\SYSWOW64\osk.exe
2014-07-01 18:02:24 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2014-07-01 18:02:24 ----A---- C:\Windows\system32\wscinterop.dll
2014-07-01 18:02:24 ----A---- C:\Windows\system32\microsoft-windows-system-events.dll
2014-07-01 18:02:23 ----A---- C:\Windows\SYSWOW64\WerFault.exe
2014-07-01 18:02:23 ----A---- C:\Windows\system32\PurchaseWindowsLicense.dll
2014-07-01 18:02:23 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-07-01 18:02:22 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2014-07-01 18:02:22 ----A---- C:\Windows\SYSWOW64\SkyDriveShell.dll
2014-07-01 18:02:22 ----A---- C:\Windows\system32\gameux.dll
2014-07-01 18:02:22 ----A---- C:\Windows\system32\DeviceCenter.dll
2014-07-01 18:02:21 ----A---- C:\Windows\SYSWOW64\WlanMM.dll
2014-07-01 18:02:21 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2014-07-01 18:02:21 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeui.exe
2014-07-01 18:02:21 ----A---- C:\Windows\system32\fhcfg.dll
2014-07-01 18:02:21 ----A---- C:\Windows\system32\dwm.exe
2014-07-01 18:02:20 ----A---- C:\Windows\SYSWOW64\WinTypes.dll
2014-07-01 18:02:20 ----A---- C:\Windows\SYSWOW64\msctfuimanager.dll
2014-07-01 18:02:20 ----A---- C:\Windows\system32\winsrv.dll
2014-07-01 18:02:20 ----A---- C:\Windows\system32\windows.immersiveshell.serviceprovider.dll
2014-07-01 18:02:20 ----A---- C:\Windows\system32\taskhost.exe
2014-07-01 18:02:19 ----A---- C:\Windows\SYSWOW64\CryptoWinRT.dll
2014-07-01 18:02:19 ----A---- C:\Windows\system32\rasgcw.dll
2014-07-01 18:02:19 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-07-01 18:02:19 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2014-07-01 18:02:19 ----A---- C:\Windows\system32\drivers\luafv.sys
2014-07-01 18:02:18 ----A---- C:\Windows\SYSWOW64\authz.dll
2014-07-01 18:02:18 ----A---- C:\Windows\system32\Faultrep.dll
2014-07-01 18:02:18 ----A---- C:\Windows\system32\dmdskmgr.dll
2014-07-01 18:02:17 ----A---- C:\Windows\system32\wscapi.dll
2014-07-01 18:02:17 ----A---- C:\Windows\system32\wermgr.exe
2014-07-01 18:02:16 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2014-07-01 18:02:16 ----A---- C:\Windows\system32\srchadmin.dll
2014-07-01 18:02:15 ----A---- C:\Windows\system32\usercpl.dll
2014-07-01 18:02:15 ----A---- C:\Windows\system32\drivers\sdbus.sys
2014-07-01 18:02:14 ----A---- C:\Windows\SYSWOW64\ninput.dll
2014-07-01 18:02:14 ----A---- C:\Windows\SYSWOW64\mdmregistration.dll
2014-07-01 18:02:14 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2014-07-01 18:02:10 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-07-01 18:02:10 ----A---- C:\Windows\system32\wsqmcons.exe
2014-07-01 18:02:10 ----A---- C:\Windows\system32\smss.exe
2014-07-01 18:02:10 ----A---- C:\Windows\system32\BioCredProv.dll
2014-07-01 18:02:09 ----A---- C:\Windows\SYSWOW64\sti.dll
2014-07-01 18:02:09 ----A---- C:\Windows\system32\wwanconn.dll
2014-07-01 18:02:09 ----A---- C:\Windows\system32\vmrdvcore.dll
2014-07-01 18:02:09 ----A---- C:\Windows\system32\systemreset.exe
2014-07-01 18:02:09 ----A---- C:\Windows\system32\SndVolSSO.dll
2014-07-01 18:02:09 ----A---- C:\Windows\system32\RASMM.dll
2014-07-01 18:02:09 ----A---- C:\Windows\system32\ipnathlp.dll
2014-07-01 18:02:09 ----A---- C:\Windows\system32\imm32.dll
2014-07-01 18:02:09 ----A---- C:\Windows\system32\AltTab.dll
2014-07-01 18:02:08 ----A---- C:\Windows\system32\vdsbas.dll
2014-07-01 18:02:08 ----A---- C:\Windows\system32\rastls.dll
2014-07-01 18:02:08 ----A---- C:\Windows\system32\PlayToManager.dll
2014-07-01 18:02:08 ----A---- C:\Windows\system32\fhcpl.dll
2014-07-01 18:02:07 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2014-07-01 18:02:07 ----A---- C:\Windows\system32\miutils.dll
2014-07-01 18:02:06 ----A---- C:\Windows\system32\netid.dll
2014-07-01 18:02:06 ----A---- C:\Windows\system32\fsutil.exe
2014-07-01 18:02:05 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2014-07-01 18:02:05 ----A---- C:\Windows\system32\taskhostex.exe
2014-07-01 18:02:05 ----A---- C:\Windows\system32\sharemediacpl.dll
2014-07-01 18:02:05 ----A---- C:\Windows\system32\SensorsClassExtension.dll
2014-07-01 18:02:05 ----A---- C:\Windows\system32\drivers\msgpioclx.sys
2014-07-01 18:02:05 ----A---- C:\Windows\system32\das.dll
2014-07-01 18:02:04 ----A---- C:\Windows\system32\WSDApi.dll
2014-07-01 18:02:04 ----A---- C:\Windows\system32\SearchFilterHost.exe
2014-07-01 18:02:04 ----A---- C:\Windows\system32\sdclt.exe
2014-07-01 18:02:04 ----A---- C:\Windows\system32\printui.dll
2014-07-01 18:02:04 ----A---- C:\Windows\system32\CloudNotifications.exe
2014-07-01 18:02:03 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2014-07-01 18:02:03 ----A---- C:\Windows\SYSWOW64\CloudNotifications.exe
2014-07-01 18:02:03 ----A---- C:\Windows\system32\Windows.Devices.Bluetooth.dll
2014-07-01 18:02:03 ----A---- C:\Windows\system32\UserLanguagesCpl.dll
2014-07-01 18:02:03 ----A---- C:\Windows\system32\imagehlp.dll