Preventivní
Napsal: 16 srp 2015 11:48
Logfile of random's system information tool 1.10 (written by random/random)
Run by Jakub at 2015-08-16 12:44:23
Microsoft Windows 10 Home
System drive C: has 66 GB (32%) free of 206 GB
Total RAM: 3767 MB (26% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:44:46, on 16.8.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\OscarEditor.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Jakub\AppData\Roaming\Spotify\SpotifyWebHelper.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
H:\Hry\LoL\League of Legends\RADS\system\rads_user_kernel.exe
H:\Hry\LoL\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.251\deploy\LoLLauncher.exe
H:\Hry\LoL\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.35\deploy\LoLPatcher.exe
H:\Hry\LoL\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.155\deploy\LolClient.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Jakub.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1 ... X71NLS9Z8S
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.cz/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~4\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [OscarX7Mouse5Mode] "C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\OscarEditor.exe" Minimum
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_7B684F571039795D9613652596821858] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Jakub\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Vzdálené plochy Chrome (chromoting) - Google Inc. - C:\Program Files (x86)\Google\Chrome Remote Desktop\44.0.2403.25\remoting_host.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: MySQL - Unknown owner - C:\Program Files\MySQL\MySQL Server 5.1\bin\mysqld.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 15057 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Google\Chrome Remote Desktop\44.0.2403.25\remoting_host.exe" --type=daemon --host-config="C:\ProgramData\Google\Chrome Remote Desktop\host.json"
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
dashost.exe {9f166c5b-91ee-40a6-855b3b9b7a95d94f}
"C:\Program Files\MySQL\MySQL Server 5.1\bin\mysqld.exe" --defaults-file="C:\Program Files\MySQL\MySQL Server 5.1\my.ini" MySQL
"C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe"
"C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sMYMOVIES
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\WINDOWS\System32\tcpsvcs.exe
"C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Google\Chrome Remote Desktop\44.0.2403.25\remoting_host.exe" --type=host --daemon-pipe=656
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler64.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{478B41E6-3257-4519-BDA8-E971F9843849}
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-6312a84a-7120-4035-bc11-ed310aae4798 -SystemEventPortName:HostProcess-f0b202ae-3381-4fe5-b4b4-37dfbe904cd8 -IoCancelEventPortName:HostProcess-6fa58594-a37f-4510-b683-e7dd7c414fe1 -NonStateChangingEventPortName:HostProcess-972b1c81-5917-4843-85b2-efadda60ab21 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:ed732224-73e4-4f46-94d9-eb813a5bf0eb -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" d883b1d0-22a9-4510-acb5-3cb040e99050
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\OscarEditor.exe" Minimum
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --on-initialized-event-handle=780 --parent-handle=784
"C:\Users\Jakub\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="10136.0.558675854\1842660457" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,9,22,45 --gpu-vendor-id=0x8086 --gpu-device-id=0x0046 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2900 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.1.598137789\2755867" --font-cache-shared-handle=2364 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.2.1615894041\1337280568" --font-cache-shared-handle=2760 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.3.1470116641\2112354451" --font-cache-shared-handle=2876 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.4.173350499\537984617" --font-cache-shared-handle=2908 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.5.1475297909\2142525458" --font-cache-shared-handle=3188 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.6.1448555387\645646623" --font-cache-shared-handle=3460 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.7.1259006930\1604665812" --font-cache-shared-handle=3676 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.9.910798594\1029281472" --font-cache-shared-handle=3976 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.10.2033306292\1202214508" --font-cache-shared-handle=4004 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.11.1947812091\1224561702" --font-cache-shared-handle=2508 /prefetch:673131151
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"fontdrvhost.exe"
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
"C:\WINDOWS\System32\NetworkUXBroker.exe" -ServerName:Windows.Networking.UX
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
taskhostw.exe
"C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe" -ServerName:RemindersServer
"H:\Hry\LoL\League of Legends\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
LoLLauncher.exe
"H:/Hry/LoL/League of Legends/RADS/projects/lol_patcher/releases/0.0.0.35/deploy/LoLPatcher.exe"
"H:/Hry/LoL/League of Legends/RADS/projects/lol_air_client/releases/0.0.1.155/deploy//LolClient.exe" -runtime .\ -nodebug META-INF\AIR\application.xml .\ -- 8393
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Windows\System32\Speech_OneCore\Common\SpeechRuntime.exe" -ServerName:SpeechRuntime
"C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\ActionUriServer.exe" -ServerName:ActionUriServer
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/*CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/*ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.209.964046303\182342099" --font-cache-shared-handle=9240 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/*CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/*ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.214.196523991\386254497" --font-cache-shared-handle=8252 /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe159_ Global\UsGthrCtrlFltPipeMssGthrPipe159 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 628 632 640 8192 636
"C:\Users\Jakub\Desktop\RSITx64.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/*CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/*ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.224.232438055\238348850" --font-cache-shared-handle=5444 /prefetch:673131151
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-07-14 219304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-07-31 551520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-08-10 655480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL [2015-07-14 2335960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-31 212576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20 328248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-07-14 153768]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-01 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-03-13 60576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-08-10 559624]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Surfing Protection - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL [2015-04-01 672032]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~4\Office15\GROOVEEX.DLL [2015-07-14 1729752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-01 172640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20 509496]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2012-11-27 168480]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2012-11-27 393760]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2012-11-27 418336]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-08-10 14040792]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-03-31 2735400]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-07-24 1710568]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-07-24 2634896]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-09-20 444904]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OscarX7Mouse5Mode"=C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\OscarEditor.exe [2012-03-20 3521024]
"GoogleChromeAutoLaunch_7B684F571039795D9613652596821858"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-08-08 813896]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-07-17 8418584]
"Spotify Web Helper"=C:\Users\Jakub\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2015-07-24 2017848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acer ePower Management]
C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2011-01-06 860040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AthBtTray]
C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [2011-03-13 379552]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AtherosBtStack]
C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BackupManagerTray]
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [2011-06-17 266496]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ETDWare]
C:\Program Files\Elantech\ETDCtrl.exe [2010-04-13 649608]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google+ Auto Backup]
C:\Users\Jakub\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe [2014-08-13 3746120]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LManager]
C:\Program Files (x86)\Launch Manager\LManager.exe [2010-08-10 975952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MMTray2k]
C:\Program Files (x86)\Morgan\Morgan M-JPEG2000 codec V3\MMTray2k.exe [2010-03-14 101888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ProgLauncher]
C:\Program Files\ProgDVB\ProgLauncher.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-08-10 14040792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe /autoRun []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SuiteTray]
C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [2011-04-02 340848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TV IR]
C:\Program Files (x86)\TV IR\TV IR.exe [2011-04-13 1437184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [2009-09-20 270336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Jakub^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Jakub^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk]
C:\PROGRA~2\MICROS~4\Office14\ONENOTEM.EXE /tsr []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-08-10 6109776]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5.5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [2011-01-12 1523360]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-06-08 334896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\System32\nvinitx.dll C:\Windows\System32\nvinitx.dll C:\Windows\System32\nvinitx.dll C:\Windows\System32\nvinitx.dll,C:\Windows\system32\nvinitx.dll,C:\WINDOWS\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-26 390144]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoResolveSearch"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FPS1"=frapsv64.dll
"vidc.MJ2C"=M3JP2K64.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-08-16 12:44:23 ----D---- C:\rsit
2015-08-15 10:10:37 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-15 10:10:36 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-15 01:07:10 ----D---- C:\WINDOWS\SYSWOW64\NV
2015-08-15 01:07:10 ----D---- C:\WINDOWS\system32\NV
2015-08-15 01:06:18 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-08-15 01:06:18 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2015-08-15 01:06:18 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2015-08-15 01:06:17 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-08-15 01:06:17 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-08-15 01:06:16 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-08-15 01:06:16 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-08-15 01:06:14 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-08-15 01:04:42 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2015-08-15 01:04:42 ----A---- C:\WINDOWS\system32\OpenCL.dll
2015-08-15 00:40:25 ----A---- C:\WINDOWS\SYSWOW64\nvwgf2um.dll
2015-08-15 00:40:25 ----A---- C:\WINDOWS\SYSWOW64\nvumdshim.dll
2015-08-15 00:40:25 ----A---- C:\WINDOWS\system32\nvwgf2umx.dll
2015-08-15 00:40:25 ----A---- C:\WINDOWS\system32\nvumdshimx.dll
2015-08-15 00:40:24 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2015-08-15 00:40:24 ----A---- C:\WINDOWS\SYSWOW64\nvoglshim32.dll
2015-08-15 00:40:24 ----A---- C:\WINDOWS\system32\drivers\nvpciflt.sys
2015-08-15 00:40:23 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2015-08-15 00:40:23 ----A---- C:\WINDOWS\SYSWOW64\nvinit.dll
2015-08-15 00:40:23 ----A---- C:\WINDOWS\system32\nvopencl.dll
2015-08-15 00:40:23 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2015-08-15 00:40:23 ----A---- C:\WINDOWS\system32\nvoglshim64.dll
2015-08-15 00:40:23 ----A---- C:\WINDOWS\system32\nvinitx.dll
2015-08-15 00:40:23 ----A---- C:\WINDOWS\system32\drivers\nvlddmkm.sys
2015-08-15 00:40:22 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2015-08-15 00:40:22 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2015-08-15 00:40:22 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2015-08-15 00:40:22 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2015-08-15 00:40:20 ----A---- C:\WINDOWS\system32\nvdispgenco6435560.dll
2015-08-15 00:40:19 ----A---- C:\WINDOWS\system32\nvdispco6435560.dll
2015-08-15 00:40:17 ----A---- C:\WINDOWS\SYSWOW64\nvd3dum.dll
2015-08-15 00:40:17 ----A---- C:\WINDOWS\system32\nvd3dumx.dll
2015-08-15 00:40:16 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2015-08-15 00:40:16 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2015-08-15 00:40:16 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2015-08-15 00:40:16 ----A---- C:\WINDOWS\system32\nvcuda.dll
2015-08-15 00:40:16 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2015-08-15 00:40:03 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2015-08-15 00:40:03 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2015-08-15 00:40:03 ----A---- C:\WINDOWS\system32\nvapi64.dll
2015-08-14 23:56:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2015-08-14 23:56:10 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-08-14 23:56:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-14 23:56:01 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-08-14 23:55:59 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-08-14 23:55:55 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-08-14 23:55:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-08-14 23:55:51 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-08-14 23:55:47 ----A---- C:\WINDOWS\system32\shell32.dll
2015-08-14 23:55:44 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-08-14 23:55:42 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-08-14 23:55:40 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-08-14 23:55:39 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-14 23:55:36 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-14 23:55:35 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-08-14 23:55:35 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-08-14 23:55:35 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-08-14 23:55:33 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2015-08-14 23:55:32 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-08-14 23:55:32 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-14 23:55:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2015-08-14 23:55:31 ----A---- C:\WINDOWS\system32\DWrite.dll
2015-08-14 23:55:30 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2015-08-14 23:55:30 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-14 23:55:30 ----A---- C:\WINDOWS\system32\schedsvc.dll
2015-08-14 23:55:30 ----A---- C:\WINDOWS\system32\mf.dll
2015-08-14 23:55:30 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-08-14 23:55:30 ----A---- C:\WINDOWS\system32\FntCache.dll
2015-08-14 23:55:29 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2015-08-14 23:55:29 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-08-14 23:55:28 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2015-08-14 23:55:28 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-08-14 23:55:28 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-08-14 23:55:28 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-08-14 23:55:28 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-08-14 23:55:28 ----A---- C:\WINDOWS\system32\mfsvr.dll
2015-08-14 23:55:27 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-08-14 23:55:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2015-08-14 23:55:27 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-08-14 23:55:27 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-08-14 23:55:27 ----A---- C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-14 23:55:27 ----A---- C:\WINDOWS\system32\NetworkStatus.dll
2015-08-14 23:55:27 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-14 23:55:27 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2015-08-14 23:55:27 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-08-14 23:55:27 ----A---- C:\WINDOWS\system32\ActionCenter.dll
2015-08-14 23:55:26 ----A---- C:\WINDOWS\SYSWOW64\NotificationObjFactory.dll
2015-08-14 23:55:26 ----A---- C:\WINDOWS\SYSWOW64\ActionCenter.dll
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\drivers\rdyboost.sys
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2015-08-14 23:55:25 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\notepad.exe
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\drivers\wof.sys
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\configmanager2.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\notepad.exe
2015-08-14 23:55:24 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2015-08-14 23:55:24 ----A---- C:\WINDOWS\system32\coredpus.dll
2015-08-14 23:55:23 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-14 23:55:23 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys
2015-08-14 23:55:23 ----A---- C:\WINDOWS\system32\drivers\msgpiowin32.sys
2015-08-14 23:55:20 ----A---- C:\WINDOWS\system32\mfps.dll
2015-08-14 23:55:20 ----A---- C:\WINDOWS\system32\InputService.dll
2015-08-14 23:55:20 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2015-08-14 23:55:16 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-08-14 23:55:16 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-08-14 23:55:15 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2015-08-14 23:55:15 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-14 23:55:15 ----A---- C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-14 23:55:15 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2015-08-14 23:55:15 ----A---- C:\WINDOWS\system32\rdbui.dll
2015-08-14 23:55:15 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2015-08-14 23:55:14 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2015-08-14 23:55:14 ----A---- C:\WINDOWS\system32\RDXService.dll
2015-08-14 23:55:13 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2015-08-14 23:55:13 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
2015-08-14 23:55:13 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-14 23:55:13 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-14 23:55:13 ----A---- C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-14 13:53:22 ----D---- C:\WINDOWS\PCHEALTH
2015-08-10 14:55:46 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2015-08-10 14:55:33 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2015-08-10 14:55:31 ----A---- C:\WINDOWS\SYSWOW64\RltkAPO.dll
2015-08-10 14:55:30 ----A---- C:\WINDOWS\system32\RCoInstII64.dll
2015-08-10 14:55:25 ----A---- C:\WINDOWS\system32\NAHIMICV2apo.dll
2015-08-10 14:55:07 ----A---- C:\WINDOWS\system32\HiFiDAX2API.dll
2015-08-10 14:54:59 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2015-08-10 14:54:59 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2015-08-10 14:54:59 ----A---- C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2015-08-10 14:54:59 ----A---- C:\WINDOWS\system32\DDPP64AF3.dll
2015-08-10 14:54:59 ----A---- C:\WINDOWS\system32\DDPO64AF3.dll
2015-08-10 14:54:59 ----A---- C:\WINDOWS\system32\DDPD64AF3.dll
2015-08-10 14:54:59 ----A---- C:\WINDOWS\system32\DDPA64F3.dll
2015-08-10 14:36:17 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-08-10 14:35:59 ----A---- C:\WINDOWS\avastSS.scr
2015-08-10 14:34:00 ----A---- C:\WINDOWS\system32\YamahaAE2.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\YamahaAE.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\WavesGUILib64.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\tossaemaxapo64.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\tossaeapo64.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\toseaeapo64.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\tosasfapo64.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\tosade.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\tepeqapo64.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\tadefxapo264.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\tadefxapo.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\SRSWOW64.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\SYSWOW64\SRCOM.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\system32\SRSTSX64.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\system32\SRSTSH64.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\system32\SRSHP64.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\system32\SRRPTR64.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\system32\SRCOM64.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\system32\SRCOM.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\system32\SRAPO64.dll
2015-08-10 14:33:57 ----A---- C:\WINDOWS\system32\sltech64.dll
2015-08-10 14:33:57 ----A---- C:\WINDOWS\system32\slprp64.dll
2015-08-10 14:33:55 ----A---- C:\WINDOWS\system32\slcnt64.dll
2015-08-10 14:33:55 ----A---- C:\WINDOWS\system32\sl3apo64.dll
2015-08-10 14:33:55 ----A---- C:\WINDOWS\system32\SFSS_APO.dll
2015-08-10 14:33:54 ----A---- C:\WINDOWS\SYSWOW64\SFCOM.dll
2015-08-10 14:33:54 ----A---- C:\WINDOWS\system32\SFNHK64.dll
2015-08-10 14:33:54 ----A---- C:\WINDOWS\system32\SFCOM64.dll
2015-08-10 14:33:54 ----A---- C:\WINDOWS\system32\SFAPO64.dll
2015-08-10 14:33:54 ----A---- C:\WINDOWS\system32\SEHDRA64.dll
2015-08-10 14:33:54 ----A---- C:\WINDOWS\system32\SECOMN64.dll
2015-08-10 14:33:53 ----A---- C:\WINDOWS\SYSWOW64\SECOMN32.DLL
2015-08-10 14:33:53 ----A---- C:\WINDOWS\system32\SEAPO64.dll
2015-08-10 14:33:51 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2015-08-10 14:33:50 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2015-08-10 14:33:49 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2015-08-10 14:33:48 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2015-08-10 14:33:48 ----A---- C:\WINDOWS\system32\RTEEP64A.dll
2015-08-10 14:33:48 ----A---- C:\WINDOWS\system32\RTEEL64A.dll
2015-08-10 14:33:48 ----A---- C:\WINDOWS\system32\RTEEG64A.dll
2015-08-10 14:33:48 ----A---- C:\WINDOWS\system32\RTEED64A.dll
2015-08-10 14:33:47 ----A---- C:\WINDOWS\system32\RtDataProc64.dll
2015-08-10 14:33:46 ----A---- C:\WINDOWS\system32\RP3DHT64.dll
2015-08-10 14:33:45 ----A---- C:\WINDOWS\system32\RP3DAA64.dll
2015-08-10 14:33:38 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2015-08-10 14:33:35 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2015-08-10 14:33:35 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2015-08-10 14:33:35 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2015-08-10 14:33:35 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2015-08-10 14:33:35 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2015-08-10 14:33:35 ----A---- C:\WINDOWS\system32\NahimicAPONSControl.dll
2015-08-10 14:33:35 ----A---- C:\WINDOWS\system32\NAHIMICAPOlfx.dll
2015-08-10 14:33:34 ----A---- C:\WINDOWS\system32\MISS_APO.dll
2015-08-10 14:33:33 ----A---- C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2015-08-10 14:33:33 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO4064.dll
2015-08-10 14:33:33 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2015-08-10 14:33:32 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2015-08-10 14:33:31 ----A---- C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2015-08-10 14:33:31 ----A---- C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2015-08-10 14:33:30 ----A---- C:\WINDOWS\system32\MaxxAudioEQ64.dll
2015-08-10 14:33:30 ----A---- C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2015-08-10 14:33:30 ----A---- C:\WINDOWS\system32\MaxxAudioAPO7064.dll
2015-08-10 14:33:30 ----A---- C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2015-08-10 14:33:30 ----A---- C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2015-08-10 14:33:30 ----A---- C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2015-08-10 14:33:30 ----A---- C:\WINDOWS\system32\MaxxAudioAPO30.dll
2015-08-10 14:33:29 ----A---- C:\WINDOWS\system32\MaxxAudioAPO20.dll
2015-08-10 14:33:29 ----A---- C:\WINDOWS\system32\KAAPORT64.dll
2015-08-10 14:33:29 ----A---- C:\WINDOWS\system32\IntelSstCApoPropPage.dll
2015-08-10 14:33:28 ----A---- C:\WINDOWS\system32\IntelSSTAPO.dll
2015-08-10 14:33:28 ----A---- C:\WINDOWS\system32\ICEsoundAPO64.dll
2015-08-10 14:33:27 ----A---- C:\WINDOWS\system32\FMAPO64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSU2PREC64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSU2PLFX64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSU2PGFX64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2015-08-10 14:33:25 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2015-08-10 14:33:25 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2015-08-10 14:33:24 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2015-08-10 14:33:24 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2015-08-10 14:33:24 ----A---- C:\WINDOWS\system32\DDPA64.dll
2015-08-10 14:33:24 ----A---- C:\WINDOWS\system32\CX64APO.dll
2015-08-10 14:33:24 ----A---- C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2015-08-10 14:33:24 ----A---- C:\WINDOWS\system32\audioLibVc.dll
2015-08-10 14:33:23 ----A---- C:\WINDOWS\system32\AERTAR64.dll
2015-08-10 14:33:23 ----A---- C:\WINDOWS\system32\AERTAC64.dll
2015-08-10 14:33:23 ----A---- C:\WINDOWS\system32\AcpiServiceVnA64.dll
2015-08-05 20:56:10 ----A---- C:\WINDOWS\system32\twinui.dll
2015-08-05 20:56:06 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-05 20:56:00 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-08-05 20:55:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2015-08-05 20:55:55 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-05 20:55:55 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-08-05 20:55:55 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-05 20:55:50 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-05 20:55:50 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-08-05 20:55:49 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2015-08-05 20:55:49 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-08-05 20:55:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2015-08-05 20:55:48 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-08-05 20:55:48 ----A---- C:\WINDOWS\system32\d3d9.dll
2015-08-05 20:55:47 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-08-05 20:55:46 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-08-05 20:55:45 ----A---- C:\WINDOWS\system32\winmde.dll
2015-08-05 20:55:45 ----A---- C:\WINDOWS\system32\NotificationController.dll
2015-08-05 20:55:45 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-05 20:55:43 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2015-08-05 20:55:43 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2015-08-05 20:55:42 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2015-08-05 20:55:42 ----A---- C:\WINDOWS\system32\wmpmde.dll
2015-08-05 20:55:41 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2015-08-05 20:55:41 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2015-08-05 20:55:41 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-05 20:55:41 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-05 20:55:40 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2015-08-05 20:55:40 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-08-05 20:55:40 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-08-05 20:55:40 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-08-05 20:55:40 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-08-05 20:55:40 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-08-05 20:55:39 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-08-05 20:55:39 ----A---- C:\WINDOWS\system32\UserDataService.dll
2015-08-05 20:55:39 ----A---- C:\WINDOWS\system32\provengine.dll
2015-08-05 20:55:39 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-05 20:55:39 ----A---- C:\WINDOWS\system32\MFPlay.dll
2015-08-05 20:55:39 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-08-05 20:55:38 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-08-05 20:55:38 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-08-05 20:55:38 ----A---- C:\WINDOWS\system32\wpnapps.dll
2015-08-05 20:55:38 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-08-05 20:55:38 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-05 20:55:38 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-05 20:55:38 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\dxgi.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\SYSWOW64\VoiceActivationManager.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.V2.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2015-08-01 18:22:34 ----D---- C:\WINDOWS\system32\SleepStudy
2015-08-01 03:32:21 ----D---- C:\ProgramData\PreEmptive Solutions
2015-08-01 03:32:12 ----D---- C:\Program Files (x86)\ShellDir
2015-08-01 03:28:51 ----D---- C:\ProgramData\Microsoft DNX
2015-08-01 03:28:51 ----D---- C:\Program Files\Microsoft DNX
2015-08-01 03:24:16 ----D---- C:\Program Files (x86)\Microsoft Web Tools
2015-08-01 03:22:26 ----D---- C:\Program Files\IIS Express
2015-08-01 03:22:26 ----D---- C:\Program Files (x86)\IIS Express
2015-08-01 03:21:55 ----D---- C:\Program Files (x86)\AppInsights
2015-08-01 03:21:28 ----D---- C:\Program Files (x86)\Microsoft Office365 Tools
2015-08-01 03:19:32 ----D---- C:\ProgramData\NuGet
2015-08-01 03:19:32 ----D---- C:\Program Files (x86)\NuGet
2015-08-01 03:19:24 ----D---- C:\Program Files (x86)\Microsoft WCF Data Services
2015-08-01 03:19:02 ----D---- C:\Program Files\IIS
2015-08-01 03:19:01 ----D---- C:\Program Files (x86)\IIS
2015-08-01 03:13:38 ----D---- C:\Program Files\Microsoft Visual Studio 12.0
2015-08-01 03:08:23 ----D---- C:\WINDOWS\symbols
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsRemoteEngine.exe
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsProxyStub.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsExperiment.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsDesktopEngine.exe
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsCapture.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\VSD3DWARPDebug.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\VSD3DWARP12Debug.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\perf_gputiming.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DXToolsReporting.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DxToolsReportGenerator.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DXToolsOfflineAnalysis.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DXToolsMonitor.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DXGIDebug.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DXCpl.exe
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DXCaptureReplay.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DXCap.exe
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\d3d12warp.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\d3d12SDKLayers.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\d3d11_3SDKLayers.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\d2d1debug3.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\VsGraphicsRemoteEngine.exe
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\VsGraphicsExperiment.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\VsGraphicsCapture.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\VSD3DWARPDebug.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\VSD3DWARP12Debug.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\DXToolsReporting.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\DXToolsOfflineAnalysis.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\DXToolsMonitor.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\DXGIDebug.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\DXCpl.exe
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\DXCaptureReplay.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\DXCap.exe
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\d3d12warp.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\d3d12SDKLayers.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\d3d11_3SDKLayers.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\d2d1debug3.dll
2015-08-01 03:03:40 ----A---- C:\WINDOWS\system32\VsGraphicsProxyStub.dll
2015-08-01 03:03:40 ----A---- C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe
2015-08-01 03:03:40 ----A---- C:\WINDOWS\system32\perf_gputiming.dll
2015-08-01 03:03:40 ----A---- C:\WINDOWS\system32\DxToolsReportGenerator.dll
2015-08-01 02:53:59 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 14.0
2015-08-01 02:11:11 ----D---- C:\ProgramData\VsTelemetry
2015-08-01 01:47:18 ----A---- C:\WINDOWS\SYSWOW64\REN3B6C.tmp
2015-07-31 11:35:36 ----A---- C:\WINDOWS\system32\drivers\tapoas.sys
2015-07-31 10:20:54 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-07-31 09:39:35 ----A---- C:\WINDOWS\system32\wmp.dll
2015-07-31 09:39:31 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2015-07-31 09:39:31 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2015-07-31 09:39:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2015-07-31 09:39:09 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-07-31 09:39:08 ----A---- C:\WINDOWS\system32\ClipUp.exe
2015-07-31 09:38:54 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-07-31 09:38:41 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-07-31 09:38:38 ----A---- C:\WINDOWS\system32\windows.storage.dll
2015-07-31 09:38:32 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-07-31 09:38:28 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2015-07-31 09:38:20 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2015-07-31 09:38:18 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-07-31 09:38:13 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2015-07-31 09:38:00 ----A---- C:\WINDOWS\system32\msi.dll
2015-07-31 09:37:40 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-07-31 09:37:38 ----A---- C:\WINDOWS\system32\wininet.dll
2015-07-31 09:37:37 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-07-31 09:37:36 ----A---- C:\WINDOWS\system32\dosvc.dll
2015-07-31 09:37:35 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2015-07-31 09:37:25 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-07-31 09:37:22 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2015-07-31 09:37:16 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-07-31 09:37:13 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-07-31 09:37:13 ----A---- C:\WINDOWS\explorer.exe
Run by Jakub at 2015-08-16 12:44:23
Microsoft Windows 10 Home
System drive C: has 66 GB (32%) free of 206 GB
Total RAM: 3767 MB (26% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:44:46, on 16.8.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\OscarEditor.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Jakub\AppData\Roaming\Spotify\SpotifyWebHelper.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
H:\Hry\LoL\League of Legends\RADS\system\rads_user_kernel.exe
H:\Hry\LoL\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.251\deploy\LoLLauncher.exe
H:\Hry\LoL\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.35\deploy\LoLPatcher.exe
H:\Hry\LoL\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.155\deploy\LolClient.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Jakub.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1 ... X71NLS9Z8S
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.cz/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~4\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [OscarX7Mouse5Mode] "C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\OscarEditor.exe" Minimum
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_7B684F571039795D9613652596821858] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Jakub\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Vzdálené plochy Chrome (chromoting) - Google Inc. - C:\Program Files (x86)\Google\Chrome Remote Desktop\44.0.2403.25\remoting_host.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: MySQL - Unknown owner - C:\Program Files\MySQL\MySQL Server 5.1\bin\mysqld.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 15057 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Google\Chrome Remote Desktop\44.0.2403.25\remoting_host.exe" --type=daemon --host-config="C:\ProgramData\Google\Chrome Remote Desktop\host.json"
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
dashost.exe {9f166c5b-91ee-40a6-855b3b9b7a95d94f}
"C:\Program Files\MySQL\MySQL Server 5.1\bin\mysqld.exe" --defaults-file="C:\Program Files\MySQL\MySQL Server 5.1\my.ini" MySQL
"C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe"
"C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sMYMOVIES
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\WINDOWS\System32\tcpsvcs.exe
"C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Google\Chrome Remote Desktop\44.0.2403.25\remoting_host.exe" --type=host --daemon-pipe=656
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler64.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{478B41E6-3257-4519-BDA8-E971F9843849}
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-6312a84a-7120-4035-bc11-ed310aae4798 -SystemEventPortName:HostProcess-f0b202ae-3381-4fe5-b4b4-37dfbe904cd8 -IoCancelEventPortName:HostProcess-6fa58594-a37f-4510-b683-e7dd7c414fe1 -NonStateChangingEventPortName:HostProcess-972b1c81-5917-4843-85b2-efadda60ab21 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:ed732224-73e4-4f46-94d9-eb813a5bf0eb -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" d883b1d0-22a9-4510-acb5-3cb040e99050
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\OscarEditor.exe" Minimum
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --on-initialized-event-handle=780 --parent-handle=784
"C:\Users\Jakub\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="10136.0.558675854\1842660457" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,9,22,45 --gpu-vendor-id=0x8086 --gpu-device-id=0x0046 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2900 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.1.598137789\2755867" --font-cache-shared-handle=2364 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.2.1615894041\1337280568" --font-cache-shared-handle=2760 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.3.1470116641\2112354451" --font-cache-shared-handle=2876 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.4.173350499\537984617" --font-cache-shared-handle=2908 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.5.1475297909\2142525458" --font-cache-shared-handle=3188 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.6.1448555387\645646623" --font-cache-shared-handle=3460 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.7.1259006930\1604665812" --font-cache-shared-handle=3676 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.9.910798594\1029281472" --font-cache-shared-handle=3976 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.10.2033306292\1202214508" --font-cache-shared-handle=4004 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.11.1947812091\1224561702" --font-cache-shared-handle=2508 /prefetch:673131151
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"fontdrvhost.exe"
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
"C:\WINDOWS\System32\NetworkUXBroker.exe" -ServerName:Windows.Networking.UX
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
taskhostw.exe
"C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe" -ServerName:RemindersServer
"H:\Hry\LoL\League of Legends\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
LoLLauncher.exe
"H:/Hry/LoL/League of Legends/RADS/projects/lol_patcher/releases/0.0.0.35/deploy/LoLPatcher.exe"
"H:/Hry/LoL/League of Legends/RADS/projects/lol_air_client/releases/0.0.1.155/deploy//LolClient.exe" -runtime .\ -nodebug META-INF\AIR\application.xml .\ -- 8393
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Windows\System32\Speech_OneCore\Common\SpeechRuntime.exe" -ServerName:SpeechRuntime
"C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\ActionUriServer.exe" -ServerName:ActionUriServer
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/*CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/*ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.209.964046303\182342099" --font-cache-shared-handle=9240 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/*CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/*ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.214.196523991\386254497" --font-cache-shared-handle=8252 /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe159_ Global\UsGthrCtrlFltPipeMssGthrPipe159 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 628 632 640 8192 636
"C:\Users\Jakub\Desktop\RSITx64.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/*CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/*ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="10136.224.232438055\238348850" --font-cache-shared-handle=5444 /prefetch:673131151
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-07-14 219304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-07-31 551520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-08-10 655480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL [2015-07-14 2335960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-31 212576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20 328248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-07-14 153768]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-01 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-03-13 60576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-08-10 559624]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Surfing Protection - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL [2015-04-01 672032]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~4\Office15\GROOVEEX.DLL [2015-07-14 1729752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-01 172640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20 509496]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2012-11-27 168480]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2012-11-27 393760]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2012-11-27 418336]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-08-10 14040792]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-03-31 2735400]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-07-24 1710568]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-07-24 2634896]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-09-20 444904]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OscarX7Mouse5Mode"=C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\OscarEditor.exe [2012-03-20 3521024]
"GoogleChromeAutoLaunch_7B684F571039795D9613652596821858"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-08-08 813896]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-07-17 8418584]
"Spotify Web Helper"=C:\Users\Jakub\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2015-07-24 2017848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acer ePower Management]
C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2011-01-06 860040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AthBtTray]
C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [2011-03-13 379552]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AtherosBtStack]
C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BackupManagerTray]
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [2011-06-17 266496]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ETDWare]
C:\Program Files\Elantech\ETDCtrl.exe [2010-04-13 649608]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google+ Auto Backup]
C:\Users\Jakub\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe [2014-08-13 3746120]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LManager]
C:\Program Files (x86)\Launch Manager\LManager.exe [2010-08-10 975952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MMTray2k]
C:\Program Files (x86)\Morgan\Morgan M-JPEG2000 codec V3\MMTray2k.exe [2010-03-14 101888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ProgLauncher]
C:\Program Files\ProgDVB\ProgLauncher.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-08-10 14040792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe /autoRun []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SuiteTray]
C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [2011-04-02 340848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TV IR]
C:\Program Files (x86)\TV IR\TV IR.exe [2011-04-13 1437184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [2009-09-20 270336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Jakub^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Jakub^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk]
C:\PROGRA~2\MICROS~4\Office14\ONENOTEM.EXE /tsr []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-08-10 6109776]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5.5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [2011-01-12 1523360]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-06-08 334896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\System32\nvinitx.dll C:\Windows\System32\nvinitx.dll C:\Windows\System32\nvinitx.dll C:\Windows\System32\nvinitx.dll,C:\Windows\system32\nvinitx.dll,C:\WINDOWS\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-26 390144]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoResolveSearch"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FPS1"=frapsv64.dll
"vidc.MJ2C"=M3JP2K64.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-08-16 12:44:23 ----D---- C:\rsit
2015-08-15 10:10:37 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-15 10:10:36 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-15 01:07:10 ----D---- C:\WINDOWS\SYSWOW64\NV
2015-08-15 01:07:10 ----D---- C:\WINDOWS\system32\NV
2015-08-15 01:06:18 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-08-15 01:06:18 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2015-08-15 01:06:18 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2015-08-15 01:06:17 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-08-15 01:06:17 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-08-15 01:06:16 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-08-15 01:06:16 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-08-15 01:06:14 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-08-15 01:04:42 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2015-08-15 01:04:42 ----A---- C:\WINDOWS\system32\OpenCL.dll
2015-08-15 00:40:25 ----A---- C:\WINDOWS\SYSWOW64\nvwgf2um.dll
2015-08-15 00:40:25 ----A---- C:\WINDOWS\SYSWOW64\nvumdshim.dll
2015-08-15 00:40:25 ----A---- C:\WINDOWS\system32\nvwgf2umx.dll
2015-08-15 00:40:25 ----A---- C:\WINDOWS\system32\nvumdshimx.dll
2015-08-15 00:40:24 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2015-08-15 00:40:24 ----A---- C:\WINDOWS\SYSWOW64\nvoglshim32.dll
2015-08-15 00:40:24 ----A---- C:\WINDOWS\system32\drivers\nvpciflt.sys
2015-08-15 00:40:23 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2015-08-15 00:40:23 ----A---- C:\WINDOWS\SYSWOW64\nvinit.dll
2015-08-15 00:40:23 ----A---- C:\WINDOWS\system32\nvopencl.dll
2015-08-15 00:40:23 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2015-08-15 00:40:23 ----A---- C:\WINDOWS\system32\nvoglshim64.dll
2015-08-15 00:40:23 ----A---- C:\WINDOWS\system32\nvinitx.dll
2015-08-15 00:40:23 ----A---- C:\WINDOWS\system32\drivers\nvlddmkm.sys
2015-08-15 00:40:22 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2015-08-15 00:40:22 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2015-08-15 00:40:22 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2015-08-15 00:40:22 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2015-08-15 00:40:20 ----A---- C:\WINDOWS\system32\nvdispgenco6435560.dll
2015-08-15 00:40:19 ----A---- C:\WINDOWS\system32\nvdispco6435560.dll
2015-08-15 00:40:17 ----A---- C:\WINDOWS\SYSWOW64\nvd3dum.dll
2015-08-15 00:40:17 ----A---- C:\WINDOWS\system32\nvd3dumx.dll
2015-08-15 00:40:16 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2015-08-15 00:40:16 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2015-08-15 00:40:16 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2015-08-15 00:40:16 ----A---- C:\WINDOWS\system32\nvcuda.dll
2015-08-15 00:40:16 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2015-08-15 00:40:03 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2015-08-15 00:40:03 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2015-08-15 00:40:03 ----A---- C:\WINDOWS\system32\nvapi64.dll
2015-08-14 23:56:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2015-08-14 23:56:10 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-08-14 23:56:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-14 23:56:01 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-08-14 23:55:59 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-08-14 23:55:55 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-08-14 23:55:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-08-14 23:55:51 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-08-14 23:55:47 ----A---- C:\WINDOWS\system32\shell32.dll
2015-08-14 23:55:44 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-08-14 23:55:42 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-08-14 23:55:40 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-08-14 23:55:39 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-14 23:55:36 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-14 23:55:35 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-08-14 23:55:35 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-08-14 23:55:35 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-08-14 23:55:33 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2015-08-14 23:55:32 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-08-14 23:55:32 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-14 23:55:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2015-08-14 23:55:31 ----A---- C:\WINDOWS\system32\DWrite.dll
2015-08-14 23:55:30 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2015-08-14 23:55:30 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-14 23:55:30 ----A---- C:\WINDOWS\system32\schedsvc.dll
2015-08-14 23:55:30 ----A---- C:\WINDOWS\system32\mf.dll
2015-08-14 23:55:30 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-08-14 23:55:30 ----A---- C:\WINDOWS\system32\FntCache.dll
2015-08-14 23:55:29 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2015-08-14 23:55:29 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-08-14 23:55:28 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2015-08-14 23:55:28 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-08-14 23:55:28 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-08-14 23:55:28 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-08-14 23:55:28 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-08-14 23:55:28 ----A---- C:\WINDOWS\system32\mfsvr.dll
2015-08-14 23:55:27 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-08-14 23:55:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2015-08-14 23:55:27 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-08-14 23:55:27 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-08-14 23:55:27 ----A---- C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-14 23:55:27 ----A---- C:\WINDOWS\system32\NetworkStatus.dll
2015-08-14 23:55:27 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-14 23:55:27 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2015-08-14 23:55:27 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-08-14 23:55:27 ----A---- C:\WINDOWS\system32\ActionCenter.dll
2015-08-14 23:55:26 ----A---- C:\WINDOWS\SYSWOW64\NotificationObjFactory.dll
2015-08-14 23:55:26 ----A---- C:\WINDOWS\SYSWOW64\ActionCenter.dll
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\drivers\rdyboost.sys
2015-08-14 23:55:26 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2015-08-14 23:55:25 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\notepad.exe
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\drivers\wof.sys
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2015-08-14 23:55:25 ----A---- C:\WINDOWS\system32\configmanager2.dll
2015-08-14 23:55:25 ----A---- C:\WINDOWS\notepad.exe
2015-08-14 23:55:24 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2015-08-14 23:55:24 ----A---- C:\WINDOWS\system32\coredpus.dll
2015-08-14 23:55:23 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-14 23:55:23 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys
2015-08-14 23:55:23 ----A---- C:\WINDOWS\system32\drivers\msgpiowin32.sys
2015-08-14 23:55:20 ----A---- C:\WINDOWS\system32\mfps.dll
2015-08-14 23:55:20 ----A---- C:\WINDOWS\system32\InputService.dll
2015-08-14 23:55:20 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2015-08-14 23:55:16 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-08-14 23:55:16 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-08-14 23:55:15 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2015-08-14 23:55:15 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-14 23:55:15 ----A---- C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-14 23:55:15 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2015-08-14 23:55:15 ----A---- C:\WINDOWS\system32\rdbui.dll
2015-08-14 23:55:15 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2015-08-14 23:55:14 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2015-08-14 23:55:14 ----A---- C:\WINDOWS\system32\RDXService.dll
2015-08-14 23:55:13 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2015-08-14 23:55:13 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
2015-08-14 23:55:13 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-14 23:55:13 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-14 23:55:13 ----A---- C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-14 13:53:22 ----D---- C:\WINDOWS\PCHEALTH
2015-08-10 14:55:46 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2015-08-10 14:55:33 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2015-08-10 14:55:31 ----A---- C:\WINDOWS\SYSWOW64\RltkAPO.dll
2015-08-10 14:55:30 ----A---- C:\WINDOWS\system32\RCoInstII64.dll
2015-08-10 14:55:25 ----A---- C:\WINDOWS\system32\NAHIMICV2apo.dll
2015-08-10 14:55:07 ----A---- C:\WINDOWS\system32\HiFiDAX2API.dll
2015-08-10 14:54:59 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2015-08-10 14:54:59 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2015-08-10 14:54:59 ----A---- C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2015-08-10 14:54:59 ----A---- C:\WINDOWS\system32\DDPP64AF3.dll
2015-08-10 14:54:59 ----A---- C:\WINDOWS\system32\DDPO64AF3.dll
2015-08-10 14:54:59 ----A---- C:\WINDOWS\system32\DDPD64AF3.dll
2015-08-10 14:54:59 ----A---- C:\WINDOWS\system32\DDPA64F3.dll
2015-08-10 14:36:17 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-08-10 14:35:59 ----A---- C:\WINDOWS\avastSS.scr
2015-08-10 14:34:00 ----A---- C:\WINDOWS\system32\YamahaAE2.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\YamahaAE.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\WavesGUILib64.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\tossaemaxapo64.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\tossaeapo64.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\toseaeapo64.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\tosasfapo64.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\tosade.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\tepeqapo64.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\tadefxapo264.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\tadefxapo.dll
2015-08-10 14:33:59 ----A---- C:\WINDOWS\system32\SRSWOW64.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\SYSWOW64\SRCOM.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\system32\SRSTSX64.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\system32\SRSTSH64.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\system32\SRSHP64.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\system32\SRRPTR64.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\system32\SRCOM64.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\system32\SRCOM.dll
2015-08-10 14:33:58 ----A---- C:\WINDOWS\system32\SRAPO64.dll
2015-08-10 14:33:57 ----A---- C:\WINDOWS\system32\sltech64.dll
2015-08-10 14:33:57 ----A---- C:\WINDOWS\system32\slprp64.dll
2015-08-10 14:33:55 ----A---- C:\WINDOWS\system32\slcnt64.dll
2015-08-10 14:33:55 ----A---- C:\WINDOWS\system32\sl3apo64.dll
2015-08-10 14:33:55 ----A---- C:\WINDOWS\system32\SFSS_APO.dll
2015-08-10 14:33:54 ----A---- C:\WINDOWS\SYSWOW64\SFCOM.dll
2015-08-10 14:33:54 ----A---- C:\WINDOWS\system32\SFNHK64.dll
2015-08-10 14:33:54 ----A---- C:\WINDOWS\system32\SFCOM64.dll
2015-08-10 14:33:54 ----A---- C:\WINDOWS\system32\SFAPO64.dll
2015-08-10 14:33:54 ----A---- C:\WINDOWS\system32\SEHDRA64.dll
2015-08-10 14:33:54 ----A---- C:\WINDOWS\system32\SECOMN64.dll
2015-08-10 14:33:53 ----A---- C:\WINDOWS\SYSWOW64\SECOMN32.DLL
2015-08-10 14:33:53 ----A---- C:\WINDOWS\system32\SEAPO64.dll
2015-08-10 14:33:51 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2015-08-10 14:33:50 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2015-08-10 14:33:49 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2015-08-10 14:33:48 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2015-08-10 14:33:48 ----A---- C:\WINDOWS\system32\RTEEP64A.dll
2015-08-10 14:33:48 ----A---- C:\WINDOWS\system32\RTEEL64A.dll
2015-08-10 14:33:48 ----A---- C:\WINDOWS\system32\RTEEG64A.dll
2015-08-10 14:33:48 ----A---- C:\WINDOWS\system32\RTEED64A.dll
2015-08-10 14:33:47 ----A---- C:\WINDOWS\system32\RtDataProc64.dll
2015-08-10 14:33:46 ----A---- C:\WINDOWS\system32\RP3DHT64.dll
2015-08-10 14:33:45 ----A---- C:\WINDOWS\system32\RP3DAA64.dll
2015-08-10 14:33:38 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2015-08-10 14:33:35 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2015-08-10 14:33:35 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2015-08-10 14:33:35 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2015-08-10 14:33:35 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2015-08-10 14:33:35 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2015-08-10 14:33:35 ----A---- C:\WINDOWS\system32\NahimicAPONSControl.dll
2015-08-10 14:33:35 ----A---- C:\WINDOWS\system32\NAHIMICAPOlfx.dll
2015-08-10 14:33:34 ----A---- C:\WINDOWS\system32\MISS_APO.dll
2015-08-10 14:33:33 ----A---- C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2015-08-10 14:33:33 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO4064.dll
2015-08-10 14:33:33 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2015-08-10 14:33:32 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2015-08-10 14:33:31 ----A---- C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2015-08-10 14:33:31 ----A---- C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2015-08-10 14:33:30 ----A---- C:\WINDOWS\system32\MaxxAudioEQ64.dll
2015-08-10 14:33:30 ----A---- C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2015-08-10 14:33:30 ----A---- C:\WINDOWS\system32\MaxxAudioAPO7064.dll
2015-08-10 14:33:30 ----A---- C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2015-08-10 14:33:30 ----A---- C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2015-08-10 14:33:30 ----A---- C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2015-08-10 14:33:30 ----A---- C:\WINDOWS\system32\MaxxAudioAPO30.dll
2015-08-10 14:33:29 ----A---- C:\WINDOWS\system32\MaxxAudioAPO20.dll
2015-08-10 14:33:29 ----A---- C:\WINDOWS\system32\KAAPORT64.dll
2015-08-10 14:33:29 ----A---- C:\WINDOWS\system32\IntelSstCApoPropPage.dll
2015-08-10 14:33:28 ----A---- C:\WINDOWS\system32\IntelSSTAPO.dll
2015-08-10 14:33:28 ----A---- C:\WINDOWS\system32\ICEsoundAPO64.dll
2015-08-10 14:33:27 ----A---- C:\WINDOWS\system32\FMAPO64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSU2PREC64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSU2PLFX64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSU2PGFX64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2015-08-10 14:33:26 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2015-08-10 14:33:25 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2015-08-10 14:33:25 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2015-08-10 14:33:24 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2015-08-10 14:33:24 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2015-08-10 14:33:24 ----A---- C:\WINDOWS\system32\DDPA64.dll
2015-08-10 14:33:24 ----A---- C:\WINDOWS\system32\CX64APO.dll
2015-08-10 14:33:24 ----A---- C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2015-08-10 14:33:24 ----A---- C:\WINDOWS\system32\audioLibVc.dll
2015-08-10 14:33:23 ----A---- C:\WINDOWS\system32\AERTAR64.dll
2015-08-10 14:33:23 ----A---- C:\WINDOWS\system32\AERTAC64.dll
2015-08-10 14:33:23 ----A---- C:\WINDOWS\system32\AcpiServiceVnA64.dll
2015-08-05 20:56:10 ----A---- C:\WINDOWS\system32\twinui.dll
2015-08-05 20:56:06 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-05 20:56:00 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-08-05 20:55:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2015-08-05 20:55:55 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-05 20:55:55 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-08-05 20:55:55 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-05 20:55:50 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-05 20:55:50 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-08-05 20:55:49 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2015-08-05 20:55:49 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-08-05 20:55:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2015-08-05 20:55:48 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-08-05 20:55:48 ----A---- C:\WINDOWS\system32\d3d9.dll
2015-08-05 20:55:47 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-08-05 20:55:46 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-08-05 20:55:45 ----A---- C:\WINDOWS\system32\winmde.dll
2015-08-05 20:55:45 ----A---- C:\WINDOWS\system32\NotificationController.dll
2015-08-05 20:55:45 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-05 20:55:43 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2015-08-05 20:55:43 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2015-08-05 20:55:42 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2015-08-05 20:55:42 ----A---- C:\WINDOWS\system32\wmpmde.dll
2015-08-05 20:55:41 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2015-08-05 20:55:41 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2015-08-05 20:55:41 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-05 20:55:41 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-05 20:55:40 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2015-08-05 20:55:40 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-08-05 20:55:40 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-08-05 20:55:40 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-08-05 20:55:40 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-08-05 20:55:40 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-08-05 20:55:39 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-08-05 20:55:39 ----A---- C:\WINDOWS\system32\UserDataService.dll
2015-08-05 20:55:39 ----A---- C:\WINDOWS\system32\provengine.dll
2015-08-05 20:55:39 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-05 20:55:39 ----A---- C:\WINDOWS\system32\MFPlay.dll
2015-08-05 20:55:39 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-08-05 20:55:38 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-08-05 20:55:38 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-08-05 20:55:38 ----A---- C:\WINDOWS\system32\wpnapps.dll
2015-08-05 20:55:38 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-08-05 20:55:38 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-05 20:55:38 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-05 20:55:38 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\dxgi.dll
2015-08-05 20:55:37 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\SYSWOW64\VoiceActivationManager.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.V2.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2015-08-05 20:55:36 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2015-08-01 18:22:34 ----D---- C:\WINDOWS\system32\SleepStudy
2015-08-01 03:32:21 ----D---- C:\ProgramData\PreEmptive Solutions
2015-08-01 03:32:12 ----D---- C:\Program Files (x86)\ShellDir
2015-08-01 03:28:51 ----D---- C:\ProgramData\Microsoft DNX
2015-08-01 03:28:51 ----D---- C:\Program Files\Microsoft DNX
2015-08-01 03:24:16 ----D---- C:\Program Files (x86)\Microsoft Web Tools
2015-08-01 03:22:26 ----D---- C:\Program Files\IIS Express
2015-08-01 03:22:26 ----D---- C:\Program Files (x86)\IIS Express
2015-08-01 03:21:55 ----D---- C:\Program Files (x86)\AppInsights
2015-08-01 03:21:28 ----D---- C:\Program Files (x86)\Microsoft Office365 Tools
2015-08-01 03:19:32 ----D---- C:\ProgramData\NuGet
2015-08-01 03:19:32 ----D---- C:\Program Files (x86)\NuGet
2015-08-01 03:19:24 ----D---- C:\Program Files (x86)\Microsoft WCF Data Services
2015-08-01 03:19:02 ----D---- C:\Program Files\IIS
2015-08-01 03:19:01 ----D---- C:\Program Files (x86)\IIS
2015-08-01 03:13:38 ----D---- C:\Program Files\Microsoft Visual Studio 12.0
2015-08-01 03:08:23 ----D---- C:\WINDOWS\symbols
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsRemoteEngine.exe
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsProxyStub.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsExperiment.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsDesktopEngine.exe
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsCapture.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\VSD3DWARPDebug.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\VSD3DWARP12Debug.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\perf_gputiming.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DXToolsReporting.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DxToolsReportGenerator.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DXToolsOfflineAnalysis.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DXToolsMonitor.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DXGIDebug.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DXCpl.exe
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DXCaptureReplay.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\DXCap.exe
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\d3d12warp.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\d3d12SDKLayers.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\d3d11_3SDKLayers.dll
2015-08-01 03:03:42 ----A---- C:\WINDOWS\SYSWOW64\d2d1debug3.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\VsGraphicsRemoteEngine.exe
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\VsGraphicsExperiment.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\VsGraphicsCapture.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\VSD3DWARPDebug.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\VSD3DWARP12Debug.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\DXToolsReporting.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\DXToolsOfflineAnalysis.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\DXToolsMonitor.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\DXGIDebug.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\DXCpl.exe
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\DXCaptureReplay.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\DXCap.exe
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\d3d12warp.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\d3d12SDKLayers.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\d3d11_3SDKLayers.dll
2015-08-01 03:03:41 ----A---- C:\WINDOWS\system32\d2d1debug3.dll
2015-08-01 03:03:40 ----A---- C:\WINDOWS\system32\VsGraphicsProxyStub.dll
2015-08-01 03:03:40 ----A---- C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe
2015-08-01 03:03:40 ----A---- C:\WINDOWS\system32\perf_gputiming.dll
2015-08-01 03:03:40 ----A---- C:\WINDOWS\system32\DxToolsReportGenerator.dll
2015-08-01 02:53:59 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 14.0
2015-08-01 02:11:11 ----D---- C:\ProgramData\VsTelemetry
2015-08-01 01:47:18 ----A---- C:\WINDOWS\SYSWOW64\REN3B6C.tmp
2015-07-31 11:35:36 ----A---- C:\WINDOWS\system32\drivers\tapoas.sys
2015-07-31 10:20:54 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-07-31 09:39:35 ----A---- C:\WINDOWS\system32\wmp.dll
2015-07-31 09:39:31 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2015-07-31 09:39:31 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2015-07-31 09:39:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2015-07-31 09:39:09 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-07-31 09:39:08 ----A---- C:\WINDOWS\system32\ClipUp.exe
2015-07-31 09:38:54 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-07-31 09:38:41 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-07-31 09:38:38 ----A---- C:\WINDOWS\system32\windows.storage.dll
2015-07-31 09:38:32 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-07-31 09:38:28 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2015-07-31 09:38:20 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2015-07-31 09:38:18 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-07-31 09:38:13 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2015-07-31 09:38:00 ----A---- C:\WINDOWS\system32\msi.dll
2015-07-31 09:37:40 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-07-31 09:37:38 ----A---- C:\WINDOWS\system32\wininet.dll
2015-07-31 09:37:37 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-07-31 09:37:36 ----A---- C:\WINDOWS\system32\dosvc.dll
2015-07-31 09:37:35 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2015-07-31 09:37:25 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-07-31 09:37:22 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2015-07-31 09:37:16 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-07-31 09:37:13 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-07-31 09:37:13 ----A---- C:\WINDOWS\explorer.exe