Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

snapdo

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
michal5
Návštěvník
Návštěvník
Příspěvky: 24
Registrován: 07 črc 2011 22:28

snapdo

#1 Příspěvek od michal5 »

dobrý den,prosím.stáhl sem si do pc nakej humus jmenem snopdo.dělá to bordel v prohlížeči a buh ví kde ješte :D prosím jestli bylo možné že by jste se mi na to podívaly....a pomohli mi nějak celkově ten pc vyčistit jestli tu něco bude :)

Logfile of random's system information tool 1.10 (written by random/random)
Run by michal at 2015-09-07 19:39:43
Microsoft Windows 10 Home
System drive C: has 618 GB (68%) free of 912 GB
Total RAM: 7375 MB (60% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:39:47, on 7. 9. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16412)
Boot mode: Normal

Running processes:
C:\Users\michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\GameforgeLive\gfl_client.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\michal.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWqICWRlg5p-Tqs2FcBxkvHPRrtnErSaxd7ue8heSKF-e17q934ATryFfgU0z7EZ4EwOGO-Vi1--xMGE9HGC0LjoNKn8ZaIOWZzjHMp0LolhFjE-WB3lPT8jaGQv0r8CiM6EYYokQEVqWepCRBoABeWS2e2efM&q={searchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWqICWRlg5p-Tqs2FcBxkvHPRrtnErSaxd7ue8heSKF-e17q934ATryFfgU0z7EZ4EwOGO-Vi1--xMGE9HGC0LjoNKn8ZaIOWZzjHMp0LolhFjE-WB3lPT8jaGQv0r8CiM6EYYokQEVqWepCRBoABeWS2e2efM&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O1 - Hosts: 0.0.0.1 mssplus.mcafee.com
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [Raptr] C:\PROGRA~2\Raptr\RAPTRS~1.EXE --startup
O4 - HKLM\..\Run: [RazerCortex] C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe -autorun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\michal\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\michal\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [AppEx Accelerator UI] C:\Program Files\AMD Quick Stream\AMDQuickStream.exe -h
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [MurGee.com Auto Clicker] C:\Users\michal\AppData\Roaming\Auto Clicker\AutoClicker.exe :silent
O4 - HKCU\..\Run: [OneDrive] "C:\Users\michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\michal\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\michal\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64"
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: crossbrowse.lnk = C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
O4 - Startup: Metin2Mod_PL_12032015_5154.lnk = C:\ProgramData\{2539c2a8-58b8-d03a-2539-9c2a858b0aa1}\Metin2Mod_PL_12032015_5154.exe
O4 - Startup: Metin2Mod_PL_17032015_5211.lnk = C:\ProgramData\{e7d1bd39-3f12-001b-e7d1-1bd393f1f4e4}\Metin2Mod_PL_17032015_5211.exe
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.11.163\SSScheduler.exe
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Application Hosting service (Application Hosting) - Unknown owner - C:\ProgramData\Application Hosting\Application Hosting.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Compliant Host Controller (cohci1394) - Unknown owner - C:\Program Files\Controller\cohc.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.11.163\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: Razer Game Scanner (Razer Game Scanner Service) - Unknown owner - C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: RzKLService - Razer Inc. - C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe

--
End of file - 13182 bytes

======Listing Processes======








C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\atiesrxx.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-70658e7c-f5ab-4a17-a4c0-18693712c85d -SystemEventPortName:HostProcess-06c6e71a-7f09-4784-9d3e-c255a643b8e7 -IoCancelEventPortName:HostProcess-10664c9f-da4d-48ef-8e50-6a912de088b8 -NonStateChangingEventPortName:HostProcess-2c20dd50-1d4a-493f-ac21-5bdcca70aada -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:eeee3e06-83ba-4810-a815-5fc5bad1e9cf -DeviceGroupId:WudfDefaultDevicePool
atieclxx
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
dashost.exe {67a37218-7b61-4965-bdb8320a84edb5c6}
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\WINDOWS\system32\CxAudMsg64.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Elantech\ETDService.exe"
"C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
sihost.exe

C:\WINDOWS\Explorer.EXE
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDIntelligent.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\RTFTrack.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Program Files\AMD Quick Stream\AMDQuickStream.exe" -h
"C:\Users\michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\McAfee Security Scan\3.11.163\SSScheduler.exe"
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto -critical

"C:\Program Files (x86)\Steam\Steam.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "C:\Users\michal\AppData\Local\Steam\htmlcache" -steampid 13876 -buildid 1441333420 -steamid "0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-direct-write
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --no-sandbox --enable-deferred-image-decoding --lang=en-US --lang=en-US --product-version="Valve Steam Client" --disable-spell-checking --enable-system-flash --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=7484 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --disable-gpu-compositing --channel="7484.0.1841625091\620579024" /prefetch:673131151
"C:\Program Files (x86)\GameforgeLive\gfl_client.exe" "/noautopatch"
taskhostw.exe
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Users\michal\AppData\Local\Voltfase.exe downloadx proiuctpro
"C:\Program Files\Controller\cohc.exe" /s iid=1561578 did=APSnapdoAMRev sid=3 ref=a5923999-c859-e48c-acb8-53f07f99a33b-PolicyMac id=5f3fed685ac490886d0e7272fc9ac0e0b087307775ebc5e8cacd67b679b52a41
"C:\ProgramData\Application Hosting\Application Hosting.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\CCleaner\CCleaner64.exe" /monitor
consent.exe 1012 348 0000009F25004160
C:\WINDOWS\system32\browser_broker.exe -Embedding
consent.exe 1012 372 0000009F23CB74C0
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Users\michal\Desktop\RSITx64.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe27_ Global\UsGthrCtrlFltPipeMssGthrPipe27 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 596 600 608 8192 604

======Scheduled tasks folder======

C:\WINDOWS\tasks\2598067e-87eb-469f-b105-c760181e53cf-1-6.job - C:\Program Files (x86)\CinemaP-1.9cV07.09\2598067e-87eb-469f-b105-c760181e53cf-1-6.exe /rawdata=scvoYS9jcheyGacd/9ylc2eq+cxaYJYQ2GPU3MyvSGN8wXyVAd1IOmOSjloDJ2Shtu5wcBLs6nRPFJ2/l6IXNHWyjmknU/OIY+wd5LFshePOvIy4dxbvqaQ8KA1+qDPE0CVyT33lgV7owDKulJXxEzSU1rJtEOhlgm7EFh2kwTAzIRTJ76eopQeujUXxbUcQYoxMhF6G29FDwRXSYPHdG2xO5O8canyJq3Lvv7HacOqHDlk5ccyUXeTnEtPRxm4Mvf9OPepiDisqbGYp8TK/81rdn/v/RIKVB1GAjzcfltcFVESeJtmfujgXmebxpFCzRwv5ZSCFD48Kd64opKjquWdeUPiQ6t8JidPakdpu7yEvWaHJPszLngZq9/FWzQ/6e4tJuE4zsY/M8p24oWYQkRv0kQjiy6PPxEgCK51z+zsLKF4KwbKN4mqf5kePttKy+sT8XuQrQjFnLq1eQGVN82wnTCd/hN3JUxDWQI0dacszOjQw0GWSow9/qR7E5eVuLYoIM16kvTFBNfnOBUOd3OmOP2pXlPewFpuxsbzszoyAPgPIBDojNI4xckLLANanqbTpJ/KoWeZ65hEs5kWY2eltLnHk06pZc3YbyjpBHJC6nNbXbjv3EDcsTkazEqtqYxrUru+ew/w8Qfs4nyMLTmjflrzm0iVjJWwXye3uw+U9T2pJxSxtehndui/3PQnePSxT0lRH8ws1PtgWGN/ValtshkgWhv18wdfwmcUtXGaL6qfXis0G7Js5AXROZByC+D0CloZekfkBGpDbDxZw8vn5wUypBdJN96TztiUFIP6t4IWM+Ui3AnYGaO8B/RRkNfoiR8SWdOzhberxtNmcgJbwbioglVPyYeHHDgIKU2JoOmEqmYCP8VZ0Yc33Vk5/5Y2A0lEFSgpiBhVVK2I4wIml+Hucoktlo0wa8tHxi6iydyLMlKGvkj0OoDhA67Fi4maMSr2zkUyXS7YzuuVaHSp62IHCn2PTI4Jkls+m1EeZPipwm22Zu7mkxD6aYuYrjp0teAgx2ElLAK5dvwQkVbweYGl5fhhRqi4X//5XBcvKL63ZrACAql+Qc8Nx3l6qeRPaGip7Ve1Ow0i+NY3ZfpEn0UiJYuHqQ5v7yFhKSkej+PE3rrt0vRLeuWyKy2vU4+zfHnGKO92FAMcQ+Gt4915vNgLB5iyH7SQkj15XmoFqfoFwdY0WSxF5adusEINfRWoYnFhZNmEZ8c2aZ25rVomIynKqfhwia7EyOAS38GcPhjTTI7zJAj1wB4XZ010DuBZdfH+YGKMT8e60gu+vC1A6ZaafaJre5FRKY99QrKvsQkTaD2tNZXHTgBTunJ6gGQ8wWg8sFgbTtLper7vMZg==
C:\WINDOWS\tasks\2598067e-87eb-469f-b105-c760181e53cf-1-7.job - C:\Program Files (x86)\CinemaP-1.9cV07.09\2598067e-87eb-469f-b105-c760181e53cf-1-7.exe /rawdata=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
C:\WINDOWS\tasks\2598067e-87eb-469f-b105-c760181e53cf-10_user.job - C:\Program Files (x86)\CinemaP-1.9cV07.09\2598067e-87eb-469f-b105-c760181e53cf-10.exe /rawdata=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
C:\WINDOWS\tasks\2598067e-87eb-469f-b105-c760181e53cf-13.job - C:\Program Files (x86)\CinemaP-1.9cV07.09\2598067e-87eb-469f-b105-c760181e53cf-13.exe /rawdata=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
C:\WINDOWS\tasks\2598067e-87eb-469f-b105-c760181e53cf-14.job - C:\Program Files (x86)\CinemaP-1.9cV07.09\2598067e-87eb-469f-b105-c760181e53cf-14.exe /rawdata=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
C:\WINDOWS\tasks\2598067e-87eb-469f-b105-c760181e53cf-3.job - C:\Program Files (x86)\CinemaP-1.9cV07.09\2598067e-87eb-469f-b105-c760181e53cf-3.exe /rawdata=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
C:\WINDOWS\tasks\2598067e-87eb-469f-b105-c760181e53cf-4.job - C:\Program Files (x86)\CinemaP-1.9cV07.09\2598067e-87eb-469f-b105-c760181e53cf-4.exe /rawdata=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
C:\WINDOWS\tasks\2598067e-87eb-469f-b105-c760181e53cf-5.job - C:\Program Files (x86)\CinemaP-1.9cV07.09\2598067e-87eb-469f-b105-c760181e53cf-5.exe /rawdata=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
C:\WINDOWS\tasks\2598067e-87eb-469f-b105-c760181e53cf-5_user.job - C:\Program Files (x86)\CinemaP-1.9cV07.09\2598067e-87eb-469f-b105-c760181e53cf-5.exe /rawdata=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
C:\WINDOWS\tasks\2598067e-87eb-469f-b105-c760181e53cf-6.job - C:\Program Files (x86)\CinemaP-1.9cV07.09\2598067e-87eb-469f-b105-c760181e53cf-6.exe /rawdata=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
C:\WINDOWS\tasks\2598067e-87eb-469f-b105-c760181e53cf-7.job - C:\Program Files (x86)\CinemaP-1.9cV07.09\2598067e-87eb-469f-b105-c760181e53cf-7.exe /rawdata=R/YrXSQHDJMQy/SmJEOJ4QzKTLcIMmfV6Vo/athpPtBvxA/ewXzbKbzHNvJCohsfUKzZ+7qAeHiVdifVfGtxuFalGy1RScNFsXHHRs6Coer5DE4qk8jF33fx8/NVA5Yx5Hq01ObzBaVtWbpfYUlB8OcoxPicPBB8Hx5jiqnqbYceq5n1bduVQHmBFsIU8JTkZ5k6QR2f5V2JcxPPV3tufFRGUepRAVHM2Z/wJ9OoCq7uA5vEd7vd3mEGzvcPAaiK7WueovigGveKHPVr0DuayRzUBSb7Jaux1qoQ2J3TdaCTrXCN2z2UKOwe+kQlz6Kv8fLZ3y4QlJb39WQufAwTuyO5paKHIcWMSxAFJBKIXljZM5VoUisWioC5Lab1RNiXu+H9ytGJFivDr29HaP9guHxpw5a0yqPopHJxGILAu0cRfWulC8E/Etabm3biWfwHzL/YzjkfcAUMEtDEjprqChZu28bROaYw7K4HWs8TJFkfxtUoQ3EjsIRmXDmqF2V4D8P7Ppq/Mn1HNc3nFllUouFOOvlYqnvnxdNi4ISrXfKDArrGauoC/FlXq8J1JkdGme9LYUa7S3GE2sXvvRIbdytBrbRJoXDsLd9Wbqq3x6lPEQKxSUWVM86BjWrFrENyol6hGHbmVpWt0Azd/9EVvnibzXFVhqMrBYUl6SWpX0CqeAgY/CiuJIeHbwrc7hT7WP+Kadf87G+J1dwLltkAAZk0B6OfcalvB7oCFyZU7quOIb3zYb0CmLJbkgCqYypOrCPoKbFtJPmAor61YhNspyPQwHblCs5+89Zcnb21pvsg6HAvcDjEWoCurtHQfiRrP49GwiOFX76LW5dOCbqemhBfh+gSY/Hm2lTANrIuAg9bazG6VAtJQLc+6PEwYb0U02LvRKCO1PQG6fWMBfGihLZ8k4GCEWny1uBp62jVrB9sG/LBRBzg+uqtCK2S/PiPLtvauJbWI9qrOSM82jwrV7Ud59CCgN+uGg93x4kvbLppCS4G/4DIItq3ssPKmT/NPDNVFZ4g/MRGoz6LAFEejV+y22nA0Z4eKQQQGb2TCH9w5SKSJLuZosetz2ksmwBJo9m5mVAGsr8Qg8qEQrwUtJIYErwW4RxWYKebdkj8YUIqx0ORC+fbocFd6xP/stT+CLCzB8xfJlQc9eXUZOAjH87cmuoSkmWKuUGFM/0Joi4VvC1Jfzi1ZKOra5VREg3w7SLg0PSshXvOjK7VoBMzwLxsNxguMPgyzzy54+CS5qs9AByUz4TSTw7xrU3GtsDCZua5vCyRnCB31ODhDaPnqneSlr1jk1IM0U+TNP4p9yWWM2xO1ActP5mTTJ90wImfZn4hbFwbsElMF0rSBDi773kP2rIkcsBRX4wPlSV8yAIkGpGX4st00uj7Ny9rZUlvutMKATqh+mi6bCTeipnCI5eCmg2cI+ARW04al+AAsTf8tBqccSqV+MVe4hJzvls/+91r9siMCPwBDbkwy7p/gwVXZvVJQrOhf4uCgw+GkvMdGkX0oOWELYhP2GCLK6opvPGZ4uGrtRVX5bDysIy8RJmtXJvr+Y+m8z7kqX74UsBil2F6z24g+SfjJ69iDz/1r032kSHrRmRTwZCE9GkktF9xW0PRmPwgwIiGvd4HsOI16z+PM40fCt7UzlEU+JidpasIRSTU72cU4ohleGVaOAuLYGLjTA4TFdHZeVC8LajEr+sTwTh1REy8DzUXsun/CGGSJW9JLhhXSELQV0ZktOkvayK7fEBLYke1zGCr8TH5lgFl9c60EH0Pa79T+Yld2KiV97Nwbr5wqFKDL2R3k7FjoD8ZtTc5l6yYc2B0fTfxszDfgzc8yvqmrqqsWu1J2B4tNN1sEqiK6wvkzSrTKsK+WCqNSqVJtdXcxHBZuOCIRvyS0HjSseclrefB/ElJs/zpVPNrPmi9uXu6ZdkcGgicP21yBwruq0wO9Hu/6FaL1RiSDcPTjlaKKhAN0BOLVkbvTBa4G+mYeZC15/zUW9+zp0vnTwjyLAagcT14bY04ii7OdnV065r5pBmXzRjiQnQuud0m4IJlT6PCBLipxzXI9QHMXn8T3+llGcIXsa/+0iyINHKCjgISOVzy+o+ope8QLjVSdR4jC4bxEUiaqsHvzIq+9Krxm/xGkk4zY1XEOC8o9maSS08USHySSEXVF5QFK4AEHlnUdkvjmwjOki7JXJJlDtCtWe18XvkrO1UhB/bGZn/B1xcuytxSzRQDtQpyME8oN7SrK3+vnzRShEP4zjTu8G6Qt7wReuAnHbr/72AyXWH59NiQAU7iT/2Rpmuyn5M87Neiq8RVChw/qaxZ9cjiPjqIzhXvpV9yDRUFJkNCKYyRYzfBqEsbhT8DLW5hMcdEge8y6v9Yiq03mA==
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\Crossbrowse.job - C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe /rawdata='RX3L8b6e3NLYEOEKkxFVnGlq3JfktOjfS1RV4YkOfEqlbHbIVHme+J92eVHpJAGrPvgezMsmuApsZmK+5P0xmxZtpEPxLLRNFlmGEmG1BgKuqt640zde/AgBff6MyjF0OBwDEFfrADG+hXpDXAALsXePPbd2OekPesaJuJyLPmOOJlJxzHbdN1UU2NWRmwAzni18LVv9vNx3M33KPDR3bJ9s0bUgp7DjbkLiI1oWbWs6zlH/ELysBsNS7A8JypQJ76JsqicGDL5u4irVc5im61BdW3dRu1F7Py+VuhyThYBiwaRN3jYRN8duk5A4u5kzpDnoyUynMN3uDpT+kgH1Uw=='
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe /c
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Rb7rBO2AfXZhtnTTXsG.job - C:\Users\michal\AppData\Roaming\Rb7rBO2AfXZhtnTTXsG.exe --c=iiONm+N4KibwDft6UZy+xPblb01WhiiRTKQOe2dD9dJoiX3ti9vd5sTR88FTzcCI9RnCPjAG4xe3HkjJn5ixaEfbt6VKAzsYoduSDfLpMAIoGtx5aUSQUzGJGKYcK+pQv2UexaQnzLjXt+J5+DXjkK1DxhwU+H6l368tD57fDvpi3W/E3E1hFwgWHJzr2Kx7JOd+FD7as41GynN0GvoZBLJJv0JIfWXR69WZmyBOhenHbwT907iGOufngw8QyWocAoIpoBOeIMayEOINEH6gfYusTeZpI3KBL1a2Bd6Xki5A5GrIKvwwQsecG/6qT4aM8hHuazCZgcWyPTcew6iAcQ==
C:\WINDOWS\tasks\XnL3u4RkmDn7W2JFbjoXWc.job - C:\Users\michal\AppData\Roaming\XnL3u4RkmDn7W2JFbjoXWc.exe --c=prs82rrcaNZVbzoM6gv2Eh4Yrw0+u3oR4Ud0dFLphKX00QykIM6xABQg58mLRbgJljCK3Swdlo+hZCB+2E1PEffHxFKVF9U0DY6YKx6/wY78VffvqAuTkRRBR8OM2xSpBlKC2h75gmF41eAsbBPvYSFaNze3wapNav6I8VUWa5+tzQeKv5TEhNPQw7ZneCQKhqUYN/ldEkmo4IsVYCnxCYCzimFsmaYjHDH9lB089ZXx+uJjFTe8YPQkfRirqQz1VrxxVZnIjNrc9loBawYeYYmSwm8wktZ2087D5howSXYKzX0ThFmdCclpgBZmGNsmerFo+IVXDvdHviRnkPomDg==

=========Mozilla firefox=========

ProfilePath - C:\Users\michal\AppData\Roaming\Mozilla\Firefox\Profiles\0u7af830.default

prefs.js - "browser.search.useDBForOrder" - "false"
prefs.js - "browser.startup.homepage" - "http://seznam.cz/"
prefs.js - "keyword.URL" - "http://search.seznam.cz/?sourceid=quick ... earchTerms}&"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll


C:\Users\michal\AppData\Roaming\Mozilla\Firefox\Profiles\0u7af830.default\searchplugins\
findit.xml
seznam-avast.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-16 655480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d4670e84-fb30-4d9b-80c3-caf5bbee23d8}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-07-07 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-16 559624]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-07-07 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2015-08-23 3743648]
"RtsFT"=C:\WINDOWS\RTFTrack.exe [2015-06-02 9308416]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2013-11-30 17097200]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2013-11-30 193008]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2014-11-25 935104]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2014-04-10 1830616]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"cz.seznam.software.autoupdate"=C:\Users\michal\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\michal\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"AppEx Accelerator UI"=C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [2015-04-06 488640]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-08-27 22041192]
"MurGee.com Auto Clicker"=C:\Users\michal\AppData\Roaming\Auto Clicker\AutoClicker.exe [2015-03-29 120304]
"OneDrive"=C:\Users\michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-08-23 404064]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-08-20 8455960]

michal5
Návštěvník
Návštěvník
Příspěvky: 24
Registrován: 07 črc 2011 22:28

Re: snapdo

#2 Příspěvek od michal5 »

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\michal\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2012-04-19 217088]
"RemoteControl10"=C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"Intel AppUp(SM) center"=C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2012-07-12 155488]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-07-16 6109776]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"Raptr"=C:\PROGRA~2\Raptr\RAPTRS~1.EXE [2015-03-25 55568]
"RazerCortex"=C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe [2015-03-12 98256]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-04-30 334896]
"BlueStacks Agent"=C:\Program Files (x86)\BlueStacks\HD-Agent.exe [2015-07-13 904824]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-08-04 767176]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe []

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.11.163\SSScheduler.exe

C:\Users\michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
crossbrowse.lnk - C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
Metin2Mod_PL_12032015_5154.lnk - C:\ProgramData\{2539c2a8-58b8-d03a-2539-9c2a858b0aa1}\Metin2Mod_PL_12032015_5154.exe
Metin2Mod_PL_17032015_5211.lnk - C:\ProgramData\{e7d1bd39-3f12-001b-e7d1-1bd393f1f4e4}\Metin2Mod_PL_17032015_5211.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"DisableCAD"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-09-07 19:39:43 ----D---- C:\rsit
2015-09-07 19:24:11 ----D---- C:\Program Files\CCleaner
2015-09-07 18:49:02 ----D---- C:\Program Files (x86)\globalUpdate
2015-09-07 18:48:49 ----D---- C:\ProgramData\Zonelams
2015-09-07 18:48:27 ----D---- C:\ProgramData\Zonelam
2015-09-07 18:48:21 ----D---- C:\ProgramData\Application Hosting
2015-09-07 18:47:58 ----D---- C:\Program Files\Controller
2015-09-07 17:31:20 ----A---- C:\WINDOWS\SYSWOW64\npptNT2.sys
2015-09-07 17:31:19 ----D---- C:\Program Files\Common Files\INCA Shared
2015-09-05 16:00:54 ----D---- C:\WINDOWS\Cnxt
2015-09-05 15:59:45 ----A---- C:\WINDOWS\SYSWOW64\SASrv.exe
2015-09-05 15:59:41 ----A---- C:\WINDOWS\system32\drivers\CxSfPt.dat
2015-09-05 15:58:40 ----A---- C:\WINDOWS\system32\CxAudMsg64.exe
2015-09-05 15:58:13 ----D---- C:\Program Files\Dolby Digital Plus
2015-09-05 15:56:58 ----D---- C:\WINDOWS\LastGood.Tmp
2015-09-05 15:55:15 ----A---- C:\WINDOWS\system32\UCI64A96.DLL
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\DDPA64.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\CxPageMaster64.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\CX64BP16.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\CSpkExt64.dll
2015-09-05 13:35:17 ----D---- C:\Program Files\McAfee Security Scan
2015-08-30 07:57:45 ----D---- C:\WINDOWS\system32\SleepStudy
2015-08-29 23:38:48 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-08-29 23:38:45 ----A---- C:\WINDOWS\system32\shell32.dll
2015-08-29 23:38:43 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-08-29 23:38:40 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-08-29 23:38:39 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-29 23:38:39 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-08-29 23:38:39 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-29 23:38:38 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-08-29 23:38:38 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-08-29 23:38:37 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-08-29 23:38:37 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-08-29 23:38:37 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-08-29 23:38:37 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\system32\ci.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\reseteng.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\BthRadioMedia.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\wlansvc.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\wfdprov.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\WcnNetsh.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\aitstatic.exe
2015-08-29 23:38:33 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\SYSWOW64\WcnApi.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\WcnApi.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\fdWCN.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\dafWCN.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-29 23:38:32 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2015-08-29 23:38:32 ----A---- C:\WINDOWS\SYSWOW64\fdWCN.dll
2015-08-29 23:38:32 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2015-08-29 23:38:32 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2015-08-28 15:13:13 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-08-24 21:26:12 ----D---- C:\ProgramData\ATI
2015-08-24 19:34:55 ----A---- C:\WINDOWS\system32\UCI64A53.DLL
2015-08-24 16:13:02 ----A---- C:\WINDOWS\system32\drivers\appexDrv.sys
2015-08-24 16:13:01 ----D---- C:\Program Files\AMD Quick Stream
2015-08-23 18:53:59 ----A---- C:\WINDOWS\system32\ETDCoInstaller01001.dll
2015-08-23 18:40:04 ----HD---- C:\Program Files (x86)\Temp
2015-08-23 18:40:03 ----A---- C:\WINDOWS\RtlExUpd.dll
2015-08-23 11:34:11 ----A---- C:\WINDOWS\SYSWOW64\SET2E66.tmp
2015-08-23 11:34:11 ----A---- C:\WINDOWS\SYSWOW64\SET2C13.tmp
2015-08-23 11:34:10 ----A---- C:\WINDOWS\SYSWOW64\SET6A70.tmp
2015-08-23 11:34:04 ----A---- C:\WINDOWS\SYSWOW64\SET495C.tmp
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\UCI64A95.DLL
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\SPKVol.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\MicGain.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\MicEQ.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\ISAPSII.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\FXMisc.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\DS1Parm.ini
2015-08-23 11:17:41 ----A---- C:\WINDOWS\system32\CX64BP12.dll
2015-08-23 11:17:40 ----A---- C:\WINDOWS\system32\drivers\BIT_CLK.ini
2015-08-23 11:17:40 ----A---- C:\WINDOWS\system32\drivers\AFA.ini
2015-08-23 11:13:48 ----SHD---- C:\Recovery
2015-08-23 11:13:42 ----DC---- C:\WINDOWS\Panther
2015-08-23 11:09:34 ----D---- C:\Windows.old
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\bcd.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wpnapps.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wpccpl.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wmpmde.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wmp.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\winmde.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfsvr.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfps.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\MFPlay.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\ieproxy.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\Chakra.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\uxtheme.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\systemcpl.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\srumsvc.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\spbcd.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ReInfo.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\efscore.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ActionCenter.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\LocationPermissions.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\LocationGeofences.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\d3d9.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\ConhostV2.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\bcd.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wuuhext.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\winresume.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\winlogon.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\winload.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wininet.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\uxtheme.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\usocore.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\twinui.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\TabSvc.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\systemcpl.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\stobject.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\sppcomapi.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\spbcd.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\shutdownux.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\setbcdlocale.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\sendmail.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ReInfo.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\RDXService.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ntshrui.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\notepad.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\NetworkStatus.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\MbaeParserTask.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\hal.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\GamePanel.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\efscore.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\wof.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\refsv1.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\dosvc.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\DevicesFlowBroker.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\comdlg32.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ClipUp.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\calc.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\bcdedit.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\bcdboot.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ActionCenter.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\notepad.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\explorer.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\tetheringclient.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.V2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\NotificationObjFactory.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\hmkd.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wintrust.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wininit.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\winhttp.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\windows.storage.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wimserv.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wimgapi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wer.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\UserDataService.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Unistore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\unenrollhook.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\tquery.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\tetheringclient.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\syncutil.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\srumsvc.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\schedsvc.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ReAgent.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\rdbui.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\psmsrv.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\provengine.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\omadmprc.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\omadmclient.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\OmaDmAgent.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\NotificationController.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MusNotification.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\mssprxy.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\msiexec.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\msi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\mos.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\mf.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MapsStore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\LicenseManagerApi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\InputService.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\hmkd.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\gdi32.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\FntCache.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\dxgi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\DWrite.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\rdyboost.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\directmanipulation.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\diagtrack_win.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\coredpus.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ContactApis.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\configmanager2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\cloudAP.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\BingMaps.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\AppContracts.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\VoiceActivationManager.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\directmanipulation.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\dwmapi.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\UcmUcsi.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\msgpiowin32.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2015-08-23 11:02:57 ----D---- C:\ProgramData\Microsoft OneDrive
2015-08-23 11:01:39 ----A---- C:\WINDOWS\system32\ETDCoInstaller01000.dll
2015-08-23 10:48:07 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-23 10:46:18 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-08-23 10:46:14 ----D---- C:\Program Files\Reference Assemblies
2015-08-23 10:46:14 ----D---- C:\Program Files\MSBuild
2015-08-23 10:46:14 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-08-23 10:46:14 ----D---- C:\Program Files (x86)\MSBuild
2015-08-23 10:45:29 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-08-23 10:45:29 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-08-23 10:45:29 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-23 10:45:27 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-08-23 10:45:27 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-08-23 10:45:27 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-23 10:39:27 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-08-23 10:29:24 ----SD---- C:\Users\michal\AppData\Roaming\Microsoft
2015-08-23 10:29:24 ----D---- C:\Users\michal\AppData\Roaming\ATI
2015-08-23 10:25:50 ----D---- C:\Program Files\ATI Technologies
2015-08-23 10:25:24 ----D---- C:\Program Files (x86)\ATI Technologies
2015-08-23 10:24:22 ----D---- C:\Program Files\Common Files\Atheros
2015-08-23 10:21:49 ----D---- C:\ProgramData\AMD
2015-08-23 10:21:03 ----D---- C:\ProgramData\Package Cache
2015-08-23 10:20:44 ----D---- C:\ProgramData\Conexant
2015-08-23 10:20:38 ----D---- C:\Program Files\CONEXANT
2015-08-23 10:20:24 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-08-23 10:20:19 ----D---- C:\Program Files\AMD
2015-08-23 10:19:53 ----D---- C:\Program Files\Elantech
2015-08-23 10:17:47 ----D---- C:\WINDOWS\Prefetch
2015-08-22 09:33:23 ----ASH---- C:\swapfile.sys
2015-08-22 09:33:23 ----ASH---- C:\pagefile.sys
2015-08-22 09:33:13 ----ASH---- C:\hiberfil.sys
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\SET6AC0.tmp
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\SET3B31.tmp
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atiuxpag.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atiu9pag.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atidxx32.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\amdxc32.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\SET5965.tmp
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\SET4B3A.tmp
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\SET3FB1.tmp
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\SET2A2C.tmp
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atiuxp64.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atiumd6a.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atiumd64.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atiu9p64.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atidxx64.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\amdxc64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\SET4F96.tmp
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\aticfx32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\amdhcp32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\amdave32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\SET5A63.tmp
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\SET4C38.tmp
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\atimpc64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\aticfx64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\amdpcom64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\amdmiracast.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\amdhcp64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\amdave64.dll
2015-08-20 21:46:54 ----A---- C:\WINDOWS\system32\amdocl64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\mantleaxl32.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\mantle32.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\hsa-thunk.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\atisamu32.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\atioglxx.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\SET6CC1.tmp
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\SET6B7F.tmp
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\mantleaxl64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\mantle64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\coinst_15.20.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\clinfo.exe
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\atitmm64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\atio6axx.dll
2015-08-20 21:46:50 ----N---- C:\WINDOWS\system32\drivers\atikmdag.sys
2015-08-20 21:46:50 ----A---- C:\WINDOWS\SYSWOW64\amdocl.dll
2015-08-20 21:46:50 ----A---- C:\WINDOWS\system32\drivers\SET886.tmp
2015-08-20 21:46:50 ----A---- C:\WINDOWS\system32\drivers\SET212E.tmp
2015-08-20 21:46:50 ----A---- C:\WINDOWS\system32\atisamu64.dll
2015-08-20 21:46:44 ----A---- C:\WINDOWS\system32\aticaldd64.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\atiglpxx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\atigktxx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\atieah32.exe
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\aticalrt.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\aticaldd.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\drivers\SET575E.tmp
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\drivers\SET4A9B.tmp
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\drivers\atikmpag.sys
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atimuixx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atiglpxx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atig6txx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atig6pxx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atiesrxx.exe
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atieclxx.exe
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atieah64.exe
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atidemgy.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\aticalrt64.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll
2015-08-20 21:46:40 ----A---- C:\WINDOWS\SYSWOW64\amdocl12cl.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\SYSWOW64\aticalcl.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\system32\aticalcl64.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2015-08-20 21:46:38 ----A---- C:\WINDOWS\system32\atiadlxx.dll
2015-08-20 21:46:36 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll
2015-08-20 21:46:32 ----A---- C:\WINDOWS\system32\OpenCL.dll
2015-08-20 21:46:28 ----A---- C:\WINDOWS\system32\amdmantle64.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\SYSWOW64\amdmantle32.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\system32\amdmmcl6.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\system32\amdhdl64.dll
2015-08-20 21:46:24 ----A---- C:\WINDOWS\SYSWOW64\amdhdl32.dll
2015-08-20 21:46:24 ----A---- C:\WINDOWS\SYSWOW64\amdgfxinfo32.dll
2015-08-20 21:46:24 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll
2015-08-09 07:10:16 ----A---- C:\WINDOWS\SYSWOW64\detoured.dll
2015-08-09 07:10:16 ----A---- C:\WINDOWS\system32\detoured.dll
2015-08-09 07:10:16 ----A---- C:\WINDOWS\system32\ATIODE.exe
2015-08-09 07:10:16 ----A---- C:\WINDOWS\system32\ATIODCLI.exe
2015-08-09 07:10:14 ----A---- C:\WINDOWS\system32\amdocl_as64.exe
2015-08-09 07:10:12 ----A---- C:\WINDOWS\SYSWOW64\amdocl_ld32.exe
2015-08-09 07:10:12 ----A---- C:\WINDOWS\SYSWOW64\amdocl_as32.exe
2015-08-09 07:10:12 ----A---- C:\WINDOWS\system32\amdocl_ld64.exe
2015-08-09 07:10:10 ----A---- C:\WINDOWS\system32\drivers\amdacpksd.sys
2015-08-08 16:05:38 ----A---- C:\WINDOWS\system32\ativce03.dat
2015-08-08 16:05:38 ----A---- C:\WINDOWS\system32\ativce02.dat
2015-08-08 16:03:58 ----A---- C:\WINDOWS\system32\amdicdxx.dat
2015-08-08 16:03:56 ----A---- C:\WINDOWS\system32\amde31a.dat

======List of files/folders modified in the last 1 month======

2015-09-07 19:39:45 ----D---- C:\Program Files\trend micro
2015-09-07 19:34:01 ----D---- C:\WINDOWS\system32\Tasks
2015-09-07 19:33:59 ----D---- C:\WINDOWS\Temp
2015-09-07 19:28:16 ----D---- C:\Users\michal\AppData\Roaming\TeamViewer
2015-09-07 19:28:16 ----D---- C:\Users\michal\AppData\Roaming\DAEMON Tools Lite
2015-09-07 19:28:15 ----D---- C:\Users\michal\AppData\Roaming\TS3Client
2015-09-07 19:28:15 ----D---- C:\Users\michal\AppData\Roaming\BitTorrent
2015-09-07 19:28:15 ----D---- C:\Program Files (x86)\Steam
2015-09-07 19:28:14 ----D---- C:\ProgramData\BlueStacksSetup
2015-09-07 19:27:35 ----D---- C:\WINDOWS\SoftwareDistribution
2015-09-07 19:27:35 ----D---- C:\WINDOWS\INF
2015-09-07 19:27:35 ----D---- C:\WINDOWS\debug
2015-09-07 19:27:35 ----D---- C:\Windows
2015-09-07 19:24:11 ----RD---- C:\Program Files
2015-09-07 19:23:00 ----D---- C:\WINDOWS\system32\sru
2015-09-07 19:17:58 ----D---- C:\Program Files (x86)\Common Files
2015-09-07 19:05:49 ----RD---- C:\Program Files (x86)
2015-09-07 18:56:18 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-09-07 18:54:37 ----D---- C:\WINDOWS\Tasks
2015-09-07 18:49:18 ----D---- C:\Program Files (x86)\AMD
2015-09-07 18:49:05 ----SHD---- C:\WINDOWS\Installer
2015-09-07 18:48:59 ----D---- C:\WINDOWS\SysWOW64
2015-09-07 18:48:49 ----HD---- C:\ProgramData
2015-09-07 18:47:29 ----RSD---- C:\WINDOWS\assembly
2015-09-07 18:20:26 ----D---- C:\WINDOWS\System32
2015-09-07 17:31:30 ----D---- C:\WINDOWS\system32\drivers
2015-09-07 17:31:19 ----D---- C:\Program Files\Common Files
2015-09-07 17:28:54 ----D---- C:\Program Files (x86)\GameforgeLive
2015-09-07 16:43:23 ----D---- C:\WINDOWS\Microsoft.NET
2015-09-07 16:34:55 ----D---- C:\Users\michal\AppData\Roaming\Skype
2015-09-07 06:43:34 ----D---- C:\Users\michal\AppData\Roaming\Raptr
2015-09-07 06:40:39 ----D---- C:\WINDOWS\AppReadiness
2015-09-07 06:36:02 ----HD---- C:\Program Files\WindowsApps
2015-09-05 15:55:22 ----D---- C:\WINDOWS\system32\DriverStore
2015-09-05 13:38:31 ----D---- C:\WINDOWS\system32\config
2015-09-05 13:35:16 ----D---- C:\WINDOWS\system32\drivers\etc
2015-09-05 13:31:38 ----D---- C:\WINDOWS\WinSxS
2015-09-05 13:31:02 ----D---- C:\WINDOWS\OCR
2015-09-03 12:10:10 ----SHD---- C:\System Volume Information
2015-09-02 12:45:38 ----D---- C:\WINDOWS\rescache
2015-09-01 10:07:50 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-08-30 16:01:39 ----D---- C:\WINDOWS\LiveKernelReports
2015-08-30 12:03:01 ----D---- C:\WINDOWS\CbsTemp
2015-08-30 11:38:06 ----D---- C:\WINDOWS\system32\oobe
2015-08-30 11:38:06 ----D---- C:\WINDOWS\system32\appraiser
2015-08-30 11:38:06 ----D---- C:\WINDOWS\AppPatch
2015-08-30 11:34:37 ----D---- C:\WINDOWS\system32\NDF
2015-08-29 23:32:53 ----D---- C:\WINDOWS\system32\catroot2
2015-08-26 17:13:50 ----D---- C:\Program Files (x86)\Rockstar Games
2015-08-26 17:13:37 ----D---- C:\Program Files\Rockstar Games
2015-08-26 17:06:39 ----D---- C:\WINDOWS\Logs
2015-08-24 21:23:39 ----D---- C:\WINDOWS\system32\CatRoot
2015-08-24 19:34:43 ----D---- C:\DRIVERS
2015-08-24 16:03:54 ----D---- C:\AMD
2015-08-24 15:48:22 ----D---- C:\WINDOWS\system32\WDI
2015-08-24 15:46:49 ----D---- C:\Program Files\Microsoft Silverlight
2015-08-24 15:46:48 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-08-24 15:25:25 ----D---- C:\WINDOWS\appcompat
2015-08-23 19:03:37 ----D---- C:\WINDOWS\system32\MRT
2015-08-23 18:54:36 ----A---- C:\WINDOWS\system32\MRT.exe
2015-08-23 18:40:11 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-08-23 18:40:11 ----D---- C:\Program Files (x86)\Realtek
2015-08-23 11:39:04 ----D---- C:\WINDOWS\system32\restore
2015-08-23 11:23:19 ----RD---- C:\WINDOWS\DevicesFlow
2015-08-23 11:09:09 ----D---- C:\WINDOWS\SYSWOW64\oobe
2015-08-23 11:09:09 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\drivers\en-US
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\Dism
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\Boot
2015-08-23 11:09:08 ----D---- C:\WINDOWS\Provisioning
2015-08-23 11:09:08 ----D---- C:\Program Files\Internet Explorer
2015-08-23 11:09:08 ----D---- C:\Program Files (x86)\Internet Explorer
2015-08-23 11:05:59 ----D---- C:\WINDOWS\SYSWOW64\sda
2015-08-23 11:00:08 ----RD---- C:\WINDOWS\PurchaseDialog
2015-08-23 11:00:07 ----RD---- C:\WINDOWS\PrintDialog
2015-08-23 11:00:05 ----RD---- C:\WINDOWS\MiracastView
2015-08-23 10:59:36 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-08-23 10:59:29 ----SD---- C:\WINDOWS\SYSWOW64\F12
2015-08-23 10:59:29 ----D---- C:\WINDOWS\SYSWOW64\winrm
2015-08-23 10:59:29 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-08-23 10:59:29 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2015-08-23 10:59:29 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2015-08-23 10:59:21 ----SD---- C:\WINDOWS\SYSWOW64\DiagSvcs
2015-08-23 10:59:21 ----SD---- C:\WINDOWS\system32\F12
2015-08-23 10:59:21 ----D---- C:\WINDOWS\SYSWOW64\en
2015-08-23 10:59:21 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\winrm
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\WCN
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\slmgr
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\migwiz
2015-08-23 10:59:20 ----SD---- C:\WINDOWS\system32\DiagSvcs
2015-08-23 10:59:20 ----D---- C:\WINDOWS\system32\en
2015-08-23 10:59:20 ----D---- C:\WINDOWS\servicing
2015-08-23 10:59:20 ----D---- C:\WINDOWS\en-US
2015-08-23 10:59:20 ----D---- C:\Program Files\Windows Photo Viewer
2015-08-23 10:59:20 ----D---- C:\Program Files\Windows Media Player
2015-08-23 10:59:20 ----D---- C:\Program Files\Windows Journal
2015-08-23 10:59:20 ----D---- C:\Program Files\Windows Defender
2015-08-23 10:59:20 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-08-23 10:59:20 ----D---- C:\Program Files (x86)\Windows Media Player
2015-08-23 10:59:20 ----D---- C:\Program Files (x86)\Windows Defender
2015-08-23 10:52:51 ----D---- C:\WINDOWS\Registration
2015-08-23 10:47:34 ----D---- C:\WINDOWS\system32\LogFiles
2015-08-23 10:46:18 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-08-23 10:46:18 ----D---- C:\WINDOWS\system32\MUI
2015-08-23 10:46:09 ----A---- C:\WINDOWS\SYSWOW64\dpwsockx.dll
2015-08-23 10:46:09 ----A---- C:\WINDOWS\SYSWOW64\dpmodemx.dll
2015-08-23 10:46:09 ----A---- C:\WINDOWS\SYSWOW64\dplayx.dll
2015-08-23 10:46:09 ----A---- C:\WINDOWS\SYSWOW64\dplaysvr.exe
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnsvr.exe
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnlobby.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnhupnp.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnhpast.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnet.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnathlp.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnaddr.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnlobby.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnhpast.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnet.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnathlp.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnaddr.dll
2015-08-23 10:44:45 ----D---- C:\WINDOWS\system32\wbem
2015-08-23 10:37:41 ----D---- C:\WINDOWS\system32\FxsTmp
2015-08-23 10:37:15 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-08-23 10:37:15 ----D---- C:\WINDOWS\SYSWOW64\Atheros_L1e
2015-08-23 10:37:13 ----RSD---- C:\WINDOWS\Fonts
2015-08-23 10:37:13 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-08-23 10:37:12 ----D---- C:\Program Files (x86)\Bluetooth Suite
2015-08-23 10:34:09 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2015-08-23 10:34:09 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2015-08-23 10:34:08 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2015-08-23 10:34:08 ----D---- C:\WINDOWS\SYSWOW64\uk-UA
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\th-TH
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\sl-SI
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\ro-RO
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\lv-LV
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\lt-LT
2015-08-23 10:34:05 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2015-08-23 10:34:05 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2015-08-23 10:34:05 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2015-08-23 10:34:04 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\hr-HR
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\he-IL
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2015-08-23 10:33:59 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2015-08-23 10:33:59 ----D---- C:\WINDOWS\SYSWOW64\et-EE
2015-08-23 10:33:59 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2015-08-23 10:33:59 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-08-23 10:33:57 ----D---- C:\WINDOWS\SYSWOW64\bg-BG
2015-08-23 10:33:57 ----D---- C:\WINDOWS\SYSWOW64\ar-SA
2015-08-23 10:33:54 ----D---- C:\WINDOWS\system32\zh-TW
2015-08-23 10:33:54 ----D---- C:\WINDOWS\system32\zh-HK
2015-08-23 10:33:53 ----D---- C:\WINDOWS\system32\zh-CN
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\uk-UA
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\tr-TR
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\th-TH
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\sv-SE
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\spool
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\sl-SI
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\sk-SK
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\ru-RU
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\ro-RO
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\pt-PT
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\pt-BR
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\pl-PL
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\nl-NL
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\nb-NO
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\migration
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\lv-LV
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\lt-LT
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\ko-KR
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\ja-JP
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\it-IT
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\InputMethod
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\IME
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\hu-HU
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\hr-HR
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\he-IL
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\fr-FR
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\fi-FI
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\et-EE
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\es-ES
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\en-US
2015-08-23 10:33:44 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\en-GB
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\el-GR
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\de-DE
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\da-DK
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\cs-CZ
2015-08-23 10:32:35 ----D---- C:\WINDOWS\system32\bg-BG
2015-08-23 10:32:35 ----D---- C:\WINDOWS\system32\ar-SA
2015-08-23 10:32:29 ----D---- C:\WINDOWS\MediaViewer
2015-08-23 10:32:17 ----D---- C:\WINDOWS\InputMethod
2015-08-23 10:32:10 ----RD---- C:\Users
2015-08-23 10:32:10 ----D---- C:\WINDOWS\ADFS
2015-08-23 10:32:07 ----D---- C:\ProgramData\PRICache
2015-08-23 10:32:06 ----SD---- C:\ProgramData\Microsoft
2015-08-23 10:32:00 ----D---- C:\ProgramData\Lenovo
2015-08-23 10:31:54 ----D---- C:\Program Files (x86)\Windows Mail
2015-08-23 10:31:52 ----D---- C:\Program Files (x86)\Lenovo
2015-08-23 10:31:47 ----D---- C:\Program Files\Windows Mail
2015-08-23 10:31:47 ----D---- C:\Program Files (x86)\AMD AVT
2015-08-23 10:31:46 ----D---- C:\Program Files\Lenovo
2015-08-23 10:31:45 ----D---- C:\Program Files\Common Files\microsoft shared
2015-08-23 10:31:25 ----HD---- C:\WINDOWS\system32\GroupPolicy
2015-08-23 10:31:20 ----D---- C:\WINDOWS\system32\Recovery
2015-08-23 10:27:56 ----D---- C:\WINDOWS\system32\Sysprep
2015-08-23 10:25:13 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-08-23 10:24:24 ----D---- C:\WINDOWS\twain_32
2015-08-23 09:30:28 ----HD---- C:\$Windows.~BT
2015-08-08 17:38:46 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-11-30 80552]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-11-30 26280]
R0 amdkmpfd;@oem12.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2014-10-28 62152]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-07-16 65224]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-07-16 274808]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2013-11-30 39008]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-07-16 93528]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-07-16 1048856]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-07-16 447944]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192]
R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-11 59616]
R2 APXACC;@oem80.inf,%APPEX_ACC_SERVICE_NAME%;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [2015-04-03 229056]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-07-16 28656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-07-16 90968]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-07-16 150160]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128]
R2 rzpmgrk;rzpmgrk; \??\C:\WINDOWS\system32\drivers\rzpmgrk.sys [2015-03-10 37184]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952]
R3 ACPIVPC;@oem34.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2013-11-30 33560]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-08-09 21631512]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-08-20 675296]
R3 anvsnddrv;@oem4.inf,%anvsnddrv.SvcDesc%;AnvSoft Virtual Sound Device; C:\WINDOWS\system32\drivers\anvsnddrv.sys [2011-11-28 33872]
R3 athr;@oem35.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athw8x.sys [2013-03-25 3776000]
R3 AtiHDAudioService;@oem79.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2015-07-22 102912]
R3 BTATH_BUS;@oem41.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2013-01-25 34384]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2015-03-09 599240]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2015-07-10 84992]
R3 CnxtHdAudService;@oem11.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2015-09-05 1561728]
R3 dtsoftbus01;@oem52.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-03-28 283064]
R3 ETD;@oem76.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2015-08-23 467032]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C63x64.sys [2015-07-10 129224]
R3 rtsuvc;@oem65.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [2015-06-02 3057920]
S0 amdkmafd;@oem77.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmafd.sys [2015-06-03 31992]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288]
S2 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2015-07-13 145528]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-07-10 105984]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-07-10 237568]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-07-10 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2015-08-20 929280]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736]
S3 DrvAgent64;DrvAgent64; \??\C:\windows\SysWOW64\Drivers\DrvAgent64.SYS [2014-08-08 21712]
S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-08-23 934752]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-07-10 167936]
S3 RTSUER;@oem69.inf,%RtsUER%;Realtek USB Card Reader - UER; C:\WINDOWS\system32\Drivers\RtsUer.sys [2015-07-03 410880]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-07-10 61952]
S3 UcmUcsi;@ucmucsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-08-23 46080]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-07-10 44032]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-07-10 245088]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-07-10 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-07-10 127840]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-07-10 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-07-10 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-07-10 27488]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-08-20 256992]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [2015-08-04 344064]
R2 Application Hosting;Application Hosting service; C:\ProgramData\Application Hosting\Application Hosting.exe [2015-08-30 70656]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-07-16 146600]
R2 cohci1394;Compliant Host Controller; C:\Program Files\Controller\cohc.exe [2015-08-06 379392]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 CxAudMsg;@C:\WINDOWS\system32\CxAudMsg64.exe,-100; C:\WINDOWS\system32\CxAudMsg64.exe [2013-07-25 206552]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2015-08-23 135072]
R2 OneSyncSvc_Session1;Hostitel synchronizace_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 Razer Game Scanner Service;Razer Game Scanner; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [2015-03-10 187072]
R2 RzKLService;RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [2015-03-12 129168]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-07-29 5613328]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 PimIndexMaintenanceSvc_Session1;Data kontaktů_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 UnistoreSvc_Session1;Úložiště uživatelských dat_Session1; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2015-07-13 417400]
S2 BstHdUpdaterSvc;BlueStacks Updater Service; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [2015-07-13 822904]
S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 SAService;Conexant SmartAudio service; C:\WINDOWS\system32\SAsrv.exe []
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-11 269000]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2015-07-28 1128448]
S3 BstHdAndroidSvc;BlueStacks Android Service; C:\Program Files (x86)\BlueStacks\HD-Service.exe [2015-07-13 437880]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.11.163\McCHSvc.exe [2015-07-31 289256]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-08-28 149160]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344]
S3 npggsvc;nProtect GameGuard Service; C:\WINDOWS\syswow64\GameMon.des [2015-07-22 3611808]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-08-23 1031680]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-09-04 838848]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: snapdo

#3 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

michal5
Návštěvník
Návštěvník
Příspěvky: 24
Registrován: 07 črc 2011 22:28

Re: snapdo

#4 Příspěvek od michal5 »

# AdwCleaner v5.006 - Logfile created 07/09/2015 at 21:01:48
# Updated 06/09/2015 by Xplode
# Database : 2015-09-04.4 [Server]
# Operating system : Windows 10 Home (x64)
# Username : michal - MICHAL
# Running from : C:\Users\michal\Desktop\adwcleaner_5.006.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****

[-] Service Deleted : Application Hosting
[-] Service Deleted : cohci1394

***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files\Controller
[-] Folder Deleted : C:\Program Files (x86)\globalUpdate
[-] Folder Deleted : C:\Program Files (x86)\UniDeals
[-] Folder Deleted : C:\Program Files (x86)\UNiDealsui
[-] Folder Deleted : C:\ProgramData\Application Hosting
[-] Folder Deleted : C:\ProgramData\12352022985991556270
[-] Folder Deleted : C:\ProgramData\{2539c2a8-58b8-d03a-2539-9c2a858b0aa1}
[-] Folder Deleted : C:\ProgramData\{345022ab-bbfe-627c-3450-022abbbf8aae}
[-] Folder Deleted : C:\ProgramData\{56ec2204-65c4-82c6-56ec-c220465c8811}
[-] Folder Deleted : C:\ProgramData\{e7d1bd39-3f12-001b-e7d1-1bd393f1f4e4}
[-] Folder Deleted : C:\ProgramData\gcgkfacjgnimenhjfihgkkhpgpiahjgo
[-] Folder Deleted : C:\ProgramData\ikdgeckhdbmhpkjneeonpcjkeanglcik
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse
[-] Folder Deleted : C:\Users\michal\AppData\Local\globalUpdate
[-] Folder Deleted : C:\Users\michal\AppData\Local\Crossbrowse
[-] Folder Deleted : C:\Users\michal\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bbglkiiiofelplniblholffbhhjmdhhi
[-] Folder Deleted : C:\Users\michal\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\digjmndoibajeecdbchfmkgankcdjeoh
[-] Folder Deleted : C:\Users\michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi

***** [ Files ] *****

[-] File Deleted : C:\Users\michal\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cigiagpbkapepgklncnajbakkpkopmam_0.localstorage
[-] File Deleted : C:\Users\michal\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_cigiagpbkapepgklncnajbakkpkopmam_0
[-] File Deleted : C:\Users\michal\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cigiagpbkapepgklncnajbakkpkopmam
[-] File Deleted : C:\Users\michal\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\crossbrowse.lnk
[-] File Deleted : C:\Users\michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk
[-] File Deleted : C:\Users\michal\AppData\Roaming\Mozilla\Firefox\Profiles\0u7af830.default\searchplugins\findit.xml

***** [ Shortcuts ] *****

[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\michal\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\michal\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk

***** [ Scheduled tasks ] *****

[-] Task Deleted : Crossbrowse
[-] Task Deleted : globalUpdateUpdateTaskMachineCore
[-] Task Deleted : globalUpdateUpdateTaskMachineUA
[-] Task Deleted : amiupdaterExd
[-] Task Deleted : amiupdaterExi
[-] Task Deleted : snp
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-1-6
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-1-7
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-10_user
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-13
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-14
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-3
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-4
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-5
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-5_user
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-6
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-7
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-1-6
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-1-7
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-10_user
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-13
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-14
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-3
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-4
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-5
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-5_user
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-6
[-] Task Deleted : 2598067e-87eb-469f-b105-c760181e53cf-7
[-] Task Deleted : globalUpdateUpdateTaskMachineCore
[-] Task Deleted : globalUpdateUpdateTaskMachineUA

***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Mediaplayer\Shiminclusionlist\crossbrowse.exe
[-] Key Deleted : HKLM\SOFTWARE\Classes\CRSBRWSHTML
[-] Key Deleted : HKLM\SOFTWARE\Clients\StartMenuInternet\Crossbrowse
[-] Value Deleted : HKLM\SOFTWARE\Classes\.htm\OpenWithProgids [CRSBRWSHTML]
[-] Value Deleted : HKLM\SOFTWARE\Classes\.html\OpenWithProgids [CRSBRWSHTML]
[-] Value Deleted : HKLM\SOFTWARE\RegisteredApplications [Crossbrowse]
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\globalupdate.exe
[-] Value Deleted : HKLM\SOFTWARE\Classes\.xht\OpenWithProgIDs [CRSBRWSHTML]
[-] Value Deleted : HKLM\SOFTWARE\Classes\.webp\OpenWithProgIDs [CRSBRWSHTML]
[-] Value Deleted : HKLM\SOFTWARE\Classes\.shtml\OpenWithProgIDs [CRSBRWSHTML]
[-] Key Deleted : HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\IELNKSRCH
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [iWebar-bg.exe]
[-] Key Deleted : HKLM\SOFTWARE\10b4f199-2687-41ac-add3-c31f74b8a819
[-] Key Deleted : HKLM\SOFTWARE\90c43ccc-ebd5-4322-a9e8-5b59a1b3d6cb
[-] Key Deleted : HKLM\SOFTWARE\b7783dd5-a604-7e16-3f30-52eb29c48102
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{a383d185}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6EDBF8C0-C94C-4A13-956F-E393BCA5BA4B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{61AB12E1-A5FF-11D1-B2E9-444553540000}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{82351441-9094-11D1-A24B-00A0C932C7DF}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{157B1AA6-3E5C-404A-9118-C1D91F537040}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{82351433-9094-11D1-A24B-00A0C932C7DF}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A0B55F99-F893-4F84-AE82-CAE0E70DFDFA}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1ccae285-0089-4e85-9f0d-82370ed7213c}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{36816c97-ce23-495a-a1ce-1001ca813e10}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3c75d6fc-9608-4293-940d-343ec6e741ab}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{90e1fedf-e1e5-41b6-82ab-1d0f87de714a}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1ccae285-0089-4e85-9f0d-82370ed7213c}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{36816c97-ce23-495a-a1ce-1001ca813e10}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3c75d6fc-9608-4293-940d-343ec6e741ab}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{90e1fedf-e1e5-41b6-82ab-1d0f87de714a}
[-] Key Deleted : HKU\.DEFAULT\Software\AskPartnerNetwork
[-] Key Deleted : HKU\.DEFAULT\Software\Goobzo
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\iWebar
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : HKCU\Software\GlobalUpdate
[-] Key Deleted : HKCU\Software\InstalledBrowserExtensions
[-] Key Deleted : HKCU\Software\CrossBrowser
[-] Key Deleted : HKCU\Software\Crossbrowse
[-] Key Deleted : HKCU\Software\YorkNewCin
[-] Key Deleted : HKCU\Software\HighDefAction
[-] Key Deleted : HKCU\Software\ArenaHD
[-] Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
[-] Key Deleted : HKCU\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : HKLM\SOFTWARE\AppDataLow\SOFTWARE\Crossrider
[-] Key Deleted : HKLM\SOFTWARE\AppDataLow\SOFTWARE\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
[-] Key Deleted : HKLM\SOFTWARE\GlobalUpdate
[-] Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
[-] Key Deleted : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
[-] Key Deleted : HKLM\SOFTWARE\Crossbrowse
[-] Key Deleted : HKLM\SOFTWARE\SiteSee
[-] Key Deleted : HKLM\SOFTWARE\YorkNewCin
[-] Key Deleted : HKLM\SOFTWARE\HighDefAction
[-] Key Deleted : HKLM\SOFTWARE\ArenaHD
[!] Key Not Deleted : [x64] HKCU\Software\GlobalUpdate
[!] Key Not Deleted : [x64] HKCU\Software\InstalledBrowserExtensions
[!] Key Not Deleted : [x64] HKCU\Software\CrossBrowser
[!] Key Not Deleted : [x64] HKCU\Software\Crossbrowse
[!] Key Not Deleted : [x64] HKCU\Software\YorkNewCin
[!] Key Not Deleted : [x64] HKCU\Software\HighDefAction
[!] Key Not Deleted : [x64] HKCU\Software\ArenaHD
[-] Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
[-] Key Deleted : [x64] HKLM\SOFTWARE\YorkNewCin
[-] Key Deleted : [x64] HKLM\SOFTWARE\HighDefAction
[-] Key Deleted : [x64] HKLM\SOFTWARE\ArenaHD
[!] Key Not Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\iWebar
[!] Key Not Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_
[!] Key Not Deleted : HKU\S-1-5-21-318909766-2424512798-1811530463-1002\Software\AppDataLow\Software\Crossrider
[!] Key Not Deleted : HKU\S-1-5-21-318909766-2424512798-1811530463-1002\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_
[!] Key Not Deleted : HKU\S-1-5-18\Software\AppDataLow\Software\iWebar
[!] Key Not Deleted : HKU\S-1-5-18\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GLOBALUPDATE.EXE
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch}
[!] Key Not Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\ielnksrch
[!] Key Not Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch}
[!] Key Not Deleted : HKU\S-1-5-21-318909766-2424512798-1811530463-1002\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch}

***** [ Web browsers ] *****

[-] [C:\Users\michal\AppData\Roaming\Mozilla\Firefox\Profiles\0u7af830.default\prefs.js] [Preference] Deleted : user_pref("extensions.crossrider.bic", "14fa8bce5e2f970856342d0af7f77db2");
[-] [C:\Users\michal\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : cigiagpbkapepgklncnajbakkpkopmam
[-] [C:\Users\michal\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : digjmndoibajeecdbchfmkgankcdjeoh

*************************

:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [16213 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: snapdo

#5 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

michal5
Návštěvník
Návštěvník
Příspěvky: 24
Registrován: 07 črc 2011 22:28

Re: snapdo

#6 Příspěvek od michal5 »

Logfile of random's system information tool 1.10 (written by random/random)
Run by michal at 2015-09-07 21:18:51
Microsoft Windows 10 Home
System drive C: has 618 GB (68%) free of 912 GB
Total RAM: 7375 MB (72% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:18:54, on 7. 9. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16412)
Boot mode: Normal

Running processes:
C:\Users\michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\BlueStacks\HD-Agent.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files\trend micro\michal.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWqICWRlg5p-Tqs2FcBxkvHPRrtnErSaxd7ue8heSKF-e17q934ATryFfgU0z7EZ4EwOGO-Vi1--xMGE9HGC0LjoNKn8ZaIOWZzjHMp0LolhFjE-WB3lPT8jaGQv0r8CiM6EYYokQEVqWepCRBoABeWS2e2efM&q={searchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWqICWRlg5p-Tqs2FcBxkvHPRrtnErSaxd7ue8heSKF-e17q934ATryFfgU0z7EZ4EwOGO-Vi1--xMGE9HGC0LjoNKn8ZaIOWZzjHMp0LolhFjE-WB3lPT8jaGQv0r8CiM6EYYokQEVqWepCRBoABeWS2e2efM&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O1 - Hosts: 0.0.0.1 mssplus.mcafee.com
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [Raptr] C:\PROGRA~2\Raptr\RAPTRS~1.EXE --startup
O4 - HKLM\..\Run: [RazerCortex] C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe -autorun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\michal\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\michal\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [AppEx Accelerator UI] C:\Program Files\AMD Quick Stream\AMDQuickStream.exe -h
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [MurGee.com Auto Clicker] C:\Users\michal\AppData\Roaming\Auto Clicker\AutoClicker.exe :silent
O4 - HKCU\..\Run: [OneDrive] "C:\Users\michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\michal\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\michal\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64"
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Metin2Mod_PL_12032015_5154.lnk = C:\ProgramData\{2539c2a8-58b8-d03a-2539-9c2a858b0aa1}\Metin2Mod_PL_12032015_5154.exe
O4 - Startup: Metin2Mod_PL_17032015_5211.lnk = C:\ProgramData\{e7d1bd39-3f12-001b-e7d1-1bd393f1f4e4}\Metin2Mod_PL_17032015_5211.exe
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.11.163\SSScheduler.exe
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.11.163\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: Razer Game Scanner (Razer Game Scanner Service) - Unknown owner - C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: RzKLService - Razer Inc. - C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe

--
End of file - 12619 bytes

======Listing Processes======







winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\atiesrxx.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-9a9935b2-0494-445f-b3a0-c29b6d05e669 -SystemEventPortName:HostProcess-e2b7ec30-41a1-469b-87da-1b6bc5e87581 -IoCancelEventPortName:HostProcess-20c48743-73ce-4666-85cd-9fc1195842d7 -NonStateChangingEventPortName:HostProcess-8caada71-1fe8-42f8-8ace-7ebcd48036da -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:2f2b4f0c-809a-4ca8-b96e-55fe850cac34 -DeviceGroupId:WudfDefaultDevicePool
atieclxx
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
dashost.exe {019c875f-78b8-4a0e-8d5fb408fe68e017}
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Elantech\ETDService.exe"
"C:\WINDOWS\system32\CxAudMsg64.exe"
"C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe"
"C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe"
"C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\Elantech\ETDCtrl.exe"
sihost.exe

C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDIntelligent.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Windows\RTFTrack.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Program Files\AMD Quick Stream\AMDQuickStream.exe" -h

"C:\Users\michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\McAfee Security Scan\3.11.163\SSScheduler.exe"
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\BlueStacks\HD-Agent.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe" -ServerName:MicrosoftEdge.AppXdnhjhccw3zf0j06tkg3jtqr00qdm0khc.mca
"fontdrvhost.exe"
C:\WINDOWS\system32\browser_broker.exe -Embedding
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:2468 CREDAT:140545 EDGEHOST /prefetch:6
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:2468 CREDAT:140549 EDGEHOST /prefetch:6
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:2468 CREDAT:206085 EDGEHOST /prefetch:6
"C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe" -Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto -critical
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k swprv
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-318909766-2424512798-1811530463-10024_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-318909766-2424512798-1811530463-10024 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 592 596 604 8192 600
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\michal\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Rb7rBO2AfXZhtnTTXsG.job - C:\Users\michal\AppData\Roaming\Rb7rBO2AfXZhtnTTXsG.exe --c=iiONm+N4KibwDft6UZy+xPblb01WhiiRTKQOe2dD9dJoiX3ti9vd5sTR88FTzcCI9RnCPjAG4xe3HkjJn5ixaEfbt6VKAzsYoduSDfLpMAIoGtx5aUSQUzGJGKYcK+pQv2UexaQnzLjXt+J5+DXjkK1DxhwU+H6l368tD57fDvpi3W/E3E1hFwgWHJzr2Kx7JOd+FD7as41GynN0GvoZBLJJv0JIfWXR69WZmyBOhenHbwT907iGOufngw8QyWocAoIpoBOeIMayEOINEH6gfYusTeZpI3KBL1a2Bd6Xki5A5GrIKvwwQsecG/6qT4aM8hHuazCZgcWyPTcew6iAcQ==
C:\WINDOWS\tasks\XnL3u4RkmDn7W2JFbjoXWc.job - C:\Users\michal\AppData\Roaming\XnL3u4RkmDn7W2JFbjoXWc.exe --c=prs82rrcaNZVbzoM6gv2Eh4Yrw0+u3oR4Ud0dFLphKX00QykIM6xABQg58mLRbgJljCK3Swdlo+hZCB+2E1PEffHxFKVF9U0DY6YKx6/wY78VffvqAuTkRRBR8OM2xSpBlKC2h75gmF41eAsbBPvYSFaNze3wapNav6I8VUWa5+tzQeKv5TEhNPQw7ZneCQKhqUYN/ldEkmo4IsVYCnxCYCzimFsmaYjHDH9lB089ZXx+uJjFTe8YPQkfRirqQz1VrxxVZnIjNrc9loBawYeYYmSwm8wktZ2087D5howSXYKzX0ThFmdCclpgBZmGNsmerFo+IVXDvdHviRnkPomDg==

=========Mozilla firefox=========

ProfilePath - C:\Users\michal\AppData\Roaming\Mozilla\Firefox\Profiles\0u7af830.default

prefs.js - "browser.search.useDBForOrder" - "false"
prefs.js - "browser.startup.homepage" - "http://seznam.cz/"
prefs.js - "keyword.URL" - "http://search.seznam.cz/?sourceid=quick ... earchTerms}&"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll


C:\Users\michal\AppData\Roaming\Mozilla\Firefox\Profiles\0u7af830.default\searchplugins\
seznam-avast.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-16 655480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d4670e84-fb30-4d9b-80c3-caf5bbee23d8}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-07-07 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-16 559624]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-07-07 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2015-08-23 3743648]
"RtsFT"=C:\WINDOWS\RTFTrack.exe [2015-06-02 9308416]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2013-11-30 17097200]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2013-11-30 193008]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2014-11-25 935104]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2014-04-10 1830616]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"cz.seznam.software.autoupdate"=C:\Users\michal\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\michal\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"AppEx Accelerator UI"=C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [2015-04-06 488640]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-08-27 22041192]
"MurGee.com Auto Clicker"=C:\Users\michal\AppData\Roaming\Auto Clicker\AutoClicker.exe [2015-03-29 120304]
"OneDrive"=C:\Users\michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-08-23 404064]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-08-20 8455960]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\michal\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2012-04-19 217088]
"RemoteControl10"=C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"Intel AppUp(SM) center"=C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2012-07-12 155488]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-07-16 6109776]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"Raptr"=C:\PROGRA~2\Raptr\RAPTRS~1.EXE [2015-03-25 55568]
"RazerCortex"=C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe [2015-03-12 98256]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-04-30 334896]
"BlueStacks Agent"=C:\Program Files (x86)\BlueStacks\HD-Agent.exe [2015-07-13 904824]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-08-04 767176]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe []

michal5
Návštěvník
Návštěvník
Příspěvky: 24
Registrován: 07 črc 2011 22:28

Re: snapdo

#7 Příspěvek od michal5 »

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.11.163\SSScheduler.exe

C:\Users\michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Metin2Mod_PL_12032015_5154.lnk - C:\ProgramData\{2539c2a8-58b8-d03a-2539-9c2a858b0aa1}\Metin2Mod_PL_12032015_5154.exe
Metin2Mod_PL_17032015_5211.lnk - C:\ProgramData\{e7d1bd39-3f12-001b-e7d1-1bd393f1f4e4}\Metin2Mod_PL_17032015_5211.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"DisableCAD"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-09-07 19:56:03 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-09-07 19:48:20 ----D---- C:\Program Files\Common Files\hfrauugm
2015-09-07 19:39:43 ----D---- C:\rsit
2015-09-07 19:24:11 ----D---- C:\Program Files\CCleaner
2015-09-07 18:48:49 ----D---- C:\ProgramData\Zonelams
2015-09-07 18:48:27 ----D---- C:\ProgramData\Zonelam
2015-09-07 17:31:20 ----A---- C:\WINDOWS\SYSWOW64\npptNT2.sys
2015-09-07 17:31:19 ----D---- C:\Program Files\Common Files\INCA Shared
2015-09-05 16:00:54 ----D---- C:\WINDOWS\Cnxt
2015-09-05 15:59:45 ----A---- C:\WINDOWS\SYSWOW64\SASrv.exe
2015-09-05 15:59:41 ----A---- C:\WINDOWS\system32\drivers\CxSfPt.dat
2015-09-05 15:58:40 ----A---- C:\WINDOWS\system32\CxAudMsg64.exe
2015-09-05 15:58:13 ----D---- C:\Program Files\Dolby Digital Plus
2015-09-05 15:56:58 ----D---- C:\WINDOWS\LastGood.Tmp
2015-09-05 15:55:15 ----A---- C:\WINDOWS\system32\UCI64A96.DLL
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\DDPA64.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\CxPageMaster64.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\CX64BP16.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\CSpkExt64.dll
2015-09-05 13:35:17 ----D---- C:\Program Files\McAfee Security Scan
2015-08-30 07:57:45 ----D---- C:\WINDOWS\system32\SleepStudy
2015-08-29 23:38:48 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-08-29 23:38:45 ----A---- C:\WINDOWS\system32\shell32.dll
2015-08-29 23:38:43 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-08-29 23:38:40 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-08-29 23:38:39 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-29 23:38:39 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-08-29 23:38:39 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-29 23:38:38 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-08-29 23:38:38 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-08-29 23:38:37 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-08-29 23:38:37 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-08-29 23:38:37 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-08-29 23:38:37 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\system32\ci.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\reseteng.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\BthRadioMedia.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\wlansvc.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\wfdprov.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\WcnNetsh.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\aitstatic.exe
2015-08-29 23:38:33 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\SYSWOW64\WcnApi.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\WcnApi.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\fdWCN.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\dafWCN.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-29 23:38:32 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2015-08-29 23:38:32 ----A---- C:\WINDOWS\SYSWOW64\fdWCN.dll
2015-08-29 23:38:32 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2015-08-29 23:38:32 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2015-08-28 15:13:13 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-08-24 21:26:12 ----D---- C:\ProgramData\ATI
2015-08-24 19:34:55 ----A---- C:\WINDOWS\system32\UCI64A53.DLL
2015-08-24 16:13:02 ----A---- C:\WINDOWS\system32\drivers\appexDrv.sys
2015-08-24 16:13:01 ----D---- C:\Program Files\AMD Quick Stream
2015-08-23 18:53:59 ----A---- C:\WINDOWS\system32\ETDCoInstaller01001.dll
2015-08-23 18:40:04 ----HD---- C:\Program Files (x86)\Temp
2015-08-23 18:40:03 ----A---- C:\WINDOWS\RtlExUpd.dll
2015-08-23 11:34:11 ----A---- C:\WINDOWS\SYSWOW64\SET2E66.tmp
2015-08-23 11:34:11 ----A---- C:\WINDOWS\SYSWOW64\SET2C13.tmp
2015-08-23 11:34:10 ----A---- C:\WINDOWS\SYSWOW64\SET6A70.tmp
2015-08-23 11:34:04 ----A---- C:\WINDOWS\SYSWOW64\SET495C.tmp
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\UCI64A95.DLL
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\SPKVol.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\MicGain.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\MicEQ.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\ISAPSII.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\FXMisc.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\DS1Parm.ini
2015-08-23 11:17:41 ----A---- C:\WINDOWS\system32\CX64BP12.dll
2015-08-23 11:17:40 ----A---- C:\WINDOWS\system32\drivers\BIT_CLK.ini
2015-08-23 11:17:40 ----A---- C:\WINDOWS\system32\drivers\AFA.ini
2015-08-23 11:13:48 ----SHD---- C:\Recovery
2015-08-23 11:13:42 ----DC---- C:\WINDOWS\Panther
2015-08-23 11:09:34 ----D---- C:\Windows.old
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\bcd.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wpnapps.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wpccpl.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wmpmde.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wmp.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\winmde.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfsvr.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfps.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\MFPlay.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\ieproxy.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\Chakra.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\uxtheme.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\systemcpl.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\srumsvc.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\spbcd.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ReInfo.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\efscore.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ActionCenter.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\LocationPermissions.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\LocationGeofences.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\d3d9.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\ConhostV2.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\bcd.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wuuhext.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\winresume.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\winlogon.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\winload.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wininet.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\uxtheme.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\usocore.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\twinui.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\TabSvc.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\systemcpl.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\stobject.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\sppcomapi.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\spbcd.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\shutdownux.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\setbcdlocale.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\sendmail.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ReInfo.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\RDXService.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ntshrui.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\notepad.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\NetworkStatus.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\MbaeParserTask.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\hal.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\GamePanel.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\efscore.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\wof.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\refsv1.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\dosvc.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\DevicesFlowBroker.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\comdlg32.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ClipUp.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\calc.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\bcdedit.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\bcdboot.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ActionCenter.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\notepad.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\explorer.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\tetheringclient.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.V2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\NotificationObjFactory.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\hmkd.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wintrust.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wininit.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\winhttp.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\windows.storage.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wimserv.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wimgapi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wer.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\UserDataService.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Unistore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\unenrollhook.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\tquery.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\tetheringclient.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\syncutil.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\srumsvc.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\schedsvc.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ReAgent.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\rdbui.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\psmsrv.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\provengine.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\omadmprc.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\omadmclient.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\OmaDmAgent.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\NotificationController.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MusNotification.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\mssprxy.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\msiexec.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\msi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\mos.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\mf.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MapsStore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\LicenseManagerApi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\InputService.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\hmkd.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\gdi32.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\FntCache.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\dxgi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\DWrite.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\rdyboost.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\directmanipulation.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\diagtrack_win.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\coredpus.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ContactApis.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\configmanager2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\cloudAP.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\BingMaps.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\AppContracts.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\VoiceActivationManager.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\directmanipulation.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\dwmapi.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\UcmUcsi.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\msgpiowin32.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2015-08-23 11:02:57 ----D---- C:\ProgramData\Microsoft OneDrive
2015-08-23 11:01:39 ----A---- C:\WINDOWS\system32\ETDCoInstaller01000.dll
2015-08-23 10:48:07 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-23 10:46:18 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-08-23 10:46:14 ----D---- C:\Program Files\Reference Assemblies
2015-08-23 10:46:14 ----D---- C:\Program Files\MSBuild
2015-08-23 10:46:14 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-08-23 10:46:14 ----D---- C:\Program Files (x86)\MSBuild
2015-08-23 10:45:29 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-08-23 10:45:29 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-08-23 10:45:29 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-23 10:45:27 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-08-23 10:45:27 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-08-23 10:45:27 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-23 10:39:27 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-08-23 10:29:24 ----SD---- C:\Users\michal\AppData\Roaming\Microsoft
2015-08-23 10:29:24 ----D---- C:\Users\michal\AppData\Roaming\ATI
2015-08-23 10:25:50 ----D---- C:\Program Files\ATI Technologies
2015-08-23 10:25:24 ----D---- C:\Program Files (x86)\ATI Technologies
2015-08-23 10:24:22 ----D---- C:\Program Files\Common Files\Atheros
2015-08-23 10:21:49 ----D---- C:\ProgramData\AMD
2015-08-23 10:21:03 ----D---- C:\ProgramData\Package Cache
2015-08-23 10:20:44 ----D---- C:\ProgramData\Conexant
2015-08-23 10:20:38 ----D---- C:\Program Files\CONEXANT
2015-08-23 10:20:24 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-08-23 10:20:19 ----D---- C:\Program Files\AMD
2015-08-23 10:19:53 ----D---- C:\Program Files\Elantech
2015-08-23 10:17:47 ----D---- C:\WINDOWS\Prefetch
2015-08-22 09:33:23 ----ASH---- C:\swapfile.sys
2015-08-22 09:33:23 ----ASH---- C:\pagefile.sys
2015-08-22 09:33:13 ----ASH---- C:\hiberfil.sys
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\SET6AC0.tmp
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\SET3B31.tmp
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atiuxpag.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atiu9pag.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atidxx32.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\amdxc32.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\SET5965.tmp
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\SET4B3A.tmp
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\SET3FB1.tmp
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\SET2A2C.tmp
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atiuxp64.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atiumd6a.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atiumd64.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atiu9p64.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atidxx64.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\amdxc64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\SET4F96.tmp
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\aticfx32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\amdhcp32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\amdave32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\SET5A63.tmp
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\SET4C38.tmp
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\atimpc64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\aticfx64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\amdpcom64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\amdmiracast.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\amdhcp64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\amdave64.dll
2015-08-20 21:46:54 ----A---- C:\WINDOWS\system32\amdocl64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\mantleaxl32.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\mantle32.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\hsa-thunk.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\atisamu32.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\atioglxx.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\SET6CC1.tmp
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\SET6B7F.tmp
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\mantleaxl64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\mantle64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\coinst_15.20.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\clinfo.exe
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\atitmm64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\atio6axx.dll
2015-08-20 21:46:50 ----N---- C:\WINDOWS\system32\drivers\atikmdag.sys
2015-08-20 21:46:50 ----A---- C:\WINDOWS\SYSWOW64\amdocl.dll
2015-08-20 21:46:50 ----A---- C:\WINDOWS\system32\drivers\SET886.tmp
2015-08-20 21:46:50 ----A---- C:\WINDOWS\system32\drivers\SET212E.tmp
2015-08-20 21:46:50 ----A---- C:\WINDOWS\system32\atisamu64.dll
2015-08-20 21:46:44 ----A---- C:\WINDOWS\system32\aticaldd64.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\atiglpxx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\atigktxx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\atieah32.exe
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\aticalrt.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\aticaldd.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\drivers\SET575E.tmp
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\drivers\SET4A9B.tmp
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\drivers\atikmpag.sys
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atimuixx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atiglpxx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atig6txx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atig6pxx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atiesrxx.exe
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atieclxx.exe
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atieah64.exe
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atidemgy.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\aticalrt64.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll
2015-08-20 21:46:40 ----A---- C:\WINDOWS\SYSWOW64\amdocl12cl.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\SYSWOW64\aticalcl.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\system32\aticalcl64.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2015-08-20 21:46:38 ----A---- C:\WINDOWS\system32\atiadlxx.dll
2015-08-20 21:46:36 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll
2015-08-20 21:46:32 ----A---- C:\WINDOWS\system32\OpenCL.dll
2015-08-20 21:46:28 ----A---- C:\WINDOWS\system32\amdmantle64.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\SYSWOW64\amdmantle32.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\system32\amdmmcl6.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\system32\amdhdl64.dll
2015-08-20 21:46:24 ----A---- C:\WINDOWS\SYSWOW64\amdhdl32.dll
2015-08-20 21:46:24 ----A---- C:\WINDOWS\SYSWOW64\amdgfxinfo32.dll
2015-08-20 21:46:24 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll
2015-08-09 07:10:16 ----A---- C:\WINDOWS\SYSWOW64\detoured.dll
2015-08-09 07:10:16 ----A---- C:\WINDOWS\system32\detoured.dll
2015-08-09 07:10:16 ----A---- C:\WINDOWS\system32\ATIODE.exe
2015-08-09 07:10:16 ----A---- C:\WINDOWS\system32\ATIODCLI.exe
2015-08-09 07:10:14 ----A---- C:\WINDOWS\system32\amdocl_as64.exe
2015-08-09 07:10:12 ----A---- C:\WINDOWS\SYSWOW64\amdocl_ld32.exe
2015-08-09 07:10:12 ----A---- C:\WINDOWS\SYSWOW64\amdocl_as32.exe
2015-08-09 07:10:12 ----A---- C:\WINDOWS\system32\amdocl_ld64.exe
2015-08-09 07:10:10 ----A---- C:\WINDOWS\system32\drivers\amdacpksd.sys
2015-08-08 16:05:38 ----A---- C:\WINDOWS\system32\ativce03.dat
2015-08-08 16:05:38 ----A---- C:\WINDOWS\system32\ativce02.dat
2015-08-08 16:03:58 ----A---- C:\WINDOWS\system32\amdicdxx.dat
2015-08-08 16:03:56 ----A---- C:\WINDOWS\system32\amde31a.dat

======List of files/folders modified in the last 1 month======

2015-09-07 21:18:53 ----D---- C:\Program Files\trend micro
2015-09-07 21:14:28 ----D---- C:\WINDOWS\Temp
2015-09-07 21:11:35 ----D---- C:\Windows
2015-09-07 21:11:00 ----D---- C:\WINDOWS\System32
2015-09-07 21:11:00 ----D---- C:\WINDOWS\INF
2015-09-07 21:06:51 ----D---- C:\Users\michal\AppData\Roaming\Skype
2015-09-07 21:06:28 ----D---- C:\Users\michal\AppData\Roaming\Raptr
2015-09-07 21:02:33 ----D---- C:\WINDOWS\system32\sru
2015-09-07 21:02:04 ----D---- C:\WINDOWS\Tasks
2015-09-07 21:02:04 ----D---- C:\WINDOWS\system32\Tasks
2015-09-07 21:01:50 ----HD---- C:\ProgramData
2015-09-07 21:01:49 ----RD---- C:\Program Files (x86)
2015-09-07 21:01:48 ----RD---- C:\Program Files
2015-09-07 21:01:48 ----D---- C:\AdwCleaner
2015-09-07 20:36:21 ----D---- C:\Users\michal\AppData\Roaming\BitTorrent
2015-09-07 20:04:16 ----D---- C:\Program Files\Common Files
2015-09-07 20:01:25 ----D---- C:\WINDOWS\system32\drivers
2015-09-07 19:40:40 ----D---- C:\WINDOWS\SoftwareDistribution
2015-09-07 19:28:16 ----D---- C:\Users\michal\AppData\Roaming\TeamViewer
2015-09-07 19:28:16 ----D---- C:\Users\michal\AppData\Roaming\DAEMON Tools Lite
2015-09-07 19:28:15 ----D---- C:\Users\michal\AppData\Roaming\TS3Client
2015-09-07 19:28:15 ----D---- C:\Program Files (x86)\Steam
2015-09-07 19:28:14 ----D---- C:\ProgramData\BlueStacksSetup
2015-09-07 19:27:35 ----D---- C:\WINDOWS\debug
2015-09-07 19:17:58 ----D---- C:\Program Files (x86)\Common Files
2015-09-07 18:49:18 ----D---- C:\Program Files (x86)\AMD
2015-09-07 18:49:05 ----SHD---- C:\WINDOWS\Installer
2015-09-07 18:48:59 ----D---- C:\WINDOWS\SysWOW64
2015-09-07 18:47:29 ----RSD---- C:\WINDOWS\assembly
2015-09-07 17:28:54 ----D---- C:\Program Files (x86)\GameforgeLive
2015-09-07 16:43:23 ----D---- C:\WINDOWS\Microsoft.NET
2015-09-07 06:40:39 ----D---- C:\WINDOWS\AppReadiness
2015-09-07 06:36:02 ----HD---- C:\Program Files\WindowsApps
2015-09-05 15:55:22 ----D---- C:\WINDOWS\system32\DriverStore
2015-09-05 13:38:31 ----D---- C:\WINDOWS\system32\config
2015-09-05 13:35:16 ----D---- C:\WINDOWS\system32\drivers\etc
2015-09-05 13:31:38 ----D---- C:\WINDOWS\WinSxS
2015-09-05 13:31:02 ----D---- C:\WINDOWS\OCR
2015-09-03 12:10:10 ----SHD---- C:\System Volume Information
2015-09-02 12:45:38 ----D---- C:\WINDOWS\rescache
2015-09-01 10:07:50 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-08-30 16:01:39 ----D---- C:\WINDOWS\LiveKernelReports
2015-08-30 12:03:01 ----D---- C:\WINDOWS\CbsTemp
2015-08-30 11:38:06 ----D---- C:\WINDOWS\system32\oobe
2015-08-30 11:38:06 ----D---- C:\WINDOWS\system32\appraiser
2015-08-30 11:38:06 ----D---- C:\WINDOWS\AppPatch
2015-08-30 11:34:37 ----D---- C:\WINDOWS\system32\NDF
2015-08-29 23:32:53 ----D---- C:\WINDOWS\system32\catroot2
2015-08-26 17:13:50 ----D---- C:\Program Files (x86)\Rockstar Games
2015-08-26 17:13:37 ----D---- C:\Program Files\Rockstar Games
2015-08-26 17:06:39 ----D---- C:\WINDOWS\Logs
2015-08-24 21:23:39 ----D---- C:\WINDOWS\system32\CatRoot
2015-08-24 19:34:43 ----D---- C:\DRIVERS
2015-08-24 16:03:54 ----D---- C:\AMD
2015-08-24 15:48:22 ----D---- C:\WINDOWS\system32\WDI
2015-08-24 15:46:49 ----D---- C:\Program Files\Microsoft Silverlight
2015-08-24 15:46:48 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-08-24 15:25:25 ----D---- C:\WINDOWS\appcompat
2015-08-23 19:03:37 ----D---- C:\WINDOWS\system32\MRT
2015-08-23 18:54:36 ----A---- C:\WINDOWS\system32\MRT.exe
2015-08-23 18:40:11 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-08-23 18:40:11 ----D---- C:\Program Files (x86)\Realtek
2015-08-23 11:39:04 ----D---- C:\WINDOWS\system32\restore
2015-08-23 11:23:19 ----RD---- C:\WINDOWS\DevicesFlow
2015-08-23 11:09:09 ----D---- C:\WINDOWS\SYSWOW64\oobe
2015-08-23 11:09:09 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\drivers\en-US
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\Dism
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\Boot
2015-08-23 11:09:08 ----D---- C:\WINDOWS\Provisioning
2015-08-23 11:09:08 ----D---- C:\Program Files\Internet Explorer
2015-08-23 11:09:08 ----D---- C:\Program Files (x86)\Internet Explorer
2015-08-23 11:05:59 ----D---- C:\WINDOWS\SYSWOW64\sda
2015-08-23 11:00:08 ----RD---- C:\WINDOWS\PurchaseDialog
2015-08-23 11:00:07 ----RD---- C:\WINDOWS\PrintDialog
2015-08-23 11:00:05 ----RD---- C:\WINDOWS\MiracastView
2015-08-23 10:59:36 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-08-23 10:59:29 ----SD---- C:\WINDOWS\SYSWOW64\F12
2015-08-23 10:59:29 ----D---- C:\WINDOWS\SYSWOW64\winrm
2015-08-23 10:59:29 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-08-23 10:59:29 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2015-08-23 10:59:29 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2015-08-23 10:59:21 ----SD---- C:\WINDOWS\SYSWOW64\DiagSvcs
2015-08-23 10:59:21 ----SD---- C:\WINDOWS\system32\F12
2015-08-23 10:59:21 ----D---- C:\WINDOWS\SYSWOW64\en
2015-08-23 10:59:21 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\winrm
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\WCN
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\slmgr
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\migwiz
2015-08-23 10:59:20 ----SD---- C:\WINDOWS\system32\DiagSvcs
2015-08-23 10:59:20 ----D---- C:\WINDOWS\system32\en
2015-08-23 10:59:20 ----D---- C:\WINDOWS\servicing
2015-08-23 10:59:20 ----D---- C:\WINDOWS\en-US
2015-08-23 10:59:20 ----D---- C:\Program Files\Windows Photo Viewer
2015-08-23 10:59:20 ----D---- C:\Program Files\Windows Media Player
2015-08-23 10:59:20 ----D---- C:\Program Files\Windows Journal
2015-08-23 10:59:20 ----D---- C:\Program Files\Windows Defender
2015-08-23 10:59:20 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-08-23 10:59:20 ----D---- C:\Program Files (x86)\Windows Media Player
2015-08-23 10:59:20 ----D---- C:\Program Files (x86)\Windows Defender
2015-08-23 10:52:51 ----D---- C:\WINDOWS\Registration
2015-08-23 10:47:34 ----D---- C:\WINDOWS\system32\LogFiles
2015-08-23 10:46:18 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-08-23 10:46:18 ----D---- C:\WINDOWS\system32\MUI
2015-08-23 10:46:09 ----A---- C:\WINDOWS\SYSWOW64\dpwsockx.dll
2015-08-23 10:46:09 ----A---- C:\WINDOWS\SYSWOW64\dpmodemx.dll
2015-08-23 10:46:09 ----A---- C:\WINDOWS\SYSWOW64\dplayx.dll
2015-08-23 10:46:09 ----A---- C:\WINDOWS\SYSWOW64\dplaysvr.exe
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnsvr.exe
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnlobby.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnhupnp.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnhpast.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnet.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnathlp.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnaddr.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnlobby.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnhpast.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnet.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnathlp.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnaddr.dll
2015-08-23 10:44:45 ----D---- C:\WINDOWS\system32\wbem
2015-08-23 10:37:41 ----D---- C:\WINDOWS\system32\FxsTmp
2015-08-23 10:37:15 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-08-23 10:37:15 ----D---- C:\WINDOWS\SYSWOW64\Atheros_L1e
2015-08-23 10:37:13 ----RSD---- C:\WINDOWS\Fonts
2015-08-23 10:37:13 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-08-23 10:37:12 ----D---- C:\Program Files (x86)\Bluetooth Suite
2015-08-23 10:34:09 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2015-08-23 10:34:09 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2015-08-23 10:34:08 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2015-08-23 10:34:08 ----D---- C:\WINDOWS\SYSWOW64\uk-UA
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\th-TH
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\sl-SI
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\ro-RO
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\lv-LV
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\lt-LT
2015-08-23 10:34:05 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2015-08-23 10:34:05 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2015-08-23 10:34:05 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2015-08-23 10:34:04 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\hr-HR
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\he-IL
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2015-08-23 10:33:59 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2015-08-23 10:33:59 ----D---- C:\WINDOWS\SYSWOW64\et-EE
2015-08-23 10:33:59 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2015-08-23 10:33:59 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-08-23 10:33:57 ----D---- C:\WINDOWS\SYSWOW64\bg-BG
2015-08-23 10:33:57 ----D---- C:\WINDOWS\SYSWOW64\ar-SA
2015-08-23 10:33:54 ----D---- C:\WINDOWS\system32\zh-TW
2015-08-23 10:33:54 ----D---- C:\WINDOWS\system32\zh-HK
2015-08-23 10:33:53 ----D---- C:\WINDOWS\system32\zh-CN
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\uk-UA
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\tr-TR
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\th-TH
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\sv-SE
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\spool
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\sl-SI
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\sk-SK
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\ru-RU
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\ro-RO
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\pt-PT
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\pt-BR
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\pl-PL
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\nl-NL
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\nb-NO
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\migration
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\lv-LV
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\lt-LT
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\ko-KR
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\ja-JP
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\it-IT
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\InputMethod
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\IME
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\hu-HU
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\hr-HR
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\he-IL
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\fr-FR
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\fi-FI
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\et-EE
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\es-ES
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\en-US
2015-08-23 10:33:44 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\en-GB
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\el-GR
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\de-DE
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\da-DK
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\cs-CZ
2015-08-23 10:32:35 ----D---- C:\WINDOWS\system32\bg-BG
2015-08-23 10:32:35 ----D---- C:\WINDOWS\system32\ar-SA
2015-08-23 10:32:29 ----D---- C:\WINDOWS\MediaViewer
2015-08-23 10:32:17 ----D---- C:\WINDOWS\InputMethod
2015-08-23 10:32:10 ----RD---- C:\Users
2015-08-23 10:32:10 ----D---- C:\WINDOWS\ADFS
2015-08-23 10:32:07 ----D---- C:\ProgramData\PRICache
2015-08-23 10:32:06 ----SD---- C:\ProgramData\Microsoft
2015-08-23 10:32:00 ----D---- C:\ProgramData\Lenovo
2015-08-23 10:31:54 ----D---- C:\Program Files (x86)\Windows Mail
2015-08-23 10:31:52 ----D---- C:\Program Files (x86)\Lenovo
2015-08-23 10:31:47 ----D---- C:\Program Files\Windows Mail
2015-08-23 10:31:47 ----D---- C:\Program Files (x86)\AMD AVT
2015-08-23 10:31:46 ----D---- C:\Program Files\Lenovo
2015-08-23 10:31:45 ----D---- C:\Program Files\Common Files\microsoft shared
2015-08-23 10:31:25 ----HD---- C:\WINDOWS\system32\GroupPolicy
2015-08-23 10:31:20 ----D---- C:\WINDOWS\system32\Recovery
2015-08-23 10:27:56 ----D---- C:\WINDOWS\system32\Sysprep
2015-08-23 10:25:13 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-08-23 10:24:24 ----D---- C:\WINDOWS\twain_32
2015-08-23 09:30:28 ----HD---- C:\$Windows.~BT
2015-08-08 17:38:46 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-11-30 80552]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-11-30 26280]
R0 amdkmpfd;@oem12.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2014-10-28 62152]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-07-16 65224]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-07-16 274808]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2013-11-30 39008]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-07-16 93528]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-07-16 1048856]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-07-16 447944]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192]
R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-11 59616]
R2 APXACC;@oem80.inf,%APPEX_ACC_SERVICE_NAME%;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [2015-04-03 229056]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-07-16 28656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-07-16 90968]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-07-16 150160]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128]
R2 rzpmgrk;rzpmgrk; \??\C:\WINDOWS\system32\drivers\rzpmgrk.sys [2015-03-10 37184]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952]
R3 ACPIVPC;@oem34.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2013-11-30 33560]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-08-09 21631512]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-08-20 675296]
R3 anvsnddrv;@oem4.inf,%anvsnddrv.SvcDesc%;AnvSoft Virtual Sound Device; C:\WINDOWS\system32\drivers\anvsnddrv.sys [2011-11-28 33872]
R3 athr;@oem35.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athw8x.sys [2013-03-25 3776000]
R3 AtiHDAudioService;@oem79.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2015-07-22 102912]
R3 BTATH_BUS;@oem41.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2013-01-25 34384]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2015-03-09 599240]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2015-07-10 84992]
R3 CnxtHdAudService;@oem11.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2015-09-05 1561728]
R3 dtsoftbus01;@oem52.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-03-28 283064]
R3 ETD;@oem76.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2015-08-23 467032]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C63x64.sys [2015-07-10 129224]
R3 rtsuvc;@oem65.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [2015-06-02 3057920]
S0 amdkmafd;@oem77.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmafd.sys [2015-06-03 31992]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288]
S2 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2015-07-13 145528]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-07-10 105984]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-07-10 237568]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-07-10 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2015-08-20 929280]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736]
S3 DrvAgent64;DrvAgent64; \??\C:\windows\SysWOW64\Drivers\DrvAgent64.SYS [2014-08-08 21712]
S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-08-23 934752]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-07-10 167936]
S3 RTSUER;@oem69.inf,%RtsUER%;Realtek USB Card Reader - UER; C:\WINDOWS\system32\Drivers\RtsUer.sys [2015-07-03 410880]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-07-10 61952]
S3 UcmUcsi;@ucmucsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-08-23 46080]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-07-10 44032]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-07-10 245088]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-07-10 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-07-10 127840]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-07-10 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-07-10 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-07-10 27488]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-08-20 256992]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [2015-08-04 344064]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-07-16 146600]
R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2015-07-13 417400]
R2 BstHdUpdaterSvc;BlueStacks Updater Service; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [2015-07-13 822904]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 CxAudMsg;@C:\WINDOWS\system32\CxAudMsg64.exe,-100; C:\WINDOWS\system32\CxAudMsg64.exe [2013-07-25 206552]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2015-08-23 135072]
R2 OneSyncSvc_Session1;Hostitel synchronizace_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 Razer Game Scanner Service;Razer Game Scanner; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [2015-03-10 187072]
R2 RzKLService;RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [2015-03-12 129168]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-07-29 5613328]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 PimIndexMaintenanceSvc_Session1;Data kontaktů_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 UnistoreSvc_Session1;Úložiště uživatelských dat_Session1; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 SAService;Conexant SmartAudio service; C:\WINDOWS\system32\SAsrv.exe []
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-11 269000]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2015-07-28 1128448]
S3 BstHdAndroidSvc;BlueStacks Android Service; C:\Program Files (x86)\BlueStacks\HD-Service.exe [2015-07-13 437880]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.11.163\McCHSvc.exe [2015-07-31 289256]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-08-26 149160]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344]
S3 npggsvc;nProtect GameGuard Service; C:\WINDOWS\syswow64\GameMon.des [2015-07-22 3611808]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-08-23 1031680]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-09-04 838848]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: snapdo

#8 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files\McAfee Security Scan
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
C:\WINDOWS\SYSWOW64\SET*.tmp
C:\WINDOWS\system32\SET*.tmp
C:\WINDOWS\system32\drivers\SET*.tmp
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Rb7rBO2AfXZhtnTTXsG.job
C:\WINDOWS\tasks\XnL3u4RkmDn7W2JFbjoXWc.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d4670e84-fb30-4d9b-80c3-caf5bbee23d8}]/64
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
[Resethosts]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

michal5
Návštěvník
Návštěvník
Příspěvky: 24
Registrován: 07 črc 2011 22:28

Re: snapdo

#9 Příspěvek od michal5 »

Logfile of random's system information tool 1.10 (written by random/random)
Run by michal at 2015-09-08 06:42:51
Microsoft Windows 10 Home
System drive C: has 618 GB (68%) free of 912 GB
Total RAM: 7375 MB (77% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 6:42:59, on 8. 9. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16412)
Boot mode: Normal

Running processes:
C:\Users\michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\BlueStacks\HD-Agent.exe
C:\Program Files\trend micro\michal.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWqICWRlg5p-Tqs2FcBxkvHPRrtnErSaxd7ue8heSKF-e17q934ATryFfgU0z7EZ4EwOGO-Vi1--xMGE9HGC0LjoNKn8ZaIOWZzjHMp0LolhFjE-WB3lPT8jaGQv0r8CiM6EYYokQEVqWepCRBoABeWS2e2efM&q={searchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWqICWRlg5p-Tqs2FcBxkvHPRrtnErSaxd7ue8heSKF-e17q934ATryFfgU0z7EZ4EwOGO-Vi1--xMGE9HGC0LjoNKn8ZaIOWZzjHMp0LolhFjE-WB3lPT8jaGQv0r8CiM6EYYokQEVqWepCRBoABeWS2e2efM&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [Raptr] C:\PROGRA~2\Raptr\RAPTRS~1.EXE --startup
O4 - HKLM\..\Run: [RazerCortex] C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe -autorun
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\michal\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\michal\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [AppEx Accelerator UI] C:\Program Files\AMD Quick Stream\AMDQuickStream.exe -h
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [MurGee.com Auto Clicker] C:\Users\michal\AppData\Roaming\Auto Clicker\AutoClicker.exe :silent
O4 - HKCU\..\Run: [OneDrive] "C:\Users\michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\michal\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\michal\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64"
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Metin2Mod_PL_12032015_5154.lnk = C:\ProgramData\{2539c2a8-58b8-d03a-2539-9c2a858b0aa1}\Metin2Mod_PL_12032015_5154.exe
O4 - Startup: Metin2Mod_PL_17032015_5211.lnk = C:\ProgramData\{e7d1bd39-3f12-001b-e7d1-1bd393f1f4e4}\Metin2Mod_PL_17032015_5211.exe
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - Unknown owner - C:\Program Files\McAfee Security Scan\3.11.163\McCHSvc.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: Razer Game Scanner (Razer Game Scanner Service) - Unknown owner - C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: RzKLService - Razer Inc. - C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe

--
End of file - 12300 bytes

======Listing Processes======








C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-868d2b49-b589-4257-af42-3f17f1b13c87 -SystemEventPortName:HostProcess-454fb1a5-01af-4505-8527-fc1288e35e44 -IoCancelEventPortName:HostProcess-0723755d-1cac-4a92-93ac-1ffef11e19b1 -NonStateChangingEventPortName:HostProcess-43660c4e-99aa-4fae-b1f1-2d1d63267f2b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:f7a75712-0ad9-4e90-ba92-54540a6185d4 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\system32\svchost.exe -k LocalService
atieclxx
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
dashost.exe {ff35d1e9-4080-49df-923fca0602fb2f89}
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
"C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe"
"C:\WINDOWS\system32\CxAudMsg64.exe"
"C:\Program Files\Elantech\ETDService.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe"
"C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
taskeng.exe {696ABB68-6461-4132-9F7B-1FF1482508D5}
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\Elantech\ETDCtrl.exe"
sihost.exe
taskeng.exe {298A3E8D-F689-41E0-AA40-D0B2799A69C4}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c

"C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
C:\WINDOWS\Explorer.EXE
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDIntelligent.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\WINDOWS\notepad.exe" C:\_OTM\MovedFiles\09082015_063618.log
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Windows\RTFTrack.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Program Files\AMD Quick Stream\AMDQuickStream.exe" -h
"C:\Users\michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"fontdrvhost.exe"
"C:\Program Files (x86)\BlueStacks\HD-Agent.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0

C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\Windows\System32\InstallAgent.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k smphost
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 608 612 620 8192 616
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-318909766-2424512798-1811530463-10022_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-318909766-2424512798-1811530463-10022 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe" -ServerName:MicrosoftEdge.AppXdnhjhccw3zf0j06tkg3jtqr00qdm0khc.mca
C:\WINDOWS\system32\browser_broker.exe -Embedding
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:6748 CREDAT:140545 EDGEHOST /prefetch:6
"C:\Program Files (x86)\Raptr\raptr_ep64.exe"
wmiadap.exe /F /T /R
"C:\Users\michal\Desktop\RSITx64.exe"



======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\michal\AppData\Roaming\Mozilla\Firefox\Profiles\0u7af830.default

prefs.js - "browser.search.useDBForOrder" - "false"
prefs.js - "browser.startup.homepage" - "http://seznam.cz/"
prefs.js - "keyword.URL" - "http://search.seznam.cz/?sourceid=quick ... earchTerms}&"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll


C:\Users\michal\AppData\Roaming\Mozilla\Firefox\Profiles\0u7af830.default\searchplugins\
seznam-avast.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-16 655480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-07-07 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-16 559624]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-07-07 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2015-08-23 3743648]
"RtsFT"=C:\WINDOWS\RTFTrack.exe [2015-06-02 9308416]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2013-11-30 17097200]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2013-11-30 193008]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2014-11-25 935104]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2014-04-10 1830616]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"cz.seznam.software.autoupdate"=C:\Users\michal\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\michal\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"AppEx Accelerator UI"=C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [2015-04-06 488640]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-08-27 22041192]
"MurGee.com Auto Clicker"=C:\Users\michal\AppData\Roaming\Auto Clicker\AutoClicker.exe [2015-03-29 120304]
"OneDrive"=C:\Users\michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-08-23 404064]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-08-20 8455960]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\michal\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2012-04-19 217088]
"RemoteControl10"=C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"Intel AppUp(SM) center"=C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2012-07-12 155488]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-07-16 6109776]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"Raptr"=C:\PROGRA~2\Raptr\RAPTRS~1.EXE [2015-03-25 55568]
"RazerCortex"=C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe [2015-03-12 98256]
"BlueStacks Agent"=C:\Program Files (x86)\BlueStacks\HD-Agent.exe [2015-07-13 904824]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-08-04 767176]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe []

C:\Users\michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Metin2Mod_PL_12032015_5154.lnk - C:\ProgramData\{2539c2a8-58b8-d03a-2539-9c2a858b0aa1}\Metin2Mod_PL_12032015_5154.exe
Metin2Mod_PL_17032015_5211.lnk - C:\ProgramData\{e7d1bd39-3f12-001b-e7d1-1bd393f1f4e4}\Metin2Mod_PL_17032015_5211.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"DisableCAD"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-09-08 06:36:18 ----D---- C:\_OTM
2015-09-07 19:56:03 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-09-07 19:48:20 ----D---- C:\Program Files\Common Files\hfrauugm
2015-09-07 19:39:43 ----D---- C:\rsit
2015-09-07 19:24:11 ----D---- C:\Program Files\CCleaner
2015-09-07 18:48:49 ----D---- C:\ProgramData\Zonelams
2015-09-07 18:48:27 ----D---- C:\ProgramData\Zonelam
2015-09-07 17:31:20 ----A---- C:\WINDOWS\SYSWOW64\npptNT2.sys
2015-09-07 17:31:19 ----D---- C:\Program Files\Common Files\INCA Shared
2015-09-05 16:00:54 ----D---- C:\WINDOWS\Cnxt
2015-09-05 15:59:45 ----A---- C:\WINDOWS\SYSWOW64\SASrv.exe
2015-09-05 15:59:41 ----A---- C:\WINDOWS\system32\drivers\CxSfPt.dat
2015-09-05 15:58:40 ----A---- C:\WINDOWS\system32\CxAudMsg64.exe
2015-09-05 15:58:13 ----D---- C:\Program Files\Dolby Digital Plus
2015-09-05 15:55:15 ----A---- C:\WINDOWS\system32\UCI64A96.DLL
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\DDPA64.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\CxPageMaster64.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\CX64BP16.dll
2015-09-05 15:54:46 ----A---- C:\WINDOWS\system32\CSpkExt64.dll
2015-08-30 07:57:45 ----D---- C:\WINDOWS\system32\SleepStudy
2015-08-29 23:38:48 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-08-29 23:38:45 ----A---- C:\WINDOWS\system32\shell32.dll
2015-08-29 23:38:43 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-08-29 23:38:40 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-08-29 23:38:39 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-29 23:38:39 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-08-29 23:38:39 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-29 23:38:38 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-08-29 23:38:38 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-08-29 23:38:37 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-08-29 23:38:37 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-08-29 23:38:37 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-08-29 23:38:37 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-29 23:38:36 ----A---- C:\WINDOWS\system32\ci.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\reseteng.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\BthRadioMedia.dll
2015-08-29 23:38:35 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\wlansvc.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\wfdprov.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\WcnNetsh.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-29 23:38:34 ----A---- C:\WINDOWS\system32\aitstatic.exe
2015-08-29 23:38:33 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\SYSWOW64\WcnApi.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\WcnApi.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\fdWCN.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\dafWCN.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-29 23:38:33 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-29 23:38:32 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2015-08-29 23:38:32 ----A---- C:\WINDOWS\SYSWOW64\fdWCN.dll
2015-08-29 23:38:32 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2015-08-29 23:38:32 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2015-08-28 15:13:13 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-08-24 21:26:12 ----D---- C:\ProgramData\ATI
2015-08-24 19:34:55 ----A---- C:\WINDOWS\system32\UCI64A53.DLL
2015-08-24 16:13:02 ----A---- C:\WINDOWS\system32\drivers\appexDrv.sys
2015-08-24 16:13:01 ----D---- C:\Program Files\AMD Quick Stream
2015-08-23 18:53:59 ----A---- C:\WINDOWS\system32\ETDCoInstaller01001.dll
2015-08-23 18:40:04 ----HD---- C:\Program Files (x86)\Temp
2015-08-23 18:40:03 ----A---- C:\WINDOWS\RtlExUpd.dll
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\UCI64A95.DLL
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\SPKVol.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\MicGain.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\MicEQ.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\ISAPSII.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\FXMisc.ini
2015-08-23 11:17:42 ----A---- C:\WINDOWS\system32\drivers\DS1Parm.ini
2015-08-23 11:17:41 ----A---- C:\WINDOWS\system32\CX64BP12.dll
2015-08-23 11:17:40 ----A---- C:\WINDOWS\system32\drivers\BIT_CLK.ini
2015-08-23 11:17:40 ----A---- C:\WINDOWS\system32\drivers\AFA.ini
2015-08-23 11:13:48 ----SHD---- C:\Recovery
2015-08-23 11:13:42 ----DC---- C:\WINDOWS\Panther
2015-08-23 11:09:34 ----D---- C:\Windows.old
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\bcd.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wpnapps.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wpccpl.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wmpmde.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\wmp.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\winmde.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfsvr.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfps.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\MFPlay.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\ieproxy.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\Chakra.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-08-23 11:07:35 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-08-23 11:07:34 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\uxtheme.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\systemcpl.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\srumsvc.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\spbcd.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ReInfo.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\efscore.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\SYSWOW64\ActionCenter.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\LocationPermissions.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\LocationGeofences.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\d3d9.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\ConhostV2.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\bcd.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-08-23 11:07:29 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wuuhext.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\winresume.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\winlogon.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\winload.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wininet.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\uxtheme.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\usocore.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\twinui.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\TabSvc.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\systemcpl.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\stobject.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\sppcomapi.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\spbcd.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\shutdownux.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\setbcdlocale.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\sendmail.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ReInfo.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\RDXService.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ntshrui.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\notepad.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\NetworkStatus.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\MbaeParserTask.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\hal.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\GamePanel.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\efscore.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\wof.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\refsv1.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\dosvc.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\DevicesFlowBroker.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\comdlg32.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ClipUp.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\calc.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\bcdedit.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\bcdboot.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\system32\ActionCenter.dll
2015-08-23 11:07:28 ----A---- C:\WINDOWS\notepad.exe
2015-08-23 11:07:28 ----A---- C:\WINDOWS\explorer.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\tetheringclient.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.V2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\NotificationObjFactory.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\hmkd.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wintrust.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wininit.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\winhttp.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\windows.storage.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wimserv.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wimgapi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\wer.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\UserDataService.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\Unistore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\unenrollhook.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\tquery.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\tetheringclient.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\syncutil.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\srumsvc.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\schedsvc.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ReAgent.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\rdbui.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\psmsrv.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\provengine.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\omadmprc.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\omadmclient.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\OmaDmAgent.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\NotificationController.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MusNotification.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\mssprxy.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\msiexec.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\msi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\mos.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\mf.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MapsStore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\LicenseManagerApi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\InputService.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\hmkd.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\gdi32.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\FntCache.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\dxgi.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\DWrite.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\rdyboost.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\directmanipulation.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\diagtrack_win.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\coredpus.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ContactApis.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\configmanager2.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\cloudAP.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\BingMaps.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\AppContracts.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-08-23 11:07:21 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\VoiceActivationManager.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\directmanipulation.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\dwmapi.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\UcmUcsi.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\msgpiowin32.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-08-23 11:07:20 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2015-08-23 11:02:57 ----D---- C:\ProgramData\Microsoft OneDrive
2015-08-23 11:01:39 ----A---- C:\WINDOWS\system32\ETDCoInstaller01000.dll
2015-08-23 10:48:07 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-23 10:46:18 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-08-23 10:46:14 ----D---- C:\Program Files\Reference Assemblies
2015-08-23 10:46:14 ----D---- C:\Program Files\MSBuild
2015-08-23 10:46:14 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-08-23 10:46:14 ----D---- C:\Program Files (x86)\MSBuild
2015-08-23 10:45:29 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-08-23 10:45:29 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-08-23 10:45:29 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-23 10:45:27 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-08-23 10:45:27 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-08-23 10:45:27 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-23 10:39:27 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-08-23 10:29:24 ----SD---- C:\Users\michal\AppData\Roaming\Microsoft
2015-08-23 10:29:24 ----D---- C:\Users\michal\AppData\Roaming\ATI
2015-08-23 10:25:50 ----D---- C:\Program Files\ATI Technologies
2015-08-23 10:25:24 ----D---- C:\Program Files (x86)\ATI Technologies
2015-08-23 10:24:22 ----D---- C:\Program Files\Common Files\Atheros
2015-08-23 10:21:49 ----D---- C:\ProgramData\AMD
2015-08-23 10:21:03 ----D---- C:\ProgramData\Package Cache
2015-08-23 10:20:44 ----D---- C:\ProgramData\Conexant
2015-08-23 10:20:38 ----D---- C:\Program Files\CONEXANT
2015-08-23 10:20:24 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-08-23 10:20:19 ----D---- C:\Program Files\AMD
2015-08-23 10:19:53 ----D---- C:\Program Files\Elantech
2015-08-23 10:17:47 ----D---- C:\WINDOWS\Prefetch
2015-08-22 09:33:23 ----ASH---- C:\swapfile.sys
2015-08-22 09:33:23 ----ASH---- C:\pagefile.sys
2015-08-22 09:33:13 ----ASH---- C:\hiberfil.sys
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atiuxpag.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atiu9pag.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\atidxx32.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\amdxc32.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atiuxp64.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atiumd6a.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atiumd64.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atiu9p64.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\atidxx64.dll
2015-08-20 21:51:04 ----A---- C:\WINDOWS\system32\amdxc64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\aticfx32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\amdhcp32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\SYSWOW64\amdave32.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\atimpc64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\aticfx64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\amdpcom64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\amdmiracast.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\amdhcp64.dll
2015-08-20 21:51:02 ----A---- C:\WINDOWS\system32\amdave64.dll
2015-08-20 21:46:54 ----A---- C:\WINDOWS\system32\amdocl64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\mantleaxl32.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\mantle32.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\hsa-thunk.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\atisamu32.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\SYSWOW64\atioglxx.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\mantleaxl64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\mantle64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\coinst_15.20.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\clinfo.exe
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\atitmm64.dll
2015-08-20 21:46:52 ----A---- C:\WINDOWS\system32\atio6axx.dll
2015-08-20 21:46:50 ----N---- C:\WINDOWS\system32\drivers\atikmdag.sys
2015-08-20 21:46:50 ----A---- C:\WINDOWS\SYSWOW64\amdocl.dll
2015-08-20 21:46:50 ----A---- C:\WINDOWS\system32\drivers\SET886.tmp
2015-08-20 21:46:50 ----A---- C:\WINDOWS\system32\drivers\SET212E.tmp
2015-08-20 21:46:50 ----A---- C:\WINDOWS\system32\atisamu64.dll
2015-08-20 21:46:44 ----A---- C:\WINDOWS\system32\aticaldd64.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\atiglpxx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\atigktxx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\atieah32.exe
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\aticalrt.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\SYSWOW64\aticaldd.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\drivers\SET575E.tmp
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\drivers\SET4A9B.tmp
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\drivers\atikmpag.sys
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atimuixx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atiglpxx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atig6txx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atig6pxx.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atiesrxx.exe
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atieclxx.exe
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atieah64.exe
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\atidemgy.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\aticalrt64.dll
2015-08-20 21:46:42 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll
2015-08-20 21:46:40 ----A---- C:\WINDOWS\SYSWOW64\amdocl12cl.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\SYSWOW64\aticalcl.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\system32\aticalcl64.dll
2015-08-20 21:46:38 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2015-08-20 21:46:38 ----A---- C:\WINDOWS\system32\atiadlxx.dll
2015-08-20 21:46:36 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll
2015-08-20 21:46:32 ----A---- C:\WINDOWS\system32\OpenCL.dll
2015-08-20 21:46:28 ----A---- C:\WINDOWS\system32\amdmantle64.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\SYSWOW64\amdmantle32.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\system32\amdmmcl6.dll
2015-08-20 21:46:26 ----A---- C:\WINDOWS\system32\amdhdl64.dll
2015-08-20 21:46:24 ----A---- C:\WINDOWS\SYSWOW64\amdhdl32.dll
2015-08-20 21:46:24 ----A---- C:\WINDOWS\SYSWOW64\amdgfxinfo32.dll
2015-08-20 21:46:24 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll
2015-08-09 07:10:16 ----A---- C:\WINDOWS\SYSWOW64\detoured.dll
2015-08-09 07:10:16 ----A---- C:\WINDOWS\system32\detoured.dll
2015-08-09 07:10:16 ----A---- C:\WINDOWS\system32\ATIODE.exe
2015-08-09 07:10:16 ----A---- C:\WINDOWS\system32\ATIODCLI.exe
2015-08-09 07:10:14 ----A---- C:\WINDOWS\system32\amdocl_as64.exe
2015-08-09 07:10:12 ----A---- C:\WINDOWS\SYSWOW64\amdocl_ld32.exe
2015-08-09 07:10:12 ----A---- C:\WINDOWS\SYSWOW64\amdocl_as32.exe
2015-08-09 07:10:12 ----A---- C:\WINDOWS\system32\amdocl_ld64.exe
2015-08-09 07:10:10 ----A---- C:\WINDOWS\system32\drivers\amdacpksd.sys

======List of files/folders modified in the last 1 month======

2015-09-08 06:42:58 ----D---- C:\Program Files\trend micro
2015-09-08 06:42:21 ----D---- C:\Users\michal\AppData\Roaming\Skype
2015-09-08 06:42:03 ----D---- C:\Users\michal\AppData\Roaming\Raptr
2015-09-08 06:41:33 ----HD---- C:\Program Files\WindowsApps
2015-09-08 06:41:26 ----D---- C:\WINDOWS\AppReadiness
2015-09-08 06:41:25 ----D---- C:\WINDOWS\Temp
2015-09-08 06:38:13 ----D---- C:\WINDOWS\System32
2015-09-08 06:37:16 ----D---- C:\WINDOWS\system32\sru
2015-09-08 06:37:02 ----D---- C:\WINDOWS\system32\drivers\etc
2015-09-08 06:36:48 ----D---- C:\Windows
2015-09-08 06:36:19 ----D---- C:\WINDOWS\Tasks
2015-09-08 06:36:19 ----D---- C:\WINDOWS\SysWOW64
2015-09-08 06:36:18 ----RD---- C:\Program Files
2015-09-07 21:11:00 ----D---- C:\WINDOWS\INF
2015-09-07 21:02:04 ----D---- C:\WINDOWS\system32\Tasks
2015-09-07 21:01:50 ----HD---- C:\ProgramData
2015-09-07 21:01:49 ----RD---- C:\Program Files (x86)
2015-09-07 21:01:48 ----D---- C:\AdwCleaner
2015-09-07 20:36:21 ----D---- C:\Users\michal\AppData\Roaming\BitTorrent
2015-09-07 20:04:16 ----D---- C:\Program Files\Common Files
2015-09-07 20:01:25 ----D---- C:\WINDOWS\system32\drivers
2015-09-07 19:40:40 ----D---- C:\WINDOWS\SoftwareDistribution
2015-09-07 19:28:16 ----D---- C:\Users\michal\AppData\Roaming\TeamViewer
2015-09-07 19:28:16 ----D---- C:\Users\michal\AppData\Roaming\DAEMON Tools Lite
2015-09-07 19:28:15 ----D---- C:\Users\michal\AppData\Roaming\TS3Client
2015-09-07 19:28:15 ----D---- C:\Program Files (x86)\Steam
2015-09-07 19:28:14 ----D---- C:\ProgramData\BlueStacksSetup
2015-09-07 19:27:35 ----D---- C:\WINDOWS\debug
2015-09-07 19:17:58 ----D---- C:\Program Files (x86)\Common Files
2015-09-07 18:49:18 ----D---- C:\Program Files (x86)\AMD
2015-09-07 18:49:05 ----SHD---- C:\WINDOWS\Installer
2015-09-07 18:47:29 ----RSD---- C:\WINDOWS\assembly
2015-09-07 17:28:54 ----D---- C:\Program Files (x86)\GameforgeLive
2015-09-07 16:43:23 ----D---- C:\WINDOWS\Microsoft.NET
2015-09-05 15:55:22 ----D---- C:\WINDOWS\system32\DriverStore
2015-09-05 13:38:31 ----D---- C:\WINDOWS\system32\config
2015-09-05 13:31:38 ----D---- C:\WINDOWS\WinSxS
2015-09-05 13:31:02 ----D---- C:\WINDOWS\OCR
2015-09-03 12:10:10 ----SHD---- C:\System Volume Information
2015-09-02 12:45:38 ----D---- C:\WINDOWS\rescache
2015-09-01 10:07:50 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-08-30 16:01:39 ----D---- C:\WINDOWS\LiveKernelReports
2015-08-30 12:03:01 ----D---- C:\WINDOWS\CbsTemp
2015-08-30 11:38:06 ----D---- C:\WINDOWS\system32\oobe
2015-08-30 11:38:06 ----D---- C:\WINDOWS\system32\appraiser
2015-08-30 11:38:06 ----D---- C:\WINDOWS\AppPatch
2015-08-30 11:34:37 ----D---- C:\WINDOWS\system32\NDF
2015-08-29 23:32:53 ----D---- C:\WINDOWS\system32\catroot2
2015-08-26 17:13:50 ----D---- C:\Program Files (x86)\Rockstar Games
2015-08-26 17:13:37 ----D---- C:\Program Files\Rockstar Games
2015-08-26 17:06:39 ----D---- C:\WINDOWS\Logs
2015-08-24 21:23:39 ----D---- C:\WINDOWS\system32\CatRoot
2015-08-24 19:34:43 ----D---- C:\DRIVERS
2015-08-24 16:03:54 ----D---- C:\AMD
2015-08-24 15:48:22 ----D---- C:\WINDOWS\system32\WDI
2015-08-24 15:46:49 ----D---- C:\Program Files\Microsoft Silverlight
2015-08-24 15:46:48 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-08-24 15:25:25 ----D---- C:\WINDOWS\appcompat
2015-08-23 19:03:37 ----D---- C:\WINDOWS\system32\MRT
2015-08-23 18:54:36 ----A---- C:\WINDOWS\system32\MRT.exe
2015-08-23 18:40:11 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-08-23 18:40:11 ----D---- C:\Program Files (x86)\Realtek
2015-08-23 11:39:04 ----D---- C:\WINDOWS\system32\restore
2015-08-23 11:23:19 ----RD---- C:\WINDOWS\DevicesFlow
2015-08-23 11:09:09 ----D---- C:\WINDOWS\SYSWOW64\oobe
2015-08-23 11:09:09 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\drivers\en-US
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\Dism
2015-08-23 11:09:09 ----D---- C:\WINDOWS\system32\Boot
2015-08-23 11:09:08 ----D---- C:\WINDOWS\Provisioning
2015-08-23 11:09:08 ----D---- C:\Program Files\Internet Explorer
2015-08-23 11:09:08 ----D---- C:\Program Files (x86)\Internet Explorer
2015-08-23 11:05:59 ----D---- C:\WINDOWS\SYSWOW64\sda
2015-08-23 11:00:08 ----RD---- C:\WINDOWS\PurchaseDialog
2015-08-23 11:00:07 ----RD---- C:\WINDOWS\PrintDialog
2015-08-23 11:00:05 ----RD---- C:\WINDOWS\MiracastView
2015-08-23 10:59:36 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-08-23 10:59:29 ----SD---- C:\WINDOWS\SYSWOW64\F12
2015-08-23 10:59:29 ----D---- C:\WINDOWS\SYSWOW64\winrm
2015-08-23 10:59:29 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-08-23 10:59:29 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2015-08-23 10:59:29 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2015-08-23 10:59:21 ----SD---- C:\WINDOWS\SYSWOW64\DiagSvcs
2015-08-23 10:59:21 ----SD---- C:\WINDOWS\system32\F12
2015-08-23 10:59:21 ----D---- C:\WINDOWS\SYSWOW64\en
2015-08-23 10:59:21 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\winrm
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\WCN
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\slmgr
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2015-08-23 10:59:21 ----D---- C:\WINDOWS\system32\migwiz
2015-08-23 10:59:20 ----SD---- C:\WINDOWS\system32\DiagSvcs
2015-08-23 10:59:20 ----D---- C:\WINDOWS\system32\en
2015-08-23 10:59:20 ----D---- C:\WINDOWS\servicing
2015-08-23 10:59:20 ----D---- C:\WINDOWS\en-US
2015-08-23 10:59:20 ----D---- C:\Program Files\Windows Photo Viewer
2015-08-23 10:59:20 ----D---- C:\Program Files\Windows Media Player
2015-08-23 10:59:20 ----D---- C:\Program Files\Windows Journal
2015-08-23 10:59:20 ----D---- C:\Program Files\Windows Defender
2015-08-23 10:59:20 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-08-23 10:59:20 ----D---- C:\Program Files (x86)\Windows Media Player
2015-08-23 10:59:20 ----D---- C:\Program Files (x86)\Windows Defender
2015-08-23 10:52:51 ----D---- C:\WINDOWS\Registration
2015-08-23 10:47:34 ----D---- C:\WINDOWS\system32\LogFiles
2015-08-23 10:46:18 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-08-23 10:46:18 ----D---- C:\WINDOWS\system32\MUI
2015-08-23 10:46:09 ----A---- C:\WINDOWS\SYSWOW64\dpwsockx.dll
2015-08-23 10:46:09 ----A---- C:\WINDOWS\SYSWOW64\dpmodemx.dll
2015-08-23 10:46:09 ----A---- C:\WINDOWS\SYSWOW64\dplayx.dll
2015-08-23 10:46:09 ----A---- C:\WINDOWS\SYSWOW64\dplaysvr.exe
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnsvr.exe
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnlobby.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnhupnp.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnhpast.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnet.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnathlp.dll
2015-08-23 10:46:05 ----A---- C:\WINDOWS\SYSWOW64\dpnaddr.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnlobby.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnhpast.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnet.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnathlp.dll
2015-08-23 10:45:57 ----A---- C:\WINDOWS\system32\dpnaddr.dll
2015-08-23 10:44:45 ----D---- C:\WINDOWS\system32\wbem
2015-08-23 10:37:41 ----D---- C:\WINDOWS\system32\FxsTmp
2015-08-23 10:37:15 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-08-23 10:37:15 ----D---- C:\WINDOWS\SYSWOW64\Atheros_L1e
2015-08-23 10:37:13 ----RSD---- C:\WINDOWS\Fonts
2015-08-23 10:37:13 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-08-23 10:37:12 ----D---- C:\Program Files (x86)\Bluetooth Suite
2015-08-23 10:34:09 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2015-08-23 10:34:09 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2015-08-23 10:34:08 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2015-08-23 10:34:08 ----D---- C:\WINDOWS\SYSWOW64\uk-UA
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\th-TH
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\sl-SI
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\ro-RO
2015-08-23 10:34:07 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\lv-LV
2015-08-23 10:34:06 ----D---- C:\WINDOWS\SYSWOW64\lt-LT
2015-08-23 10:34:05 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2015-08-23 10:34:05 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2015-08-23 10:34:05 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2015-08-23 10:34:04 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\hr-HR
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\he-IL
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy
2015-08-23 10:34:00 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2015-08-23 10:33:59 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2015-08-23 10:33:59 ----D---- C:\WINDOWS\SYSWOW64\et-EE
2015-08-23 10:33:59 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2015-08-23 10:33:59 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2015-08-23 10:33:58 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-08-23 10:33:57 ----D---- C:\WINDOWS\SYSWOW64\bg-BG
2015-08-23 10:33:57 ----D---- C:\WINDOWS\SYSWOW64\ar-SA
2015-08-23 10:33:54 ----D---- C:\WINDOWS\system32\zh-TW
2015-08-23 10:33:54 ----D---- C:\WINDOWS\system32\zh-HK
2015-08-23 10:33:53 ----D---- C:\WINDOWS\system32\zh-CN
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\uk-UA
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\tr-TR
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\th-TH
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\sv-SE
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-08-23 10:33:51 ----D---- C:\WINDOWS\system32\spool
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\sl-SI
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\sk-SK
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\ru-RU
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\ro-RO
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\pt-PT
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\pt-BR
2015-08-23 10:33:49 ----D---- C:\WINDOWS\system32\pl-PL
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\nl-NL
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\nb-NO
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\migration
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\lv-LV
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\lt-LT
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\ko-KR
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\ja-JP
2015-08-23 10:33:48 ----D---- C:\WINDOWS\system32\it-IT
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\InputMethod
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\IME
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\hu-HU
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\hr-HR
2015-08-23 10:33:47 ----D---- C:\WINDOWS\system32\he-IL
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\fr-FR
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\fi-FI
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\et-EE
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\es-ES
2015-08-23 10:33:46 ----D---- C:\WINDOWS\system32\en-US
2015-08-23 10:33:44 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\en-GB
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\el-GR
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\de-DE
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\da-DK
2015-08-23 10:33:44 ----D---- C:\WINDOWS\system32\cs-CZ
2015-08-23 10:32:35 ----D---- C:\WINDOWS\system32\bg-BG
2015-08-23 10:32:35 ----D---- C:\WINDOWS\system32\ar-SA
2015-08-23 10:32:29 ----D---- C:\WINDOWS\MediaViewer
2015-08-23 10:32:17 ----D---- C:\WINDOWS\InputMethod
2015-08-23 10:32:10 ----RD---- C:\Users
2015-08-23 10:32:10 ----D---- C:\WINDOWS\ADFS
2015-08-23 10:32:07 ----D---- C:\ProgramData\PRICache
2015-08-23 10:32:06 ----SD---- C:\ProgramData\Microsoft
2015-08-23 10:32:00 ----D---- C:\ProgramData\Lenovo
2015-08-23 10:31:54 ----D---- C:\Program Files (x86)\Windows Mail
2015-08-23 10:31:52 ----D---- C:\Program Files (x86)\Lenovo
2015-08-23 10:31:47 ----D---- C:\Program Files\Windows Mail
2015-08-23 10:31:47 ----D---- C:\Program Files (x86)\AMD AVT
2015-08-23 10:31:46 ----D---- C:\Program Files\Lenovo
2015-08-23 10:31:45 ----D---- C:\Program Files\Common Files\microsoft shared
2015-08-23 10:31:25 ----HD---- C:\WINDOWS\system32\GroupPolicy
2015-08-23 10:31:20 ----D---- C:\WINDOWS\system32\Recovery
2015-08-23 10:27:56 ----D---- C:\WINDOWS\system32\Sysprep
2015-08-23 10:25:13 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-08-23 10:24:24 ----D---- C:\WINDOWS\twain_32
2015-08-23 09:30:28 ----HD---- C:\$Windows.~BT

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-11-30 80552]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-11-30 26280]
R0 amdkmpfd;@oem12.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2014-10-28 62152]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-07-16 65224]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-07-16 274808]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2013-11-30 39008]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-07-16 93528]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-07-16 1048856]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-07-16 447944]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192]
R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-11 59616]
R2 APXACC;@oem80.inf,%APPEX_ACC_SERVICE_NAME%;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [2015-04-03 229056]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-07-16 28656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-07-16 90968]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-07-16 150160]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128]
R2 rzpmgrk;rzpmgrk; \??\C:\WINDOWS\system32\drivers\rzpmgrk.sys [2015-03-10 37184]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952]
R3 ACPIVPC;@oem34.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2013-11-30 33560]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-08-09 21631512]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-08-20 675296]
R3 anvsnddrv;@oem4.inf,%anvsnddrv.SvcDesc%;AnvSoft Virtual Sound Device; C:\WINDOWS\system32\drivers\anvsnddrv.sys [2011-11-28 33872]
R3 athr;@oem35.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athw8x.sys [2013-03-25 3776000]
R3 AtiHDAudioService;@oem79.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2015-07-22 102912]
R3 BTATH_BUS;@oem41.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2013-01-25 34384]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2015-03-09 599240]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2015-07-10 84992]
R3 CnxtHdAudService;@oem11.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2015-09-05 1561728]
R3 dtsoftbus01;@oem52.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-03-28 283064]
R3 ETD;@oem76.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2015-08-23 467032]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C63x64.sys [2015-07-10 129224]
R3 rtsuvc;@oem65.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [2015-06-02 3057920]
S0 amdkmafd;@oem77.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmafd.sys [2015-06-03 31992]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288]
S2 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2015-07-13 145528]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-07-10 105984]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-07-10 237568]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-07-10 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2015-08-20 929280]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736]
S3 DrvAgent64;DrvAgent64; \??\C:\windows\SysWOW64\Drivers\DrvAgent64.SYS [2014-08-08 21712]
S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-08-23 934752]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-07-10 167936]
S3 RTSUER;@oem69.inf,%RtsUER%;Realtek USB Card Reader - UER; C:\WINDOWS\system32\Drivers\RtsUer.sys [2015-07-03 410880]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-07-10 61952]
S3 UcmUcsi;@ucmucsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-08-23 46080]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-07-10 44032]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-07-10 245088]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-07-10 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-07-10 127840]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-07-10 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-07-10 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-07-10 27488]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-08-20 256992]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [2015-08-04 344064]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-07-16 146600]
R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2015-07-13 417400]
R2 BstHdUpdaterSvc;BlueStacks Updater Service; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [2015-07-13 822904]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 CxAudMsg;@C:\WINDOWS\system32\CxAudMsg64.exe,-100; C:\WINDOWS\system32\CxAudMsg64.exe [2013-07-25 206552]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2015-08-23 135072]
R2 OneSyncSvc_Session1;Hostitel synchronizace_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 Razer Game Scanner Service;Razer Game Scanner; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [2015-03-10 187072]
R2 RzKLService;RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [2015-03-12 129168]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-07-29 5613328]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 PimIndexMaintenanceSvc_Session1;Data kontaktů_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 UnistoreSvc_Session1;Úložiště uživatelských dat_Session1; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 SAService;Conexant SmartAudio service; C:\WINDOWS\system32\SAsrv.exe []
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-11 269000]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2015-07-28 1128448]
S3 BstHdAndroidSvc;BlueStacks Android Service; C:\Program Files (x86)\BlueStacks\HD-Service.exe [2015-07-13 437880]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.11.163\McCHSvc.exe []
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-08-26 149160]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344]
S3 npggsvc;nProtect GameGuard Service; C:\WINDOWS\syswow64\GameMon.des [2015-07-22 3611808]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-08-23 1031680]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-09-04 838848]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

-----------------EOF-----------------

michal5
Návštěvník
Návštěvník
Příspěvky: 24
Registrován: 07 črc 2011 22:28

Re: snapdo

#10 Příspěvek od michal5 »

zatím ale asi žadná změna co se týká toh snapdo,když otevřu například mozilu a dám nové okno tam mi tam vyskakuje jejich domovská stránka toho snapdo"http://search.snapdo.com/?st=nt&q=" a nejde to odstranit.načíta se to tam odněkud z pc,napiše to tam file///c:programdata/zonelams/ff.NT


tak už sem to z toho prohlížeče možná odstranil už tam nevyskakuje ta jejích domovká stránka,ale když dám nové okna tak se tam porád ukazuje ta adresa file:///C:/ProgramData/Zonelams/ff.NT místo toho aby tam skočil třeba seznam.cz

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: snapdo

#11 Příspěvek od Rudy »

Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

michal5
Návštěvník
Návštěvník
Příspěvky: 24
Registrován: 07 črc 2011 22:28

Re: snapdo

#12 Příspěvek od michal5 »

dobrý den,tak sken sem udělal ale nikde nemůžu najít log :D

tak sem našel cestu C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Logs něco se tam uložilo s připomou .xml a nejde to otevřít :/

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: snapdo

#13 Příspěvek od Rudy »

Log by měl mít příponu *.txt.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

michal5
Návštěvník
Návštěvník
Příspěvky: 24
Registrován: 07 črc 2011 22:28

Re: snapdo

#14 Příspěvek od michal5 »

nemůžu to nikde najít :D :?: :(

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: snapdo

#15 Příspěvek od Rudy »

Tak ten log by se měl otevřít sám. Soubor vypadá asi takto: MBAM-log-2014-01-28 (16-09-24).txt a skládá se z data a času ukončení skenu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět