Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu - "program přestal pracovat..."

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
smokeflypaper
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 11 dub 2007 18:47

Prosím o kontrolu logu - "program přestal pracovat..."

#1 Příspěvek od smokeflypaper »

zdravím..

nějak mi začal zlobit ntb občas přestane pracovat taskmgr.exe, stejně tak notepad.exe a další lenovo programy které ani nestihnu zaregistrovat když problikne že "program přestal pracovat a bude ukončen", nelze otevřít směšovač hlasitosti, nespustí se rychlé poznámky je to celý rozhašený....


provedl jsem kontrolu a opravu winsouborů ale problém přetrvává, tak se obracím na zkušenější. ;)

Prosím tedy o kontrolu logu:
_______________________________________________________________________
Logfile of random's system information tool 1.10 (written by random/random)
Run by Zdenek at 2015-09-10 21:29:06
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 684 GB (75%) free of 908 GB
Total RAM: 8055 MB (53% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:29:15, on 10.9.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17937)
Boot mode: Normal

Running processes:
C:\Program Files\Lenovo\Nsd\startupSupport.exe
C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files\trend micro\Zdenek.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [MuteSync] C:\Program Files (x86)\Lenovo\Lenovo MuteSync\MuteSync.exe
O4 - HKLM\..\Run: [Lenovo Registration] C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe /boot
O4 - HKLM\..\Run: [Intelligent Touchpad] C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [CAPOSD] C:\PROGRA~2\Lenovo\LENOVO~2\CAPOSD.exe
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
O4 - HKLM\..\Run: [tvncontrol] "C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe" -controlservice -slave
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{35FC3DEF-E6D4-48E4-888C-F22573C94C0A}: NameServer = 156.154.70.25,156.154.71.25
O17 - HKLM\System\CCS\Services\Tcpip\..\{4AACA86E-05DB-4A38-A766-E90E5396DC52}: NameServer = 156.154.70.25,156.154.71.25
O17 - HKLM\System\CS1\Services\Tcpip\..\{35FC3DEF-E6D4-48E4-888C-F22573C94C0A}: NameServer = 156.154.70.25,156.154.71.25
O17 - HKLM\System\CS2\Services\Tcpip\..\{35FC3DEF-E6D4-48E4-888C-F22573C94C0A}: NameServer = 156.154.70.25,156.154.71.25
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: COMODO Chromodo Update Service (ChromodoUpdater) - Comodo - C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe
O23 - Service: COMODO LPS Launcher (CLPSLauncher) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe
O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GeekBuddyRSP Server (GeekBuddyRSP) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\mcafee\msc\mcawfwk.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.5.495.0\McCSPServiceHost.exe
O23 - Service: McAfee OOBE Service (McOobeSv) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Service Controller (mfemms) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NitroPDFDriverCreatorReadSpool2 (NitroDriverReadSpool2) - Nitro PDF Software - C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\SysWOW64\NLSSRV32.EXE
O23 - Service: Fast boot service of lenovo (NSDSvc) - Unknown owner - C:\Windows\System32\NSDSvc.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 15179 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\WLANExt.exe 45995120
\??\C:\Windows\system32\conhost.exe "-1635511960-111830756-1977078271-1610407598145120273419073779491373564747-373196029
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {DDFC9FA4-FF16-4E4D-85B8-C42FDC54ED79}
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Windows\system32\mfevtps.exe"
"C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe"
C:\Windows\SysWOW64\NLSSRV32.EXE
C:\Windows\System32\NSDSvc.exe
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"taskhost.exe"
taskeng.exe {96A1D910-A263-4227-A386-A51CD464F2D6}
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe"
"C:\Windows\system32\mfevtps.exe" -mms
C:\Windows\Explorer.EXE
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe" -mms
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
"C:\Program Files (x86)\Google\Update\1.3.28.13\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.28.13\GoogleCrashHandler64.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\spoolsv.exe
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\Lenovo\Nsd\startupSupport.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe"
"C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe"
"C:\Program Files\McAfee\MSC\McAPExe.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe"
"C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe" -service
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe"
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Common Files\McAfee\CSP\1.5.495.0\McCSPServiceHost.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
WLIDSvcM.exe 6944
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"c:\Program Files\Microsoft Security Client\MpCmdRun.exe" SignatureUpdate -ScheduleJob -RestrictPrivileges -Reinvoke
"c:\Program Files\Microsoft Security Client\MpCmdRun.exe" SignaturesUpdateService -ScheduleJob -UnmanagedUpdate
\??\C:\Windows\system32\conhost.exe "-2020487300-16872992661981494886-34263051215403238076330772261371159271-256433010
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe"
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=gpu-process --channel="7256.0.1879394650\784560550" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,9,23,46 --disable-accelerated-video-decode --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2626 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.1.1172426084\1742354987" --font-cache-shared-handle=2184 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.2.863544734\1097743834" --font-cache-shared-handle=2348 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.3.1049858181\1609551175" --font-cache-shared-handle=2588 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.4.360851078\1723757646" --font-cache-shared-handle=2760 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.5.857898015\1185334499" --font-cache-shared-handle=3320 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.6.268506512\2125510623" --font-cache-shared-handle=3320 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.7.1547844508\1585053836" --font-cache-shared-handle=4028 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.8.1913830336\998935611" --font-cache-shared-handle=3496 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.11.1068402559\239984048" --font-cache-shared-handle=6096 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.12.471535873\414775126" --font-cache-shared-handle=6620 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.13.2126269279\2139608685" --font-cache-shared-handle=7256 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.15.736385869\298743693" --font-cache-shared-handle=8272 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.16.773152321\1792071931" --font-cache-shared-handle=8728 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.17.1184346723\1715979277" --font-cache-shared-handle=8804 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.18.584947604\692156985" --font-cache-shared-handle=9492 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.19.2143406049\1102868931" --font-cache-shared-handle=9984 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.20.1447866653\565693260" --font-cache-shared-handle=10068 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.21.896315861\566558635" --font-cache-shared-handle=10776 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.22.1433188235\718400931" --font-cache-shared-handle=10704 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.23.666164951\1462807237" --font-cache-shared-handle=10956 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.24.561289091\810525678" --font-cache-shared-handle=11232 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.25.576111749\832605307" --font-cache-shared-handle=12100 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.26.1032522375\724408533" --font-cache-shared-handle=12304 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.27.1295233322\790544103" --font-cache-shared-handle=12400 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.28.1954977602\1344381081" --font-cache-shared-handle=13360 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.29.814488649\946420323" --font-cache-shared-handle=6568 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.30.1146339358\589846434" --font-cache-shared-handle=2956 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.31.1137641278\591151517" --font-cache-shared-handle=2796 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.32.1187744936\1743195678" --font-cache-shared-handle=7192 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=ppapi --channel="7256.33.67088227\2040261158" --ppapi-flash-args --lang=cs --ignored=" --type=renderer " /prefetch:-632637702

"C:\Users\Zdenek\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="7256.35.675292306\769799717" --font-cache-shared-handle=14572 /prefetch:673131151

======Scheduled tasks folder======

C:\Windows\tasks\Ad-Aware Update (Weekly).job - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-11-10 2847016]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-01-31 12446824]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2011-11-15 1156712]
"SynLenovoGestureMgr"=C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [2011-11-10 408872]
"OnekeyStudio"=C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe [2012-08-08 789856]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-14 222504]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2012-08-08 8079408]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2012-08-08 6202416]
"Lenovo EE Boot Optimizer"=C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [2012-08-08 206176]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-30 1337000]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-08-05 1427648]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-28 170264]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-28 398616]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-28 440600]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-09-09 1793736]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeBridge"= []
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-09-10 8455960]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2015-06-18 4468056]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-08-07 53737488]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-05-21 291648]
"Dolby Home Theater v4"=C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [2011-06-01 506712]
"MuteSync"=C:\Program Files (x86)\Lenovo\Lenovo MuteSync\MuteSync.exe [2012-02-04 343040]
"Lenovo Registration"=C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [2012-01-26 4351712]
"Intelligent Touchpad"=C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe [2011-12-08 291272]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-14 222504]
"CAPOSD"=C:\PROGRA~2\Lenovo\LENOVO~2\CAPOSD.exe [2012-02-09 1876992]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2015-05-13 616272]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-06-24 4101576]
"Ad-Watch"=C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe [2009-03-09 515416]
"tvncontrol"=C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [2015-08-30 2327248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2015-09-09 430080]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfeaack]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfeaack.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfeavfk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfeavfk.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfemms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfetdi2k]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfetdi2k.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0
"NoFolderOptions"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-09-10 21:29:06 ----D---- C:\rsit
2015-09-10 21:29:06 ----D---- C:\Program Files\trend micro
2015-09-10 21:05:30 ----D---- C:\AdwCleaner
2015-09-10 20:24:23 ----RD---- C:\Program Files (x86)\Skype
2015-09-10 20:16:26 ----D---- C:\Program Files (x86)\Comodo
2015-09-09 11:07:57 ----D---- C:\Windows\SYSWOW64\NV
2015-09-09 11:07:57 ----D---- C:\Windows\system32\NV
2015-09-09 11:07:34 ----D---- C:\ProgramData\NVIDIA
2015-09-09 10:16:59 ----A---- C:\Windows\SYSWOW64\nvdecodemft.dll
2015-09-09 10:16:59 ----A---- C:\Windows\system32\nvgenco64.dll
2015-09-09 10:16:59 ----A---- C:\Windows\system32\nvdispco64.dll
2015-09-09 10:16:59 ----A---- C:\Windows\system32\nvdecodemft.dll
2015-09-09 09:56:59 ----D---- C:\drivers
2015-09-09 09:26:05 ----A---- C:\Windows\SYSWOW64\oemdspif.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvvsvc.exe
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvsvcr.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvsvc64.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvshext.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvmctray.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvcpl.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nv3dappshextr.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nv3dappshext.dll
2015-09-09 09:10:18 ----D---- C:\ProgramData\boost_interprocess
2015-09-09 09:09:21 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-09-09 09:09:21 ----A---- C:\Windows\system32\nvinitx.dll
2015-09-09 09:09:19 ----A---- C:\Windows\system32\nvdispgenco6435330.dll
2015-09-09 09:09:17 ----A---- C:\Windows\system32\nvdispco6435330.dll
2015-09-08 13:01:10 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2015-09-08 13:01:09 ----A---- C:\Windows\system32\drivers\usbohci.sys
2015-09-08 13:00:48 ----SD---- C:\Windows\SYSWOW64\GWX
2015-09-02 16:45:51 ----D---- C:\ProgramData\WarThunder
2015-08-30 10:57:43 ----A---- C:\Windows\system32\drivers\fvstore.dat
2015-08-30 10:36:49 ----D---- C:\ProgramData\Shared Space
2015-08-30 10:34:46 ----D---- C:\Program Files\COMODO
2015-08-30 10:32:57 ----D---- C:\ProgramData\Comodo
2015-08-29 22:31:41 ----D---- C:\Users\Zdenek\AppData\Roaming\DigitalVolcano
2015-08-29 22:31:31 ----D---- C:\Program Files (x86)\Duplicate Cleaner
2015-08-29 22:24:18 ----D---- C:\Program Files (x86)\Microsoft Security Client
2015-08-29 22:24:14 ----D---- C:\Program Files\Microsoft Security Client
2015-08-29 10:17:39 ----D---- C:\Users\Zdenek\AppData\Roaming\NetMeter
2015-08-28 20:09:06 ----D---- C:\Users\Zdenek\AppData\Roaming\EMG Future Technologies Inc
2015-08-27 01:49:28 ----HD---- C:\Windows\msdownld.tmp
2015-08-27 01:49:27 ----D---- C:\Windows\SYSWOW64\directx
2015-08-26 22:17:53 ----D---- C:\Program Files (x86)\Electronic Arts
2015-08-26 21:47:44 ----D---- C:\Program Files (x86)\SystemRequirementsLab
2015-08-25 20:52:26 ----D---- C:\Program Files (x86)\Interplanetary
2015-08-25 09:40:55 ----RHD---- C:\Users\Zdenek\AppData\Roaming\SecuROM
2015-08-24 22:09:16 ----D---- C:\ProgramData\Media Center Programs
2015-08-24 22:01:08 ----D---- C:\Program Files (x86)\Sierra Entertainment
2015-08-24 22:00:19 ----D---- C:\Users\Zdenek\AppData\Roaming\InstallShield
2015-08-24 16:43:21 ----D---- C:\Program Files (x86)\The Swapper
2015-08-24 13:30:19 ----D---- C:\Users\Zdenek\AppData\Roaming\Promotion Software GmbH
2015-08-24 12:49:12 ----D---- C:\ProgramData\RELOADED
2015-08-24 12:44:36 ----D---- C:\Program Files (x86)\Deadlight
2015-08-24 09:30:20 ----D---- C:\Users\Zdenek\AppData\Roaming\Steam
2015-08-24 09:25:12 ----D---- C:\Program Files (x86)\Construction Simulator 2015
2015-08-24 09:21:37 ----D---- C:\Users\Zdenek\AppData\Roaming\DAEMON Tools Lite
2015-08-24 09:21:37 ----A---- C:\Windows\system32\drivers\dtlitescsibus.sys
2015-08-24 09:21:35 ----D---- C:\Program Files\DAEMON Tools Lite
2015-08-24 09:20:56 ----D---- C:\ProgramData\DAEMON Tools Lite
2015-08-21 08:25:59 ----A---- C:\Windows\system32\mshtml.dll
2015-08-21 08:25:58 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-08-19 21:08:46 ----D---- C:\Program Files\CCleaner
2015-08-12 09:44:12 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-12 09:44:12 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-12 02:42:16 ----A---- C:\Windows\system32\invagent.dll
2015-08-12 02:42:16 ----A---- C:\Windows\system32\generaltel.dll
2015-08-12 02:42:16 ----A---- C:\Windows\system32\devinv.dll
2015-08-12 02:42:16 ----A---- C:\Windows\system32\appraiser.dll
2015-08-12 02:42:16 ----A---- C:\Windows\system32\aeinv.dll
2015-08-12 02:42:16 ----A---- C:\Windows\system32\acmigration.dll
2015-08-12 02:42:14 ----A---- C:\Windows\system32\aepdu.dll
2015-08-12 02:42:12 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-08-12 02:41:59 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-08-12 02:41:59 ----A---- C:\Windows\system32\ntdll.dll
2015-08-12 02:41:59 ----A---- C:\Windows\system32\kernel32.dll
2015-08-12 02:41:58 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-08-12 02:41:57 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-08-12 02:41:57 ----A---- C:\Windows\system32\sysmain.dll
2015-08-12 02:41:55 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-08-12 02:41:55 ----A---- C:\Windows\system32\lsasrv.dll
2015-08-12 02:41:55 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2015-08-12 02:41:54 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-08-12 02:41:54 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-08-12 02:41:54 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-08-12 02:41:54 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-08-12 02:41:54 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-08-12 02:41:54 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-08-12 02:41:54 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-08-12 02:41:54 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-08-12 02:41:54 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-08-12 02:41:54 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-08-12 02:41:54 ----A---- C:\Windows\system32\wow64.dll
2015-08-12 02:41:54 ----A---- C:\Windows\system32\winsrv.dll
2015-08-12 02:41:54 ----A---- C:\Windows\system32\wdigest.dll
2015-08-12 02:41:54 ----A---- C:\Windows\system32\TSpkg.dll
2015-08-12 02:41:54 ----A---- C:\Windows\system32\sspicli.dll
2015-08-12 02:41:54 ----A---- C:\Windows\system32\srcore.dll
2015-08-12 02:41:54 ----A---- C:\Windows\system32\smss.exe
2015-08-12 02:41:54 ----A---- C:\Windows\system32\schannel.dll
2015-08-12 02:41:54 ----A---- C:\Windows\system32\rstrui.exe
2015-08-12 02:41:54 ----A---- C:\Windows\system32\rpcrt4.dll
2015-08-12 02:41:54 ----A---- C:\Windows\system32\ncrypt.dll
2015-08-12 02:41:54 ----A---- C:\Windows\system32\msv1_0.dll
2015-08-12 02:41:54 ----A---- C:\Windows\system32\lsass.exe
2015-08-12 02:41:54 ----A---- C:\Windows\system32\KernelBase.dll
2015-08-12 02:41:54 ----A---- C:\Windows\system32\kerberos.dll
2015-08-12 02:41:54 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-08-12 02:41:54 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-08-12 02:41:54 ----A---- C:\Windows\system32\csrsrv.dll
2015-08-12 02:41:54 ----A---- C:\Windows\system32\conhost.exe
2015-08-12 02:41:54 ----A---- C:\Windows\system32\auditpol.exe
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-08-12 02:41:53 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-08-12 02:41:53 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-08-12 02:41:53 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-08-12 02:41:53 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-08-12 02:41:53 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-08-12 02:41:53 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-08-12 02:41:53 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-08-12 02:41:53 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-08-12 02:41:53 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2015-08-12 02:41:53 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-08-12 02:41:53 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-08-12 02:41:53 ----A---- C:\Windows\system32\wow64win.dll
2015-08-12 02:41:53 ----A---- C:\Windows\system32\wow64cpu.dll
2015-08-12 02:41:53 ----A---- C:\Windows\system32\sspisrv.dll
2015-08-12 02:41:53 ----A---- C:\Windows\system32\srclient.dll
2015-08-12 02:41:53 ----A---- C:\Windows\system32\secur32.dll
2015-08-12 02:41:53 ----A---- C:\Windows\system32\ntvdm64.dll
2015-08-12 02:41:53 ----A---- C:\Windows\system32\msmmsp.dll
2015-08-12 02:41:53 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-08-12 02:41:53 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-08-12 02:41:53 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-08-12 02:41:53 ----A---- C:\Windows\system32\cryptbase.dll
2015-08-12 02:41:53 ----A---- C:\Windows\system32\credssp.dll
2015-08-12 02:41:53 ----A---- C:\Windows\system32\apisetschema.dll
2015-08-12 02:41:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-08-12 02:41:52 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-08-12 02:41:52 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-08-12 02:41:52 ----A---- C:\Windows\SYSWOW64\user.exe
2015-08-12 02:41:52 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-08-12 02:41:52 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-08-12 02:41:52 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-08-12 02:41:52 ----A---- C:\Windows\system32\msobjs.dll
2015-08-12 02:41:52 ----A---- C:\Windows\system32\msaudite.dll
2015-08-12 02:41:52 ----A---- C:\Windows\system32\adtschema.dll
2015-08-12 02:41:36 ----A---- C:\Windows\system32\mstscax.dll
2015-08-12 02:41:35 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2015-08-12 02:41:32 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2015-08-12 02:41:32 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2015-08-12 02:41:32 ----A---- C:\Windows\system32\tsgqec.dll
2015-08-12 02:41:32 ----A---- C:\Windows\system32\aaclient.dll
2015-08-12 02:41:20 ----A---- C:\Windows\system32\basesrv.dll
2015-08-12 02:41:09 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-08-12 02:41:09 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-08-12 02:41:09 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-08-12 02:41:09 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-08-12 02:41:09 ----A---- C:\Windows\system32\iertutil.dll
2015-08-12 02:41:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-08-12 02:41:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-08-12 02:41:08 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-08-12 02:41:08 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-08-12 02:41:08 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-08-12 02:41:08 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-08-12 02:41:08 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-08-12 02:41:08 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-08-12 02:41:08 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-08-12 02:41:08 ----A---- C:\Windows\system32\iernonce.dll
2015-08-12 02:41:08 ----A---- C:\Windows\system32\ie4uinit.exe
2015-08-12 02:41:07 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-08-12 02:41:07 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-08-12 02:41:07 ----A---- C:\Windows\system32\urlmon.dll
2015-08-12 02:41:07 ----A---- C:\Windows\system32\iedkcs32.dll
2015-08-12 02:41:06 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-08-12 02:41:06 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-08-12 02:41:06 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-08-12 02:41:06 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-08-12 02:41:06 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-08-12 02:41:06 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-08-12 02:41:06 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-08-12 02:41:06 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-08-12 02:41:06 ----A---- C:\Windows\system32\msfeeds.dll
2015-08-12 02:41:06 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-08-12 02:41:06 ----A---- C:\Windows\system32\dxtrans.dll
2015-08-12 02:41:05 ----A---- C:\Windows\system32\iesetup.dll
2015-08-12 02:41:05 ----A---- C:\Windows\system32\ieapfltr.dll
2015-08-12 02:41:04 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-08-12 02:41:04 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-08-12 02:41:04 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-08-12 02:41:04 ----A---- C:\Windows\system32\vbscript.dll
2015-08-12 02:41:04 ----A---- C:\Windows\system32\jsproxy.dll
2015-08-12 02:41:04 ----A---- C:\Windows\system32\ieUnatt.exe
2015-08-12 02:41:03 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-08-12 02:41:03 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-08-12 02:41:03 ----A---- C:\Windows\system32\ieui.dll
2015-08-12 02:41:03 ----A---- C:\Windows\system32\ieframe.dll
2015-08-12 02:41:03 ----A---- C:\Windows\system32\dxtmsft.dll
2015-08-12 02:41:02 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-08-12 02:41:02 ----A---- C:\Windows\system32\mshtmled.dll
2015-08-12 02:41:02 ----A---- C:\Windows\system32\jscript9diag.dll
2015-08-12 02:41:02 ----A---- C:\Windows\system32\jscript9.dll
2015-08-12 02:41:02 ----A---- C:\Windows\system32\jscript.dll
2015-08-12 02:41:01 ----A---- C:\Windows\system32\wininet.dll
2015-08-12 02:41:01 ----A---- C:\Windows\system32\msrating.dll
2015-08-12 02:41:01 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-08-12 02:40:57 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2015-08-12 02:40:57 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2015-08-12 02:40:57 ----A---- C:\Windows\system32\WebClnt.dll
2015-08-12 02:40:57 ----A---- C:\Windows\system32\davclnt.dll
2015-08-12 02:40:54 ----A---- C:\Windows\system32\msxml6.dll
2015-08-12 02:40:54 ----A---- C:\Windows\system32\msxml3.dll
2015-08-12 02:40:53 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2015-08-12 02:40:53 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2015-08-12 02:40:53 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-08-12 02:40:53 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-08-12 02:40:53 ----A---- C:\Windows\system32\msxml6r.dll
2015-08-12 02:40:53 ----A---- C:\Windows\system32\msxml3r.dll
2015-08-12 02:40:52 ----A---- C:\Windows\system32\FntCache.dll
2015-08-12 02:40:50 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-08-12 02:40:50 ----A---- C:\Windows\system32\DWrite.dll
2015-08-12 02:40:49 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-08-12 02:40:49 ----A---- C:\Windows\system32\win32k.sys
2015-08-12 02:40:49 ----A---- C:\Windows\system32\atmfd.dll
2015-08-12 02:40:48 ----A---- C:\Windows\system32\lpk.dll
2015-08-12 02:40:47 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2015-08-12 02:40:47 ----A---- C:\Windows\system32\d3d10warp.dll
2015-08-12 02:40:47 ----A---- C:\Windows\system32\atmlib.dll
2015-08-12 02:40:46 ----A---- C:\Windows\SYSWOW64\lpk.dll
2015-08-12 02:40:46 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2015-08-12 02:40:46 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2015-08-12 02:40:46 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-08-12 02:40:46 ----A---- C:\Windows\system32\fontsub.dll
2015-08-12 02:40:46 ----A---- C:\Windows\system32\dciman32.dll
2015-08-12 02:40:42 ----A---- C:\Windows\SYSWOW64\notepad.exe
2015-08-12 02:40:42 ----A---- C:\Windows\system32\notepad.exe
2015-08-12 02:40:42 ----A---- C:\Windows\notepad.exe
2015-08-12 02:40:41 ----A---- C:\Windows\system32\shell32.dll
2015-08-12 02:40:40 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-08-12 02:40:38 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-08-12 02:40:38 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-08-12 02:40:38 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-08-12 02:40:38 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-08-12 02:40:38 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-08-12 02:40:38 ----A---- C:\Windows\system32\wuwebv.dll
2015-08-12 02:40:38 ----A---- C:\Windows\system32\wups2.dll
2015-08-12 02:40:38 ----A---- C:\Windows\system32\wups.dll
2015-08-12 02:40:38 ----A---- C:\Windows\system32\wudriver.dll
2015-08-12 02:40:38 ----A---- C:\Windows\system32\wucltux.dll
2015-08-12 02:40:38 ----A---- C:\Windows\system32\wuaueng.dll
2015-08-12 02:40:38 ----A---- C:\Windows\system32\wuauclt.exe
2015-08-12 02:40:38 ----A---- C:\Windows\system32\wuapp.exe
2015-08-12 02:40:38 ----A---- C:\Windows\system32\wuapi.dll
2015-08-12 02:40:38 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-08-12 02:40:38 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-08-12 02:36:24 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll

======List of files/folders modified in the last 1 month======

2015-09-10 21:29:10 ----D---- C:\Windows\Temp
2015-09-10 21:29:06 ----RD---- C:\Program Files
2015-09-10 21:14:29 ----A---- C:\Windows\SYSWOW64\log.txt
2015-09-10 21:12:35 ----D---- C:\ProgramData\McAfee
2015-09-10 21:12:34 ----D---- C:\Program Files (x86)\McAfee
2015-09-10 21:12:23 ----D---- C:\Program Files\mcafee
2015-09-10 21:12:17 ----D---- C:\Program Files\Common Files\mcafee
2015-09-10 21:11:31 ----D---- C:\Windows\system32\config
2015-09-10 21:11:03 ----AD---- C:\Windows
2015-09-10 21:09:52 ----HD---- C:\ProgramData
2015-09-10 21:02:21 ----D---- C:\Program Files (x86)\PokerStars
2015-09-10 21:01:37 ----RD---- C:\Program Files (x86)
2015-09-10 20:58:59 ----D---- C:\Windows\system32\drivers
2015-09-10 20:55:33 ----D---- C:\Windows\inf
2015-09-10 20:49:15 ----D---- C:\Program Files (x86)\Steam
2015-09-10 20:49:08 ----D---- C:\Windows\Logs
2015-09-10 20:49:08 ----D---- C:\Windows\debug
2015-09-10 20:31:15 ----D---- C:\Users\Zdenek\AppData\Roaming\Skype
2015-09-10 20:24:56 ----SHD---- C:\Windows\Installer
2015-09-10 20:24:56 ----D---- C:\ProgramData\Skype
2015-09-10 20:24:26 ----D---- C:\Program Files (x86)\Common Files
2015-09-10 20:21:38 ----AD---- C:\Windows\System32
2015-09-10 20:21:38 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-09-10 13:22:01 ----SHD---- C:\System Volume Information
2015-09-09 11:07:57 ----D---- C:\Windows\SysWOW64
2015-09-09 10:35:42 ----D---- C:\Program Files\NVIDIA Corporation
2015-09-09 10:35:42 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-09-09 10:31:39 ----D---- C:\Windows\system32\DriverStore
2015-09-09 10:31:12 ----A---- C:\Windows\system32\NvIFR64.dll
2015-09-09 10:30:26 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-09-09 10:30:26 ----A---- C:\Windows\system32\nvapi64.dll
2015-09-09 10:30:25 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-09-09 10:30:25 ----A---- C:\Windows\system32\NvFBC64.dll
2015-09-09 10:30:22 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-09-09 10:30:22 ----A---- C:\Windows\system32\nvcompiler.dll
2015-09-09 10:30:19 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-09-09 10:30:18 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-09-09 10:30:18 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-09-09 10:30:17 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-09-09 10:30:17 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-09-09 10:30:17 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-09-09 10:30:17 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-09-09 10:30:17 ----A---- C:\Windows\system32\nvopencl.dll
2015-09-09 10:30:17 ----A---- C:\Windows\system32\nvdispco6434520.dll
2015-09-09 10:30:15 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-09-09 10:30:15 ----A---- C:\Windows\system32\nvcuvid.dll
2015-09-09 10:30:14 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-09-09 10:30:13 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-09-09 10:30:13 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-09-09 10:30:13 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-09-09 10:30:12 ----A---- C:\Windows\system32\nvoglv64.dll
2015-09-09 10:30:12 ----A---- C:\Windows\system32\nvdispgenco6434520.dll
2015-09-09 10:30:10 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-09-09 10:30:10 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-09-09 10:30:10 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-09-09 10:30:10 ----A---- C:\Windows\system32\nvcuda.dll
2015-09-09 10:30:09 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-09-09 10:30:09 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-09-09 10:07:58 ----D---- C:\Windows\system32\catroot
2015-09-09 10:04:03 ----D---- C:\Windows\system32\catroot2
2015-09-09 09:58:27 ----A---- C:\Windows\SYSWOW64\igdde32.dll
2015-09-09 09:58:27 ----A---- C:\Windows\system32\igfxdo.dll
2015-09-09 09:58:27 ----A---- C:\Windows\system32\igdde64.dll
2015-09-09 09:58:26 ----A---- C:\Windows\SYSWOW64\igfxexps32.dll
2015-09-09 09:58:26 ----A---- C:\Windows\system32\IGFXDEVLib.dll
2015-09-09 09:58:25 ----A---- C:\Windows\SYSWOW64\igd10umd32.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\igfxsrvc.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\igfxress.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\igfxexps.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\igd10umd64.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\hccutils.dll
2015-09-09 09:58:24 ----A---- C:\Windows\SYSWOW64\IntelOpenCL32.dll
2015-09-09 09:58:24 ----A---- C:\Windows\SYSWOW64\igfxdv32.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\IntelOpenCL64.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\igfxTMM.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\igfxpph.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\igfxdev.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\igfxCoIn_v2626.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\gfxSrvc.dll
2015-09-09 09:58:23 ----A---- C:\Windows\SYSWOW64\igdumd32.dll
2015-09-09 09:58:23 ----A---- C:\Windows\SYSWOW64\igdrcl32.dll
2015-09-09 09:58:23 ----A---- C:\Windows\system32\igdumd64.dll
2015-09-09 09:58:23 ----A---- C:\Windows\system32\igdrcl64.dll
2015-09-09 09:58:22 ----A---- C:\Windows\SYSWOW64\igdfcl32.dll
2015-09-09 09:58:22 ----A---- C:\Windows\SYSWOW64\igdbcl32.dll
2015-09-09 09:58:22 ----A---- C:\Windows\SYSWOW64\ig7icd32.dll
2015-09-09 09:58:22 ----A---- C:\Windows\system32\igdbcl64.dll
2015-09-09 09:58:22 ----A---- C:\Windows\system32\ig7icd64.dll
2015-09-09 09:46:12 ----D---- C:\Windows\system32\Tasks
2015-09-09 09:29:42 ----D---- C:\ProgramData\NVIDIA Corporation
2015-09-09 09:26:05 ----D---- C:\Windows\Help
2015-09-09 09:11:38 ----D---- C:\Windows\winsxs
2015-09-09 09:10:28 ----AD---- C:\Users
2015-09-08 19:46:58 ----SHD---- C:\$RECYCLE.BIN
2015-09-08 19:42:40 ----D---- C:\Windows\Prefetch
2015-09-08 11:24:32 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-08-29 23:54:03 ----D---- C:\Windows\Panther
2015-08-29 23:45:55 ----HD---- C:\$Windows.~BT
2015-08-29 23:02:48 ----SHD---- C:\Boot
2015-08-29 22:24:18 ----SD---- C:\ProgramData\Microsoft
2015-08-29 19:05:01 ----D---- C:\Users\Zdenek\AppData\Roaming\Nitro PDF
2015-08-29 15:54:20 ----D---- C:\Windows\Tasks
2015-08-25 20:47:52 ----D---- C:\Users\Zdenek\AppData\Roaming\MPC-HC
2015-08-23 10:03:20 ----D---- C:\Windows\system32\wdi
2015-08-22 23:41:39 ----D---- C:\Windows\LiveKernelReports
2015-08-19 20:29:00 ----D---- C:\Program Files (x86)\SugarSync
2015-08-19 20:20:40 ----D---- C:\Windows\Minidump
2015-08-19 20:10:21 ----D---- C:\ProgramData\Temp
2015-08-19 19:42:10 ----D---- C:\Program Files (x86)\Lenovo
2015-08-19 11:42:04 ----D---- C:\ProgramData\VeriFace
2015-08-12 14:46:08 ----D---- C:\Windows\rescache
2015-08-12 14:17:32 ----D---- C:\Windows\Microsoft.NET
2015-08-12 14:17:03 ----RSD---- C:\Windows\assembly
2015-08-12 14:02:38 ----D---- C:\Program Files\Microsoft Silverlight
2015-08-12 14:02:38 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-08-12 14:00:44 ----SD---- C:\Windows\system32\CompatTel
2015-08-12 14:00:44 ----D---- C:\Windows\system32\appraiser
2015-08-12 14:00:44 ----D---- C:\Windows\AppPatch
2015-08-12 14:00:41 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-08-12 14:00:41 ----D---- C:\Windows\system32\drivers\cs-CZ
2015-08-12 14:00:41 ----D---- C:\Windows\system32\cs-CZ
2015-08-12 14:00:39 ----D---- C:\Windows\SYSWOW64\en-US
2015-08-12 14:00:39 ----D---- C:\Windows\system32\en-US
2015-08-12 14:00:39 ----D---- C:\Program Files\Internet Explorer
2015-08-12 14:00:39 ----D---- C:\Program Files (x86)\Internet Explorer

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 fbfmon;fbfmon; C:\Windows\system32\drivers\fbfmon.sys [2012-08-08 57952]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-11-30 568600]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-05-21 19264]
R0 LHDmgr;LHDmgr; C:\Windows\System32\DRIVERS\LhdX64.sys [2012-08-08 39008]
R0 mfedisk;McAfee AAC Disk Filter Driver; C:\Windows\system32\DRIVERS\mfedisk.sys [2015-04-08 101872]
R0 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [2015-04-08 864200]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\Windows\system32\drivers\mfewfpk.sys [2015-04-08 335944]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-03-04 280376]
R0 NSD;NSD; C:\Windows\system32\drivers\nsd.sys [2011-12-24 24160]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2015-09-09 31560]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 BPntDrv;BPntDrv; C:\Windows\system32\drivers\BPntDrv.sys [2012-08-08 13408]
R1 CFRMD;CFRMD; C:\Windows\system32\DRIVERS\CFRMD.sys [2014-06-26 37976]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\Windows\System32\DRIVERS\cmderd.sys [2015-08-05 21184]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\system32\DRIVERS\cmdguard.sys [2015-08-05 806032]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2015-08-05 45856]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2015-08-05 105096]
R1 Nsdfltr;Nsdfltr; C:\Windows\system32\drivers\Nsdfltr.sys [2011-12-22 59488]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 124568]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys [2012-08-08 30816]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtlitescsibus.sys [2015-08-24 30264]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-09-09 14658688]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-01-31 4739304]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2011-12-06 331264]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-05-21 357184]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-05-21 789824]
R3 iwdbus;IWD Bus Enumerator; C:\Windows\system32\DRIVERS\iwdbus.sys [2012-04-20 25528]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2011-11-10 60184]
R3 mfeaack;McAfee Inc. mfeaack; C:\Windows\system32\drivers\mfeaack.sys [2015-04-08 402888]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [2015-04-08 338272]
R3 mfefirek;McAfee Inc. mfefirek; C:\Windows\system32\drivers\mfefirek.sys [2015-04-08 488000]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2011-12-02 11417088]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
R3 SPUVCbv;SPUVCb Driver Service; C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 185344]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2011-11-10 401456]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 bcbtums;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2012-02-02 134696]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-10-10 80384]
S3 btwampfl;btwampfl Bluetooth filter driver; \??\C:\Windows\system32\drivers\btwampfl.sys [2012-02-02 615976]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2012-02-02 184360]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2012-02-02 211496]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2012-02-02 39976]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2012-02-02 21544]
S3 cfwids;McAfee Inc. cfwids; C:\Windows\system32\drivers\cfwids.sys [2015-04-08 68784]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2012-04-20 35256]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUVStor.sys [2011-10-24 313960]
S3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2012-02-02 945440]
R2 CLPSLauncher;COMODO LPS Launcher; C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe [2015-08-30 70848]
R2 CmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2015-08-05 5542472]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-12-08 618256]
R2 GeekBuddyRSP;GeekBuddyRSP Server; C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [2015-08-30 2327248]
R2 ChromodoUpdater;COMODO Chromodo Update Service; C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe [2015-09-10 1998520]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-03 628448]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-02-08 128280]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-08 161560]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe [2009-03-09 951632]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-08 277784]
R2 mccspsvc;McAfee CSP Service; C:\Program Files\Common Files\McAfee\CSP\1.5.495.0\McCSPServiceHost.exe [2015-06-04 207344]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [2015-04-08 250672]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 23816]
R2 NitroDriverReadSpool2;NitroPDFDriverCreatorReadSpool2; C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe [2012-06-21 216072]
R2 nlsX86cc;Nalpeiron Licensing Service; C:\Windows\SysWOW64\NLSSRV32.EXE [2012-06-21 69640]
R2 NSDSvc;Fast boot service of lenovo; C:\Windows\System32\NSDSvc.exe [2011-12-24 120160]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-02-04 934216]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-12-08 148752]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-06-24 1738168]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-06-27 2088408]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-08 363800]
R3 McAPExe;McAfee AP Service; C:\Program Files\McAfee\MSC\McAPExe.exe [2015-05-13 754280]
R3 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2015-04-08 232656]
R3 mfemms;McAfee Service Controller; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [2015-05-14 373704]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 366544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-08-13 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-08-13 124088]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-01 144200]
S2 HomeNetSvc;McAfee Home Network; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2015-05-06 340744]
S2 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
S2 mcpltsvc;McAfee Platform Services; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [2015-05-06 340744]
S2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [2015-05-06 340744]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-13 51808]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2015-08-05 2265792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-01-28 276248]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-06-18 1268568]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-01 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-07-16 114688]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2011-01-28 225216]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-12-08 273168]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-08-19 838336]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-08-13 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-08-13 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-08-13 139856]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - "program přestal pracovat..."

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

smokeflypaper
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 11 dub 2007 18:47

Re: Prosím o kontrolu logu - "program přestal pracovat..."

#3 Příspěvek od smokeflypaper »

zde to je:
# AdwCleaner v5.007 - Logfile created 10/09/2015 at 22:37:41
# Updated 08/09/2015 by Xplode
# Database : 2015-09-10.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Zdenek - NASA
# Running from : C:\Users\Zdenek\Desktop\adwcleaner_5.007.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Users\Zdenek\AppData\Local\Comodo\Chromodo\User Data\Default\Extensions\mcbkbpnkkkipelfledbfocopglifcfmi

***** [ Files ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\GeekBuddyRSP

***** [ Web browsers ] *****

[-] [C:\Users\Zdenek\AppData\Local\Comodo\Chromodo\User Data\Default\Secure Preferences] [Extension] Deleted : mcbkbpnkkkipelfledbfocopglifcfmi

*************************

:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [946 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - "program přestal pracovat..."

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

smokeflypaper
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 11 dub 2007 18:47

Re: Prosím o kontrolu logu - "program přestal pracovat..."

#5 Příspěvek od smokeflypaper »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Zdenek at 2015-09-11 22:22:40
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 682 GB (75%) free of 908 GB
Total RAM: 8055 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:22:44, on 11.9.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18015)
Boot mode: Normal

Running processes:
C:\Program Files\Lenovo\Nsd\startupSupport.exe
C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
C:\Program Files\trend micro\Zdenek.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [MuteSync] C:\Program Files (x86)\Lenovo\Lenovo MuteSync\MuteSync.exe
O4 - HKLM\..\Run: [Lenovo Registration] C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe /boot
O4 - HKLM\..\Run: [Intelligent Touchpad] C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [CAPOSD] C:\PROGRA~2\Lenovo\LENOVO~2\CAPOSD.exe
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
O4 - HKLM\..\Run: [tvncontrol] "C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe" -controlservice -slave
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [WarThunderLauncher] C:\Users\Zdenek\Documents\Games\WarThunder\launcher.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{35FC3DEF-E6D4-48E4-888C-F22573C94C0A}: NameServer = 156.154.70.25,156.154.71.25
O17 - HKLM\System\CCS\Services\Tcpip\..\{4AACA86E-05DB-4A38-A766-E90E5396DC52}: NameServer = 156.154.70.25,156.154.71.25
O17 - HKLM\System\CS1\Services\Tcpip\..\{35FC3DEF-E6D4-48E4-888C-F22573C94C0A}: NameServer = 156.154.70.25,156.154.71.25
O17 - HKLM\System\CS2\Services\Tcpip\..\{35FC3DEF-E6D4-48E4-888C-F22573C94C0A}: NameServer = 156.154.70.25,156.154.71.25
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: COMODO Chromodo Update Service (ChromodoUpdater) - Comodo - C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe
O23 - Service: COMODO LPS Launcher (CLPSLauncher) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe
O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GeekBuddyRSP Server (GeekBuddyRSP) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\mcafee\msc\mcawfwk.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.5.495.0\McCSPServiceHost.exe
O23 - Service: McAfee OOBE Service (McOobeSv) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Service Controller (mfemms) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NitroPDFDriverCreatorReadSpool2 (NitroDriverReadSpool2) - Nitro PDF Software - C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\SysWOW64\NLSSRV32.EXE
O23 - Service: Fast boot service of lenovo (NSDSvc) - Unknown owner - C:\Windows\System32\NSDSvc.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 14109 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\WLANExt.exe 43491568
\??\C:\Windows\system32\conhost.exe "-2135936743-6461990731201477674-2330138831293477050-203522773-1914543021958007117
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Windows\system32\mfevtps.exe"
"C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe"
C:\Windows\SysWOW64\NLSSRV32.EXE
C:\Windows\System32\NSDSvc.exe
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe"
"C:\Windows\system32\mfevtps.exe" -mms
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe" -mms
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\spoolsv.exe
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
"C:\Program Files\McAfee\MSC\McAPExe.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Google\Update\1.3.28.13\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.28.13\GoogleCrashHandler64.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe" -service
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Lenovo\Nsd\startupSupport.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe"
"C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
"C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe"
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Common Files\McAfee\CSP\1.5.495.0\McCSPServiceHost.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
WLIDSvcM.exe 6352
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"

"C:\PROGRA~1\COMMON~1\McAfee\Platform\MSM\McSmtFwk.exe" {CF10C3DD-7FC1-476f-8546-A12D7DA24BBF}|{9ad98529-dd21-46ee-a661-5f560ccc07aa}
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
taskeng.exe {46D06889-BF1B-41D7-94A3-91ABC4D79918}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Windows Media Player\wmpnscfg.exe"
taskeng.exe {AE1864EF-79E0-4064-8B99-F37D63ABFC61}
"C:\Program Files\Windows Media Player\wmpnscfg.exe"
"C:\Program Files\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
wmiadap.exe /R /T
"C:\Program Files\Windows Media Player\wmpnscfg.exe"
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe44_ Global\UsGthrCtrlFltPipeMssGthrPipe44 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 884 888 896 65536 892
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=gpu-process --channel="1156.0.2025696858\1406141646" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,9,23,46 --disable-accelerated-video-decode --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2626 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="1156.1.926177524\613902180" --font-cache-shared-handle=2140 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="1156.2.805444931\477438548" --font-cache-shared-handle=2340 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="1156.3.471408866\487195808" --font-cache-shared-handle=2484 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="1156.4.1057030776\1171467294" --font-cache-shared-handle=2512 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="1156.5.1475829559\579306235" --font-cache-shared-handle=2680 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="1156.6.111333026\1248613977" --font-cache-shared-handle=2476 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="1156.7.1588202560\2022756637" --font-cache-shared-handle=2888 /prefetch:673131151
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="1156.9.1990917935\341274147" --font-cache-shared-handle=6056 /prefetch:673131151
aces.exe -forcestart
C:\Windows\system32\wbem\wmiprvse.exe
taskhost.exe $(Arg0)
"C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="1156.15.1328259263\94735533" --font-cache-shared-handle=6604 /prefetch:673131151
"C:\Users\Zdenek\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Ad-Aware Update (Weekly).job - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-11-10 2847016]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-01-31 12446824]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2011-11-15 1156712]
"SynLenovoGestureMgr"=C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [2011-11-10 408872]
"OnekeyStudio"=C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe [2012-08-08 789856]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-14 222504]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2012-08-08 8079408]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2012-08-08 6202416]
"Lenovo EE Boot Optimizer"=C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [2012-08-08 206176]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-30 1337000]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-08-05 1427648]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-28 170264]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-28 398616]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-28 440600]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-09-09 1793736]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeBridge"= []
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-09-10 8455960]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2015-06-18 4468056]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-08-07 53737488]
"WarThunderLauncher"=C:\Users\Zdenek\Documents\Games\WarThunder\launcher.exe [2015-08-13 6043696]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-05-21 291648]
"Dolby Home Theater v4"=C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [2011-06-01 506712]
"MuteSync"=C:\Program Files (x86)\Lenovo\Lenovo MuteSync\MuteSync.exe [2012-02-04 343040]
"Lenovo Registration"=C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [2012-01-26 4351712]
"Intelligent Touchpad"=C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe [2011-12-08 291272]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-14 222504]
"CAPOSD"=C:\PROGRA~2\Lenovo\LENOVO~2\CAPOSD.exe [2012-02-09 1876992]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2015-05-13 616272]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-06-24 4101576]
"Ad-Watch"=C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe [2009-03-09 515416]
"tvncontrol"=C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [2015-08-30 2327248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2015-09-09 430080]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfeaack]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfeaack.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfeavfk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfeavfk.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfemms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfetdi2k]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfetdi2k.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0
"NoFolderOptions"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-09-10 21:29:06 ----D---- C:\rsit
2015-09-10 21:29:06 ----D---- C:\Program Files\trend micro
2015-09-10 21:05:30 ----D---- C:\AdwCleaner
2015-09-10 20:24:23 ----RD---- C:\Program Files (x86)\Skype
2015-09-10 20:16:26 ----D---- C:\Program Files (x86)\Comodo
2015-09-09 11:07:57 ----D---- C:\Windows\SYSWOW64\NV
2015-09-09 11:07:57 ----D---- C:\Windows\system32\NV
2015-09-09 11:07:34 ----D---- C:\ProgramData\NVIDIA
2015-09-09 10:16:59 ----A---- C:\Windows\SYSWOW64\nvdecodemft.dll
2015-09-09 10:16:59 ----A---- C:\Windows\system32\nvgenco64.dll
2015-09-09 10:16:59 ----A---- C:\Windows\system32\nvdispco64.dll
2015-09-09 10:16:59 ----A---- C:\Windows\system32\nvdecodemft.dll
2015-09-09 09:56:59 ----D---- C:\drivers
2015-09-09 09:26:05 ----A---- C:\Windows\SYSWOW64\oemdspif.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvvsvc.exe
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvsvcr.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvsvc64.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvshext.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvmctray.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvcpl.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nv3dappshextr.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nv3dappshext.dll
2015-09-09 09:21:45 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-09-09 09:21:45 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-09-09 09:21:44 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-09-09 09:21:44 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-09-09 09:21:44 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-09-09 09:21:43 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-09-09 09:21:43 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-09-09 09:21:43 ----A---- C:\Windows\system32\iernonce.dll
2015-09-09 09:21:43 ----A---- C:\Windows\system32\ie4uinit.exe
2015-09-09 09:21:42 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-09-09 09:21:41 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-09-09 09:21:41 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-09-09 09:21:40 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-09-09 09:21:40 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-09-09 09:21:40 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-09-09 09:21:40 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-09-09 09:21:38 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-09-09 09:21:38 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-09-09 09:21:37 ----A---- C:\Windows\system32\iedkcs32.dll
2015-09-09 09:21:35 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-09-09 09:21:35 ----A---- C:\Windows\system32\urlmon.dll
2015-09-09 09:21:34 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-09-09 09:21:34 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-09-09 09:21:34 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-09-09 09:21:33 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-09-09 09:21:33 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-09-09 09:21:30 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-09-09 09:21:29 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-09-09 09:21:29 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-09-09 09:21:29 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-09-09 09:21:29 ----A---- C:\Windows\system32\msfeeds.dll
2015-09-09 09:21:29 ----A---- C:\Windows\system32\dxtrans.dll
2015-09-09 09:21:28 ----A---- C:\Windows\system32\iesetup.dll
2015-09-09 09:21:28 ----A---- C:\Windows\system32\ieapfltr.dll
2015-09-09 09:21:27 ----A---- C:\Windows\system32\iertutil.dll
2015-09-09 09:21:26 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-09-09 09:21:26 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-09-09 09:21:26 ----A---- C:\Windows\system32\vbscript.dll
2015-09-09 09:21:25 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-09-09 09:21:25 ----A---- C:\Windows\system32\jsproxy.dll
2015-09-09 09:21:24 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-09-09 09:21:24 ----A---- C:\Windows\system32\ieUnatt.exe
2015-09-09 09:21:23 ----A---- C:\Windows\system32\dxtmsft.dll
2015-09-09 09:21:22 ----A---- C:\Windows\system32\ieui.dll
2015-09-09 09:21:22 ----A---- C:\Windows\system32\ieframe.dll
2015-09-09 09:21:21 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-09-09 09:21:21 ----A---- C:\Windows\system32\mshtmled.dll
2015-09-09 09:21:21 ----A---- C:\Windows\system32\jscript.dll
2015-09-09 09:21:20 ----A---- C:\Windows\system32\wininet.dll
2015-09-09 09:21:20 ----A---- C:\Windows\system32\jscript9diag.dll
2015-09-09 09:21:20 ----A---- C:\Windows\system32\jscript9.dll
2015-09-09 09:21:19 ----A---- C:\Windows\system32\msrating.dll
2015-09-09 09:21:19 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-09-09 09:21:18 ----A---- C:\Windows\system32\mshtml.dll
2015-09-09 09:13:34 ----A---- C:\Windows\system32\InkEd.dll
2015-09-09 09:13:33 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2015-09-09 09:13:30 ----A---- C:\Windows\system32\jnwmon.dll
2015-09-09 09:13:16 ----A---- C:\Windows\system32\schedsvc.dll
2015-09-09 09:13:06 ----A---- C:\Windows\SYSWOW64\tzres.dll
2015-09-09 09:13:06 ----A---- C:\Windows\system32\tzres.dll
2015-09-09 09:12:46 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2015-09-09 09:12:46 ----A---- C:\Windows\SYSWOW64\dwmapi.dll
2015-09-09 09:12:46 ----A---- C:\Windows\system32\dwmcore.dll
2015-09-09 09:12:46 ----A---- C:\Windows\system32\dwmapi.dll
2015-09-09 09:10:18 ----D---- C:\ProgramData\boost_interprocess
2015-09-09 09:09:21 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-09-09 09:09:21 ----A---- C:\Windows\system32\nvinitx.dll
2015-09-09 09:09:19 ----A---- C:\Windows\system32\nvdispgenco6435330.dll
2015-09-09 09:09:17 ----A---- C:\Windows\system32\nvdispco6435330.dll
2015-09-09 09:09:07 ----A---- C:\Windows\system32\UtcResources.dll
2015-09-09 09:09:07 ----A---- C:\Windows\system32\diagtrack.dll
2015-09-09 09:09:06 ----A---- C:\Windows\system32\lsasrv.dll
2015-09-09 09:09:05 ----A---- C:\Windows\system32\rpcrt4.dll
2015-09-09 09:09:05 ----A---- C:\Windows\system32\kerberos.dll
2015-09-09 09:09:04 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-09-09 09:09:04 ----A---- C:\Windows\system32\schannel.dll
2015-09-09 09:09:04 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-09-09 09:09:04 ----A---- C:\Windows\system32\ntdll.dll
2015-09-09 09:09:03 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-09-09 09:09:02 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-09-09 09:09:02 ----A---- C:\Windows\system32\msv1_0.dll
2015-09-09 09:09:02 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-09-09 09:08:59 ----A---- C:\Windows\system32\kernel32.dll
2015-09-09 09:08:58 ----A---- C:\Windows\system32\tdh.dll
2015-09-09 09:08:57 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-09-09 09:08:57 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-09-09 09:08:56 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-09-09 09:08:56 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-09-09 09:08:56 ----A---- C:\Windows\system32\adtschema.dll
2015-09-09 09:08:55 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-09-09 09:08:52 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-09-09 09:08:52 ----A---- C:\Windows\system32\ncrypt.dll
2015-09-09 09:08:52 ----A---- C:\Windows\system32\KernelBase.dll
2015-09-09 09:08:51 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-09-09 09:08:50 ----A---- C:\Windows\system32\TSpkg.dll
2015-09-09 09:08:49 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-09-09 09:08:49 ----A---- C:\Windows\system32\wdigest.dll
2015-09-09 09:08:49 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-09-09 09:08:48 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-09-09 09:08:48 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-09-09 09:08:48 ----A---- C:\Windows\system32\advapi32.dll
2015-09-09 09:08:47 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-09-09 09:08:47 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-09-09 09:08:46 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-09-09 09:08:46 ----A---- C:\Windows\system32\wow64.dll
2015-09-09 09:08:46 ----A---- C:\Windows\system32\rstrui.exe
2015-09-09 09:08:46 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-09-09 09:08:45 ----A---- C:\Windows\system32\srcore.dll
2015-09-09 09:08:44 ----A---- C:\Windows\system32\winsrv.dll
2015-09-09 09:08:44 ----A---- C:\Windows\system32\csrsrv.dll
2015-09-09 09:08:44 ----A---- C:\Windows\system32\cryptbase.dll
2015-09-09 09:08:44 ----A---- C:\Windows\system32\conhost.exe
2015-09-09 09:08:43 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2015-09-09 09:08:43 ----A---- C:\Windows\system32\smss.exe
2015-09-09 09:08:43 ----A---- C:\Windows\system32\lsass.exe
2015-09-09 09:08:42 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-09-09 09:08:42 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-09-09 09:08:42 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-09-09 09:08:42 ----A---- C:\Windows\system32\sspicli.dll
2015-09-09 09:08:42 ----A---- C:\Windows\system32\auditpol.exe
2015-09-09 09:08:37 ----A---- C:\Windows\system32\srclient.dll
2015-09-09 09:08:36 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-09-09 09:08:36 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-09-09 09:08:36 ----A---- C:\Windows\system32\secur32.dll
2015-09-09 09:08:36 ----A---- C:\Windows\system32\ntvdm64.dll
2015-09-09 09:08:36 ----A---- C:\Windows\system32\credssp.dll
2015-09-09 09:08:35 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-09-09 09:08:35 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-09-09 09:08:35 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-09-09 09:08:35 ----A---- C:\Windows\system32\wow64win.dll
2015-09-09 09:08:35 ----A---- C:\Windows\system32\sspisrv.dll
2015-09-09 09:08:35 ----A---- C:\Windows\system32\msaudite.dll
2015-09-09 09:08:34 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-09-09 09:08:34 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-09-09 09:08:34 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-09-09 09:08:34 ----A---- C:\Windows\system32\wow64cpu.dll
2015-09-09 09:08:34 ----A---- C:\Windows\system32\msobjs.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-09-09 09:08:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-09-09 09:08:32 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-09-09 09:08:32 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-09-09 09:08:32 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-09-09 09:08:32 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-09-09 09:08:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-09-09 09:08:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-09-09 09:08:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-09-09 09:08:31 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-09-09 09:08:31 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-09-09 09:08:31 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-09-09 09:08:31 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-09-09 09:08:28 ----A---- C:\Windows\SYSWOW64\user.exe
2015-09-09 09:08:28 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-09-09 09:08:28 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-09-09 09:08:28 ----A---- C:\Windows\system32\apisetschema.dll
2015-09-09 09:04:51 ----A---- C:\Windows\system32\consent.exe
2015-09-09 09:04:51 ----A---- C:\Windows\system32\authui.dll
2015-09-09 09:04:50 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-09-09 09:04:50 ----A---- C:\Windows\system32\appinfo.dll
2015-09-09 09:04:40 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2015-09-09 09:04:40 ----A---- C:\Windows\system32\msxml6.dll
2015-09-09 09:04:40 ----A---- C:\Windows\system32\msxml3.dll
2015-09-09 09:04:39 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2015-09-09 09:04:39 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-09-09 09:04:39 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-09-09 09:04:39 ----A---- C:\Windows\system32\msxml6r.dll
2015-09-09 09:04:39 ----A---- C:\Windows\system32\msxml3r.dll
2015-09-09 09:03:40 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2015-09-09 09:03:38 ----A---- C:\Windows\system32\appidsvc.dll
2015-09-09 09:03:38 ----A---- C:\Windows\system32\appidapi.dll
2015-09-09 09:03:37 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-09-09 09:03:35 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2015-09-09 09:03:34 ----A---- C:\Windows\system32\setbcdlocale.dll
2015-09-09 09:03:34 ----A---- C:\Windows\system32\drivers\appid.sys
2015-09-09 09:02:18 ----A---- C:\Windows\system32\win32k.sys
2015-09-09 09:02:18 ----A---- C:\Windows\system32\atmfd.dll
2015-09-09 09:02:10 ----A---- C:\Windows\SYSWOW64\lpk.dll
2015-09-09 09:02:10 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2015-09-09 09:02:10 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2015-09-09 09:02:10 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-09-09 09:02:10 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-09-09 09:02:10 ----A---- C:\Windows\system32\lpk.dll
2015-09-09 09:02:10 ----A---- C:\Windows\system32\fontsub.dll
2015-09-09 09:02:10 ----A---- C:\Windows\system32\dciman32.dll
2015-09-09 09:02:10 ----A---- C:\Windows\system32\atmlib.dll
2015-09-09 09:02:01 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-09-09 09:02:01 ----A---- C:\Windows\system32\wucltux.dll
2015-09-09 09:02:01 ----A---- C:\Windows\system32\wuaueng.dll
2015-09-09 09:02:00 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-09-09 09:02:00 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-09-09 09:02:00 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-09-09 09:02:00 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-09-09 09:02:00 ----A---- C:\Windows\system32\wuwebv.dll
2015-09-09 09:02:00 ----A---- C:\Windows\system32\wups2.dll
2015-09-09 09:02:00 ----A---- C:\Windows\system32\wups.dll
2015-09-09 09:02:00 ----A---- C:\Windows\system32\wudriver.dll
2015-09-09 09:02:00 ----A---- C:\Windows\system32\wuauclt.exe
2015-09-09 09:02:00 ----A---- C:\Windows\system32\wuapp.exe
2015-09-09 09:02:00 ----A---- C:\Windows\system32\wuapi.dll
2015-09-09 09:02:00 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-09-09 09:01:59 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-09-08 13:01:10 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2015-09-08 13:01:09 ----A---- C:\Windows\system32\drivers\usbohci.sys
2015-09-08 13:00:48 ----SD---- C:\Windows\SYSWOW64\GWX
2015-09-02 16:45:51 ----D---- C:\ProgramData\WarThunder
2015-08-30 10:57:43 ----A---- C:\Windows\system32\drivers\fvstore.dat
2015-08-30 10:36:49 ----D---- C:\ProgramData\Shared Space
2015-08-30 10:34:46 ----D---- C:\Program Files\COMODO
2015-08-30 10:32:57 ----D---- C:\ProgramData\Comodo
2015-08-29 22:31:41 ----D---- C:\Users\Zdenek\AppData\Roaming\DigitalVolcano
2015-08-29 22:31:31 ----D---- C:\Program Files (x86)\Duplicate Cleaner
2015-08-29 22:24:18 ----D---- C:\Program Files (x86)\Microsoft Security Client
2015-08-29 22:24:14 ----D---- C:\Program Files\Microsoft Security Client
2015-08-29 10:17:39 ----D---- C:\Users\Zdenek\AppData\Roaming\NetMeter
2015-08-28 20:09:06 ----D---- C:\Users\Zdenek\AppData\Roaming\EMG Future Technologies Inc
2015-08-27 01:49:28 ----HD---- C:\Windows\msdownld.tmp
2015-08-27 01:49:27 ----D---- C:\Windows\SYSWOW64\directx
2015-08-26 22:17:53 ----D---- C:\Program Files (x86)\Electronic Arts
2015-08-26 21:47:44 ----D---- C:\Program Files (x86)\SystemRequirementsLab
2015-08-25 20:52:26 ----D---- C:\Program Files (x86)\Interplanetary
2015-08-25 09:40:55 ----RHD---- C:\Users\Zdenek\AppData\Roaming\SecuROM
2015-08-24 22:09:16 ----D---- C:\ProgramData\Media Center Programs
2015-08-24 22:01:08 ----D---- C:\Program Files (x86)\Sierra Entertainment
2015-08-24 22:00:19 ----D---- C:\Users\Zdenek\AppData\Roaming\InstallShield
2015-08-24 16:43:21 ----D---- C:\Program Files (x86)\The Swapper
2015-08-24 13:30:19 ----D---- C:\Users\Zdenek\AppData\Roaming\Promotion Software GmbH
2015-08-24 12:49:12 ----D---- C:\ProgramData\RELOADED
2015-08-24 12:44:36 ----D---- C:\Program Files (x86)\Deadlight
2015-08-24 09:30:20 ----D---- C:\Users\Zdenek\AppData\Roaming\Steam
2015-08-24 09:25:12 ----D---- C:\Program Files (x86)\Construction Simulator 2015
2015-08-24 09:21:37 ----D---- C:\Users\Zdenek\AppData\Roaming\DAEMON Tools Lite
2015-08-24 09:21:37 ----A---- C:\Windows\system32\drivers\dtlitescsibus.sys
2015-08-24 09:21:35 ----D---- C:\Program Files\DAEMON Tools Lite
2015-08-24 09:20:56 ----D---- C:\ProgramData\DAEMON Tools Lite
2015-08-19 21:08:46 ----D---- C:\Program Files\CCleaner
2015-08-12 09:44:12 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-12 09:44:12 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-12 02:42:16 ----A---- C:\Windows\system32\invagent.dll
2015-08-12 02:42:16 ----A---- C:\Windows\system32\generaltel.dll
2015-08-12 02:42:16 ----A---- C:\Windows\system32\devinv.dll
2015-08-12 02:42:16 ----A---- C:\Windows\system32\appraiser.dll
2015-08-12 02:42:16 ----A---- C:\Windows\system32\aeinv.dll
2015-08-12 02:42:16 ----A---- C:\Windows\system32\acmigration.dll
2015-08-12 02:42:14 ----A---- C:\Windows\system32\aepdu.dll
2015-08-12 02:42:12 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-08-12 02:41:57 ----A---- C:\Windows\system32\sysmain.dll
2015-08-12 02:41:55 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2015-08-12 02:41:53 ----A---- C:\Windows\system32\msmmsp.dll
2015-08-12 02:41:36 ----A---- C:\Windows\system32\mstscax.dll
2015-08-12 02:41:35 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2015-08-12 02:41:32 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2015-08-12 02:41:32 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2015-08-12 02:41:32 ----A---- C:\Windows\system32\tsgqec.dll
2015-08-12 02:41:32 ----A---- C:\Windows\system32\aaclient.dll
2015-08-12 02:41:20 ----A---- C:\Windows\system32\basesrv.dll
2015-08-12 02:40:57 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2015-08-12 02:40:57 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2015-08-12 02:40:57 ----A---- C:\Windows\system32\WebClnt.dll
2015-08-12 02:40:57 ----A---- C:\Windows\system32\davclnt.dll
2015-08-12 02:40:52 ----A---- C:\Windows\system32\FntCache.dll
2015-08-12 02:40:50 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-08-12 02:40:50 ----A---- C:\Windows\system32\DWrite.dll
2015-08-12 02:40:47 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2015-08-12 02:40:47 ----A---- C:\Windows\system32\d3d10warp.dll
2015-08-12 02:40:42 ----A---- C:\Windows\SYSWOW64\notepad.exe
2015-08-12 02:40:42 ----A---- C:\Windows\system32\notepad.exe
2015-08-12 02:40:42 ----A---- C:\Windows\notepad.exe
2015-08-12 02:40:41 ----A---- C:\Windows\system32\shell32.dll
2015-08-12 02:40:40 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-08-12 02:36:24 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll

======List of files/folders modified in the last 1 month======

2015-09-11 22:22:42 ----D---- C:\Windows\Temp
2015-09-11 22:22:40 ----D---- C:\Windows\inf
2015-09-11 22:22:40 ----AD---- C:\Windows\System32
2015-09-11 22:22:40 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-09-11 09:34:47 ----D---- C:\Windows\Microsoft.NET
2015-09-11 09:34:46 ----RSD---- C:\Windows\assembly
2015-09-11 09:30:58 ----A---- C:\Windows\SYSWOW64\log.txt
2015-09-11 09:27:26 ----D---- C:\Windows\system32\config
2015-09-11 09:27:25 ----D---- C:\Windows\winsxs
2015-09-11 09:25:18 ----D---- C:\Windows\SysWOW64
2015-09-11 09:25:18 ----D---- C:\Program Files\Windows Journal
2015-09-11 09:25:15 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-09-11 09:25:15 ----D---- C:\Windows\system32\cs-CZ
2015-09-11 09:25:15 ----D---- C:\Windows\ehome
2015-09-11 09:25:14 ----D---- C:\Program Files\Internet Explorer
2015-09-11 09:25:13 ----D---- C:\Windows\SYSWOW64\en-US
2015-09-11 09:25:12 ----D---- C:\Windows\system32\en-US
2015-09-11 09:25:12 ----D---- C:\Windows\PolicyDefinitions
2015-09-11 09:25:10 ----D---- C:\Program Files (x86)\Internet Explorer
2015-09-11 09:25:01 ----D---- C:\Windows\system32\drivers
2015-09-11 09:25:01 ----D---- C:\Windows\AppPatch
2015-09-11 09:24:57 ----D---- C:\Windows\system32\Boot
2015-09-11 02:05:48 ----SHD---- C:\System Volume Information
2015-09-10 21:29:06 ----RD---- C:\Program Files
2015-09-10 21:12:35 ----D---- C:\ProgramData\McAfee
2015-09-10 21:12:34 ----D---- C:\Program Files (x86)\McAfee
2015-09-10 21:12:23 ----D---- C:\Program Files\mcafee
2015-09-10 21:12:17 ----D---- C:\Program Files\Common Files\mcafee
2015-09-10 21:11:03 ----AD---- C:\Windows
2015-09-10 21:09:52 ----HD---- C:\ProgramData
2015-09-10 21:02:21 ----D---- C:\Program Files (x86)\PokerStars
2015-09-10 21:01:37 ----RD---- C:\Program Files (x86)
2015-09-10 20:49:15 ----D---- C:\Program Files (x86)\Steam
2015-09-10 20:49:08 ----D---- C:\Windows\Logs
2015-09-10 20:49:08 ----D---- C:\Windows\debug
2015-09-10 20:31:15 ----D---- C:\Users\Zdenek\AppData\Roaming\Skype
2015-09-10 20:24:56 ----SHD---- C:\Windows\Installer
2015-09-10 20:24:56 ----D---- C:\ProgramData\Skype
2015-09-10 20:24:26 ----D---- C:\Program Files (x86)\Common Files
2015-09-09 10:35:42 ----D---- C:\Program Files\NVIDIA Corporation
2015-09-09 10:35:42 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-09-09 10:31:39 ----D---- C:\Windows\system32\DriverStore
2015-09-09 10:31:12 ----A---- C:\Windows\system32\NvIFR64.dll
2015-09-09 10:30:26 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-09-09 10:30:26 ----A---- C:\Windows\system32\nvapi64.dll
2015-09-09 10:30:25 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-09-09 10:30:25 ----A---- C:\Windows\system32\NvFBC64.dll
2015-09-09 10:30:22 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-09-09 10:30:22 ----A---- C:\Windows\system32\nvcompiler.dll
2015-09-09 10:30:19 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-09-09 10:30:18 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-09-09 10:30:18 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-09-09 10:30:17 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-09-09 10:30:17 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-09-09 10:30:17 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-09-09 10:30:17 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-09-09 10:30:17 ----A---- C:\Windows\system32\nvopencl.dll
2015-09-09 10:30:17 ----A---- C:\Windows\system32\nvdispco6434520.dll
2015-09-09 10:30:15 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-09-09 10:30:15 ----A---- C:\Windows\system32\nvcuvid.dll
2015-09-09 10:30:14 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-09-09 10:30:13 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-09-09 10:30:13 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-09-09 10:30:13 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-09-09 10:30:12 ----A---- C:\Windows\system32\nvoglv64.dll
2015-09-09 10:30:12 ----A---- C:\Windows\system32\nvdispgenco6434520.dll
2015-09-09 10:30:10 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-09-09 10:30:10 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-09-09 10:30:10 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-09-09 10:30:10 ----A---- C:\Windows\system32\nvcuda.dll
2015-09-09 10:30:09 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-09-09 10:30:09 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-09-09 10:07:58 ----D---- C:\Windows\system32\catroot
2015-09-09 10:04:03 ----D---- C:\Windows\system32\catroot2
2015-09-09 09:58:27 ----A---- C:\Windows\SYSWOW64\igdde32.dll
2015-09-09 09:58:27 ----A---- C:\Windows\system32\igfxdo.dll
2015-09-09 09:58:27 ----A---- C:\Windows\system32\igdde64.dll
2015-09-09 09:58:26 ----A---- C:\Windows\SYSWOW64\igfxexps32.dll
2015-09-09 09:58:26 ----A---- C:\Windows\system32\IGFXDEVLib.dll
2015-09-09 09:58:25 ----A---- C:\Windows\SYSWOW64\igd10umd32.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\igfxsrvc.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\igfxress.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\igfxexps.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\igd10umd64.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\hccutils.dll
2015-09-09 09:58:24 ----A---- C:\Windows\SYSWOW64\IntelOpenCL32.dll
2015-09-09 09:58:24 ----A---- C:\Windows\SYSWOW64\igfxdv32.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\IntelOpenCL64.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\igfxTMM.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\igfxpph.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\igfxdev.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\igfxCoIn_v2626.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\gfxSrvc.dll
2015-09-09 09:58:23 ----A---- C:\Windows\SYSWOW64\igdumd32.dll
2015-09-09 09:58:23 ----A---- C:\Windows\SYSWOW64\igdrcl32.dll
2015-09-09 09:58:23 ----A---- C:\Windows\system32\igdumd64.dll
2015-09-09 09:58:23 ----A---- C:\Windows\system32\igdrcl64.dll
2015-09-09 09:58:22 ----A---- C:\Windows\SYSWOW64\igdfcl32.dll
2015-09-09 09:58:22 ----A---- C:\Windows\SYSWOW64\igdbcl32.dll
2015-09-09 09:58:22 ----A---- C:\Windows\SYSWOW64\ig7icd32.dll
2015-09-09 09:58:22 ----A---- C:\Windows\system32\igdbcl64.dll
2015-09-09 09:58:22 ----A---- C:\Windows\system32\ig7icd64.dll
2015-09-09 09:46:12 ----D---- C:\Windows\system32\Tasks
2015-09-09 09:29:42 ----D---- C:\ProgramData\NVIDIA Corporation
2015-09-09 09:26:05 ----D---- C:\Windows\Help
2015-09-09 09:10:28 ----AD---- C:\Users
2015-09-08 19:46:58 ----SHD---- C:\$RECYCLE.BIN
2015-09-08 19:42:40 ----D---- C:\Windows\Prefetch
2015-09-08 11:24:32 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-08-29 23:54:03 ----D---- C:\Windows\Panther
2015-08-29 23:45:55 ----HD---- C:\$Windows.~BT
2015-08-29 23:02:48 ----SHD---- C:\Boot
2015-08-29 22:24:18 ----SD---- C:\ProgramData\Microsoft
2015-08-29 19:05:01 ----D---- C:\Users\Zdenek\AppData\Roaming\Nitro PDF
2015-08-29 15:54:20 ----D---- C:\Windows\Tasks
2015-08-25 20:47:52 ----D---- C:\Users\Zdenek\AppData\Roaming\MPC-HC
2015-08-23 10:03:20 ----D---- C:\Windows\system32\wdi
2015-08-22 23:41:39 ----D---- C:\Windows\LiveKernelReports
2015-08-19 20:29:00 ----D---- C:\Program Files (x86)\SugarSync
2015-08-19 20:20:40 ----D---- C:\Windows\Minidump
2015-08-19 20:10:21 ----D---- C:\ProgramData\Temp
2015-08-19 19:42:10 ----D---- C:\Program Files (x86)\Lenovo
2015-08-19 11:42:04 ----D---- C:\ProgramData\VeriFace
2015-08-12 14:46:08 ----D---- C:\Windows\rescache
2015-08-12 14:02:38 ----D---- C:\Program Files\Microsoft Silverlight
2015-08-12 14:02:38 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-08-12 14:00:44 ----SD---- C:\Windows\system32\CompatTel
2015-08-12 14:00:44 ----D---- C:\Windows\system32\appraiser
2015-08-12 14:00:41 ----D---- C:\Windows\system32\drivers\cs-CZ

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 fbfmon;fbfmon; C:\Windows\system32\drivers\fbfmon.sys [2012-08-08 57952]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-11-30 568600]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-05-21 19264]
R0 LHDmgr;LHDmgr; C:\Windows\System32\DRIVERS\LhdX64.sys [2012-08-08 39008]
R0 mfedisk;McAfee AAC Disk Filter Driver; C:\Windows\system32\DRIVERS\mfedisk.sys [2015-04-08 101872]
R0 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [2015-04-08 864200]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\Windows\system32\drivers\mfewfpk.sys [2015-04-08 335944]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-03-04 280376]
R0 NSD;NSD; C:\Windows\system32\drivers\nsd.sys [2011-12-24 24160]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2015-09-09 31560]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 BPntDrv;BPntDrv; C:\Windows\system32\drivers\BPntDrv.sys [2012-08-08 13408]
R1 CFRMD;CFRMD; C:\Windows\system32\DRIVERS\CFRMD.sys [2014-06-26 37976]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\Windows\System32\DRIVERS\cmderd.sys [2015-08-05 21184]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\system32\DRIVERS\cmdguard.sys [2015-08-05 806032]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2015-08-05 45856]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2015-08-05 105096]
R1 Nsdfltr;Nsdfltr; C:\Windows\system32\drivers\Nsdfltr.sys [2011-12-22 59488]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 124568]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys [2012-08-08 30816]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtlitescsibus.sys [2015-08-24 30264]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-09-09 14658688]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-01-31 4739304]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2011-12-06 331264]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-05-21 357184]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-05-21 789824]
R3 iwdbus;IWD Bus Enumerator; C:\Windows\system32\DRIVERS\iwdbus.sys [2012-04-20 25528]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2011-11-10 60184]
R3 mfeaack;McAfee Inc. mfeaack; C:\Windows\system32\drivers\mfeaack.sys [2015-04-08 402888]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [2015-04-08 338272]
R3 mfefirek;McAfee Inc. mfefirek; C:\Windows\system32\drivers\mfefirek.sys [2015-04-08 488000]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2011-12-02 11417088]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
R3 SPUVCbv;SPUVCb Driver Service; C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 185344]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2011-11-10 401456]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 bcbtums;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2012-02-02 134696]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-10-10 80384]
S3 btwampfl;btwampfl Bluetooth filter driver; \??\C:\Windows\system32\drivers\btwampfl.sys [2012-02-02 615976]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2012-02-02 184360]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2012-02-02 211496]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2012-02-02 39976]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2012-02-02 21544]
S3 cfwids;McAfee Inc. cfwids; C:\Windows\system32\drivers\cfwids.sys [2015-04-08 68784]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2012-04-20 35256]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUVStor.sys [2011-10-24 313960]
S3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2012-02-02 945440]
R2 CLPSLauncher;COMODO LPS Launcher; C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe [2015-08-30 70848]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-08-13 105144]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-08-13 124088]
R2 CmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2015-08-05 5542472]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-12-08 618256]
R2 GeekBuddyRSP;GeekBuddyRSP Server; C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [2015-08-30 2327248]
R2 ChromodoUpdater;COMODO Chromodo Update Service; C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe [2015-09-10 1998520]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-03 628448]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-02-08 128280]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-08 161560]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe [2009-03-09 951632]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-08 277784]
R2 mccspsvc;McAfee CSP Service; C:\Program Files\Common Files\McAfee\CSP\1.5.495.0\McCSPServiceHost.exe [2015-06-04 207344]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [2015-04-08 250672]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 23816]
R2 NitroDriverReadSpool2;NitroPDFDriverCreatorReadSpool2; C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe [2012-06-21 216072]
R2 nlsX86cc;Nalpeiron Licensing Service; C:\Windows\SysWOW64\NLSSRV32.EXE [2012-06-21 69640]
R2 NSDSvc;Fast boot service of lenovo; C:\Windows\System32\NSDSvc.exe [2011-12-24 120160]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-02-04 934216]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-12-08 148752]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-06-24 1738168]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-06-27 2088408]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-08 363800]
R3 McAPExe;McAfee AP Service; C:\Program Files\McAfee\MSC\McAPExe.exe [2015-05-13 754280]
R3 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2015-04-08 232656]
R3 mfemms;McAfee Service Controller; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [2015-05-14 373704]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 366544]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-01 144200]
S2 HomeNetSvc;McAfee Home Network; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2015-05-06 340744]
S2 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
S2 mcpltsvc;McAfee Platform Services; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [2015-05-06 340744]
S2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [2015-05-06 340744]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-13 51808]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2015-08-05 2265792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-01-28 276248]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-06-18 1268568]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-01 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-09-09 114688]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2011-01-28 225216]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-12-08 273168]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-08-19 838336]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-08-13 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-08-13 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-08-13 139856]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - "program přestal pracovat..."

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

smokeflypaper
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 11 dub 2007 18:47

Re: Prosím o kontrolu logu - "program přestal pracovat..."

#7 Příspěvek od smokeflypaper »

OTM.exe hlásí tuhle chybu Obrázek

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - "program přestal pracovat..."

#8 Příspěvek od Rudy »

Zkuste OTM spustit v nouz. režimu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

smokeflypaper
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 11 dub 2007 18:47

Re: Prosím o kontrolu logu - "program přestal pracovat..."

#9 Příspěvek od smokeflypaper »

zde to je :
Logfile of random's system information tool 1.10 (written by random/random)
Run by Zdenek at 2015-09-12 22:32:21
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 684 GB (75%) free of 908 GB
Total RAM: 8055 MB (75% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:32:41, on 12.9.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18015)
Boot mode: Normal

Running processes:
C:\Program Files\Lenovo\Nsd\startupSupport.exe
C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe
C:\Program Files\trend micro\Zdenek.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [MuteSync] C:\Program Files (x86)\Lenovo\Lenovo MuteSync\MuteSync.exe
O4 - HKLM\..\Run: [Lenovo Registration] C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe /boot
O4 - HKLM\..\Run: [Intelligent Touchpad] C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [CAPOSD] C:\PROGRA~2\Lenovo\LENOVO~2\CAPOSD.exe
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
O4 - HKLM\..\Run: [tvncontrol] "C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe" -controlservice -slave
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [WarThunderLauncher] C:\Users\Zdenek\Documents\Games\WarThunder\launcher.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{35FC3DEF-E6D4-48E4-888C-F22573C94C0A}: NameServer = 156.154.70.25,156.154.71.25
O17 - HKLM\System\CCS\Services\Tcpip\..\{4AACA86E-05DB-4A38-A766-E90E5396DC52}: NameServer = 156.154.70.25,156.154.71.25
O17 - HKLM\System\CS1\Services\Tcpip\..\{35FC3DEF-E6D4-48E4-888C-F22573C94C0A}: NameServer = 156.154.70.25,156.154.71.25
O17 - HKLM\System\CS2\Services\Tcpip\..\{35FC3DEF-E6D4-48E4-888C-F22573C94C0A}: NameServer = 156.154.70.25,156.154.71.25
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: COMODO Chromodo Update Service (ChromodoUpdater) - Comodo - C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe
O23 - Service: COMODO LPS Launcher (CLPSLauncher) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe
O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GeekBuddyRSP Server (GeekBuddyRSP) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\mcafee\msc\mcawfwk.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.5.495.0\McCSPServiceHost.exe
O23 - Service: McAfee OOBE Service (McOobeSv) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Service Controller (mfemms) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NitroPDFDriverCreatorReadSpool2 (NitroDriverReadSpool2) - Nitro PDF Software - C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\SysWOW64\NLSSRV32.EXE
O23 - Service: Fast boot service of lenovo (NSDSvc) - Unknown owner - C:\Windows\System32\NSDSvc.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 13472 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\WLANExt.exe 29517712
\??\C:\Windows\system32\conhost.exe "764579784603596530581259344-272862934-157110499-329888367540662648842546991
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
taskeng.exe {0783E409-DFC1-449C-A0E2-9D1E776A118E}
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Windows\system32\mfevtps.exe"
"C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe"
C:\Windows\SysWOW64\NLSSRV32.EXE
C:\Windows\System32\NSDSvc.exe
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe"
"C:\Windows\system32\mfevtps.exe" -mms
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe" -mms
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
taskeng.exe {9048B164-EF61-469F-BED2-86271BB77114}
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
"C:\Program Files (x86)\Google\Update\1.3.28.13\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.28.13\GoogleCrashHandler64.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\spoolsv.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 880 884 892 65536 888
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Windows\system32\GWX\GWX.exe"
C:\Windows\system32\sppsvc.exe
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
"C:\Program Files\Lenovo\Nsd\startupSupport.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe"
"C:\Program Files\McAfee\MSC\McAPExe.exe"
"C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe"
C:\Windows\system32\rundll32.exe dfshim.dll,ShOpenVerbShortcut C:\Users\Zdenek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo\Lenovo Service Bridge.appref-ms
"C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe" -service
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe"
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe"
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc
"C:\Program Files\Windows Media Player\wmpnscfg.exe"
"taskhost.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Program Files\Windows Media Player\wmpnscfg.exe"
"C:\Users\Zdenek\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe


"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Ad-Aware Update (Weekly).job - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-11-10 2847016]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-01-31 12446824]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2011-11-15 1156712]
"SynLenovoGestureMgr"=C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [2011-11-10 408872]
"OnekeyStudio"=C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe [2012-08-08 789856]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-14 222504]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2012-08-08 8079408]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2012-08-08 6202416]
"Lenovo EE Boot Optimizer"=C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [2012-08-08 206176]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-30 1337000]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-08-05 1427648]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-28 170264]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-28 398616]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-28 440600]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-09-09 1793736]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeBridge"= []
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-09-10 8455960]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2015-06-18 4468056]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-08-07 53737488]
"WarThunderLauncher"=C:\Users\Zdenek\Documents\Games\WarThunder\launcher.exe [2015-08-13 6043696]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-05-21 291648]
"Dolby Home Theater v4"=C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [2011-06-01 506712]
"MuteSync"=C:\Program Files (x86)\Lenovo\Lenovo MuteSync\MuteSync.exe [2012-02-04 343040]
"Lenovo Registration"=C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [2012-01-26 4351712]
"Intelligent Touchpad"=C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe [2011-12-08 291272]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-14 222504]
"CAPOSD"=C:\PROGRA~2\Lenovo\LENOVO~2\CAPOSD.exe [2012-02-09 1876992]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2015-05-13 616272]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-06-24 4101576]
"Ad-Watch"=C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe [2009-03-09 515416]
"tvncontrol"=C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [2015-08-30 2327248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2015-09-09 430080]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfeaack]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfeaack.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfeavfk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfeavfk.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfemms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfetdi2k]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfetdi2k.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0
"NoFolderOptions"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-09-12 22:28:32 ----D---- C:\_OTM
2015-09-12 22:26:40 ----A---- C:\Windows\ntbtlog.txt
2015-09-12 21:21:55 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2015-09-10 21:29:06 ----D---- C:\rsit
2015-09-10 21:29:06 ----D---- C:\Program Files\trend micro
2015-09-10 21:05:30 ----D---- C:\AdwCleaner
2015-09-10 20:24:23 ----RD---- C:\Program Files (x86)\Skype
2015-09-10 20:16:26 ----D---- C:\Program Files (x86)\Comodo
2015-09-09 11:07:57 ----D---- C:\Windows\SYSWOW64\NV
2015-09-09 11:07:57 ----D---- C:\Windows\system32\NV
2015-09-09 11:07:34 ----D---- C:\ProgramData\NVIDIA
2015-09-09 10:16:59 ----A---- C:\Windows\SYSWOW64\nvdecodemft.dll
2015-09-09 10:16:59 ----A---- C:\Windows\system32\nvgenco64.dll
2015-09-09 10:16:59 ----A---- C:\Windows\system32\nvdispco64.dll
2015-09-09 10:16:59 ----A---- C:\Windows\system32\nvdecodemft.dll
2015-09-09 09:56:59 ----D---- C:\drivers
2015-09-09 09:26:05 ----A---- C:\Windows\SYSWOW64\oemdspif.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvvsvc.exe
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvsvcr.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvsvc64.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvshext.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvmctray.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nvcpl.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nv3dappshextr.dll
2015-09-09 09:26:05 ----A---- C:\Windows\system32\nv3dappshext.dll
2015-09-09 09:21:45 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-09-09 09:21:45 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-09-09 09:21:44 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-09-09 09:21:44 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-09-09 09:21:44 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-09-09 09:21:43 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-09-09 09:21:43 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-09-09 09:21:43 ----A---- C:\Windows\system32\iernonce.dll
2015-09-09 09:21:43 ----A---- C:\Windows\system32\ie4uinit.exe
2015-09-09 09:21:42 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-09-09 09:21:41 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-09-09 09:21:41 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-09-09 09:21:40 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-09-09 09:21:40 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-09-09 09:21:40 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-09-09 09:21:40 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-09-09 09:21:38 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-09-09 09:21:38 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-09-09 09:21:37 ----A---- C:\Windows\system32\iedkcs32.dll
2015-09-09 09:21:35 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-09-09 09:21:35 ----A---- C:\Windows\system32\urlmon.dll
2015-09-09 09:21:34 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-09-09 09:21:34 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-09-09 09:21:34 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-09-09 09:21:33 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-09-09 09:21:33 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-09-09 09:21:30 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-09-09 09:21:29 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-09-09 09:21:29 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-09-09 09:21:29 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-09-09 09:21:29 ----A---- C:\Windows\system32\msfeeds.dll
2015-09-09 09:21:29 ----A---- C:\Windows\system32\dxtrans.dll
2015-09-09 09:21:28 ----A---- C:\Windows\system32\iesetup.dll
2015-09-09 09:21:28 ----A---- C:\Windows\system32\ieapfltr.dll
2015-09-09 09:21:27 ----A---- C:\Windows\system32\iertutil.dll
2015-09-09 09:21:26 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-09-09 09:21:26 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-09-09 09:21:26 ----A---- C:\Windows\system32\vbscript.dll
2015-09-09 09:21:25 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-09-09 09:21:25 ----A---- C:\Windows\system32\jsproxy.dll
2015-09-09 09:21:24 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-09-09 09:21:24 ----A---- C:\Windows\system32\ieUnatt.exe
2015-09-09 09:21:23 ----A---- C:\Windows\system32\dxtmsft.dll
2015-09-09 09:21:22 ----A---- C:\Windows\system32\ieui.dll
2015-09-09 09:21:22 ----A---- C:\Windows\system32\ieframe.dll
2015-09-09 09:21:21 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-09-09 09:21:21 ----A---- C:\Windows\system32\mshtmled.dll
2015-09-09 09:21:21 ----A---- C:\Windows\system32\jscript.dll
2015-09-09 09:21:20 ----A---- C:\Windows\system32\wininet.dll
2015-09-09 09:21:20 ----A---- C:\Windows\system32\jscript9diag.dll
2015-09-09 09:21:20 ----A---- C:\Windows\system32\jscript9.dll
2015-09-09 09:21:19 ----A---- C:\Windows\system32\msrating.dll
2015-09-09 09:21:19 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-09-09 09:21:18 ----A---- C:\Windows\system32\mshtml.dll
2015-09-09 09:13:34 ----A---- C:\Windows\system32\InkEd.dll
2015-09-09 09:13:33 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2015-09-09 09:13:30 ----A---- C:\Windows\system32\jnwmon.dll
2015-09-09 09:13:16 ----A---- C:\Windows\system32\schedsvc.dll
2015-09-09 09:13:06 ----A---- C:\Windows\SYSWOW64\tzres.dll
2015-09-09 09:13:06 ----A---- C:\Windows\system32\tzres.dll
2015-09-09 09:12:46 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2015-09-09 09:12:46 ----A---- C:\Windows\SYSWOW64\dwmapi.dll
2015-09-09 09:12:46 ----A---- C:\Windows\system32\dwmcore.dll
2015-09-09 09:12:46 ----A---- C:\Windows\system32\dwmapi.dll
2015-09-09 09:10:18 ----D---- C:\ProgramData\boost_interprocess
2015-09-09 09:09:21 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-09-09 09:09:21 ----A---- C:\Windows\system32\nvinitx.dll
2015-09-09 09:09:19 ----A---- C:\Windows\system32\nvdispgenco6435330.dll
2015-09-09 09:09:17 ----A---- C:\Windows\system32\nvdispco6435330.dll
2015-09-09 09:09:07 ----A---- C:\Windows\system32\UtcResources.dll
2015-09-09 09:09:07 ----A---- C:\Windows\system32\diagtrack.dll
2015-09-09 09:09:06 ----A---- C:\Windows\system32\lsasrv.dll
2015-09-09 09:09:05 ----A---- C:\Windows\system32\rpcrt4.dll
2015-09-09 09:09:05 ----A---- C:\Windows\system32\kerberos.dll
2015-09-09 09:09:04 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-09-09 09:09:04 ----A---- C:\Windows\system32\schannel.dll
2015-09-09 09:09:04 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-09-09 09:09:04 ----A---- C:\Windows\system32\ntdll.dll
2015-09-09 09:09:03 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-09-09 09:09:02 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-09-09 09:09:02 ----A---- C:\Windows\system32\msv1_0.dll
2015-09-09 09:09:02 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-09-09 09:08:59 ----A---- C:\Windows\system32\kernel32.dll
2015-09-09 09:08:58 ----A---- C:\Windows\system32\tdh.dll
2015-09-09 09:08:57 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-09-09 09:08:57 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-09-09 09:08:56 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-09-09 09:08:56 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-09-09 09:08:56 ----A---- C:\Windows\system32\adtschema.dll
2015-09-09 09:08:55 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-09-09 09:08:52 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-09-09 09:08:52 ----A---- C:\Windows\system32\ncrypt.dll
2015-09-09 09:08:52 ----A---- C:\Windows\system32\KernelBase.dll
2015-09-09 09:08:51 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-09-09 09:08:50 ----A---- C:\Windows\system32\TSpkg.dll
2015-09-09 09:08:49 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-09-09 09:08:49 ----A---- C:\Windows\system32\wdigest.dll
2015-09-09 09:08:49 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-09-09 09:08:48 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-09-09 09:08:48 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-09-09 09:08:48 ----A---- C:\Windows\system32\advapi32.dll
2015-09-09 09:08:47 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-09-09 09:08:47 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-09-09 09:08:46 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-09-09 09:08:46 ----A---- C:\Windows\system32\wow64.dll
2015-09-09 09:08:46 ----A---- C:\Windows\system32\rstrui.exe
2015-09-09 09:08:46 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-09-09 09:08:45 ----A---- C:\Windows\system32\srcore.dll
2015-09-09 09:08:44 ----A---- C:\Windows\system32\winsrv.dll
2015-09-09 09:08:44 ----A---- C:\Windows\system32\csrsrv.dll
2015-09-09 09:08:44 ----A---- C:\Windows\system32\cryptbase.dll
2015-09-09 09:08:44 ----A---- C:\Windows\system32\conhost.exe
2015-09-09 09:08:43 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2015-09-09 09:08:43 ----A---- C:\Windows\system32\smss.exe
2015-09-09 09:08:43 ----A---- C:\Windows\system32\lsass.exe
2015-09-09 09:08:42 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-09-09 09:08:42 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-09-09 09:08:42 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-09-09 09:08:42 ----A---- C:\Windows\system32\sspicli.dll
2015-09-09 09:08:42 ----A---- C:\Windows\system32\auditpol.exe
2015-09-09 09:08:37 ----A---- C:\Windows\system32\srclient.dll
2015-09-09 09:08:36 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-09-09 09:08:36 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-09-09 09:08:36 ----A---- C:\Windows\system32\secur32.dll
2015-09-09 09:08:36 ----A---- C:\Windows\system32\ntvdm64.dll
2015-09-09 09:08:36 ----A---- C:\Windows\system32\credssp.dll
2015-09-09 09:08:35 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-09-09 09:08:35 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-09-09 09:08:35 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-09-09 09:08:35 ----A---- C:\Windows\system32\wow64win.dll
2015-09-09 09:08:35 ----A---- C:\Windows\system32\sspisrv.dll
2015-09-09 09:08:35 ----A---- C:\Windows\system32\msaudite.dll
2015-09-09 09:08:34 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-09-09 09:08:34 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-09-09 09:08:34 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-09-09 09:08:34 ----A---- C:\Windows\system32\wow64cpu.dll
2015-09-09 09:08:34 ----A---- C:\Windows\system32\msobjs.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-09-09 09:08:33 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-09-09 09:08:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-09-09 09:08:32 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-09-09 09:08:32 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-09-09 09:08:32 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-09-09 09:08:32 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-09-09 09:08:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-09-09 09:08:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-09-09 09:08:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-09-09 09:08:31 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-09-09 09:08:31 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-09-09 09:08:31 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-09-09 09:08:31 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-09-09 09:08:30 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-09-09 09:08:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-09-09 09:08:28 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-09-09 09:08:28 ----A---- C:\Windows\SYSWOW64\user.exe
2015-09-09 09:08:28 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-09-09 09:08:28 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-09-09 09:08:28 ----A---- C:\Windows\system32\apisetschema.dll
2015-09-09 09:04:51 ----A---- C:\Windows\system32\consent.exe
2015-09-09 09:04:51 ----A---- C:\Windows\system32\authui.dll
2015-09-09 09:04:50 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-09-09 09:04:50 ----A---- C:\Windows\system32\appinfo.dll
2015-09-09 09:04:40 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2015-09-09 09:04:40 ----A---- C:\Windows\system32\msxml6.dll
2015-09-09 09:04:40 ----A---- C:\Windows\system32\msxml3.dll
2015-09-09 09:04:39 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2015-09-09 09:04:39 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-09-09 09:04:39 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-09-09 09:04:39 ----A---- C:\Windows\system32\msxml6r.dll
2015-09-09 09:04:39 ----A---- C:\Windows\system32\msxml3r.dll
2015-09-09 09:03:40 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2015-09-09 09:03:38 ----A---- C:\Windows\system32\appidsvc.dll
2015-09-09 09:03:38 ----A---- C:\Windows\system32\appidapi.dll
2015-09-09 09:03:37 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-09-09 09:03:35 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2015-09-09 09:03:34 ----A---- C:\Windows\system32\setbcdlocale.dll
2015-09-09 09:03:34 ----A---- C:\Windows\system32\drivers\appid.sys
2015-09-09 09:02:18 ----A---- C:\Windows\system32\win32k.sys
2015-09-09 09:02:18 ----A---- C:\Windows\system32\atmfd.dll
2015-09-09 09:02:10 ----A---- C:\Windows\SYSWOW64\lpk.dll
2015-09-09 09:02:10 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2015-09-09 09:02:10 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2015-09-09 09:02:10 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-09-09 09:02:10 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-09-09 09:02:10 ----A---- C:\Windows\system32\lpk.dll
2015-09-09 09:02:10 ----A---- C:\Windows\system32\fontsub.dll
2015-09-09 09:02:10 ----A---- C:\Windows\system32\dciman32.dll
2015-09-09 09:02:10 ----A---- C:\Windows\system32\atmlib.dll
2015-09-09 09:02:01 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-09-09 09:02:01 ----A---- C:\Windows\system32\wucltux.dll
2015-09-09 09:02:01 ----A---- C:\Windows\system32\wuaueng.dll
2015-09-09 09:02:00 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-09-09 09:02:00 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-09-09 09:02:00 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-09-09 09:02:00 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-09-09 09:02:00 ----A---- C:\Windows\system32\wuwebv.dll
2015-09-09 09:02:00 ----A---- C:\Windows\system32\wups2.dll
2015-09-09 09:02:00 ----A---- C:\Windows\system32\wups.dll
2015-09-09 09:02:00 ----A---- C:\Windows\system32\wudriver.dll
2015-09-09 09:02:00 ----A---- C:\Windows\system32\wuauclt.exe
2015-09-09 09:02:00 ----A---- C:\Windows\system32\wuapp.exe
2015-09-09 09:02:00 ----A---- C:\Windows\system32\wuapi.dll
2015-09-09 09:02:00 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-09-09 09:01:59 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-09-08 13:01:10 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2015-09-08 13:01:09 ----A---- C:\Windows\system32\drivers\usbohci.sys
2015-09-08 13:00:48 ----SD---- C:\Windows\SYSWOW64\GWX
2015-09-02 16:45:51 ----D---- C:\ProgramData\WarThunder
2015-08-30 10:57:43 ----A---- C:\Windows\system32\drivers\fvstore.dat
2015-08-30 10:36:49 ----D---- C:\ProgramData\Shared Space
2015-08-30 10:34:46 ----D---- C:\Program Files\COMODO
2015-08-30 10:32:57 ----D---- C:\ProgramData\Comodo
2015-08-29 22:31:41 ----D---- C:\Users\Zdenek\AppData\Roaming\DigitalVolcano
2015-08-29 22:31:31 ----D---- C:\Program Files (x86)\Duplicate Cleaner
2015-08-29 22:24:18 ----D---- C:\Program Files (x86)\Microsoft Security Client
2015-08-29 22:24:14 ----D---- C:\Program Files\Microsoft Security Client
2015-08-29 10:17:39 ----D---- C:\Users\Zdenek\AppData\Roaming\NetMeter
2015-08-28 20:09:06 ----D---- C:\Users\Zdenek\AppData\Roaming\EMG Future Technologies Inc
2015-08-27 01:49:27 ----D---- C:\Windows\SYSWOW64\directx
2015-08-26 22:17:53 ----D---- C:\Program Files (x86)\Electronic Arts
2015-08-26 21:47:44 ----D---- C:\Program Files (x86)\SystemRequirementsLab
2015-08-25 20:52:26 ----D---- C:\Program Files (x86)\Interplanetary
2015-08-25 09:40:55 ----RHD---- C:\Users\Zdenek\AppData\Roaming\SecuROM
2015-08-24 22:09:16 ----D---- C:\ProgramData\Media Center Programs
2015-08-24 22:01:08 ----D---- C:\Program Files (x86)\Sierra Entertainment
2015-08-24 22:00:19 ----D---- C:\Users\Zdenek\AppData\Roaming\InstallShield
2015-08-24 16:43:21 ----D---- C:\Program Files (x86)\The Swapper
2015-08-24 13:30:19 ----D---- C:\Users\Zdenek\AppData\Roaming\Promotion Software GmbH
2015-08-24 12:49:12 ----D---- C:\ProgramData\RELOADED
2015-08-24 12:44:36 ----D---- C:\Program Files (x86)\Deadlight
2015-08-24 09:30:20 ----D---- C:\Users\Zdenek\AppData\Roaming\Steam
2015-08-24 09:25:12 ----D---- C:\Program Files (x86)\Construction Simulator 2015
2015-08-24 09:21:37 ----D---- C:\Users\Zdenek\AppData\Roaming\DAEMON Tools Lite
2015-08-24 09:21:37 ----A---- C:\Windows\system32\drivers\dtlitescsibus.sys
2015-08-24 09:21:35 ----D---- C:\Program Files\DAEMON Tools Lite
2015-08-24 09:20:56 ----D---- C:\ProgramData\DAEMON Tools Lite
2015-08-19 21:08:46 ----D---- C:\Program Files\CCleaner

======List of files/folders modified in the last 1 month======

2015-09-12 22:32:42 ----D---- C:\Windows\Temp
2015-09-12 22:32:41 ----A---- C:\Windows\SYSWOW64\log.txt
2015-09-12 22:32:38 ----D---- C:\Windows\Prefetch
2015-09-12 22:30:25 ----D---- C:\Windows\system32\config
2015-09-12 22:28:37 ----AD---- C:\Windows
2015-09-12 22:28:36 ----D---- C:\Windows\inf
2015-09-12 22:28:36 ----AD---- C:\Windows\System32
2015-09-12 22:28:36 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-09-12 22:28:32 ----D---- C:\Windows\Tasks
2015-09-12 21:21:55 ----HD---- C:\ProgramData
2015-09-12 09:38:46 ----SHD---- C:\System Volume Information
2015-09-12 09:32:49 ----D---- C:\Windows\rescache
2015-09-12 09:03:49 ----D---- C:\Windows\Microsoft.NET
2015-09-12 09:03:20 ----RSD---- C:\Windows\assembly
2015-09-11 23:13:27 ----D---- C:\Windows\system32\drivers
2015-09-11 23:13:25 ----D---- C:\Windows\system32\drivers\UMDF
2015-09-11 09:27:25 ----D---- C:\Windows\winsxs
2015-09-11 09:25:18 ----D---- C:\Windows\SysWOW64
2015-09-11 09:25:18 ----D---- C:\Program Files\Windows Journal
2015-09-11 09:25:15 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-09-11 09:25:15 ----D---- C:\Windows\system32\cs-CZ
2015-09-11 09:25:15 ----D---- C:\Windows\ehome
2015-09-11 09:25:14 ----D---- C:\Program Files\Internet Explorer
2015-09-11 09:25:13 ----D---- C:\Windows\SYSWOW64\en-US
2015-09-11 09:25:12 ----D---- C:\Windows\system32\en-US
2015-09-11 09:25:12 ----D---- C:\Windows\PolicyDefinitions
2015-09-11 09:25:10 ----D---- C:\Program Files (x86)\Internet Explorer
2015-09-11 09:25:01 ----D---- C:\Windows\AppPatch
2015-09-11 09:24:57 ----D---- C:\Windows\system32\Boot
2015-09-10 21:29:06 ----RD---- C:\Program Files
2015-09-10 21:12:35 ----D---- C:\ProgramData\McAfee
2015-09-10 21:12:34 ----D---- C:\Program Files (x86)\McAfee
2015-09-10 21:12:23 ----D---- C:\Program Files\mcafee
2015-09-10 21:12:17 ----D---- C:\Program Files\Common Files\mcafee
2015-09-10 21:02:21 ----D---- C:\Program Files (x86)\PokerStars
2015-09-10 21:01:37 ----RD---- C:\Program Files (x86)
2015-09-10 20:49:15 ----D---- C:\Program Files (x86)\Steam
2015-09-10 20:49:08 ----D---- C:\Windows\Logs
2015-09-10 20:49:08 ----D---- C:\Windows\debug
2015-09-10 20:31:15 ----D---- C:\Users\Zdenek\AppData\Roaming\Skype
2015-09-10 20:24:56 ----SHD---- C:\Windows\Installer
2015-09-10 20:24:56 ----D---- C:\ProgramData\Skype
2015-09-10 20:24:26 ----D---- C:\Program Files (x86)\Common Files
2015-09-09 10:35:42 ----D---- C:\Program Files\NVIDIA Corporation
2015-09-09 10:35:42 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-09-09 10:31:39 ----D---- C:\Windows\system32\DriverStore
2015-09-09 10:31:12 ----A---- C:\Windows\system32\NvIFR64.dll
2015-09-09 10:30:26 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-09-09 10:30:26 ----A---- C:\Windows\system32\nvapi64.dll
2015-09-09 10:30:25 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-09-09 10:30:25 ----A---- C:\Windows\system32\NvFBC64.dll
2015-09-09 10:30:22 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-09-09 10:30:22 ----A---- C:\Windows\system32\nvcompiler.dll
2015-09-09 10:30:19 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-09-09 10:30:18 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-09-09 10:30:18 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-09-09 10:30:17 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-09-09 10:30:17 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-09-09 10:30:17 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-09-09 10:30:17 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-09-09 10:30:17 ----A---- C:\Windows\system32\nvopencl.dll
2015-09-09 10:30:17 ----A---- C:\Windows\system32\nvdispco6434520.dll
2015-09-09 10:30:15 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-09-09 10:30:15 ----A---- C:\Windows\system32\nvcuvid.dll
2015-09-09 10:30:14 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-09-09 10:30:13 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-09-09 10:30:13 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-09-09 10:30:13 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-09-09 10:30:12 ----A---- C:\Windows\system32\nvoglv64.dll
2015-09-09 10:30:12 ----A---- C:\Windows\system32\nvdispgenco6434520.dll
2015-09-09 10:30:10 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-09-09 10:30:10 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-09-09 10:30:10 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-09-09 10:30:10 ----A---- C:\Windows\system32\nvcuda.dll
2015-09-09 10:30:09 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-09-09 10:30:09 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-09-09 10:07:58 ----D---- C:\Windows\system32\catroot
2015-09-09 10:04:03 ----D---- C:\Windows\system32\catroot2
2015-09-09 09:58:27 ----A---- C:\Windows\SYSWOW64\igdde32.dll
2015-09-09 09:58:27 ----A---- C:\Windows\system32\igfxdo.dll
2015-09-09 09:58:27 ----A---- C:\Windows\system32\igdde64.dll
2015-09-09 09:58:26 ----A---- C:\Windows\SYSWOW64\igfxexps32.dll
2015-09-09 09:58:26 ----A---- C:\Windows\system32\IGFXDEVLib.dll
2015-09-09 09:58:25 ----A---- C:\Windows\SYSWOW64\igd10umd32.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\igfxsrvc.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\igfxress.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\igfxexps.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\igd10umd64.dll
2015-09-09 09:58:25 ----A---- C:\Windows\system32\hccutils.dll
2015-09-09 09:58:24 ----A---- C:\Windows\SYSWOW64\IntelOpenCL32.dll
2015-09-09 09:58:24 ----A---- C:\Windows\SYSWOW64\igfxdv32.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\IntelOpenCL64.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\igfxTMM.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\igfxpph.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\igfxdev.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\igfxCoIn_v2626.dll
2015-09-09 09:58:24 ----A---- C:\Windows\system32\gfxSrvc.dll
2015-09-09 09:58:23 ----A---- C:\Windows\SYSWOW64\igdumd32.dll
2015-09-09 09:58:23 ----A---- C:\Windows\SYSWOW64\igdrcl32.dll
2015-09-09 09:58:23 ----A---- C:\Windows\system32\igdumd64.dll
2015-09-09 09:58:23 ----A---- C:\Windows\system32\igdrcl64.dll
2015-09-09 09:58:22 ----A---- C:\Windows\SYSWOW64\igdfcl32.dll
2015-09-09 09:58:22 ----A---- C:\Windows\SYSWOW64\igdbcl32.dll
2015-09-09 09:58:22 ----A---- C:\Windows\SYSWOW64\ig7icd32.dll
2015-09-09 09:58:22 ----A---- C:\Windows\system32\igdbcl64.dll
2015-09-09 09:58:22 ----A---- C:\Windows\system32\ig7icd64.dll
2015-09-09 09:46:12 ----D---- C:\Windows\system32\Tasks
2015-09-09 09:29:42 ----D---- C:\ProgramData\NVIDIA Corporation
2015-09-09 09:26:05 ----D---- C:\Windows\Help
2015-09-09 09:10:28 ----AD---- C:\Users
2015-09-08 19:46:58 ----SHD---- C:\$RECYCLE.BIN
2015-09-08 11:24:32 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-08-29 23:54:03 ----D---- C:\Windows\Panther
2015-08-29 23:45:55 ----HD---- C:\$Windows.~BT
2015-08-29 23:02:48 ----SHD---- C:\Boot
2015-08-29 22:24:18 ----SD---- C:\ProgramData\Microsoft
2015-08-29 19:05:01 ----D---- C:\Users\Zdenek\AppData\Roaming\Nitro PDF
2015-08-25 20:47:52 ----D---- C:\Users\Zdenek\AppData\Roaming\MPC-HC
2015-08-23 10:03:20 ----D---- C:\Windows\system32\wdi
2015-08-22 23:41:39 ----D---- C:\Windows\LiveKernelReports
2015-08-19 20:29:00 ----D---- C:\Program Files (x86)\SugarSync
2015-08-19 20:20:40 ----D---- C:\Windows\Minidump
2015-08-19 20:10:21 ----D---- C:\ProgramData\Temp
2015-08-19 19:42:10 ----D---- C:\Program Files (x86)\Lenovo
2015-08-19 11:42:04 ----D---- C:\ProgramData\VeriFace

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 fbfmon;fbfmon; C:\Windows\system32\drivers\fbfmon.sys [2012-08-08 57952]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-11-30 568600]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-05-21 19264]
R0 LHDmgr;LHDmgr; C:\Windows\System32\DRIVERS\LhdX64.sys [2012-08-08 39008]
R0 mfedisk;McAfee AAC Disk Filter Driver; C:\Windows\system32\DRIVERS\mfedisk.sys [2015-04-08 101872]
R0 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [2015-04-08 864200]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\Windows\system32\drivers\mfewfpk.sys [2015-04-08 335944]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-03-04 280376]
R0 NSD;NSD; C:\Windows\system32\drivers\nsd.sys [2011-12-24 24160]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2015-09-09 31560]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 BPntDrv;BPntDrv; C:\Windows\system32\drivers\BPntDrv.sys [2012-08-08 13408]
R1 CFRMD;CFRMD; C:\Windows\system32\DRIVERS\CFRMD.sys [2014-06-26 37976]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\Windows\System32\DRIVERS\cmderd.sys [2015-08-05 21184]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\system32\DRIVERS\cmdguard.sys [2015-08-05 806032]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2015-08-05 45856]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2015-08-05 105096]
R1 Nsdfltr;Nsdfltr; C:\Windows\system32\drivers\Nsdfltr.sys [2011-12-22 59488]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 124568]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys [2012-08-08 30816]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtlitescsibus.sys [2015-08-24 30264]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-09-09 14658688]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-01-31 4739304]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2011-12-06 331264]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-05-21 357184]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-05-21 789824]
R3 iwdbus;IWD Bus Enumerator; C:\Windows\system32\DRIVERS\iwdbus.sys [2012-04-20 25528]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2011-11-10 60184]
R3 mfeaack;McAfee Inc. mfeaack; C:\Windows\system32\drivers\mfeaack.sys [2015-04-08 402888]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [2015-04-08 338272]
R3 mfefirek;McAfee Inc. mfefirek; C:\Windows\system32\drivers\mfefirek.sys [2015-04-08 488000]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2011-12-02 11417088]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
R3 SPUVCbv;SPUVCb Driver Service; C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 185344]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2011-11-10 401456]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 bcbtums;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2012-02-02 134696]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-10-10 80384]
S3 btwampfl;btwampfl Bluetooth filter driver; \??\C:\Windows\system32\drivers\btwampfl.sys [2012-02-02 615976]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2012-02-02 184360]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2012-02-02 211496]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2012-02-02 39976]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2012-02-02 21544]
S3 cfwids;McAfee Inc. cfwids; C:\Windows\system32\drivers\cfwids.sys [2015-04-08 68784]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2012-04-20 35256]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUVStor.sys [2011-10-24 313960]
S3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2012-02-02 945440]
R2 CLPSLauncher;COMODO LPS Launcher; C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe [2015-08-30 70848]
R2 CmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2015-08-05 5542472]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-12-08 618256]
R2 GeekBuddyRSP;GeekBuddyRSP Server; C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [2015-08-30 2327248]
R2 HomeNetSvc;McAfee Home Network; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2015-05-06 340744]
R2 ChromodoUpdater;COMODO Chromodo Update Service; C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe [2015-09-10 1998520]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-03 628448]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-02-08 128280]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-08 161560]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe [2009-03-09 951632]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-08 277784]
R2 mccspsvc;McAfee CSP Service; C:\Program Files\Common Files\McAfee\CSP\1.5.495.0\McCSPServiceHost.exe [2015-06-04 207344]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [2015-04-08 250672]
R2 NitroDriverReadSpool2;NitroPDFDriverCreatorReadSpool2; C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe [2012-06-21 216072]
R2 nlsX86cc;Nalpeiron Licensing Service; C:\Windows\SysWOW64\NLSSRV32.EXE [2012-06-21 69640]
R2 NSDSvc;Fast boot service of lenovo; C:\Windows\System32\NSDSvc.exe [2011-12-24 120160]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-02-04 934216]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-12-08 148752]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-06-24 1738168]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-06-27 2088408]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
R3 McAPExe;McAfee AP Service; C:\Program Files\McAfee\MSC\McAPExe.exe [2015-05-13 754280]
R3 mfemms;McAfee Service Controller; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [2015-05-14 373704]
R3 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 23816]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 366544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-08-13 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-08-13 124088]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-01 144200]
S2 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
S2 mcpltsvc;McAfee Platform Services; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [2015-05-06 340744]
S2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [2015-05-06 340744]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-08 363800]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-13 51808]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2015-08-05 2265792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-01-28 276248]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-06-18 1268568]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-01 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-09-09 114688]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2011-01-28 225216]
S3 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2015-04-08 232656]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-12-08 273168]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-08-19 838336]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-08-13 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-08-13 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-08-13 139856]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - "program přestal pracovat..."

#10 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

smokeflypaper
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 11 dub 2007 18:47

Re: Prosím o kontrolu logu - "program přestal pracovat..."

#11 Příspěvek od smokeflypaper »

Bohužel, žádná změna k lepšímu nenastala. Některé, programy přestávají "pracovat" (hlavně ty systémové nebo lenovácké)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - "program přestal pracovat..."

#12 Příspěvek od Rudy »

Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

smokeflypaper
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 11 dub 2007 18:47

Re: Prosím o kontrolu logu - "program přestal pracovat..."

#13 Příspěvek od smokeflypaper »

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 13.9.2015
Čas skenování: 21:41
Protokol: log Mbytes.txt
Správce: Ano

Verze: 2.1.8.1057
Databáze malwaru: v2015.09.13.04
Databáze rootkitů: v2015.08.16.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto

OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: Zdenek

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 345144
Uplynulý čas: 19 min, 58 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 1
PUP.Optional.OpenCandy, C:\Users\Zdenek\Downloads\DuplicateCleaner_setup.exe, , [5711012e3b506accee8ec692a9574fb1],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - "program přestal pracovat..."

#14 Příspěvek od Rudy »

Nález MBAM smažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

smokeflypaper
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 11 dub 2007 18:47

Re: Prosím o kontrolu logu - "program přestal pracovat..."

#15 Příspěvek od smokeflypaper »

smazáno... nezpozoroval jsem žádné změny...

Zamčeno