Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

vracející se havet

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
dinospages
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 240
Registrován: 20 črc 2006 11:33

vracející se havet

#1 Příspěvek od dinospages »

Dobrý den rádci, potřebuji pomoci se svarovym pc, neco se mu tam dostalo a nejde to vylecit koupil si eseta a spyhunter, ale nepomohlo to stale se to pry vraci. kouknete prosim na log a pokusete se mi pomoci.

Jo a jeste se snazil dat bod obnovy kdy mel jeste win7, ale napsalo to ze chybeji soubory pro obnovu zrejme neco smazal on nebo ty programky


log z RSITu:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Martin at 2015-12-14 14:25:36
Microsoft Windows 10 Home
System drive C: has 165 GB (34%) free of 488 GB
Total RAM: 16325 MB (86% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:25:39, on 14.12.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Martin\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe
C:\Users\Martin\AppData\Local\Viber\Viber.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-ui.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-connect.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-daemon.exe
C:\Program Files (x86)\BenQ\Display Pilot\DTHtml.exe
C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSdkHelper.exe
C:\Program Files (x86)\ASUS\AI Suite III\ASUSMiniBar.exe
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpctrl.exe
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\floater.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files\trend micro\Martin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://get-access.me/wpad.dat?e642cb597 ... a891514087
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O2 - BHO: Discover Treasure - {bfa55139-82af-4663-a19b-e135dac8d043} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe" -delay=10
O4 - HKLM\..\Run: [DT BEN] C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe -BEN
O4 - HKLM\..\Run: [ASUS AiChargerPlus Execute] C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Viber] "C:\Users\Martin\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Google Update] "C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Synology Cloud Station.lnk = C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O17 - HKLM\System\CCS\Services\Tcpip\..\{ACB9465B-B4DE-42C0-A4D0-2240F447D641}: NameServer = 10.0.0.138
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe
O23 - Service: @oem66.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - The OpenVPN Project - C:\Program Files\OpenVPN\bin\openvpnserv.exe
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SpyHunter 4 Service - Enigma Software Group USA, LLC. - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: Thrustmaster Device Driver Installer (tmInstall) - Thrustmaster® - C:\Thrumaster\drivers\amd64\tmInstall.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14494 bytes

======Listing Processes======








C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\ESET\ESET Smart Security\ekrn.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first

C:\WINDOWS\system32\WLANExt.exe 2240745591360
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-9f2bfcac-e051-45b7-a4a2-afc703b4c681 -SystemEventPortName:HostProcess-8d256130-a28e-4a1b-88fa-c8f6bb1bb52b -IoCancelEventPortName:HostProcess-a830731a-4610-4404-981b-900e5d822505 -NonStateChangingEventPortName:HostProcess-7c40b4fe-2159-4fca-9e0c-f343822458b9 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:5b62656c-efbc-4e74-89d0-81ef8dd13c48 -DeviceGroupId:WpdFsGroup
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-9ad40053-eef7-4d8a-b154-2cd68e1ed8ee -SystemEventPortName:HostProcess-886e37ba-a675-45ca-a793-893b047eb623 -IoCancelEventPortName:HostProcess-046ff812-c05e-4cc7-88d7-1df605fd46b3 -NonStateChangingEventPortName:HostProcess-13c71691-1aa8-4155-ae89-7df0551c5b82 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:028f28f1-a5c9-423d-842c-99624b9e9767 -DeviceGroupId:WudfDefaultDevicePool
dashost.exe {cfea6b88-8309-4d52-b820445baf7e1db5}
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
C:\Windows\system32\IProsetMonitor.exe
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe"
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\PnkBstrA.exe
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\BtwRSupportService.exe
C:\Thrumaster\drivers\amd64\tmInstall.exe
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Intel\NCS2\WMIProv\NCS2Prov.exe" -Embedding
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" ddc77398-cc6f-4e1f-abc6-2f4e8fee7bcb 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
taskeng.exe {951382AB-15BA-4FA9-8087-6B7741361BF6}
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
sihost.exe
"C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe" -onlytray
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-242848310-15987676-2559910525-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-242848310-15987676-2559910525-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Users\Martin\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe" ⼜6
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe"
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
KHALMNPR.EXE /API
"C:\Users\Martin\AppData\Local\Viber\Viber.exe" StartMinimized
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=6920 --on-initialized-event-handle=572 --parent-handle=576
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6904.0.2001434275\1534251223" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,12,23,51,61 --gpu-vendor-id=0x10de --gpu-device-id=0x1184 --gpu-driver-vendor=NVIDIA --gpu-driver-version=10.18.13.5382 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler.exe"
"C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-ui.exe"
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-connect.exe --log_folder log --info_folder .
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-daemon.exe C:/Users/Martin/AppData/Local/CloudStation/data/config/client.conf 1024
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\BenQ\Display Pilot\DTHtml.exe" -Customer=BEN -startup_folder -DT_Startup
"C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe"
"C:\Program Files (x86)\Common Files\Portrait Displays\Shared\HookManager.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSdkHelper.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\ASUSMiniBar.exe" -s
"C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpctrl.exe"
"C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\floater.exe"
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A3/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/AllExceptAsyncScripts_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/WebRTC-PeerConnectionDTLS1.2/Default/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="6904.5.517142268\43595033" --font-cache-shared-handle=3840 /prefetch:673131151
taskeng.exe {50D4C3FE-CD42-45C8-B7F7-B633FC870169}
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.0_none_95e4f9a171a1ad95\TiWorker.exe -Embedding
/updateInstalled /background
C:\WINDOWS\System32\svchost.exe -k smphost
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 624 628 636 8192 632
wmiadap.exe /F /T /R
"C:\Users\Martin\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job - C:\WINDOWS\explorer.exe /NOUACCHECK
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-242848310-15987676-2559910525-1000Core.job - C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-242848310-15987676-2559910525-1000UA.job - C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\udygk6rb.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4]
"Description"=ESN Sonar browser plugin
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.3.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19 433944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-24 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2014-05-19 364824]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bfa55139-82af-4663-a19b-e135dac8d043}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-24 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1832760]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-05-27 7611608]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-06-24 2754704]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-08-04 36352]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2014-05-19 3100440]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Viber"=C:\Users\Martin\AppData\Local\Viber\Viber.exe [2015-11-09 51657424]
"OneDrive"=C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-14 551112]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-11-05 3011152]
"Google Update"=C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-11 144200]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-11-16 8591272]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-02-21 292848]
"PivotSoftware"=C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe [2013-06-18 112424]
"DT BEN"=C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe [2014-07-18 122384]
"ASUS AiChargerPlus Execute"=C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [2013-01-28 550272]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-11-09 596528]

C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Synology Cloud Station.lnk - C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2014-03-24 66328]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"DSCAutomationHostEnabled"=2
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"msacm.l3pacm"=l3codecp.acm
"msacm.aacacm"=AACACM.acm
"msacm.ac3acm"=ac3acm.acm
"VIDC.LAGS"=lagarith.dll
"vidc.x264"=x264vfw.dll
"msacm.ac3filter"=ac3filter.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-14 14:25:36 ----D---- C:\rsit
2015-12-14 14:25:36 ----D---- C:\Program Files\trend micro
2015-12-14 14:24:12 ----HD---- C:\OneDriveTemp
2015-12-14 08:36:53 ----D---- C:\Program Files\CCleaner
2015-12-10 18:16:49 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-12-10 09:43:08 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-12-10 09:43:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-12-10 09:43:07 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-12-10 09:43:06 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-12-10 09:43:06 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\user32.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\comsvcs.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\authui.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\wshrm.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\win32k.sys
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\shutdownux.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\readingviewresources.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\catsrvut.dll
2015-12-04 07:40:27 ----D---- C:\WINDOWS\pss
2015-12-02 23:50:15 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\SYSWOW64\ETWCoreUIComponentsResources.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\cdp.dll
2015-12-02 23:50:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-12-02 23:50:12 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\InputService.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\d3d11.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\usermgr.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wininet.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\Unistore.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\services.exe
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\cryptngc.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\XblAuthManagerProxy.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\wwapi.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\SensorsUtilsV2.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\drivers\sdstor.sys
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\wwapi.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\mssign32.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-12-02 23:49:58 ----A---- C:\WINDOWS\SYSWOW64\XblAuthManagerProxy.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\mssign32.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\drivers\capimg.sys
2015-12-02 23:49:57 ----A---- C:\WINDOWS\system32\SRH.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\mos.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\CellularAPI.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\iesetup.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\iernonce.dll
2015-12-02 23:49:51 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2015-12-02 23:49:51 ----A---- C:\WINDOWS\system32\wwanmm.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\wwanconn.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2015-12-02 23:49:49 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\pnidui.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\jsproxy.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\BingMaps.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\wwancfg.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\MapsStore.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\Wwanpref.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\NMAA.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\moshostcore.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\wininetlui.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\MosStorage.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\moshost.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\XblAuthTokenBrokerExt.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\wups2.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\wsplib.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\rilproxy.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\nativemap.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\ihvrilproxy.dll
2015-12-02 23:49:41 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2015-12-02 23:49:40 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2015-12-02 23:49:40 ----A---- C:\WINDOWS\system32\UIAutomationCoreRes.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCoreRes.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\MapControlStringsRes.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\MosResource.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\MapControlStringsRes.dll
2015-12-02 21:38:53 ----D---- C:\ProgramData\ESET
2015-12-02 21:38:52 ----D---- C:\Program Files\ESET
2015-11-29 14:27:48 ----D---- C:\WINDOWS\system32\SleepStudy
2015-11-28 13:50:46 ----D---- C:\Program Files (x86)\Adobe
2015-11-28 02:05:20 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\prm0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2015-11-28 01:59:49 ----D---- C:\ProgramData\USOShared
2015-11-28 01:59:05 ----SHD---- C:\Recovery
2015-11-28 01:58:34 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-11-28 01:57:57 ----ASH---- C:\hiberfil.sys
2015-11-28 01:56:30 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files\SpeechEngines
2015-11-28 01:55:39 ----SD---- C:\Users\Martin\AppData\Roaming\Microsoft
2015-11-28 01:55:25 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-28 01:55:21 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-11-28 01:54:57 ----AS---- C:\WINDOWS\bootstat.dat
2015-11-28 01:54:53 ----D---- C:\ProgramData\NVIDIA
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-11-28 01:54:48 ----D---- C:\ProgramData\NVIDIA Corporation
2015-11-28 01:54:45 ----D---- C:\Program Files\NVIDIA Corporation
2015-11-28 01:54:45 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-11-28 01:54:43 ----A---- C:\WINDOWS\system32\drivers\LNonPnP.sys
2015-11-28 01:54:39 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-11-28 01:54:39 ----D---- C:\Program Files\Realtek
2015-11-28 01:54:38 ----HD---- C:\Program Files (x86)\Uninstall Information
2015-11-28 01:54:38 ----D---- C:\Program Files (x86)\ASUS
2015-11-28 01:54:38 ----A---- C:\WINDOWS\SYSWOW64\drivers\AsIO.sys
2015-11-28 01:54:38 ----A---- C:\WINDOWS\SYSWOW64\AsIO.dll
2015-11-28 01:54:37 ----D---- C:\Program Files\ASUS
2015-11-28 01:54:30 ----D---- C:\WINDOWS\Prefetch
2015-11-28 01:54:17 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2015-11-28 01:54:13 ----ASH---- C:\swapfile.sys
2015-11-28 01:53:39 ----DC---- C:\WINDOWS\Panther
2015-11-28 01:52:29 ----D---- C:\w
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\remoteaudioendpoint.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.proxy.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\wimserv.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\wimgapi.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\twinui.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringconfigsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringclient.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\shell32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provtool.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provops.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provengine.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provdatastore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\policymanager.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfps.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfpmp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mf.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\lpk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\jscript.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\IcsEntitlementHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\fontsub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\wimmount.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\dcomp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\dciman32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\bcastdvr.proxy.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\audiodg.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AppCapture.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-11-28 01:51:42 ----D---- C:\WINDOWS\system32\Microsoft
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\msmq
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\BestPractices
2015-11-28 01:51:04 ----D---- C:\Program Files\Reference Assemblies
2015-11-28 01:51:04 ----D---- C:\Program Files\MSBuild
2015-11-28 01:51:04 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-11-28 01:51:04 ----D---- C:\Program Files (x86)\MSBuild
2015-11-28 01:51:04 ----D---- C:\inetpub
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-11-24 21:09:08 ----D---- C:\Users\Martin\AppData\Roaming\Sun

======List of files/folders modified in the last 1 month======

2015-12-14 14:25:36 ----RD---- C:\Program Files
2015-12-14 14:25:11 ----D---- C:\WINDOWS\Temp
2015-12-14 14:23:55 ----D---- C:\WINDOWS\SoftwareDistribution
2015-12-14 14:23:55 ----D---- C:\Windows
2015-12-14 14:22:32 ----D---- C:\Program Files (x86)\Steam
2015-12-14 14:22:32 ----A---- C:\WINDOWS\PE_Rom.dll
2015-12-14 10:37:00 ----D---- C:\WINDOWS\system32\sru
2015-12-14 09:47:17 ----D---- C:\WINDOWS\Logs
2015-12-14 08:40:10 ----D---- C:\WINDOWS\System32
2015-12-14 08:40:10 ----D---- C:\WINDOWS\INF
2015-12-14 08:39:19 ----D---- C:\Users\Martin\AppData\Roaming\TS3Client
2015-12-14 08:39:19 ----D---- C:\Program Files\PDFCreator
2015-12-14 08:39:15 ----D---- C:\WINDOWS\debug
2015-12-14 08:36:54 ----D---- C:\WINDOWS\system32\Tasks
2015-12-14 08:36:50 ----D---- C:\Users\Martin\AppData\Roaming\ViberPC
2015-12-14 08:16:28 ----D---- C:\WINDOWS\Microsoft.NET
2015-12-14 07:41:44 ----D---- C:\WINDOWS\AppReadiness
2015-12-13 19:32:13 ----D---- C:\Program Files\Cloud Imperium Games
2015-12-13 02:17:31 ----HD---- C:\Program Files\WindowsApps
2015-12-12 01:13:34 ----D---- C:\ProgramData\Origin
2015-12-11 23:55:16 ----D---- C:\WINDOWS\SysWOW64
2015-12-11 23:55:09 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrB.exe
2015-12-11 21:18:43 ----D---- C:\WINDOWS\Tasks
2015-12-10 18:31:35 ----D---- C:\WINDOWS\system32\config
2015-12-10 18:19:15 ----D---- C:\WINDOWS\WinSxS
2015-12-10 18:19:03 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-12-10 18:19:03 ----AD---- C:\Program Files\Microsoft Silverlight
2015-12-10 18:18:29 ----D---- C:\WINDOWS\system32\oobe
2015-12-10 18:18:29 ----D---- C:\Program Files\Internet Explorer
2015-12-10 18:18:29 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-10 18:18:28 ----D---- C:\WINDOWS\system32\DriverStore
2015-12-10 18:18:28 ----D---- C:\WINDOWS\system32\drivers
2015-12-10 18:16:52 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-12-10 18:16:49 ----RD---- C:\Program Files (x86)
2015-12-10 12:36:49 ----D---- C:\WINDOWS\rescache
2015-12-10 12:32:07 ----SHD---- C:\System Volume Information
2015-12-10 12:25:01 ----SHD---- C:\WINDOWS\Installer
2015-12-10 12:03:05 ----D---- C:\WINDOWS\CbsTemp
2015-12-10 11:59:52 ----D---- C:\WINDOWS\system32\MRT
2015-12-10 11:58:09 ----A---- C:\WINDOWS\system32\MRT.exe
2015-12-10 09:43:11 ----SHD---- C:\$Recycle.Bin
2015-12-10 09:41:29 ----D---- C:\WINDOWS\system32\catroot2
2015-12-04 16:57:33 ----D---- C:\Program Files (x86)\Google
2015-12-04 16:57:11 ----HD---- C:\ProgramData
2015-12-04 16:55:10 ----D---- C:\ProgramData\SoftwareDistribution
2015-12-04 16:51:05 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\cs-CZ
2015-12-04 16:51:04 ----D---- C:\WINDOWS\AppPatch
2015-12-03 00:36:08 ----AD---- C:\Program Files (x86)\Origin
2015-12-02 21:39:12 ----HD---- C:\WINDOWS\ELAMBKUP
2015-12-02 20:24:33 ----D---- C:\Program Files (x86)\Origin Games
2015-12-01 01:33:29 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-11-30 17:36:33 ----RSD---- C:\WINDOWS\assembly
2015-11-28 15:43:03 ----D---- C:\WINDOWS\system32\WDI
2015-11-28 14:03:48 ----A---- C:\WINDOWS\system32\PnkBstrA.exe
2015-11-28 13:51:34 ----D---- C:\Users\Martin\AppData\Roaming\Adobe
2015-11-28 13:50:44 ----D---- C:\ProgramData\Adobe
2015-11-28 12:21:24 ----AD---- C:\Program Files (x86)\Battlelog Web Plugins
2015-11-28 12:20:57 ----D---- C:\WINDOWS\system32\LogFiles
2015-11-28 04:42:14 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrA.exe
2015-11-28 04:42:12 ----D---- C:\ProgramData\Package Cache
2015-11-28 04:40:55 ----D---- C:\WINDOWS\system32\restore
2015-11-28 04:25:03 ----D---- C:\WINDOWS\appcompat
2015-11-28 02:20:02 ----RD---- C:\WINDOWS\DevicesFlow
2015-11-28 02:05:21 ----D---- C:\WINDOWS\OCR
2015-11-28 02:04:03 ----SD---- C:\ProgramData\Microsoft
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\PurchaseDialog
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\PrintDialog
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\MiracastView
2015-11-28 02:03:48 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-11-28 01:59:49 ----D---- C:\ProgramData\USOPrivate
2015-11-28 01:59:10 ----D---- C:\WINDOWS\system32\wbem
2015-11-28 01:59:06 ----D---- C:\WINDOWS\Registration
2015-11-28 01:59:05 ----D---- C:\Program Files\Windows NT
2015-11-28 01:59:02 ----D---- C:\WINDOWS\system32\WinBioDatabase
2015-11-28 01:58:33 ----D---- C:\WINDOWS\system32\drivers\etc
2015-11-28 01:58:32 ----RSD---- C:\WINDOWS\Media
2015-11-28 01:58:10 ----D---- C:\WINDOWS\system32\spool
2015-11-28 01:57:21 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-11-28 01:57:21 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-TW
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-HK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-CN
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\tr-TR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\th-TH
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sv-SE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sl-SI
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sk-SK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ru-RU
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ro-RO
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pt-PT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pt-BR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pl-PL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\nl-NL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\nb-NO
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\lv-LV
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\lt-LT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ko-KR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ja-JP
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\it-IT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\hu-HU
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\hr-HR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\he-IL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\fr-FR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\fi-FI
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\et-EE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\es-ES
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\en-US
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\el-GR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\de-DE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\da-DK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\bg-BG
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ar-SA
2015-11-28 01:57:20 ----RSD---- C:\WINDOWS\Fonts
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\NDF
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\migration
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\IME
2015-11-28 01:56:07 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-11-28 01:56:03 ----D---- C:\WINDOWS\system32\CatRoot
2015-11-28 01:56:02 ----D---- C:\WINDOWS\schemas
2015-11-28 01:56:02 ----D---- C:\WINDOWS\PolicyDefinitions
2015-11-28 01:56:02 ----D---- C:\WINDOWS\LiveKernelReports
2015-11-28 01:56:01 ----D---- C:\WINDOWS\ehome
2015-11-28 01:56:00 ----RD---- C:\Users
2015-11-28 01:55:59 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-11-28 01:55:59 ----D---- C:\Program Files (x86)\Windows Mail
2015-11-28 01:55:59 ----D---- C:\Program Files (x86)\Common Files
2015-11-28 01:55:58 ----SHD---- C:\Program Files\Windows Sidebar
2015-11-28 01:55:58 ----D---- C:\Program Files\Windows Mail
2015-11-28 01:55:58 ----D---- C:\Program Files\WIDCOMM
2015-11-28 01:55:58 ----D---- C:\Program Files\Microsoft Games
2015-11-28 01:55:58 ----D---- C:\Program Files\DVD Maker
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files\microsoft shared
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files
2015-11-28 01:55:51 ----D---- C:\WINDOWS\system32\Recovery
2015-11-28 01:55:12 ----D---- C:\WINDOWS\system32\Sysprep
2015-11-28 01:54:53 ----D---- C:\Temp
2015-11-28 01:54:52 ----D---- C:\WINDOWS\Help
2015-11-28 01:54:19 ----D---- C:\WINDOWS\ServiceProfiles
2015-11-28 01:52:27 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-11-28 01:52:27 ----D---- C:\WINDOWS\system32\Dism
2015-11-28 01:52:27 ----D---- C:\WINDOWS\system32\appraiser
2015-11-28 01:52:27 ----D---- C:\WINDOWS\Provisioning
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\MUI
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\inetsrv
2015-11-28 01:51:03 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2015-11-28 01:51:03 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\wamregps.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqutil.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqrt.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisRtl.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisrstap.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisreset.exe
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\ahadmin.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\admwprox.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqsnap.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqqm.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqoa.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqcertui.dll
2015-11-28 01:51:00 ----A---- C:\WINDOWS\system32\mqsvc.exe
2015-11-28 01:51:00 ----A---- C:\WINDOWS\system32\mqbkup.exe
2015-11-28 01:47:43 ----HD---- C:\$WINDOWS.~BT
2015-11-24 21:09:40 ----D---- C:\ProgramData\Oracle
2015-11-24 21:09:33 ----D---- C:\Program Files (x86)\Java
2015-11-24 21:09:02 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2015-11-24 21:09:02 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 asstor64;asstor64; C:\WINDOWS\System32\drivers\asstor64.sys [2014-03-14 84816]
R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2015-09-23 69840]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2014-08-04 670568]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2014-01-28 15232]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2014-02-24 14464]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2015-09-23 264040]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2015-09-23 186784]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2015-09-23 206312]
R1 EpfwLWF;@oem33.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2015-09-23 52872]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2015-10-07 142976]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 AiChargerPlus;AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [2013-01-28 14848]
R3 ASMTFilter;ASMTFilter; C:\Windows\SysWow64\drivers\asmtufdriver.sys [2013-01-28 21400]
R3 bcbtums;@oem66.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2015-03-27 173312]
R3 BCM43XX;@oem8.inf,%BCM43XX_Service_DispName%;Ovladač síťového adaptéru Broadcom 802.11; C:\WINDOWS\system32\DRIVERS\bcmwl664.sys [2014-09-20 9082576]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-10-30 112640]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-10-30 245248]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHUSB.sys [2015-10-30 84992]
R3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\WINDOWS\System32\drivers\e1i63x64.sys [2015-10-30 472576]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2014-05-27 3976792]
R3 LEqdUsb;@oem22.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF USB Filter; C:\WINDOWS\system32\DRIVERS\LEqdUsb.Sys [2014-03-19 77592]
R3 LHidEqd;@oem9.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF HID Filter; C:\WINDOWS\system32\DRIVERS\LHidEqd.Sys [2014-03-19 13080]
R3 LHidFilt;@oem43.inf,%LHidFilt.SvcDesc%;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2014-03-19 76568]
R3 LMouFilt;@oem43.inf,%LMouFilt.SvcDesc%;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2014-03-19 59160]
R3 MEIx64;@oem68.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-11-28 175616]
R3 NAL;Nal Service ; \??\C:\WINDOWS\system32\Drivers\iqvw64e.sys [2014-02-26 34568]
R3 NVHDA;@oem69.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2015-08-29 206152]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-08-29 11151488]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-06-24 19600]
R3 nvvad_WaveExtensible;@oem28.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-05-19 46768]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-10-30 175104]
R3 tap0901;@oem24.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\System32\drivers\tap0901.sys [2014-11-05 27136]
R4 IOMap;IOMap; \??\C:\WINDOWS\system32\drivers\IOMap64.sys [2014-04-29 24824]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2015-09-23 14976]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHport.sys [2015-10-30 953344]
S3 btwampfl;@oem66.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2015-03-27 188160]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-11-22 117248]
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [2015-11-06 15920]
S3 EsgScanner;EsgScanner; C:\WINDOWS\system32\DRIVERS\EsgScanner.sys [2015-11-06 22704]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2014-01-28 936728]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [2014-04-24 954648]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [2014-04-24 1360016]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe [2014-05-10 389944]
R2 BcmBtRSupport;@oem66.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2015-03-27 2251992]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DTSRVC;Portrait Displays Display Tune Service; C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe [2014-07-18 138768]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2015-10-09 2505472]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-06-24 1152656]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-08-04 16232]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2014-03-11 260360]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-11-28 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-06-24 1868432]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-06-24 23007376]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-08-07 937592]
R2 OneSyncSvc_55fb4;Hostitel synchronizace_55fb4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2014-01-22 122384]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2015-11-28 76152]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-06-17 410768]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2014-12-15 5426448]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-01-02 171632]
R3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4f7ab;Hostitel synchronizace_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_58b8c;Hostitel synchronizace_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SpyHunter 4 Service;SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [2015-11-28 1045376]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-10 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2014-09-21 1044816]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-01-31 887232]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2014-03-24 357144]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4f7ab;Služba zasílání zpráv_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_55fb4;Služba zasílání zpráv_55fb4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_58b8c;Služba zasílání zpráv_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-30 147624]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 OpenVPNService;OpenVPN Service; C:\Program Files\OpenVPN\bin\openvpnserv.exe [2014-12-01 38200]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-12-03 2104840]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4f7ab;Data kontaktů_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_55fb4;Data kontaktů_55fb4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_58b8c;Data kontaktů_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-11-05 836176]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------
_________________________________________________________________
RSIT | MWAV | CCleaner

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vracející se havet

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

dinospages
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 240
Registrován: 20 črc 2006 11:33

Re: vracející se havet

#3 Příspěvek od dinospages »

# AdwCleaner v5.025 - Logfile created 14/12/2015 at 21:29:22
# Updated 13/12/2015 by Xplode
# Database : 2015-12-13.2 [Server]
# Operating system : Windows 10 Home (x64)
# Username : Martin - PILOT
# Running from : C:\Users\Martin\Desktop\adwcleaner_5.025.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files (x86)\Settings Manager
[-] Folder Deleted : C:\Program Files (x86)\Assets Manager
[-] Folder Deleted : C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
[-] Folder Deleted : C:\ProgramData\LuckyBrowse
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\LuckyBrowse
[-] Folder Deleted : C:\Users\Martin\AppData\Roaming\FirefoxToolbar
[-] Folder Deleted : C:\Users\Martin\AppData\Roaming\RHEng
[#] Folder Deleted : C:\WINDOWS\SysNative\Tasks\LuckyBrowse

***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****

[-] Task Deleted : LuckyBrowse

***** [ Registry ] *****

[-] Key Deleted : HKCU\Software\Classes\pokki
[-] Key Deleted : HKCU\Software\Mozilla\Extends
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{395DA725-A162-43FF-B885-27BD92F112E8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{04FEAF9C-DC32-41C7-95CA-790E93488E7D}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{395DA725-A162-43FF-B885-27BD92F112E8}
[!] Key Not Deleted : HKCU\Software\Mozilla\Extends

***** [ Web browsers ] *****


*************************

:: "Tracing" keys removed
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1880 bytes] ##########
_________________________________________________________________
RSIT | MWAV | CCleaner

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vracející se havet

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

dinospages
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 240
Registrován: 20 črc 2006 11:33

Re: vracející se havet

#5 Příspěvek od dinospages »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Martin at 2015-12-15 21:06:08
Microsoft Windows 10 Home
System drive C: has 165 GB (34%) free of 488 GB
Total RAM: 16325 MB (86% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:06:09, on 15.12.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe
C:\Users\Martin\AppData\Local\Viber\Viber.exe
C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-ui.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-connect.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-daemon.exe
C:\Program Files (x86)\BenQ\Display Pilot\DTHtml.exe
C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSdkHelper.exe
C:\Program Files (x86)\ASUS\AI Suite III\ASUSMiniBar.exe
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpctrl.exe
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\floater.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\auto-updater.exe
C:\Program Files\trend micro\Martin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://get-access.me/wpad.dat?e642cb597 ... a891514087
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O2 - BHO: Discover Treasure - {bfa55139-82af-4663-a19b-e135dac8d043} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe" -delay=10
O4 - HKLM\..\Run: [DT BEN] C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe -BEN
O4 - HKLM\..\Run: [ASUS AiChargerPlus Execute] C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Viber] "C:\Users\Martin\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Google Update] "C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Synology Cloud Station.lnk = C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O17 - HKLM\System\CCS\Services\Tcpip\..\{ACB9465B-B4DE-42C0-A4D0-2240F447D641}: NameServer = 10.0.0.138
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe
O23 - Service: @oem66.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - The OpenVPN Project - C:\Program Files\OpenVPN\bin\openvpnserv.exe
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SpyHunter 4 Service - Enigma Software Group USA, LLC. - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: Thrustmaster Device Driver Installer (tmInstall) - Thrustmaster® - C:\Thrumaster\drivers\amd64\tmInstall.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14259 bytes

======Listing Processes======








C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\ESET\ESET Smart Security\ekrn.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\WLANExt.exe 1858646103744
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-e6ee8bb8-39d7-48d6-8e7f-1dd726365efc -SystemEventPortName:HostProcess-d59b2099-487c-4898-91d5-10c416d46643 -IoCancelEventPortName:HostProcess-da49e895-e0ab-4425-b2e0-2d0f0a598635 -NonStateChangingEventPortName:HostProcess-b297ac53-92ed-4ba1-a518-0bd7a0175f0b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:cf759af5-bf26-42d8-9925-cc8ec9831da7 -DeviceGroupId:WudfDefaultDevicePool
\??\C:\WINDOWS\system32\conhost.exe 0x4
dashost.exe {8c3e4afd-b1c2-4f9f-b397f5dc322894a1}
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-a3ccebe0-e6e6-44ca-ae07-cce4dce41a31 -SystemEventPortName:HostProcess-02b5adca-007e-4a7a-9e2b-c19e850683a2 -IoCancelEventPortName:HostProcess-3f5b744d-9172-4224-95da-603dae17c84a -NonStateChangingEventPortName:HostProcess-450e4c32-b76e-4831-a876-1029d529fafb -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:191dd809-2dc0-4453-baa1-f79c82d443e2 -DeviceGroupId:WpdFsGroup
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
C:\WINDOWS\system32\BtwRSupportService.exe
"C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe"
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\Thrumaster\drivers\amd64\tmInstall.exe
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe"
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\WINDOWS\system32\PnkBstrA.exe
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" ddc77398-cc6f-4e1f-abc6-2f4e8fee7bcb 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
sihost.exe
"C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe" -onlytray
"C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe" ⼜ÿ
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
KHALMNPR.EXE /API
"C:\Users\Martin\AppData\Local\Viber\Viber.exe" StartMinimized
"C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler.exe"
"C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-ui.exe"
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-connect.exe --log_folder log --info_folder .
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-daemon.exe C:/Users/Martin/AppData/Local/CloudStation/data/config/client.conf 1024
"C:\Program Files (x86)\BenQ\Display Pilot\DTHtml.exe" -Customer=BEN -startup_folder -DT_Startup
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe"
"C:\Program Files (x86)\Common Files\Portrait Displays\Shared\HookManager.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSdkHelper.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\ASUSMiniBar.exe" -s
"C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpctrl.exe"
"C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\floater.exe"
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=5224 --on-initialized-event-handle=584 --parent-handle=588
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4876.0.1620761764\497457795" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,12,23,51,61 --gpu-vendor-id=0x10de --gpu-device-id=0x1184 --gpu-driver-vendor=NVIDIA --gpu-driver-version=10.18.13.5382 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A3/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/WebRTC-PeerConnectionDTLS1.2/Control/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4876.2.1059996802\1225888315" --font-cache-shared-handle=3040 /prefetch:673131151
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
C:\Users\Martin\AppData\Local\CloudStation\app\bin\auto-updater.exe --root-path "C:/Program Files (x86)/Synology/CloudStation" --portable-path C:/Users/Martin/AppData/Local/CloudStation --os windows --arch i686 --osversion unknown --installer msi --client-version 3317
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1208.10480.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-242848310-15987676-2559910525-100099_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-242848310-15987676-2559910525-100099 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 640 644 652 8192 648

C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Martin\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job - C:\WINDOWS\explorer.exe /NOUACCHECK
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-242848310-15987676-2559910525-1000Core.job - C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-242848310-15987676-2559910525-1000UA.job - C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\udygk6rb.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4]
"Description"=ESN Sonar browser plugin
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.3.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19 433944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-24 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2014-05-19 364824]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bfa55139-82af-4663-a19b-e135dac8d043}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-24 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1832760]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-05-27 7611608]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-06-24 2754704]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-08-04 36352]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2014-05-19 3100440]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Viber"=C:\Users\Martin\AppData\Local\Viber\Viber.exe [2015-11-09 51657424]
"OneDrive"=C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-14 551112]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-11-05 3011152]
"Google Update"=C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-11 144200]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-11-16 8591272]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-02-21 292848]
"PivotSoftware"=C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe [2013-06-18 112424]
"DT BEN"=C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe [2014-07-18 122384]
"ASUS AiChargerPlus Execute"=C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [2013-01-28 550272]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-11-09 596528]

C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Synology Cloud Station.lnk - C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2014-03-24 66328]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"DSCAutomationHostEnabled"=2
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"msacm.l3pacm"=l3codecp.acm
"msacm.aacacm"=AACACM.acm
"msacm.ac3acm"=ac3acm.acm
"VIDC.LAGS"=lagarith.dll
"vidc.x264"=x264vfw.dll
"msacm.ac3filter"=ac3filter.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-14 21:12:47 ----D---- C:\AdwCleaner
2015-12-14 14:25:36 ----D---- C:\rsit
2015-12-14 14:25:36 ----D---- C:\Program Files\trend micro
2015-12-14 14:24:12 ----HD---- C:\OneDriveTemp
2015-12-14 08:36:53 ----D---- C:\Program Files\CCleaner
2015-12-10 18:16:49 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-12-10 09:43:08 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-12-10 09:43:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-12-10 09:43:07 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-12-10 09:43:06 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-12-10 09:43:06 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\user32.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\comsvcs.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\authui.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\wshrm.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\win32k.sys
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\shutdownux.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\readingviewresources.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\catsrvut.dll
2015-12-04 07:40:27 ----D---- C:\WINDOWS\pss
2015-12-02 23:50:15 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\SYSWOW64\ETWCoreUIComponentsResources.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\cdp.dll
2015-12-02 23:50:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-12-02 23:50:12 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\InputService.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\d3d11.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\usermgr.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wininet.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\Unistore.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\services.exe
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\cryptngc.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\XblAuthManagerProxy.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\wwapi.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\SensorsUtilsV2.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\drivers\sdstor.sys
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\wwapi.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\mssign32.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-12-02 23:49:58 ----A---- C:\WINDOWS\SYSWOW64\XblAuthManagerProxy.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\mssign32.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\drivers\capimg.sys
2015-12-02 23:49:57 ----A---- C:\WINDOWS\system32\SRH.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\mos.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\CellularAPI.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\iesetup.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\iernonce.dll
2015-12-02 23:49:51 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2015-12-02 23:49:51 ----A---- C:\WINDOWS\system32\wwanmm.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\wwanconn.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2015-12-02 23:49:49 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\pnidui.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\jsproxy.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\BingMaps.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\wwancfg.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\MapsStore.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\Wwanpref.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\NMAA.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\moshostcore.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\wininetlui.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\MosStorage.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\moshost.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\XblAuthTokenBrokerExt.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\wups2.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\wsplib.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\rilproxy.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\nativemap.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\ihvrilproxy.dll
2015-12-02 23:49:41 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2015-12-02 23:49:40 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2015-12-02 23:49:40 ----A---- C:\WINDOWS\system32\UIAutomationCoreRes.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCoreRes.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\MapControlStringsRes.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\MosResource.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\MapControlStringsRes.dll
2015-12-02 21:38:53 ----D---- C:\ProgramData\ESET
2015-12-02 21:38:52 ----D---- C:\Program Files\ESET
2015-11-29 14:27:48 ----D---- C:\WINDOWS\system32\SleepStudy
2015-11-28 13:50:46 ----D---- C:\Program Files (x86)\Adobe
2015-11-28 02:05:20 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\prm0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2015-11-28 01:59:49 ----D---- C:\ProgramData\USOShared
2015-11-28 01:59:05 ----SHD---- C:\Recovery
2015-11-28 01:58:34 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-11-28 01:57:57 ----ASH---- C:\hiberfil.sys
2015-11-28 01:56:30 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files\SpeechEngines
2015-11-28 01:55:39 ----SD---- C:\Users\Martin\AppData\Roaming\Microsoft
2015-11-28 01:55:25 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-28 01:55:21 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-11-28 01:54:57 ----AS---- C:\WINDOWS\bootstat.dat
2015-11-28 01:54:53 ----D---- C:\ProgramData\NVIDIA
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-11-28 01:54:48 ----D---- C:\ProgramData\NVIDIA Corporation
2015-11-28 01:54:45 ----D---- C:\Program Files\NVIDIA Corporation
2015-11-28 01:54:45 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-11-28 01:54:43 ----A---- C:\WINDOWS\system32\drivers\LNonPnP.sys
2015-11-28 01:54:39 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-11-28 01:54:39 ----D---- C:\Program Files\Realtek
2015-11-28 01:54:38 ----HD---- C:\Program Files (x86)\Uninstall Information
2015-11-28 01:54:38 ----D---- C:\Program Files (x86)\ASUS
2015-11-28 01:54:38 ----A---- C:\WINDOWS\SYSWOW64\drivers\AsIO.sys
2015-11-28 01:54:38 ----A---- C:\WINDOWS\SYSWOW64\AsIO.dll
2015-11-28 01:54:37 ----D---- C:\Program Files\ASUS
2015-11-28 01:54:30 ----D---- C:\WINDOWS\Prefetch
2015-11-28 01:54:17 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2015-11-28 01:54:13 ----ASH---- C:\swapfile.sys
2015-11-28 01:53:39 ----DC---- C:\WINDOWS\Panther
2015-11-28 01:52:29 ----D---- C:\w
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\remoteaudioendpoint.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.proxy.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\wimserv.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\wimgapi.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\twinui.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringconfigsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringclient.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\shell32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provtool.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provops.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provengine.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provdatastore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\policymanager.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfps.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfpmp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mf.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\lpk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\jscript.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\IcsEntitlementHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\fontsub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\wimmount.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\dcomp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\dciman32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\bcastdvr.proxy.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\audiodg.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AppCapture.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-11-28 01:51:42 ----D---- C:\WINDOWS\system32\Microsoft
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\msmq
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\BestPractices
2015-11-28 01:51:04 ----D---- C:\Program Files\Reference Assemblies
2015-11-28 01:51:04 ----D---- C:\Program Files\MSBuild
2015-11-28 01:51:04 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-11-28 01:51:04 ----D---- C:\Program Files (x86)\MSBuild
2015-11-28 01:51:04 ----D---- C:\inetpub
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-11-24 21:09:08 ----D---- C:\Users\Martin\AppData\Roaming\Sun

======List of files/folders modified in the last 1 month======

2015-12-15 21:06:03 ----D---- C:\WINDOWS\Temp
2015-12-15 20:30:00 ----D---- C:\WINDOWS\system32\sru
2015-12-15 10:29:09 ----D---- C:\WINDOWS\system32\config
2015-12-15 10:06:53 ----D---- C:\WINDOWS\system32\DriverStore
2015-12-15 10:06:53 ----D---- C:\WINDOWS\INF
2015-12-15 10:06:51 ----D---- C:\WINDOWS\WinSxS
2015-12-15 10:06:45 ----D---- C:\WINDOWS\Microsoft.NET
2015-12-14 23:17:22 ----D---- C:\WINDOWS\System32
2015-12-14 23:11:25 ----D---- C:\Program Files (x86)\Steam
2015-12-14 23:11:20 ----A---- C:\WINDOWS\PE_Rom.dll
2015-12-14 23:11:07 ----D---- C:\Users\Martin\AppData\Roaming\ViberPC
2015-12-14 23:10:25 ----D---- C:\Windows
2015-12-14 21:29:34 ----D---- C:\WINDOWS\system32\Tasks
2015-12-14 21:29:22 ----RD---- C:\Program Files (x86)
2015-12-14 21:29:22 ----HD---- C:\ProgramData
2015-12-14 14:25:36 ----RD---- C:\Program Files
2015-12-14 14:23:55 ----D---- C:\WINDOWS\SoftwareDistribution
2015-12-14 09:47:17 ----D---- C:\WINDOWS\Logs
2015-12-14 08:39:19 ----D---- C:\Users\Martin\AppData\Roaming\TS3Client
2015-12-14 08:39:19 ----D---- C:\Program Files\PDFCreator
2015-12-14 08:39:15 ----D---- C:\WINDOWS\debug
2015-12-14 07:41:44 ----D---- C:\WINDOWS\AppReadiness
2015-12-13 19:32:13 ----D---- C:\Program Files\Cloud Imperium Games
2015-12-13 02:17:31 ----HD---- C:\Program Files\WindowsApps
2015-12-12 01:13:34 ----D---- C:\ProgramData\Origin
2015-12-11 23:55:16 ----D---- C:\WINDOWS\SysWOW64
2015-12-11 23:55:09 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrB.exe
2015-12-11 21:18:43 ----D---- C:\WINDOWS\Tasks
2015-12-10 18:19:03 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-12-10 18:19:03 ----AD---- C:\Program Files\Microsoft Silverlight
2015-12-10 18:18:29 ----D---- C:\WINDOWS\system32\oobe
2015-12-10 18:18:29 ----D---- C:\Program Files\Internet Explorer
2015-12-10 18:18:29 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-10 18:18:28 ----D---- C:\WINDOWS\system32\drivers
2015-12-10 18:16:52 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-12-10 12:36:49 ----D---- C:\WINDOWS\rescache
2015-12-10 12:32:07 ----SHD---- C:\System Volume Information
2015-12-10 12:25:01 ----SHD---- C:\WINDOWS\Installer
2015-12-10 12:03:05 ----D---- C:\WINDOWS\CbsTemp
2015-12-10 11:59:52 ----D---- C:\WINDOWS\system32\MRT
2015-12-10 11:58:09 ----A---- C:\WINDOWS\system32\MRT.exe
2015-12-10 09:43:11 ----SHD---- C:\$Recycle.Bin
2015-12-10 09:41:29 ----D---- C:\WINDOWS\system32\catroot2
2015-12-04 16:57:33 ----D---- C:\Program Files (x86)\Google
2015-12-04 16:55:10 ----D---- C:\ProgramData\SoftwareDistribution
2015-12-04 16:51:05 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\cs-CZ
2015-12-04 16:51:04 ----D---- C:\WINDOWS\AppPatch
2015-12-03 00:36:08 ----AD---- C:\Program Files (x86)\Origin
2015-12-02 21:39:12 ----HD---- C:\WINDOWS\ELAMBKUP
2015-12-02 20:24:33 ----D---- C:\Program Files (x86)\Origin Games
2015-12-01 01:33:29 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-11-30 17:36:33 ----RSD---- C:\WINDOWS\assembly
2015-11-28 15:43:03 ----D---- C:\WINDOWS\system32\WDI
2015-11-28 14:03:48 ----A---- C:\WINDOWS\system32\PnkBstrA.exe
2015-11-28 13:51:34 ----D---- C:\Users\Martin\AppData\Roaming\Adobe
2015-11-28 13:50:44 ----D---- C:\ProgramData\Adobe
2015-11-28 12:21:24 ----AD---- C:\Program Files (x86)\Battlelog Web Plugins
2015-11-28 12:20:57 ----D---- C:\WINDOWS\system32\LogFiles
2015-11-28 04:42:14 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrA.exe
2015-11-28 04:42:12 ----D---- C:\ProgramData\Package Cache
2015-11-28 04:40:55 ----D---- C:\WINDOWS\system32\restore
2015-11-28 04:25:03 ----D---- C:\WINDOWS\appcompat
2015-11-28 02:20:02 ----RD---- C:\WINDOWS\DevicesFlow
2015-11-28 02:05:21 ----D---- C:\WINDOWS\OCR
2015-11-28 02:04:03 ----SD---- C:\ProgramData\Microsoft
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\PurchaseDialog
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\PrintDialog
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\MiracastView
2015-11-28 02:03:48 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-11-28 01:59:49 ----D---- C:\ProgramData\USOPrivate
2015-11-28 01:59:10 ----D---- C:\WINDOWS\system32\wbem
2015-11-28 01:59:06 ----D---- C:\WINDOWS\Registration
2015-11-28 01:59:05 ----D---- C:\Program Files\Windows NT
2015-11-28 01:59:02 ----D---- C:\WINDOWS\system32\WinBioDatabase
2015-11-28 01:58:33 ----D---- C:\WINDOWS\system32\drivers\etc
2015-11-28 01:58:32 ----RSD---- C:\WINDOWS\Media
2015-11-28 01:58:10 ----D---- C:\WINDOWS\system32\spool
2015-11-28 01:57:21 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-11-28 01:57:21 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-TW
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-HK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-CN
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\tr-TR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\th-TH
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sv-SE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sl-SI
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sk-SK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ru-RU
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ro-RO
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pt-PT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pt-BR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pl-PL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\nl-NL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\nb-NO
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\lv-LV
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\lt-LT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ko-KR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ja-JP
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\it-IT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\hu-HU
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\hr-HR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\he-IL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\fr-FR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\fi-FI
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\et-EE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\es-ES
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\en-US
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\el-GR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\de-DE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\da-DK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\bg-BG
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ar-SA
2015-11-28 01:57:20 ----RSD---- C:\WINDOWS\Fonts
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\NDF
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\migration
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\IME
2015-11-28 01:56:07 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-11-28 01:56:03 ----D---- C:\WINDOWS\system32\CatRoot
2015-11-28 01:56:02 ----D---- C:\WINDOWS\schemas
2015-11-28 01:56:02 ----D---- C:\WINDOWS\PolicyDefinitions
2015-11-28 01:56:02 ----D---- C:\WINDOWS\LiveKernelReports
2015-11-28 01:56:01 ----D---- C:\WINDOWS\ehome
2015-11-28 01:56:00 ----RD---- C:\Users
2015-11-28 01:55:59 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-11-28 01:55:59 ----D---- C:\Program Files (x86)\Windows Mail
2015-11-28 01:55:59 ----D---- C:\Program Files (x86)\Common Files
2015-11-28 01:55:58 ----SHD---- C:\Program Files\Windows Sidebar
2015-11-28 01:55:58 ----D---- C:\Program Files\Windows Mail
2015-11-28 01:55:58 ----D---- C:\Program Files\WIDCOMM
2015-11-28 01:55:58 ----D---- C:\Program Files\Microsoft Games
2015-11-28 01:55:58 ----D---- C:\Program Files\DVD Maker
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files\microsoft shared
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files
2015-11-28 01:55:51 ----D---- C:\WINDOWS\system32\Recovery
2015-11-28 01:55:12 ----D---- C:\WINDOWS\system32\Sysprep
2015-11-28 01:54:53 ----D---- C:\Temp
2015-11-28 01:54:52 ----D---- C:\WINDOWS\Help
2015-11-28 01:54:19 ----D---- C:\WINDOWS\ServiceProfiles
2015-11-28 01:52:27 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-11-28 01:52:27 ----D---- C:\WINDOWS\system32\Dism
2015-11-28 01:52:27 ----D---- C:\WINDOWS\system32\appraiser
2015-11-28 01:52:27 ----D---- C:\WINDOWS\Provisioning
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\MUI
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\inetsrv
2015-11-28 01:51:03 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2015-11-28 01:51:03 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\wamregps.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqutil.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqrt.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisRtl.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisrstap.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisreset.exe
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\ahadmin.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\admwprox.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqsnap.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqqm.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqoa.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqcertui.dll
2015-11-28 01:51:00 ----A---- C:\WINDOWS\system32\mqsvc.exe
2015-11-28 01:51:00 ----A---- C:\WINDOWS\system32\mqbkup.exe
2015-11-28 01:47:43 ----HD---- C:\$WINDOWS.~BT
2015-11-24 21:09:40 ----D---- C:\ProgramData\Oracle
2015-11-24 21:09:33 ----D---- C:\Program Files (x86)\Java
2015-11-24 21:09:02 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2015-11-24 21:09:02 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 asstor64;asstor64; C:\WINDOWS\System32\drivers\asstor64.sys [2014-03-14 84816]
R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2015-09-23 69840]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2014-08-04 670568]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2014-01-28 15232]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2014-02-24 14464]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2015-09-23 264040]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2015-09-23 186784]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2015-09-23 206312]
R1 EpfwLWF;@oem33.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2015-09-23 52872]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2015-10-07 142976]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 AiChargerPlus;AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [2013-01-28 14848]
R3 ASMTFilter;ASMTFilter; C:\Windows\SysWow64\drivers\asmtufdriver.sys [2013-01-28 21400]
R3 bcbtums;@oem66.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2015-03-27 173312]
R3 BCM43XX;@oem8.inf,%BCM43XX_Service_DispName%;Ovladač síťového adaptéru Broadcom 802.11; C:\WINDOWS\system32\DRIVERS\bcmwl664.sys [2014-09-20 9082576]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-10-30 112640]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-10-30 245248]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHUSB.sys [2015-10-30 84992]
R3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\WINDOWS\System32\drivers\e1i63x64.sys [2015-10-30 472576]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2014-05-27 3976792]
R3 LEqdUsb;@oem22.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF USB Filter; C:\WINDOWS\system32\DRIVERS\LEqdUsb.Sys [2014-03-19 77592]
R3 LHidEqd;@oem9.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF HID Filter; C:\WINDOWS\system32\DRIVERS\LHidEqd.Sys [2014-03-19 13080]
R3 LHidFilt;@oem43.inf,%LHidFilt.SvcDesc%;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2014-03-19 76568]
R3 LMouFilt;@oem43.inf,%LMouFilt.SvcDesc%;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2014-03-19 59160]
R3 MEIx64;@oem68.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-11-28 175616]
R3 NVHDA;@oem69.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2015-08-29 206152]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-08-29 11151488]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-06-24 19600]
R3 nvvad_WaveExtensible;@oem28.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-05-19 46768]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-10-30 175104]
R3 tap0901;@oem24.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\System32\drivers\tap0901.sys [2014-11-05 27136]
R4 IOMap;IOMap; \??\C:\WINDOWS\system32\drivers\IOMap64.sys [2014-04-29 24824]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2015-09-23 14976]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHport.sys [2015-10-30 953344]
S3 btwampfl;@oem66.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2015-03-27 188160]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-11-22 117248]
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [2015-11-06 15920]
S3 EsgScanner;EsgScanner; C:\WINDOWS\system32\DRIVERS\EsgScanner.sys [2015-11-06 22704]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2014-01-28 936728]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [2014-04-24 954648]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [2014-04-24 1360016]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe [2014-05-10 389944]
R2 BcmBtRSupport;@oem66.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2015-03-27 2251992]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DTSRVC;Portrait Displays Display Tune Service; C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe [2014-07-18 138768]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2015-10-09 2505472]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-06-24 1152656]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-08-04 16232]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2014-03-11 260360]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-11-28 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-06-24 1868432]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-06-24 23007376]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-08-07 937592]
R2 OneSyncSvc_6cab8;Hostitel synchronizace_6cab8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2014-01-22 122384]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2015-11-28 76152]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-06-17 410768]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2014-12-15 5426448]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-01-02 171632]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4f7ab;Hostitel synchronizace_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_58b8c;Hostitel synchronizace_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SpyHunter 4 Service;SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [2015-11-28 1045376]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-10 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2014-09-21 1044816]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-01-31 887232]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2014-03-24 357144]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4f7ab;Služba zasílání zpráv_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_58b8c;Služba zasílání zpráv_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_6cab8;Služba zasílání zpráv_6cab8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-30 147624]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 OpenVPNService;OpenVPN Service; C:\Program Files\OpenVPN\bin\openvpnserv.exe [2014-12-01 38200]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-12-03 2104840]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4f7ab;Data kontaktů_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_58b8c;Data kontaktů_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_6cab8;Data kontaktů_6cab8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-11-05 836176]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------
_________________________________________________________________
RSIT | MWAV | CCleaner

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vracející se havet

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-242848310-15987676-2559910525-1000Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-242848310-15987676-2559910525-1000UA.job

:reg
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

dinospages
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 240
Registrován: 20 črc 2006 11:33

Re: vracející se havet

#7 Příspěvek od dinospages »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Martin at 2015-12-15 22:12:50
Microsoft Windows 10 Home
System drive C: has 166 GB (34%) free of 488 GB
Total RAM: 16325 MB (87% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:12:51, on 15.12.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
C:\Program Files (x86)\ASUS\APRP\aprp.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Martin\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
C:\Users\Martin\AppData\Local\Viber\Viber.exe
C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-ui.exe
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\pivot_Startup.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-connect.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-daemon.exe
C:\Program Files (x86)\BenQ\Display Pilot\DTHtml.exe
C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
C:\Program Files\trend micro\Martin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://get-access.me/wpad.dat?e642cb597 ... a891514087
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O2 - BHO: Discover Treasure - {bfa55139-82af-4663-a19b-e135dac8d043} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe" -delay=10
O4 - HKLM\..\Run: [DT BEN] C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe -BEN
O4 - HKLM\..\Run: [ASUS AiChargerPlus Execute] C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
O4 - HKCU\..\Run: [Viber] "C:\Users\Martin\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Google Update] "C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Synology Cloud Station.lnk = C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O17 - HKLM\System\CCS\Services\Tcpip\..\{ACB9465B-B4DE-42C0-A4D0-2240F447D641}: NameServer = 10.0.0.138
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe
O23 - Service: @oem66.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - The OpenVPN Project - C:\Program Files\OpenVPN\bin\openvpnserv.exe
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SpyHunter 4 Service - Enigma Software Group USA, LLC. - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: Thrustmaster Device Driver Installer (tmInstall) - Thrustmaster® - C:\Thrumaster\drivers\amd64\tmInstall.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13836 bytes

======Listing Processes======








C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\ESET\ESET Smart Security\ekrn.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first

C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\WLANExt.exe 1865913801808
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-a78b0472-e41b-4a41-9f67-4255eca25f4d -SystemEventPortName:HostProcess-a9047da1-3c94-437c-ba26-3509cf1a460e -IoCancelEventPortName:HostProcess-39e44cf2-bb33-47d1-8132-02f05917fd70 -NonStateChangingEventPortName:HostProcess-3e85e2d4-4bf8-49f6-8872-a7e0916c92dd -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:de0bab6a-8e41-4c0d-8bc8-f15f9745cdef -DeviceGroupId:WudfDefaultDevicePool
dashost.exe {6afa3ea8-4989-4f70-b2738f02b11ca93c}
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ce3f9945-b5e5-45bb-84d2-ee975adb665f -SystemEventPortName:HostProcess-20daf6ec-fb6d-4b94-b295-2db2dcdc3b4e -IoCancelEventPortName:HostProcess-b476c897-0c0b-469c-a853-47edac73794e -NonStateChangingEventPortName:HostProcess-b9286816-9d46-4322-956d-9260060dfd71 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:9b55dbd9-3385-4d79-9746-f28ecdf800a1 -DeviceGroupId:WpdFsGroup
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\mqsvc.exe
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\WINDOWS\system32\BtwRSupportService.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe"
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\system32\PnkBstrA.exe
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe"
"C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
C:\Thrumaster\drivers\amd64\tmInstall.exe
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe"
"C:\Program Files\Intel\NCS2\WMIProv\NCS2Prov.exe" -Embedding
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" ddc77398-cc6f-4e1f-abc6-2f4e8fee7bcb 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
taskeng.exe {A900AF57-2AFA-4B4B-B3A3-274DA5809785}
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
sihost.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe"
"C:\Program Files (x86)\ASUS\APRP\aprp.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe" -onlytray
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe"
C:\Windows\system32\userinit.exe
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\Windows\System32\RuntimeBroker.exe -Embedding
taskhostw.exe
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\DllHost.exe /Processid:{133EAC4F-5891-4D04-BADA-D84870380A80}
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\WINDOWS\notepad.exe" C:\_OTM\MovedFiles\12152015_221109.log
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe" ⼜
"C:\Users\Martin\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe"
C:\WINDOWS\system32\wermgr.exe -upload
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
KHALMNPR.EXE /API
"C:\Users\Martin\AppData\Local\Viber\Viber.exe" StartMinimized
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-242848310-15987676-2559910525-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-242848310-15987676-2559910525-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 632 636 644 8192 640
C:\WINDOWS\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
"C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cachedir="C:\Users\Martin\AppData\Local\Steam\htmlcache" -steampid=8400 -buildid=1446742416 -steamid="0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe" /c
"C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler.exe"
"C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler64.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Martin\Downloads\RSITx64.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-ui.exe"
"C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\pivot_Startup.exe" -delay=10
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-connect.exe --log_folder log --info_folder .
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-daemon.exe C:/Users/Martin/AppData/Local/CloudStation/data/config/client.conf 1024
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\BenQ\Display Pilot\DTHtml.exe" -Customer=BEN -startup_folder -DT_Startup
"C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\Common Files\Portrait Displays\Shared\HookManager.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job - C:\WINDOWS\explorer.exe /NOUACCHECK

=========Mozilla firefox=========

ProfilePath - C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\udygk6rb.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4]
"Description"=ESN Sonar browser plugin
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.3.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19 433944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-24 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2014-05-19 364824]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bfa55139-82af-4663-a19b-e135dac8d043}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-24 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1832760]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-05-27 7611608]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-06-24 2754704]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-08-04 36352]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2014-05-19 3100440]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Viber"=C:\Users\Martin\AppData\Local\Viber\Viber.exe [2015-11-09 51657424]
"OneDrive"=C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-14 551112]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-11-05 3011152]
"Google Update"=C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-11 144200]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-11-16 8591272]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-02-21 292848]
"PivotSoftware"=C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe [2013-06-18 112424]
"DT BEN"=C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe [2014-07-18 122384]
"ASUS AiChargerPlus Execute"=C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [2013-01-28 550272]

C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Synology Cloud Station.lnk - C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2014-03-24 66328]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"DSCAutomationHostEnabled"=2
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"msacm.l3pacm"=l3codecp.acm
"msacm.aacacm"=AACACM.acm
"msacm.ac3acm"=ac3acm.acm
"VIDC.LAGS"=lagarith.dll
"vidc.x264"=x264vfw.dll
"msacm.ac3filter"=ac3filter.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-15 22:11:09 ----D---- C:\_OTM
2015-12-14 21:12:47 ----D---- C:\AdwCleaner
2015-12-14 14:25:36 ----D---- C:\rsit
2015-12-14 14:25:36 ----D---- C:\Program Files\trend micro
2015-12-14 14:24:12 ----HD---- C:\OneDriveTemp
2015-12-14 08:36:53 ----D---- C:\Program Files\CCleaner
2015-12-10 18:16:49 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-12-10 09:43:08 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-12-10 09:43:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-12-10 09:43:07 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-12-10 09:43:06 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-12-10 09:43:06 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\user32.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\comsvcs.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\authui.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\wshrm.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\win32k.sys
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\shutdownux.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\readingviewresources.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\catsrvut.dll
2015-12-04 07:40:27 ----D---- C:\WINDOWS\pss
2015-12-02 23:50:15 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\SYSWOW64\ETWCoreUIComponentsResources.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\cdp.dll
2015-12-02 23:50:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-12-02 23:50:12 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\InputService.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\d3d11.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\usermgr.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wininet.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\Unistore.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\services.exe
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\cryptngc.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\XblAuthManagerProxy.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\wwapi.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\SensorsUtilsV2.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\drivers\sdstor.sys
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\wwapi.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\mssign32.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-12-02 23:49:58 ----A---- C:\WINDOWS\SYSWOW64\XblAuthManagerProxy.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\mssign32.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\drivers\capimg.sys
2015-12-02 23:49:57 ----A---- C:\WINDOWS\system32\SRH.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\mos.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\CellularAPI.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\iesetup.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\iernonce.dll
2015-12-02 23:49:51 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2015-12-02 23:49:51 ----A---- C:\WINDOWS\system32\wwanmm.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\wwanconn.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2015-12-02 23:49:49 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\pnidui.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\jsproxy.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\BingMaps.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\wwancfg.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\MapsStore.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\Wwanpref.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\NMAA.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\moshostcore.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\wininetlui.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\MosStorage.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\moshost.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\XblAuthTokenBrokerExt.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\wups2.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\wsplib.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\rilproxy.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\nativemap.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\ihvrilproxy.dll
2015-12-02 23:49:41 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2015-12-02 23:49:40 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2015-12-02 23:49:40 ----A---- C:\WINDOWS\system32\UIAutomationCoreRes.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCoreRes.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\MapControlStringsRes.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\MosResource.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\MapControlStringsRes.dll
2015-12-02 21:38:53 ----D---- C:\ProgramData\ESET
2015-12-02 21:38:52 ----D---- C:\Program Files\ESET
2015-11-29 14:27:48 ----D---- C:\WINDOWS\system32\SleepStudy
2015-11-28 13:50:46 ----D---- C:\Program Files (x86)\Adobe
2015-11-28 02:05:20 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\prm0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2015-11-28 01:59:49 ----D---- C:\ProgramData\USOShared
2015-11-28 01:59:05 ----SHD---- C:\Recovery
2015-11-28 01:58:34 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-11-28 01:57:57 ----ASH---- C:\hiberfil.sys
2015-11-28 01:56:30 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files\SpeechEngines
2015-11-28 01:55:39 ----SD---- C:\Users\Martin\AppData\Roaming\Microsoft
2015-11-28 01:55:25 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-28 01:55:21 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-11-28 01:54:57 ----AS---- C:\WINDOWS\bootstat.dat
2015-11-28 01:54:53 ----D---- C:\ProgramData\NVIDIA
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-11-28 01:54:48 ----D---- C:\ProgramData\NVIDIA Corporation
2015-11-28 01:54:45 ----D---- C:\Program Files\NVIDIA Corporation
2015-11-28 01:54:45 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-11-28 01:54:43 ----A---- C:\WINDOWS\system32\drivers\LNonPnP.sys
2015-11-28 01:54:39 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-11-28 01:54:39 ----D---- C:\Program Files\Realtek
2015-11-28 01:54:38 ----HD---- C:\Program Files (x86)\Uninstall Information
2015-11-28 01:54:38 ----D---- C:\Program Files (x86)\ASUS
2015-11-28 01:54:38 ----A---- C:\WINDOWS\SYSWOW64\drivers\AsIO.sys
2015-11-28 01:54:38 ----A---- C:\WINDOWS\SYSWOW64\AsIO.dll
2015-11-28 01:54:37 ----D---- C:\Program Files\ASUS
2015-11-28 01:54:30 ----D---- C:\WINDOWS\Prefetch
2015-11-28 01:54:17 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2015-11-28 01:54:13 ----ASH---- C:\swapfile.sys
2015-11-28 01:53:39 ----DC---- C:\WINDOWS\Panther
2015-11-28 01:52:29 ----D---- C:\w
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\remoteaudioendpoint.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.proxy.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\wimserv.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\wimgapi.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\twinui.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringconfigsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringclient.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\shell32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provtool.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provops.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provengine.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provdatastore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\policymanager.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfps.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfpmp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mf.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\lpk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\jscript.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\IcsEntitlementHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\fontsub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\wimmount.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\dcomp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\dciman32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\bcastdvr.proxy.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\audiodg.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AppCapture.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-11-28 01:51:42 ----D---- C:\WINDOWS\system32\Microsoft
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\msmq
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\BestPractices
2015-11-28 01:51:04 ----D---- C:\Program Files\Reference Assemblies
2015-11-28 01:51:04 ----D---- C:\Program Files\MSBuild
2015-11-28 01:51:04 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-11-28 01:51:04 ----D---- C:\Program Files (x86)\MSBuild
2015-11-28 01:51:04 ----D---- C:\inetpub
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-11-24 21:09:08 ----D---- C:\Users\Martin\AppData\Roaming\Sun

======List of files/folders modified in the last 1 month======

2015-12-15 22:12:48 ----D---- C:\Program Files (x86)\Steam
2015-12-15 22:12:44 ----D---- C:\Users\Martin\AppData\Roaming\ViberPC
2015-12-15 22:12:35 ----D---- C:\WINDOWS\Temp
2015-12-15 22:11:32 ----D---- C:\WINDOWS\system32\sru
2015-12-15 22:11:10 ----D---- C:\WINDOWS\Tasks
2015-12-15 10:29:09 ----D---- C:\WINDOWS\system32\config
2015-12-15 10:06:53 ----D---- C:\WINDOWS\system32\DriverStore
2015-12-15 10:06:53 ----D---- C:\WINDOWS\INF
2015-12-15 10:06:51 ----D---- C:\WINDOWS\WinSxS
2015-12-15 10:06:45 ----D---- C:\WINDOWS\Microsoft.NET
2015-12-14 23:17:22 ----D---- C:\WINDOWS\System32
2015-12-14 23:11:20 ----A---- C:\WINDOWS\PE_Rom.dll
2015-12-14 23:10:25 ----D---- C:\Windows
2015-12-14 21:29:34 ----D---- C:\WINDOWS\system32\Tasks
2015-12-14 21:29:22 ----RD---- C:\Program Files (x86)
2015-12-14 21:29:22 ----HD---- C:\ProgramData
2015-12-14 14:25:36 ----RD---- C:\Program Files
2015-12-14 14:23:55 ----D---- C:\WINDOWS\SoftwareDistribution
2015-12-14 09:47:17 ----D---- C:\WINDOWS\Logs
2015-12-14 08:39:19 ----D---- C:\Users\Martin\AppData\Roaming\TS3Client
2015-12-14 08:39:19 ----D---- C:\Program Files\PDFCreator
2015-12-14 08:39:15 ----D---- C:\WINDOWS\debug
2015-12-14 07:41:44 ----D---- C:\WINDOWS\AppReadiness
2015-12-13 19:32:13 ----D---- C:\Program Files\Cloud Imperium Games
2015-12-13 02:17:31 ----HD---- C:\Program Files\WindowsApps
2015-12-12 01:13:34 ----D---- C:\ProgramData\Origin
2015-12-11 23:55:16 ----D---- C:\WINDOWS\SysWOW64
2015-12-11 23:55:09 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrB.exe
2015-12-10 18:19:03 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-12-10 18:19:03 ----AD---- C:\Program Files\Microsoft Silverlight
2015-12-10 18:18:29 ----D---- C:\WINDOWS\system32\oobe
2015-12-10 18:18:29 ----D---- C:\Program Files\Internet Explorer
2015-12-10 18:18:29 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-10 18:18:28 ----D---- C:\WINDOWS\system32\drivers
2015-12-10 18:16:52 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-12-10 12:36:49 ----D---- C:\WINDOWS\rescache
2015-12-10 12:32:07 ----SHD---- C:\System Volume Information
2015-12-10 12:25:01 ----SHD---- C:\WINDOWS\Installer
2015-12-10 12:03:05 ----D---- C:\WINDOWS\CbsTemp
2015-12-10 11:59:52 ----D---- C:\WINDOWS\system32\MRT
2015-12-10 11:58:09 ----A---- C:\WINDOWS\system32\MRT.exe
2015-12-10 09:43:11 ----SHD---- C:\$Recycle.Bin
2015-12-10 09:41:29 ----D---- C:\WINDOWS\system32\catroot2
2015-12-04 16:57:33 ----D---- C:\Program Files (x86)\Google
2015-12-04 16:55:10 ----D---- C:\ProgramData\SoftwareDistribution
2015-12-04 16:51:05 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\cs-CZ
2015-12-04 16:51:04 ----D---- C:\WINDOWS\AppPatch
2015-12-03 00:36:08 ----AD---- C:\Program Files (x86)\Origin
2015-12-02 21:39:12 ----HD---- C:\WINDOWS\ELAMBKUP
2015-12-02 20:24:33 ----D---- C:\Program Files (x86)\Origin Games
2015-12-01 01:33:29 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-11-30 17:36:33 ----RSD---- C:\WINDOWS\assembly
2015-11-28 15:43:03 ----D---- C:\WINDOWS\system32\WDI
2015-11-28 14:03:48 ----A---- C:\WINDOWS\system32\PnkBstrA.exe
2015-11-28 13:51:34 ----D---- C:\Users\Martin\AppData\Roaming\Adobe
2015-11-28 13:50:44 ----D---- C:\ProgramData\Adobe
2015-11-28 12:21:24 ----AD---- C:\Program Files (x86)\Battlelog Web Plugins
2015-11-28 12:20:57 ----D---- C:\WINDOWS\system32\LogFiles
2015-11-28 04:42:14 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrA.exe
2015-11-28 04:42:12 ----D---- C:\ProgramData\Package Cache
2015-11-28 04:40:55 ----D---- C:\WINDOWS\system32\restore
2015-11-28 04:25:03 ----D---- C:\WINDOWS\appcompat
2015-11-28 02:20:02 ----RD---- C:\WINDOWS\DevicesFlow
2015-11-28 02:05:21 ----D---- C:\WINDOWS\OCR
2015-11-28 02:04:03 ----SD---- C:\ProgramData\Microsoft
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\PurchaseDialog
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\PrintDialog
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\MiracastView
2015-11-28 02:03:48 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-11-28 01:59:49 ----D---- C:\ProgramData\USOPrivate
2015-11-28 01:59:10 ----D---- C:\WINDOWS\system32\wbem
2015-11-28 01:59:06 ----D---- C:\WINDOWS\Registration
2015-11-28 01:59:05 ----D---- C:\Program Files\Windows NT
2015-11-28 01:59:02 ----D---- C:\WINDOWS\system32\WinBioDatabase
2015-11-28 01:58:33 ----D---- C:\WINDOWS\system32\drivers\etc
2015-11-28 01:58:32 ----RSD---- C:\WINDOWS\Media
2015-11-28 01:58:10 ----D---- C:\WINDOWS\system32\spool
2015-11-28 01:57:21 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-11-28 01:57:21 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-TW
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-HK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-CN
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\tr-TR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\th-TH
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sv-SE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sl-SI
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sk-SK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ru-RU
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ro-RO
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pt-PT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pt-BR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pl-PL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\nl-NL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\nb-NO
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\lv-LV
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\lt-LT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ko-KR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ja-JP
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\it-IT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\hu-HU
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\hr-HR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\he-IL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\fr-FR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\fi-FI
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\et-EE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\es-ES
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\en-US
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\el-GR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\de-DE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\da-DK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\bg-BG
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ar-SA
2015-11-28 01:57:20 ----RSD---- C:\WINDOWS\Fonts
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\NDF
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\migration
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\IME
2015-11-28 01:56:07 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-11-28 01:56:03 ----D---- C:\WINDOWS\system32\CatRoot
2015-11-28 01:56:02 ----D---- C:\WINDOWS\schemas
2015-11-28 01:56:02 ----D---- C:\WINDOWS\PolicyDefinitions
2015-11-28 01:56:02 ----D---- C:\WINDOWS\LiveKernelReports
2015-11-28 01:56:01 ----D---- C:\WINDOWS\ehome
2015-11-28 01:56:00 ----RD---- C:\Users
2015-11-28 01:55:59 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-11-28 01:55:59 ----D---- C:\Program Files (x86)\Windows Mail
2015-11-28 01:55:59 ----D---- C:\Program Files (x86)\Common Files
2015-11-28 01:55:58 ----SHD---- C:\Program Files\Windows Sidebar
2015-11-28 01:55:58 ----D---- C:\Program Files\Windows Mail
2015-11-28 01:55:58 ----D---- C:\Program Files\WIDCOMM
2015-11-28 01:55:58 ----D---- C:\Program Files\Microsoft Games
2015-11-28 01:55:58 ----D---- C:\Program Files\DVD Maker
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files\microsoft shared
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files
2015-11-28 01:55:51 ----D---- C:\WINDOWS\system32\Recovery
2015-11-28 01:55:12 ----D---- C:\WINDOWS\system32\Sysprep
2015-11-28 01:54:53 ----D---- C:\Temp
2015-11-28 01:54:52 ----D---- C:\WINDOWS\Help
2015-11-28 01:54:19 ----D---- C:\WINDOWS\ServiceProfiles
2015-11-28 01:52:27 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-11-28 01:52:27 ----D---- C:\WINDOWS\system32\Dism
2015-11-28 01:52:27 ----D---- C:\WINDOWS\system32\appraiser
2015-11-28 01:52:27 ----D---- C:\WINDOWS\Provisioning
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\MUI
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\inetsrv
2015-11-28 01:51:03 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2015-11-28 01:51:03 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\wamregps.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqutil.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqrt.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisRtl.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisrstap.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisreset.exe
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\ahadmin.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\admwprox.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqsnap.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqqm.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqoa.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqcertui.dll
2015-11-28 01:51:00 ----A---- C:\WINDOWS\system32\mqsvc.exe
2015-11-28 01:51:00 ----A---- C:\WINDOWS\system32\mqbkup.exe
2015-11-28 01:47:43 ----HD---- C:\$WINDOWS.~BT
2015-11-24 21:09:40 ----D---- C:\ProgramData\Oracle
2015-11-24 21:09:33 ----D---- C:\Program Files (x86)\Java
2015-11-24 21:09:02 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2015-11-24 21:09:02 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 asstor64;asstor64; C:\WINDOWS\System32\drivers\asstor64.sys [2014-03-14 84816]
R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2015-09-23 69840]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2014-08-04 670568]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2014-01-28 15232]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2014-02-24 14464]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2015-09-23 264040]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2015-09-23 186784]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2015-09-23 206312]
R1 EpfwLWF;@oem33.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2015-09-23 52872]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2015-10-07 142976]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 AiChargerPlus;AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [2013-01-28 14848]
R3 ASMTFilter;ASMTFilter; C:\Windows\SysWow64\drivers\asmtufdriver.sys [2013-01-28 21400]
R3 bcbtums;@oem66.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2015-03-27 173312]
R3 BCM43XX;@oem8.inf,%BCM43XX_Service_DispName%;Ovladač síťového adaptéru Broadcom 802.11; C:\WINDOWS\system32\DRIVERS\bcmwl664.sys [2014-09-20 9082576]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-10-30 112640]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-10-30 245248]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHUSB.sys [2015-10-30 84992]
R3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\WINDOWS\System32\drivers\e1i63x64.sys [2015-10-30 472576]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2014-05-27 3976792]
R3 LEqdUsb;@oem22.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF USB Filter; C:\WINDOWS\system32\DRIVERS\LEqdUsb.Sys [2014-03-19 77592]
R3 LHidEqd;@oem9.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF HID Filter; C:\WINDOWS\system32\DRIVERS\LHidEqd.Sys [2014-03-19 13080]
R3 LHidFilt;@oem43.inf,%LHidFilt.SvcDesc%;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2014-03-19 76568]
R3 LMouFilt;@oem43.inf,%LMouFilt.SvcDesc%;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2014-03-19 59160]
R3 MEIx64;@oem68.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-11-28 175616]
R3 NAL;Nal Service ; \??\C:\WINDOWS\system32\Drivers\iqvw64e.sys [2014-02-26 34568]
R3 NVHDA;@oem69.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2015-08-29 206152]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-08-29 11151488]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-06-24 19600]
R3 nvvad_WaveExtensible;@oem28.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-05-19 46768]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-10-30 175104]
R3 tap0901;@oem24.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\System32\drivers\tap0901.sys [2014-11-05 27136]
R4 IOMap;IOMap; \??\C:\WINDOWS\system32\drivers\IOMap64.sys [2014-04-29 24824]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2015-09-23 14976]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHport.sys [2015-10-30 953344]
S3 btwampfl;@oem66.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2015-03-27 188160]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-11-22 117248]
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [2015-11-06 15920]
S3 EsgScanner;EsgScanner; C:\WINDOWS\system32\DRIVERS\EsgScanner.sys [2015-11-06 22704]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2014-01-28 936728]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [2014-04-24 954648]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [2014-04-24 1360016]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe [2014-05-10 389944]
R2 BcmBtRSupport;@oem66.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2015-03-27 2251992]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DTSRVC;Portrait Displays Display Tune Service; C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe [2014-07-18 138768]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2015-10-09 2505472]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-06-24 1152656]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2014-03-11 260360]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-11-28 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-06-24 1868432]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-06-24 23007376]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-08-07 937592]
R2 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2014-01-22 122384]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2015-11-28 76152]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-06-17 410768]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2014-12-15 5426448]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-01-02 171632]
R3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-11-05 836176]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-08-04 16232]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4f7ab;Hostitel synchronizace_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_58b8c;Hostitel synchronizace_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_5bbd5;Hostitel synchronizace_5bbd5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SpyHunter 4 Service;SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [2015-11-28 1045376]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-10 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2014-09-21 1044816]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-01-31 887232]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2014-03-24 357144]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4f7ab;Služba zasílání zpráv_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_58b8c;Služba zasílání zpráv_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5bbd5;Služba zasílání zpráv_5bbd5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-30 147624]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 OpenVPNService;OpenVPN Service; C:\Program Files\OpenVPN\bin\openvpnserv.exe [2014-12-01 38200]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-12-03 2104840]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4f7ab;Data kontaktů_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_58b8c;Data kontaktů_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_5bbd5;Data kontaktů_5bbd5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------
_________________________________________________________________
RSIT | MWAV | CCleaner

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vracející se havet

#8 Příspěvek od Rudy »

Dvouklikem na soubor spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

dinospages
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 240
Registrován: 20 črc 2006 11:33

Re: vracející se havet

#9 Příspěvek od dinospages »

kde stahnu HJT?
_________________________________________________________________
RSIT | MWAV | CCleaner

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vracející se havet

#10 Příspěvek od Rudy »

Pardon, já to nezkopíroval.
Dvouklikem na soubor C:\Program Files\trend micro\Martin.exe spusťte HijackThis.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

dinospages
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 240
Registrován: 20 črc 2006 11:33

Re: vracející se havet

#11 Příspěvek od dinospages »

hotovo, to je vše???
_________________________________________________________________
RSIT | MWAV | CCleaner

dinospages
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 240
Registrován: 20 črc 2006 11:33

Re: vracející se havet

#12 Příspěvek od dinospages »

rudy vetsinou kdyz po delsi dobe zkusim dat F5 abych videl jestli jsi zareagoval tak me to hodi na jinou url: ted naposledy napr tuhle:

http://7jgzz.stream.laah.info/?sov=2690 ... 13415-t444
_________________________________________________________________
RSIT | MWAV | CCleaner

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vracející se havet

#13 Příspěvek od Rudy »

V kterém prohlížeči?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

dinospages
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 240
Registrován: 20 črc 2006 11:33

Re: vracející se havet

#14 Příspěvek od dinospages »

chrome
_________________________________________________________________
RSIT | MWAV | CCleaner

dinospages
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 240
Registrován: 20 črc 2006 11:33

Re: vracející se havet

#15 Příspěvek od dinospages »

tak to delaji vsechgny prohlizece IE, mozilla a chrome
_________________________________________________________________
RSIT | MWAV | CCleaner

Zamčeno