Stránka 1 z 3

vracející se havet

Napsal: 14 pro 2015 14:28
od dinospages
Dobrý den rádci, potřebuji pomoci se svarovym pc, neco se mu tam dostalo a nejde to vylecit koupil si eseta a spyhunter, ale nepomohlo to stale se to pry vraci. kouknete prosim na log a pokusete se mi pomoci.

Jo a jeste se snazil dat bod obnovy kdy mel jeste win7, ale napsalo to ze chybeji soubory pro obnovu zrejme neco smazal on nebo ty programky


log z RSITu:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Martin at 2015-12-14 14:25:36
Microsoft Windows 10 Home
System drive C: has 165 GB (34%) free of 488 GB
Total RAM: 16325 MB (86% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:25:39, on 14.12.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Martin\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe
C:\Users\Martin\AppData\Local\Viber\Viber.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-ui.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-connect.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-daemon.exe
C:\Program Files (x86)\BenQ\Display Pilot\DTHtml.exe
C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSdkHelper.exe
C:\Program Files (x86)\ASUS\AI Suite III\ASUSMiniBar.exe
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpctrl.exe
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\floater.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files\trend micro\Martin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://get-access.me/wpad.dat?e642cb597 ... a891514087
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O2 - BHO: Discover Treasure - {bfa55139-82af-4663-a19b-e135dac8d043} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe" -delay=10
O4 - HKLM\..\Run: [DT BEN] C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe -BEN
O4 - HKLM\..\Run: [ASUS AiChargerPlus Execute] C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Viber] "C:\Users\Martin\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Google Update] "C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Synology Cloud Station.lnk = C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O17 - HKLM\System\CCS\Services\Tcpip\..\{ACB9465B-B4DE-42C0-A4D0-2240F447D641}: NameServer = 10.0.0.138
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe
O23 - Service: @oem66.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - The OpenVPN Project - C:\Program Files\OpenVPN\bin\openvpnserv.exe
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SpyHunter 4 Service - Enigma Software Group USA, LLC. - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: Thrustmaster Device Driver Installer (tmInstall) - Thrustmaster® - C:\Thrumaster\drivers\amd64\tmInstall.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14494 bytes

======Listing Processes======








C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\ESET\ESET Smart Security\ekrn.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first

C:\WINDOWS\system32\WLANExt.exe 2240745591360
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-9f2bfcac-e051-45b7-a4a2-afc703b4c681 -SystemEventPortName:HostProcess-8d256130-a28e-4a1b-88fa-c8f6bb1bb52b -IoCancelEventPortName:HostProcess-a830731a-4610-4404-981b-900e5d822505 -NonStateChangingEventPortName:HostProcess-7c40b4fe-2159-4fca-9e0c-f343822458b9 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:5b62656c-efbc-4e74-89d0-81ef8dd13c48 -DeviceGroupId:WpdFsGroup
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-9ad40053-eef7-4d8a-b154-2cd68e1ed8ee -SystemEventPortName:HostProcess-886e37ba-a675-45ca-a793-893b047eb623 -IoCancelEventPortName:HostProcess-046ff812-c05e-4cc7-88d7-1df605fd46b3 -NonStateChangingEventPortName:HostProcess-13c71691-1aa8-4155-ae89-7df0551c5b82 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:028f28f1-a5c9-423d-842c-99624b9e9767 -DeviceGroupId:WudfDefaultDevicePool
dashost.exe {cfea6b88-8309-4d52-b820445baf7e1db5}
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
C:\Windows\system32\IProsetMonitor.exe
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe"
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\PnkBstrA.exe
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\BtwRSupportService.exe
C:\Thrumaster\drivers\amd64\tmInstall.exe
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Intel\NCS2\WMIProv\NCS2Prov.exe" -Embedding
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" ddc77398-cc6f-4e1f-abc6-2f4e8fee7bcb 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
taskeng.exe {951382AB-15BA-4FA9-8087-6B7741361BF6}
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
sihost.exe
"C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe" -onlytray
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-242848310-15987676-2559910525-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-242848310-15987676-2559910525-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Users\Martin\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe" ⼜6
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe"
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
KHALMNPR.EXE /API
"C:\Users\Martin\AppData\Local\Viber\Viber.exe" StartMinimized
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=6920 --on-initialized-event-handle=572 --parent-handle=576
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6904.0.2001434275\1534251223" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,12,23,51,61 --gpu-vendor-id=0x10de --gpu-device-id=0x1184 --gpu-driver-vendor=NVIDIA --gpu-driver-version=10.18.13.5382 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler.exe"
"C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-ui.exe"
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-connect.exe --log_folder log --info_folder .
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-daemon.exe C:/Users/Martin/AppData/Local/CloudStation/data/config/client.conf 1024
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\BenQ\Display Pilot\DTHtml.exe" -Customer=BEN -startup_folder -DT_Startup
"C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe"
"C:\Program Files (x86)\Common Files\Portrait Displays\Shared\HookManager.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSdkHelper.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\ASUSMiniBar.exe" -s
"C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpctrl.exe"
"C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\floater.exe"
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A3/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/AllExceptAsyncScripts_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/WebRTC-PeerConnectionDTLS1.2/Default/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="6904.5.517142268\43595033" --font-cache-shared-handle=3840 /prefetch:673131151
taskeng.exe {50D4C3FE-CD42-45C8-B7F7-B633FC870169}
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.0_none_95e4f9a171a1ad95\TiWorker.exe -Embedding
/updateInstalled /background
C:\WINDOWS\System32\svchost.exe -k smphost
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 624 628 636 8192 632
wmiadap.exe /F /T /R
"C:\Users\Martin\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job - C:\WINDOWS\explorer.exe /NOUACCHECK
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-242848310-15987676-2559910525-1000Core.job - C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-242848310-15987676-2559910525-1000UA.job - C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\udygk6rb.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4]
"Description"=ESN Sonar browser plugin
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.3.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19 433944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-24 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2014-05-19 364824]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bfa55139-82af-4663-a19b-e135dac8d043}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-24 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1832760]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-05-27 7611608]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-06-24 2754704]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-08-04 36352]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2014-05-19 3100440]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Viber"=C:\Users\Martin\AppData\Local\Viber\Viber.exe [2015-11-09 51657424]
"OneDrive"=C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-14 551112]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-11-05 3011152]
"Google Update"=C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-11 144200]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-11-16 8591272]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-02-21 292848]
"PivotSoftware"=C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe [2013-06-18 112424]
"DT BEN"=C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe [2014-07-18 122384]
"ASUS AiChargerPlus Execute"=C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [2013-01-28 550272]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-11-09 596528]

C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Synology Cloud Station.lnk - C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2014-03-24 66328]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"DSCAutomationHostEnabled"=2
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"msacm.l3pacm"=l3codecp.acm
"msacm.aacacm"=AACACM.acm
"msacm.ac3acm"=ac3acm.acm
"VIDC.LAGS"=lagarith.dll
"vidc.x264"=x264vfw.dll
"msacm.ac3filter"=ac3filter.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-14 14:25:36 ----D---- C:\rsit
2015-12-14 14:25:36 ----D---- C:\Program Files\trend micro
2015-12-14 14:24:12 ----HD---- C:\OneDriveTemp
2015-12-14 08:36:53 ----D---- C:\Program Files\CCleaner
2015-12-10 18:16:49 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-12-10 09:43:08 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-12-10 09:43:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-12-10 09:43:07 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-12-10 09:43:06 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-12-10 09:43:06 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\user32.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\comsvcs.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\authui.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\wshrm.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\win32k.sys
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\shutdownux.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\readingviewresources.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\catsrvut.dll
2015-12-04 07:40:27 ----D---- C:\WINDOWS\pss
2015-12-02 23:50:15 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\SYSWOW64\ETWCoreUIComponentsResources.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\cdp.dll
2015-12-02 23:50:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-12-02 23:50:12 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\InputService.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\d3d11.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\usermgr.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wininet.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\Unistore.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\services.exe
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\cryptngc.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\XblAuthManagerProxy.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\wwapi.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\SensorsUtilsV2.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\drivers\sdstor.sys
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\wwapi.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\mssign32.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-12-02 23:49:58 ----A---- C:\WINDOWS\SYSWOW64\XblAuthManagerProxy.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\mssign32.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\drivers\capimg.sys
2015-12-02 23:49:57 ----A---- C:\WINDOWS\system32\SRH.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\mos.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\CellularAPI.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\iesetup.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\iernonce.dll
2015-12-02 23:49:51 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2015-12-02 23:49:51 ----A---- C:\WINDOWS\system32\wwanmm.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\wwanconn.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2015-12-02 23:49:49 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\pnidui.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\jsproxy.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\BingMaps.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\wwancfg.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\MapsStore.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\Wwanpref.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\NMAA.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\moshostcore.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\wininetlui.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\MosStorage.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\moshost.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\XblAuthTokenBrokerExt.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\wups2.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\wsplib.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\rilproxy.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\nativemap.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\ihvrilproxy.dll
2015-12-02 23:49:41 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2015-12-02 23:49:40 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2015-12-02 23:49:40 ----A---- C:\WINDOWS\system32\UIAutomationCoreRes.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCoreRes.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\MapControlStringsRes.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\MosResource.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\MapControlStringsRes.dll
2015-12-02 21:38:53 ----D---- C:\ProgramData\ESET
2015-12-02 21:38:52 ----D---- C:\Program Files\ESET
2015-11-29 14:27:48 ----D---- C:\WINDOWS\system32\SleepStudy
2015-11-28 13:50:46 ----D---- C:\Program Files (x86)\Adobe
2015-11-28 02:05:20 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\prm0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2015-11-28 01:59:49 ----D---- C:\ProgramData\USOShared
2015-11-28 01:59:05 ----SHD---- C:\Recovery
2015-11-28 01:58:34 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-11-28 01:57:57 ----ASH---- C:\hiberfil.sys
2015-11-28 01:56:30 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files\SpeechEngines
2015-11-28 01:55:39 ----SD---- C:\Users\Martin\AppData\Roaming\Microsoft
2015-11-28 01:55:25 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-28 01:55:21 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-11-28 01:54:57 ----AS---- C:\WINDOWS\bootstat.dat
2015-11-28 01:54:53 ----D---- C:\ProgramData\NVIDIA
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-11-28 01:54:48 ----D---- C:\ProgramData\NVIDIA Corporation
2015-11-28 01:54:45 ----D---- C:\Program Files\NVIDIA Corporation
2015-11-28 01:54:45 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-11-28 01:54:43 ----A---- C:\WINDOWS\system32\drivers\LNonPnP.sys
2015-11-28 01:54:39 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-11-28 01:54:39 ----D---- C:\Program Files\Realtek
2015-11-28 01:54:38 ----HD---- C:\Program Files (x86)\Uninstall Information
2015-11-28 01:54:38 ----D---- C:\Program Files (x86)\ASUS
2015-11-28 01:54:38 ----A---- C:\WINDOWS\SYSWOW64\drivers\AsIO.sys
2015-11-28 01:54:38 ----A---- C:\WINDOWS\SYSWOW64\AsIO.dll
2015-11-28 01:54:37 ----D---- C:\Program Files\ASUS
2015-11-28 01:54:30 ----D---- C:\WINDOWS\Prefetch
2015-11-28 01:54:17 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2015-11-28 01:54:13 ----ASH---- C:\swapfile.sys
2015-11-28 01:53:39 ----DC---- C:\WINDOWS\Panther
2015-11-28 01:52:29 ----D---- C:\w
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\remoteaudioendpoint.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.proxy.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\wimserv.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\wimgapi.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\twinui.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringconfigsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringclient.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\shell32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provtool.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provops.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provengine.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provdatastore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\policymanager.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfps.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfpmp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mf.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\lpk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\jscript.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\IcsEntitlementHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\fontsub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\wimmount.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\dcomp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\dciman32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\bcastdvr.proxy.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\audiodg.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AppCapture.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-11-28 01:51:42 ----D---- C:\WINDOWS\system32\Microsoft
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\msmq
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\BestPractices
2015-11-28 01:51:04 ----D---- C:\Program Files\Reference Assemblies
2015-11-28 01:51:04 ----D---- C:\Program Files\MSBuild
2015-11-28 01:51:04 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-11-28 01:51:04 ----D---- C:\Program Files (x86)\MSBuild
2015-11-28 01:51:04 ----D---- C:\inetpub
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-11-24 21:09:08 ----D---- C:\Users\Martin\AppData\Roaming\Sun

======List of files/folders modified in the last 1 month======

2015-12-14 14:25:36 ----RD---- C:\Program Files
2015-12-14 14:25:11 ----D---- C:\WINDOWS\Temp
2015-12-14 14:23:55 ----D---- C:\WINDOWS\SoftwareDistribution
2015-12-14 14:23:55 ----D---- C:\Windows
2015-12-14 14:22:32 ----D---- C:\Program Files (x86)\Steam
2015-12-14 14:22:32 ----A---- C:\WINDOWS\PE_Rom.dll
2015-12-14 10:37:00 ----D---- C:\WINDOWS\system32\sru
2015-12-14 09:47:17 ----D---- C:\WINDOWS\Logs
2015-12-14 08:40:10 ----D---- C:\WINDOWS\System32
2015-12-14 08:40:10 ----D---- C:\WINDOWS\INF
2015-12-14 08:39:19 ----D---- C:\Users\Martin\AppData\Roaming\TS3Client
2015-12-14 08:39:19 ----D---- C:\Program Files\PDFCreator
2015-12-14 08:39:15 ----D---- C:\WINDOWS\debug
2015-12-14 08:36:54 ----D---- C:\WINDOWS\system32\Tasks
2015-12-14 08:36:50 ----D---- C:\Users\Martin\AppData\Roaming\ViberPC
2015-12-14 08:16:28 ----D---- C:\WINDOWS\Microsoft.NET
2015-12-14 07:41:44 ----D---- C:\WINDOWS\AppReadiness
2015-12-13 19:32:13 ----D---- C:\Program Files\Cloud Imperium Games
2015-12-13 02:17:31 ----HD---- C:\Program Files\WindowsApps
2015-12-12 01:13:34 ----D---- C:\ProgramData\Origin
2015-12-11 23:55:16 ----D---- C:\WINDOWS\SysWOW64
2015-12-11 23:55:09 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrB.exe
2015-12-11 21:18:43 ----D---- C:\WINDOWS\Tasks
2015-12-10 18:31:35 ----D---- C:\WINDOWS\system32\config
2015-12-10 18:19:15 ----D---- C:\WINDOWS\WinSxS
2015-12-10 18:19:03 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-12-10 18:19:03 ----AD---- C:\Program Files\Microsoft Silverlight
2015-12-10 18:18:29 ----D---- C:\WINDOWS\system32\oobe
2015-12-10 18:18:29 ----D---- C:\Program Files\Internet Explorer
2015-12-10 18:18:29 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-10 18:18:28 ----D---- C:\WINDOWS\system32\DriverStore
2015-12-10 18:18:28 ----D---- C:\WINDOWS\system32\drivers
2015-12-10 18:16:52 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-12-10 18:16:49 ----RD---- C:\Program Files (x86)
2015-12-10 12:36:49 ----D---- C:\WINDOWS\rescache
2015-12-10 12:32:07 ----SHD---- C:\System Volume Information
2015-12-10 12:25:01 ----SHD---- C:\WINDOWS\Installer
2015-12-10 12:03:05 ----D---- C:\WINDOWS\CbsTemp
2015-12-10 11:59:52 ----D---- C:\WINDOWS\system32\MRT
2015-12-10 11:58:09 ----A---- C:\WINDOWS\system32\MRT.exe
2015-12-10 09:43:11 ----SHD---- C:\$Recycle.Bin
2015-12-10 09:41:29 ----D---- C:\WINDOWS\system32\catroot2
2015-12-04 16:57:33 ----D---- C:\Program Files (x86)\Google
2015-12-04 16:57:11 ----HD---- C:\ProgramData
2015-12-04 16:55:10 ----D---- C:\ProgramData\SoftwareDistribution
2015-12-04 16:51:05 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\cs-CZ
2015-12-04 16:51:04 ----D---- C:\WINDOWS\AppPatch
2015-12-03 00:36:08 ----AD---- C:\Program Files (x86)\Origin
2015-12-02 21:39:12 ----HD---- C:\WINDOWS\ELAMBKUP
2015-12-02 20:24:33 ----D---- C:\Program Files (x86)\Origin Games
2015-12-01 01:33:29 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-11-30 17:36:33 ----RSD---- C:\WINDOWS\assembly
2015-11-28 15:43:03 ----D---- C:\WINDOWS\system32\WDI
2015-11-28 14:03:48 ----A---- C:\WINDOWS\system32\PnkBstrA.exe
2015-11-28 13:51:34 ----D---- C:\Users\Martin\AppData\Roaming\Adobe
2015-11-28 13:50:44 ----D---- C:\ProgramData\Adobe
2015-11-28 12:21:24 ----AD---- C:\Program Files (x86)\Battlelog Web Plugins
2015-11-28 12:20:57 ----D---- C:\WINDOWS\system32\LogFiles
2015-11-28 04:42:14 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrA.exe
2015-11-28 04:42:12 ----D---- C:\ProgramData\Package Cache
2015-11-28 04:40:55 ----D---- C:\WINDOWS\system32\restore
2015-11-28 04:25:03 ----D---- C:\WINDOWS\appcompat
2015-11-28 02:20:02 ----RD---- C:\WINDOWS\DevicesFlow
2015-11-28 02:05:21 ----D---- C:\WINDOWS\OCR
2015-11-28 02:04:03 ----SD---- C:\ProgramData\Microsoft
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\PurchaseDialog
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\PrintDialog
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\MiracastView
2015-11-28 02:03:48 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-11-28 01:59:49 ----D---- C:\ProgramData\USOPrivate
2015-11-28 01:59:10 ----D---- C:\WINDOWS\system32\wbem
2015-11-28 01:59:06 ----D---- C:\WINDOWS\Registration
2015-11-28 01:59:05 ----D---- C:\Program Files\Windows NT
2015-11-28 01:59:02 ----D---- C:\WINDOWS\system32\WinBioDatabase
2015-11-28 01:58:33 ----D---- C:\WINDOWS\system32\drivers\etc
2015-11-28 01:58:32 ----RSD---- C:\WINDOWS\Media
2015-11-28 01:58:10 ----D---- C:\WINDOWS\system32\spool
2015-11-28 01:57:21 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-11-28 01:57:21 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-TW
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-HK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-CN
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\tr-TR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\th-TH
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sv-SE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sl-SI
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sk-SK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ru-RU
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ro-RO
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pt-PT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pt-BR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pl-PL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\nl-NL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\nb-NO
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\lv-LV
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\lt-LT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ko-KR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ja-JP
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\it-IT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\hu-HU
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\hr-HR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\he-IL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\fr-FR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\fi-FI
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\et-EE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\es-ES
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\en-US
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\el-GR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\de-DE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\da-DK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\bg-BG
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ar-SA
2015-11-28 01:57:20 ----RSD---- C:\WINDOWS\Fonts
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\NDF
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\migration
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\IME
2015-11-28 01:56:07 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-11-28 01:56:03 ----D---- C:\WINDOWS\system32\CatRoot
2015-11-28 01:56:02 ----D---- C:\WINDOWS\schemas
2015-11-28 01:56:02 ----D---- C:\WINDOWS\PolicyDefinitions
2015-11-28 01:56:02 ----D---- C:\WINDOWS\LiveKernelReports
2015-11-28 01:56:01 ----D---- C:\WINDOWS\ehome
2015-11-28 01:56:00 ----RD---- C:\Users
2015-11-28 01:55:59 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-11-28 01:55:59 ----D---- C:\Program Files (x86)\Windows Mail
2015-11-28 01:55:59 ----D---- C:\Program Files (x86)\Common Files
2015-11-28 01:55:58 ----SHD---- C:\Program Files\Windows Sidebar
2015-11-28 01:55:58 ----D---- C:\Program Files\Windows Mail
2015-11-28 01:55:58 ----D---- C:\Program Files\WIDCOMM
2015-11-28 01:55:58 ----D---- C:\Program Files\Microsoft Games
2015-11-28 01:55:58 ----D---- C:\Program Files\DVD Maker
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files\microsoft shared
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files
2015-11-28 01:55:51 ----D---- C:\WINDOWS\system32\Recovery
2015-11-28 01:55:12 ----D---- C:\WINDOWS\system32\Sysprep
2015-11-28 01:54:53 ----D---- C:\Temp
2015-11-28 01:54:52 ----D---- C:\WINDOWS\Help
2015-11-28 01:54:19 ----D---- C:\WINDOWS\ServiceProfiles
2015-11-28 01:52:27 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-11-28 01:52:27 ----D---- C:\WINDOWS\system32\Dism
2015-11-28 01:52:27 ----D---- C:\WINDOWS\system32\appraiser
2015-11-28 01:52:27 ----D---- C:\WINDOWS\Provisioning
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\MUI
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\inetsrv
2015-11-28 01:51:03 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2015-11-28 01:51:03 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\wamregps.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqutil.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqrt.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisRtl.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisrstap.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisreset.exe
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\ahadmin.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\admwprox.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqsnap.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqqm.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqoa.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqcertui.dll
2015-11-28 01:51:00 ----A---- C:\WINDOWS\system32\mqsvc.exe
2015-11-28 01:51:00 ----A---- C:\WINDOWS\system32\mqbkup.exe
2015-11-28 01:47:43 ----HD---- C:\$WINDOWS.~BT
2015-11-24 21:09:40 ----D---- C:\ProgramData\Oracle
2015-11-24 21:09:33 ----D---- C:\Program Files (x86)\Java
2015-11-24 21:09:02 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2015-11-24 21:09:02 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 asstor64;asstor64; C:\WINDOWS\System32\drivers\asstor64.sys [2014-03-14 84816]
R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2015-09-23 69840]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2014-08-04 670568]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2014-01-28 15232]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2014-02-24 14464]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2015-09-23 264040]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2015-09-23 186784]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2015-09-23 206312]
R1 EpfwLWF;@oem33.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2015-09-23 52872]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2015-10-07 142976]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 AiChargerPlus;AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [2013-01-28 14848]
R3 ASMTFilter;ASMTFilter; C:\Windows\SysWow64\drivers\asmtufdriver.sys [2013-01-28 21400]
R3 bcbtums;@oem66.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2015-03-27 173312]
R3 BCM43XX;@oem8.inf,%BCM43XX_Service_DispName%;Ovladač síťového adaptéru Broadcom 802.11; C:\WINDOWS\system32\DRIVERS\bcmwl664.sys [2014-09-20 9082576]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-10-30 112640]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-10-30 245248]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHUSB.sys [2015-10-30 84992]
R3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\WINDOWS\System32\drivers\e1i63x64.sys [2015-10-30 472576]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2014-05-27 3976792]
R3 LEqdUsb;@oem22.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF USB Filter; C:\WINDOWS\system32\DRIVERS\LEqdUsb.Sys [2014-03-19 77592]
R3 LHidEqd;@oem9.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF HID Filter; C:\WINDOWS\system32\DRIVERS\LHidEqd.Sys [2014-03-19 13080]
R3 LHidFilt;@oem43.inf,%LHidFilt.SvcDesc%;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2014-03-19 76568]
R3 LMouFilt;@oem43.inf,%LMouFilt.SvcDesc%;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2014-03-19 59160]
R3 MEIx64;@oem68.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-11-28 175616]
R3 NAL;Nal Service ; \??\C:\WINDOWS\system32\Drivers\iqvw64e.sys [2014-02-26 34568]
R3 NVHDA;@oem69.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2015-08-29 206152]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-08-29 11151488]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-06-24 19600]
R3 nvvad_WaveExtensible;@oem28.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-05-19 46768]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-10-30 175104]
R3 tap0901;@oem24.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\System32\drivers\tap0901.sys [2014-11-05 27136]
R4 IOMap;IOMap; \??\C:\WINDOWS\system32\drivers\IOMap64.sys [2014-04-29 24824]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2015-09-23 14976]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHport.sys [2015-10-30 953344]
S3 btwampfl;@oem66.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2015-03-27 188160]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-11-22 117248]
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [2015-11-06 15920]
S3 EsgScanner;EsgScanner; C:\WINDOWS\system32\DRIVERS\EsgScanner.sys [2015-11-06 22704]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2014-01-28 936728]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [2014-04-24 954648]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [2014-04-24 1360016]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe [2014-05-10 389944]
R2 BcmBtRSupport;@oem66.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2015-03-27 2251992]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DTSRVC;Portrait Displays Display Tune Service; C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe [2014-07-18 138768]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2015-10-09 2505472]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-06-24 1152656]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-08-04 16232]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2014-03-11 260360]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-11-28 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-06-24 1868432]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-06-24 23007376]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-08-07 937592]
R2 OneSyncSvc_55fb4;Hostitel synchronizace_55fb4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2014-01-22 122384]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2015-11-28 76152]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-06-17 410768]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2014-12-15 5426448]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-01-02 171632]
R3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4f7ab;Hostitel synchronizace_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_58b8c;Hostitel synchronizace_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SpyHunter 4 Service;SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [2015-11-28 1045376]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-10 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2014-09-21 1044816]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-01-31 887232]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2014-03-24 357144]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4f7ab;Služba zasílání zpráv_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_55fb4;Služba zasílání zpráv_55fb4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_58b8c;Služba zasílání zpráv_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-30 147624]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 OpenVPNService;OpenVPN Service; C:\Program Files\OpenVPN\bin\openvpnserv.exe [2014-12-01 38200]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-12-03 2104840]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4f7ab;Data kontaktů_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_55fb4;Data kontaktů_55fb4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_58b8c;Data kontaktů_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-11-05 836176]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------

Re: vracející se havet

Napsal: 14 pro 2015 17:21
od Rudy
Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: vracející se havet

Napsal: 14 pro 2015 23:13
od dinospages
# AdwCleaner v5.025 - Logfile created 14/12/2015 at 21:29:22
# Updated 13/12/2015 by Xplode
# Database : 2015-12-13.2 [Server]
# Operating system : Windows 10 Home (x64)
# Username : Martin - PILOT
# Running from : C:\Users\Martin\Desktop\adwcleaner_5.025.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files (x86)\Settings Manager
[-] Folder Deleted : C:\Program Files (x86)\Assets Manager
[-] Folder Deleted : C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
[-] Folder Deleted : C:\ProgramData\LuckyBrowse
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\LuckyBrowse
[-] Folder Deleted : C:\Users\Martin\AppData\Roaming\FirefoxToolbar
[-] Folder Deleted : C:\Users\Martin\AppData\Roaming\RHEng
[#] Folder Deleted : C:\WINDOWS\SysNative\Tasks\LuckyBrowse

***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****

[-] Task Deleted : LuckyBrowse

***** [ Registry ] *****

[-] Key Deleted : HKCU\Software\Classes\pokki
[-] Key Deleted : HKCU\Software\Mozilla\Extends
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{395DA725-A162-43FF-B885-27BD92F112E8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{04FEAF9C-DC32-41C7-95CA-790E93488E7D}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{395DA725-A162-43FF-B885-27BD92F112E8}
[!] Key Not Deleted : HKCU\Software\Mozilla\Extends

***** [ Web browsers ] *****


*************************

:: "Tracing" keys removed
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1880 bytes] ##########

Re: vracející se havet

Napsal: 15 pro 2015 17:37
od Rudy
Dejte nový log RSIT.

Re: vracející se havet

Napsal: 15 pro 2015 21:07
od dinospages
Logfile of random's system information tool 1.10 (written by random/random)
Run by Martin at 2015-12-15 21:06:08
Microsoft Windows 10 Home
System drive C: has 165 GB (34%) free of 488 GB
Total RAM: 16325 MB (86% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:06:09, on 15.12.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe
C:\Users\Martin\AppData\Local\Viber\Viber.exe
C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-ui.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-connect.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-daemon.exe
C:\Program Files (x86)\BenQ\Display Pilot\DTHtml.exe
C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSdkHelper.exe
C:\Program Files (x86)\ASUS\AI Suite III\ASUSMiniBar.exe
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpctrl.exe
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\floater.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\auto-updater.exe
C:\Program Files\trend micro\Martin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://get-access.me/wpad.dat?e642cb597 ... a891514087
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O2 - BHO: Discover Treasure - {bfa55139-82af-4663-a19b-e135dac8d043} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe" -delay=10
O4 - HKLM\..\Run: [DT BEN] C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe -BEN
O4 - HKLM\..\Run: [ASUS AiChargerPlus Execute] C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Viber] "C:\Users\Martin\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Google Update] "C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Synology Cloud Station.lnk = C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O17 - HKLM\System\CCS\Services\Tcpip\..\{ACB9465B-B4DE-42C0-A4D0-2240F447D641}: NameServer = 10.0.0.138
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe
O23 - Service: @oem66.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - The OpenVPN Project - C:\Program Files\OpenVPN\bin\openvpnserv.exe
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SpyHunter 4 Service - Enigma Software Group USA, LLC. - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: Thrustmaster Device Driver Installer (tmInstall) - Thrustmaster® - C:\Thrumaster\drivers\amd64\tmInstall.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14259 bytes

======Listing Processes======








C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\ESET\ESET Smart Security\ekrn.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\WLANExt.exe 1858646103744
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-e6ee8bb8-39d7-48d6-8e7f-1dd726365efc -SystemEventPortName:HostProcess-d59b2099-487c-4898-91d5-10c416d46643 -IoCancelEventPortName:HostProcess-da49e895-e0ab-4425-b2e0-2d0f0a598635 -NonStateChangingEventPortName:HostProcess-b297ac53-92ed-4ba1-a518-0bd7a0175f0b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:cf759af5-bf26-42d8-9925-cc8ec9831da7 -DeviceGroupId:WudfDefaultDevicePool
\??\C:\WINDOWS\system32\conhost.exe 0x4
dashost.exe {8c3e4afd-b1c2-4f9f-b397f5dc322894a1}
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-a3ccebe0-e6e6-44ca-ae07-cce4dce41a31 -SystemEventPortName:HostProcess-02b5adca-007e-4a7a-9e2b-c19e850683a2 -IoCancelEventPortName:HostProcess-3f5b744d-9172-4224-95da-603dae17c84a -NonStateChangingEventPortName:HostProcess-450e4c32-b76e-4831-a876-1029d529fafb -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:191dd809-2dc0-4453-baa1-f79c82d443e2 -DeviceGroupId:WpdFsGroup
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
C:\WINDOWS\system32\BtwRSupportService.exe
"C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe"
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\Thrumaster\drivers\amd64\tmInstall.exe
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe"
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\WINDOWS\system32\PnkBstrA.exe
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" ddc77398-cc6f-4e1f-abc6-2f4e8fee7bcb 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
sihost.exe
"C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe" -onlytray
"C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe" ⼜ÿ
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
KHALMNPR.EXE /API
"C:\Users\Martin\AppData\Local\Viber\Viber.exe" StartMinimized
"C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler.exe"
"C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-ui.exe"
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-connect.exe --log_folder log --info_folder .
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-daemon.exe C:/Users/Martin/AppData/Local/CloudStation/data/config/client.conf 1024
"C:\Program Files (x86)\BenQ\Display Pilot\DTHtml.exe" -Customer=BEN -startup_folder -DT_Startup
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe"
"C:\Program Files (x86)\Common Files\Portrait Displays\Shared\HookManager.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSdkHelper.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\ASUSMiniBar.exe" -s
"C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpctrl.exe"
"C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\floater.exe"
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=5224 --on-initialized-event-handle=584 --parent-handle=588
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4876.0.1620761764\497457795" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,12,23,51,61 --gpu-vendor-id=0x10de --gpu-device-id=0x1184 --gpu-driver-vendor=NVIDIA --gpu-driver-version=10.18.13.5382 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\Martin\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A3/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/WebRTC-PeerConnectionDTLS1.2/Control/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4876.2.1059996802\1225888315" --font-cache-shared-handle=3040 /prefetch:673131151
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
C:\Users\Martin\AppData\Local\CloudStation\app\bin\auto-updater.exe --root-path "C:/Program Files (x86)/Synology/CloudStation" --portable-path C:/Users/Martin/AppData/Local/CloudStation --os windows --arch i686 --osversion unknown --installer msi --client-version 3317
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1208.10480.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-242848310-15987676-2559910525-100099_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-242848310-15987676-2559910525-100099 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 640 644 652 8192 648

C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Martin\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job - C:\WINDOWS\explorer.exe /NOUACCHECK
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-242848310-15987676-2559910525-1000Core.job - C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-242848310-15987676-2559910525-1000UA.job - C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\udygk6rb.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4]
"Description"=ESN Sonar browser plugin
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.3.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19 433944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-24 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2014-05-19 364824]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bfa55139-82af-4663-a19b-e135dac8d043}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-24 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1832760]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-05-27 7611608]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-06-24 2754704]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-08-04 36352]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2014-05-19 3100440]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Viber"=C:\Users\Martin\AppData\Local\Viber\Viber.exe [2015-11-09 51657424]
"OneDrive"=C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-14 551112]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-11-05 3011152]
"Google Update"=C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-11 144200]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-11-16 8591272]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-02-21 292848]
"PivotSoftware"=C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe [2013-06-18 112424]
"DT BEN"=C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe [2014-07-18 122384]
"ASUS AiChargerPlus Execute"=C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [2013-01-28 550272]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-11-09 596528]

C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Synology Cloud Station.lnk - C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2014-03-24 66328]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"DSCAutomationHostEnabled"=2
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"msacm.l3pacm"=l3codecp.acm
"msacm.aacacm"=AACACM.acm
"msacm.ac3acm"=ac3acm.acm
"VIDC.LAGS"=lagarith.dll
"vidc.x264"=x264vfw.dll
"msacm.ac3filter"=ac3filter.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-14 21:12:47 ----D---- C:\AdwCleaner
2015-12-14 14:25:36 ----D---- C:\rsit
2015-12-14 14:25:36 ----D---- C:\Program Files\trend micro
2015-12-14 14:24:12 ----HD---- C:\OneDriveTemp
2015-12-14 08:36:53 ----D---- C:\Program Files\CCleaner
2015-12-10 18:16:49 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-12-10 09:43:08 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-12-10 09:43:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-12-10 09:43:07 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-12-10 09:43:06 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-12-10 09:43:06 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\user32.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\comsvcs.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\authui.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\wshrm.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\win32k.sys
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\shutdownux.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\readingviewresources.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\catsrvut.dll
2015-12-04 07:40:27 ----D---- C:\WINDOWS\pss
2015-12-02 23:50:15 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\SYSWOW64\ETWCoreUIComponentsResources.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\cdp.dll
2015-12-02 23:50:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-12-02 23:50:12 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\InputService.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\d3d11.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\usermgr.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wininet.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\Unistore.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\services.exe
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\cryptngc.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\XblAuthManagerProxy.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\wwapi.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\SensorsUtilsV2.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\drivers\sdstor.sys
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\wwapi.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\mssign32.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-12-02 23:49:58 ----A---- C:\WINDOWS\SYSWOW64\XblAuthManagerProxy.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\mssign32.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\drivers\capimg.sys
2015-12-02 23:49:57 ----A---- C:\WINDOWS\system32\SRH.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\mos.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\CellularAPI.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\iesetup.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\iernonce.dll
2015-12-02 23:49:51 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2015-12-02 23:49:51 ----A---- C:\WINDOWS\system32\wwanmm.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\wwanconn.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2015-12-02 23:49:49 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\pnidui.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\jsproxy.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\BingMaps.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\wwancfg.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\MapsStore.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\Wwanpref.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\NMAA.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\moshostcore.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\wininetlui.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\MosStorage.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\moshost.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\XblAuthTokenBrokerExt.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\wups2.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\wsplib.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\rilproxy.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\nativemap.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\ihvrilproxy.dll
2015-12-02 23:49:41 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2015-12-02 23:49:40 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2015-12-02 23:49:40 ----A---- C:\WINDOWS\system32\UIAutomationCoreRes.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCoreRes.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\MapControlStringsRes.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\MosResource.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\MapControlStringsRes.dll
2015-12-02 21:38:53 ----D---- C:\ProgramData\ESET
2015-12-02 21:38:52 ----D---- C:\Program Files\ESET
2015-11-29 14:27:48 ----D---- C:\WINDOWS\system32\SleepStudy
2015-11-28 13:50:46 ----D---- C:\Program Files (x86)\Adobe
2015-11-28 02:05:20 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\prm0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2015-11-28 01:59:49 ----D---- C:\ProgramData\USOShared
2015-11-28 01:59:05 ----SHD---- C:\Recovery
2015-11-28 01:58:34 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-11-28 01:57:57 ----ASH---- C:\hiberfil.sys
2015-11-28 01:56:30 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files\SpeechEngines
2015-11-28 01:55:39 ----SD---- C:\Users\Martin\AppData\Roaming\Microsoft
2015-11-28 01:55:25 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-28 01:55:21 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-11-28 01:54:57 ----AS---- C:\WINDOWS\bootstat.dat
2015-11-28 01:54:53 ----D---- C:\ProgramData\NVIDIA
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-11-28 01:54:48 ----D---- C:\ProgramData\NVIDIA Corporation
2015-11-28 01:54:45 ----D---- C:\Program Files\NVIDIA Corporation
2015-11-28 01:54:45 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-11-28 01:54:43 ----A---- C:\WINDOWS\system32\drivers\LNonPnP.sys
2015-11-28 01:54:39 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-11-28 01:54:39 ----D---- C:\Program Files\Realtek
2015-11-28 01:54:38 ----HD---- C:\Program Files (x86)\Uninstall Information
2015-11-28 01:54:38 ----D---- C:\Program Files (x86)\ASUS
2015-11-28 01:54:38 ----A---- C:\WINDOWS\SYSWOW64\drivers\AsIO.sys
2015-11-28 01:54:38 ----A---- C:\WINDOWS\SYSWOW64\AsIO.dll
2015-11-28 01:54:37 ----D---- C:\Program Files\ASUS
2015-11-28 01:54:30 ----D---- C:\WINDOWS\Prefetch
2015-11-28 01:54:17 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2015-11-28 01:54:13 ----ASH---- C:\swapfile.sys
2015-11-28 01:53:39 ----DC---- C:\WINDOWS\Panther
2015-11-28 01:52:29 ----D---- C:\w
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\remoteaudioendpoint.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.proxy.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\wimserv.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\wimgapi.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\twinui.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringconfigsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringclient.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\shell32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provtool.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provops.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provengine.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provdatastore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\policymanager.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfps.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfpmp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mf.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\lpk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\jscript.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\IcsEntitlementHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\fontsub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\wimmount.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\dcomp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\dciman32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\bcastdvr.proxy.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\audiodg.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AppCapture.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-11-28 01:51:42 ----D---- C:\WINDOWS\system32\Microsoft
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\msmq
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\BestPractices
2015-11-28 01:51:04 ----D---- C:\Program Files\Reference Assemblies
2015-11-28 01:51:04 ----D---- C:\Program Files\MSBuild
2015-11-28 01:51:04 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-11-28 01:51:04 ----D---- C:\Program Files (x86)\MSBuild
2015-11-28 01:51:04 ----D---- C:\inetpub
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-11-24 21:09:08 ----D---- C:\Users\Martin\AppData\Roaming\Sun

======List of files/folders modified in the last 1 month======

2015-12-15 21:06:03 ----D---- C:\WINDOWS\Temp
2015-12-15 20:30:00 ----D---- C:\WINDOWS\system32\sru
2015-12-15 10:29:09 ----D---- C:\WINDOWS\system32\config
2015-12-15 10:06:53 ----D---- C:\WINDOWS\system32\DriverStore
2015-12-15 10:06:53 ----D---- C:\WINDOWS\INF
2015-12-15 10:06:51 ----D---- C:\WINDOWS\WinSxS
2015-12-15 10:06:45 ----D---- C:\WINDOWS\Microsoft.NET
2015-12-14 23:17:22 ----D---- C:\WINDOWS\System32
2015-12-14 23:11:25 ----D---- C:\Program Files (x86)\Steam
2015-12-14 23:11:20 ----A---- C:\WINDOWS\PE_Rom.dll
2015-12-14 23:11:07 ----D---- C:\Users\Martin\AppData\Roaming\ViberPC
2015-12-14 23:10:25 ----D---- C:\Windows
2015-12-14 21:29:34 ----D---- C:\WINDOWS\system32\Tasks
2015-12-14 21:29:22 ----RD---- C:\Program Files (x86)
2015-12-14 21:29:22 ----HD---- C:\ProgramData
2015-12-14 14:25:36 ----RD---- C:\Program Files
2015-12-14 14:23:55 ----D---- C:\WINDOWS\SoftwareDistribution
2015-12-14 09:47:17 ----D---- C:\WINDOWS\Logs
2015-12-14 08:39:19 ----D---- C:\Users\Martin\AppData\Roaming\TS3Client
2015-12-14 08:39:19 ----D---- C:\Program Files\PDFCreator
2015-12-14 08:39:15 ----D---- C:\WINDOWS\debug
2015-12-14 07:41:44 ----D---- C:\WINDOWS\AppReadiness
2015-12-13 19:32:13 ----D---- C:\Program Files\Cloud Imperium Games
2015-12-13 02:17:31 ----HD---- C:\Program Files\WindowsApps
2015-12-12 01:13:34 ----D---- C:\ProgramData\Origin
2015-12-11 23:55:16 ----D---- C:\WINDOWS\SysWOW64
2015-12-11 23:55:09 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrB.exe
2015-12-11 21:18:43 ----D---- C:\WINDOWS\Tasks
2015-12-10 18:19:03 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-12-10 18:19:03 ----AD---- C:\Program Files\Microsoft Silverlight
2015-12-10 18:18:29 ----D---- C:\WINDOWS\system32\oobe
2015-12-10 18:18:29 ----D---- C:\Program Files\Internet Explorer
2015-12-10 18:18:29 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-10 18:18:28 ----D---- C:\WINDOWS\system32\drivers
2015-12-10 18:16:52 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-12-10 12:36:49 ----D---- C:\WINDOWS\rescache
2015-12-10 12:32:07 ----SHD---- C:\System Volume Information
2015-12-10 12:25:01 ----SHD---- C:\WINDOWS\Installer
2015-12-10 12:03:05 ----D---- C:\WINDOWS\CbsTemp
2015-12-10 11:59:52 ----D---- C:\WINDOWS\system32\MRT
2015-12-10 11:58:09 ----A---- C:\WINDOWS\system32\MRT.exe
2015-12-10 09:43:11 ----SHD---- C:\$Recycle.Bin
2015-12-10 09:41:29 ----D---- C:\WINDOWS\system32\catroot2
2015-12-04 16:57:33 ----D---- C:\Program Files (x86)\Google
2015-12-04 16:55:10 ----D---- C:\ProgramData\SoftwareDistribution
2015-12-04 16:51:05 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\cs-CZ
2015-12-04 16:51:04 ----D---- C:\WINDOWS\AppPatch
2015-12-03 00:36:08 ----AD---- C:\Program Files (x86)\Origin
2015-12-02 21:39:12 ----HD---- C:\WINDOWS\ELAMBKUP
2015-12-02 20:24:33 ----D---- C:\Program Files (x86)\Origin Games
2015-12-01 01:33:29 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-11-30 17:36:33 ----RSD---- C:\WINDOWS\assembly
2015-11-28 15:43:03 ----D---- C:\WINDOWS\system32\WDI
2015-11-28 14:03:48 ----A---- C:\WINDOWS\system32\PnkBstrA.exe
2015-11-28 13:51:34 ----D---- C:\Users\Martin\AppData\Roaming\Adobe
2015-11-28 13:50:44 ----D---- C:\ProgramData\Adobe
2015-11-28 12:21:24 ----AD---- C:\Program Files (x86)\Battlelog Web Plugins
2015-11-28 12:20:57 ----D---- C:\WINDOWS\system32\LogFiles
2015-11-28 04:42:14 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrA.exe
2015-11-28 04:42:12 ----D---- C:\ProgramData\Package Cache
2015-11-28 04:40:55 ----D---- C:\WINDOWS\system32\restore
2015-11-28 04:25:03 ----D---- C:\WINDOWS\appcompat
2015-11-28 02:20:02 ----RD---- C:\WINDOWS\DevicesFlow
2015-11-28 02:05:21 ----D---- C:\WINDOWS\OCR
2015-11-28 02:04:03 ----SD---- C:\ProgramData\Microsoft
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\PurchaseDialog
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\PrintDialog
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\MiracastView
2015-11-28 02:03:48 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-11-28 01:59:49 ----D---- C:\ProgramData\USOPrivate
2015-11-28 01:59:10 ----D---- C:\WINDOWS\system32\wbem
2015-11-28 01:59:06 ----D---- C:\WINDOWS\Registration
2015-11-28 01:59:05 ----D---- C:\Program Files\Windows NT
2015-11-28 01:59:02 ----D---- C:\WINDOWS\system32\WinBioDatabase
2015-11-28 01:58:33 ----D---- C:\WINDOWS\system32\drivers\etc
2015-11-28 01:58:32 ----RSD---- C:\WINDOWS\Media
2015-11-28 01:58:10 ----D---- C:\WINDOWS\system32\spool
2015-11-28 01:57:21 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-11-28 01:57:21 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-TW
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-HK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-CN
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\tr-TR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\th-TH
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sv-SE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sl-SI
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sk-SK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ru-RU
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ro-RO
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pt-PT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pt-BR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pl-PL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\nl-NL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\nb-NO
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\lv-LV
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\lt-LT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ko-KR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ja-JP
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\it-IT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\hu-HU
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\hr-HR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\he-IL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\fr-FR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\fi-FI
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\et-EE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\es-ES
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\en-US
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\el-GR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\de-DE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\da-DK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\bg-BG
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ar-SA
2015-11-28 01:57:20 ----RSD---- C:\WINDOWS\Fonts
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\NDF
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\migration
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\IME
2015-11-28 01:56:07 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-11-28 01:56:03 ----D---- C:\WINDOWS\system32\CatRoot
2015-11-28 01:56:02 ----D---- C:\WINDOWS\schemas
2015-11-28 01:56:02 ----D---- C:\WINDOWS\PolicyDefinitions
2015-11-28 01:56:02 ----D---- C:\WINDOWS\LiveKernelReports
2015-11-28 01:56:01 ----D---- C:\WINDOWS\ehome
2015-11-28 01:56:00 ----RD---- C:\Users
2015-11-28 01:55:59 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-11-28 01:55:59 ----D---- C:\Program Files (x86)\Windows Mail
2015-11-28 01:55:59 ----D---- C:\Program Files (x86)\Common Files
2015-11-28 01:55:58 ----SHD---- C:\Program Files\Windows Sidebar
2015-11-28 01:55:58 ----D---- C:\Program Files\Windows Mail
2015-11-28 01:55:58 ----D---- C:\Program Files\WIDCOMM
2015-11-28 01:55:58 ----D---- C:\Program Files\Microsoft Games
2015-11-28 01:55:58 ----D---- C:\Program Files\DVD Maker
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files\microsoft shared
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files
2015-11-28 01:55:51 ----D---- C:\WINDOWS\system32\Recovery
2015-11-28 01:55:12 ----D---- C:\WINDOWS\system32\Sysprep
2015-11-28 01:54:53 ----D---- C:\Temp
2015-11-28 01:54:52 ----D---- C:\WINDOWS\Help
2015-11-28 01:54:19 ----D---- C:\WINDOWS\ServiceProfiles
2015-11-28 01:52:27 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-11-28 01:52:27 ----D---- C:\WINDOWS\system32\Dism
2015-11-28 01:52:27 ----D---- C:\WINDOWS\system32\appraiser
2015-11-28 01:52:27 ----D---- C:\WINDOWS\Provisioning
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\MUI
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\inetsrv
2015-11-28 01:51:03 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2015-11-28 01:51:03 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\wamregps.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqutil.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqrt.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisRtl.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisrstap.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisreset.exe
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\ahadmin.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\admwprox.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqsnap.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqqm.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqoa.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqcertui.dll
2015-11-28 01:51:00 ----A---- C:\WINDOWS\system32\mqsvc.exe
2015-11-28 01:51:00 ----A---- C:\WINDOWS\system32\mqbkup.exe
2015-11-28 01:47:43 ----HD---- C:\$WINDOWS.~BT
2015-11-24 21:09:40 ----D---- C:\ProgramData\Oracle
2015-11-24 21:09:33 ----D---- C:\Program Files (x86)\Java
2015-11-24 21:09:02 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2015-11-24 21:09:02 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 asstor64;asstor64; C:\WINDOWS\System32\drivers\asstor64.sys [2014-03-14 84816]
R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2015-09-23 69840]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2014-08-04 670568]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2014-01-28 15232]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2014-02-24 14464]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2015-09-23 264040]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2015-09-23 186784]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2015-09-23 206312]
R1 EpfwLWF;@oem33.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2015-09-23 52872]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2015-10-07 142976]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 AiChargerPlus;AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [2013-01-28 14848]
R3 ASMTFilter;ASMTFilter; C:\Windows\SysWow64\drivers\asmtufdriver.sys [2013-01-28 21400]
R3 bcbtums;@oem66.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2015-03-27 173312]
R3 BCM43XX;@oem8.inf,%BCM43XX_Service_DispName%;Ovladač síťového adaptéru Broadcom 802.11; C:\WINDOWS\system32\DRIVERS\bcmwl664.sys [2014-09-20 9082576]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-10-30 112640]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-10-30 245248]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHUSB.sys [2015-10-30 84992]
R3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\WINDOWS\System32\drivers\e1i63x64.sys [2015-10-30 472576]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2014-05-27 3976792]
R3 LEqdUsb;@oem22.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF USB Filter; C:\WINDOWS\system32\DRIVERS\LEqdUsb.Sys [2014-03-19 77592]
R3 LHidEqd;@oem9.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF HID Filter; C:\WINDOWS\system32\DRIVERS\LHidEqd.Sys [2014-03-19 13080]
R3 LHidFilt;@oem43.inf,%LHidFilt.SvcDesc%;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2014-03-19 76568]
R3 LMouFilt;@oem43.inf,%LMouFilt.SvcDesc%;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2014-03-19 59160]
R3 MEIx64;@oem68.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-11-28 175616]
R3 NVHDA;@oem69.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2015-08-29 206152]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-08-29 11151488]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-06-24 19600]
R3 nvvad_WaveExtensible;@oem28.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-05-19 46768]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-10-30 175104]
R3 tap0901;@oem24.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\System32\drivers\tap0901.sys [2014-11-05 27136]
R4 IOMap;IOMap; \??\C:\WINDOWS\system32\drivers\IOMap64.sys [2014-04-29 24824]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2015-09-23 14976]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHport.sys [2015-10-30 953344]
S3 btwampfl;@oem66.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2015-03-27 188160]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-11-22 117248]
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [2015-11-06 15920]
S3 EsgScanner;EsgScanner; C:\WINDOWS\system32\DRIVERS\EsgScanner.sys [2015-11-06 22704]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2014-01-28 936728]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [2014-04-24 954648]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [2014-04-24 1360016]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe [2014-05-10 389944]
R2 BcmBtRSupport;@oem66.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2015-03-27 2251992]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DTSRVC;Portrait Displays Display Tune Service; C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe [2014-07-18 138768]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2015-10-09 2505472]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-06-24 1152656]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-08-04 16232]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2014-03-11 260360]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-11-28 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-06-24 1868432]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-06-24 23007376]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-08-07 937592]
R2 OneSyncSvc_6cab8;Hostitel synchronizace_6cab8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2014-01-22 122384]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2015-11-28 76152]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-06-17 410768]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2014-12-15 5426448]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-01-02 171632]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4f7ab;Hostitel synchronizace_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_58b8c;Hostitel synchronizace_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SpyHunter 4 Service;SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [2015-11-28 1045376]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-10 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2014-09-21 1044816]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-01-31 887232]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2014-03-24 357144]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4f7ab;Služba zasílání zpráv_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_58b8c;Služba zasílání zpráv_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_6cab8;Služba zasílání zpráv_6cab8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-30 147624]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 OpenVPNService;OpenVPN Service; C:\Program Files\OpenVPN\bin\openvpnserv.exe [2014-12-01 38200]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-12-03 2104840]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4f7ab;Data kontaktů_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_58b8c;Data kontaktů_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_6cab8;Data kontaktů_6cab8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-11-05 836176]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------

Re: vracející se havet

Napsal: 15 pro 2015 21:53
od Rudy
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-242848310-15987676-2559910525-1000Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-242848310-15987676-2559910525-1000UA.job

:reg
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.

Re: vracející se havet

Napsal: 15 pro 2015 22:13
od dinospages
Logfile of random's system information tool 1.10 (written by random/random)
Run by Martin at 2015-12-15 22:12:50
Microsoft Windows 10 Home
System drive C: has 166 GB (34%) free of 488 GB
Total RAM: 16325 MB (87% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:12:51, on 15.12.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
C:\Program Files (x86)\ASUS\APRP\aprp.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Martin\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
C:\Users\Martin\AppData\Local\Viber\Viber.exe
C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-ui.exe
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\pivot_Startup.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-connect.exe
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-daemon.exe
C:\Program Files (x86)\BenQ\Display Pilot\DTHtml.exe
C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
C:\Program Files\trend micro\Martin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://get-access.me/wpad.dat?e642cb597 ... a891514087
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O2 - BHO: Discover Treasure - {bfa55139-82af-4663-a19b-e135dac8d043} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe" -delay=10
O4 - HKLM\..\Run: [DT BEN] C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe -BEN
O4 - HKLM\..\Run: [ASUS AiChargerPlus Execute] C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
O4 - HKCU\..\Run: [Viber] "C:\Users\Martin\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Google Update] "C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Synology Cloud Station.lnk = C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O17 - HKLM\System\CCS\Services\Tcpip\..\{ACB9465B-B4DE-42C0-A4D0-2240F447D641}: NameServer = 10.0.0.138
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe
O23 - Service: @oem66.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - The OpenVPN Project - C:\Program Files\OpenVPN\bin\openvpnserv.exe
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SpyHunter 4 Service - Enigma Software Group USA, LLC. - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: Thrustmaster Device Driver Installer (tmInstall) - Thrustmaster® - C:\Thrumaster\drivers\amd64\tmInstall.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13836 bytes

======Listing Processes======








C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\ESET\ESET Smart Security\ekrn.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first

C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\WLANExt.exe 1865913801808
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-a78b0472-e41b-4a41-9f67-4255eca25f4d -SystemEventPortName:HostProcess-a9047da1-3c94-437c-ba26-3509cf1a460e -IoCancelEventPortName:HostProcess-39e44cf2-bb33-47d1-8132-02f05917fd70 -NonStateChangingEventPortName:HostProcess-3e85e2d4-4bf8-49f6-8872-a7e0916c92dd -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:de0bab6a-8e41-4c0d-8bc8-f15f9745cdef -DeviceGroupId:WudfDefaultDevicePool
dashost.exe {6afa3ea8-4989-4f70-b2738f02b11ca93c}
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ce3f9945-b5e5-45bb-84d2-ee975adb665f -SystemEventPortName:HostProcess-20daf6ec-fb6d-4b94-b295-2db2dcdc3b4e -IoCancelEventPortName:HostProcess-b476c897-0c0b-469c-a853-47edac73794e -NonStateChangingEventPortName:HostProcess-b9286816-9d46-4322-956d-9260060dfd71 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:9b55dbd9-3385-4d79-9746-f28ecdf800a1 -DeviceGroupId:WpdFsGroup
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\mqsvc.exe
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\WINDOWS\system32\BtwRSupportService.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe"
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\system32\PnkBstrA.exe
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe"
"C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
C:\Thrumaster\drivers\amd64\tmInstall.exe
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe"
"C:\Program Files\Intel\NCS2\WMIProv\NCS2Prov.exe" -Embedding
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" ddc77398-cc6f-4e1f-abc6-2f4e8fee7bcb 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
taskeng.exe {A900AF57-2AFA-4B4B-B3A3-274DA5809785}
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
sihost.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe"
"C:\Program Files (x86)\ASUS\APRP\aprp.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe" -onlytray
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe"
C:\Windows\system32\userinit.exe
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\Windows\System32\RuntimeBroker.exe -Embedding
taskhostw.exe
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\DllHost.exe /Processid:{133EAC4F-5891-4D04-BADA-D84870380A80}
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\WINDOWS\notepad.exe" C:\_OTM\MovedFiles\12152015_221109.log
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe" ⼜
"C:\Users\Martin\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe"
C:\WINDOWS\system32\wermgr.exe -upload
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
KHALMNPR.EXE /API
"C:\Users\Martin\AppData\Local\Viber\Viber.exe" StartMinimized
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-242848310-15987676-2559910525-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-242848310-15987676-2559910525-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 632 636 644 8192 640
C:\WINDOWS\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
"C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cachedir="C:\Users\Martin\AppData\Local\Steam\htmlcache" -steampid=8400 -buildid=1446742416 -steamid="0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe" /c
"C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler.exe"
"C:\Users\Martin\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler64.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Martin\Downloads\RSITx64.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-ui.exe"
"C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\pivot_Startup.exe" -delay=10
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-connect.exe --log_folder log --info_folder .
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Users\Martin\AppData\Local\CloudStation\app\bin\cloud-daemon.exe C:/Users/Martin/AppData/Local/CloudStation/data/config/client.conf 1024
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\BenQ\Display Pilot\DTHtml.exe" -Customer=BEN -startup_folder -DT_Startup
"C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\Common Files\Portrait Displays\Shared\HookManager.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job - C:\WINDOWS\explorer.exe /NOUACCHECK

=========Mozilla firefox=========

ProfilePath - C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\udygk6rb.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4]
"Description"=ESN Sonar browser plugin
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.3.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19 433944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-24 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2014-05-19 364824]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bfa55139-82af-4663-a19b-e135dac8d043}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-24 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1832760]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-05-27 7611608]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-06-24 2754704]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-08-04 36352]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2014-05-19 3100440]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Viber"=C:\Users\Martin\AppData\Local\Viber\Viber.exe [2015-11-09 51657424]
"OneDrive"=C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-14 551112]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-11-05 3011152]
"Google Update"=C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-11 144200]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-11-16 8591272]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-02-21 292848]
"PivotSoftware"=C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe [2013-06-18 112424]
"DT BEN"=C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe [2014-07-18 122384]
"ASUS AiChargerPlus Execute"=C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [2013-01-28 550272]

C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Synology Cloud Station.lnk - C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2014-03-24 66328]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"DSCAutomationHostEnabled"=2
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"msacm.l3pacm"=l3codecp.acm
"msacm.aacacm"=AACACM.acm
"msacm.ac3acm"=ac3acm.acm
"VIDC.LAGS"=lagarith.dll
"vidc.x264"=x264vfw.dll
"msacm.ac3filter"=ac3filter.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-15 22:11:09 ----D---- C:\_OTM
2015-12-14 21:12:47 ----D---- C:\AdwCleaner
2015-12-14 14:25:36 ----D---- C:\rsit
2015-12-14 14:25:36 ----D---- C:\Program Files\trend micro
2015-12-14 14:24:12 ----HD---- C:\OneDriveTemp
2015-12-14 08:36:53 ----D---- C:\Program Files\CCleaner
2015-12-10 18:16:49 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-12-10 09:43:08 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-12-10 09:43:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-12-10 09:43:07 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-12-10 09:43:06 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-12-10 09:43:06 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\user32.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\comsvcs.dll
2015-12-10 09:43:05 ----A---- C:\WINDOWS\system32\authui.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\wshrm.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\win32k.sys
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\shutdownux.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\readingviewresources.dll
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2015-12-10 09:43:04 ----A---- C:\WINDOWS\system32\catsrvut.dll
2015-12-04 07:40:27 ----D---- C:\WINDOWS\pss
2015-12-02 23:50:15 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\SYSWOW64\ETWCoreUIComponentsResources.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2015-12-02 23:50:13 ----A---- C:\WINDOWS\system32\cdp.dll
2015-12-02 23:50:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-12-02 23:50:12 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\InputService.dll
2015-12-02 23:50:11 ----A---- C:\WINDOWS\system32\d3d11.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2015-12-02 23:50:10 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\usermgr.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-12-02 23:50:09 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wininet.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\Unistore.dll
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\services.exe
2015-12-02 23:50:08 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-12-02 23:50:07 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-12-02 23:50:04 ----A---- C:\WINDOWS\system32\cryptngc.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\XblAuthManagerProxy.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-12-02 23:50:03 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\wwapi.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\SensorsUtilsV2.dll
2015-12-02 23:50:00 ----A---- C:\WINDOWS\system32\drivers\sdstor.sys
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\wwapi.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\mssign32.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2015-12-02 23:49:59 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-12-02 23:49:58 ----A---- C:\WINDOWS\SYSWOW64\XblAuthManagerProxy.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\mssign32.dll
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-12-02 23:49:58 ----A---- C:\WINDOWS\system32\drivers\capimg.sys
2015-12-02 23:49:57 ----A---- C:\WINDOWS\system32\SRH.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\mos.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-12-02 23:49:53 ----A---- C:\WINDOWS\system32\CellularAPI.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\iesetup.dll
2015-12-02 23:49:52 ----A---- C:\WINDOWS\system32\iernonce.dll
2015-12-02 23:49:51 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2015-12-02 23:49:51 ----A---- C:\WINDOWS\system32\wwanmm.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\wwanconn.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2015-12-02 23:49:50 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2015-12-02 23:49:49 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\pnidui.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\jsproxy.dll
2015-12-02 23:49:49 ----A---- C:\WINDOWS\system32\BingMaps.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2015-12-02 23:49:48 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\wwancfg.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\MapsStore.dll
2015-12-02 23:49:47 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\Wwanpref.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\NMAA.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\moshostcore.dll
2015-12-02 23:49:46 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\wininetlui.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\MosStorage.dll
2015-12-02 23:49:45 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\moshost.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2015-12-02 23:49:44 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\XblAuthTokenBrokerExt.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\wups2.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2015-12-02 23:49:43 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\wsplib.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\rilproxy.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\nativemap.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2015-12-02 23:49:42 ----A---- C:\WINDOWS\system32\ihvrilproxy.dll
2015-12-02 23:49:41 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2015-12-02 23:49:40 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2015-12-02 23:49:40 ----A---- C:\WINDOWS\system32\UIAutomationCoreRes.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCoreRes.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2015-12-02 23:49:39 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\SYSWOW64\MapControlStringsRes.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\MosResource.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2015-12-02 23:49:38 ----A---- C:\WINDOWS\system32\MapControlStringsRes.dll
2015-12-02 21:38:53 ----D---- C:\ProgramData\ESET
2015-12-02 21:38:52 ----D---- C:\Program Files\ESET
2015-11-29 14:27:48 ----D---- C:\WINDOWS\system32\SleepStudy
2015-11-28 13:50:46 ----D---- C:\Program Files (x86)\Adobe
2015-11-28 02:05:20 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\prm0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2015-11-28 02:05:20 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2015-11-28 01:59:49 ----D---- C:\ProgramData\USOShared
2015-11-28 01:59:05 ----SHD---- C:\Recovery
2015-11-28 01:58:34 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-11-28 01:57:57 ----ASH---- C:\hiberfil.sys
2015-11-28 01:56:30 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files\SpeechEngines
2015-11-28 01:55:39 ----SD---- C:\Users\Martin\AppData\Roaming\Microsoft
2015-11-28 01:55:25 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-28 01:55:21 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-11-28 01:54:57 ----AS---- C:\WINDOWS\bootstat.dat
2015-11-28 01:54:53 ----D---- C:\ProgramData\NVIDIA
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-11-28 01:54:52 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-11-28 01:54:48 ----D---- C:\ProgramData\NVIDIA Corporation
2015-11-28 01:54:45 ----D---- C:\Program Files\NVIDIA Corporation
2015-11-28 01:54:45 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-11-28 01:54:43 ----A---- C:\WINDOWS\system32\drivers\LNonPnP.sys
2015-11-28 01:54:39 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-11-28 01:54:39 ----D---- C:\Program Files\Realtek
2015-11-28 01:54:38 ----HD---- C:\Program Files (x86)\Uninstall Information
2015-11-28 01:54:38 ----D---- C:\Program Files (x86)\ASUS
2015-11-28 01:54:38 ----A---- C:\WINDOWS\SYSWOW64\drivers\AsIO.sys
2015-11-28 01:54:38 ----A---- C:\WINDOWS\SYSWOW64\AsIO.dll
2015-11-28 01:54:37 ----D---- C:\Program Files\ASUS
2015-11-28 01:54:30 ----D---- C:\WINDOWS\Prefetch
2015-11-28 01:54:17 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2015-11-28 01:54:13 ----ASH---- C:\swapfile.sys
2015-11-28 01:53:39 ----DC---- C:\WINDOWS\Panther
2015-11-28 01:52:29 ----D---- C:\w
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\remoteaudioendpoint.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.proxy.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\wimserv.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\wimgapi.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\twinui.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringconfigsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\tetheringclient.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\shell32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provtool.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provops.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provengine.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\provdatastore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\policymanager.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfps.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfpmp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\mf.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\lpk.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\jscript.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\IcsEntitlementHost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\fontsub.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\wimmount.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\dcomp.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\dciman32.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\bcastdvr.proxy.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\audiodg.exe
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\AppCapture.dll
2015-11-28 01:52:18 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-11-28 01:51:42 ----D---- C:\WINDOWS\system32\Microsoft
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\msmq
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\BestPractices
2015-11-28 01:51:04 ----D---- C:\Program Files\Reference Assemblies
2015-11-28 01:51:04 ----D---- C:\Program Files\MSBuild
2015-11-28 01:51:04 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-11-28 01:51:04 ----D---- C:\Program Files (x86)\MSBuild
2015-11-28 01:51:04 ----D---- C:\inetpub
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-11-28 01:50:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-11-28 01:50:51 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-11-24 21:09:08 ----D---- C:\Users\Martin\AppData\Roaming\Sun

======List of files/folders modified in the last 1 month======

2015-12-15 22:12:48 ----D---- C:\Program Files (x86)\Steam
2015-12-15 22:12:44 ----D---- C:\Users\Martin\AppData\Roaming\ViberPC
2015-12-15 22:12:35 ----D---- C:\WINDOWS\Temp
2015-12-15 22:11:32 ----D---- C:\WINDOWS\system32\sru
2015-12-15 22:11:10 ----D---- C:\WINDOWS\Tasks
2015-12-15 10:29:09 ----D---- C:\WINDOWS\system32\config
2015-12-15 10:06:53 ----D---- C:\WINDOWS\system32\DriverStore
2015-12-15 10:06:53 ----D---- C:\WINDOWS\INF
2015-12-15 10:06:51 ----D---- C:\WINDOWS\WinSxS
2015-12-15 10:06:45 ----D---- C:\WINDOWS\Microsoft.NET
2015-12-14 23:17:22 ----D---- C:\WINDOWS\System32
2015-12-14 23:11:20 ----A---- C:\WINDOWS\PE_Rom.dll
2015-12-14 23:10:25 ----D---- C:\Windows
2015-12-14 21:29:34 ----D---- C:\WINDOWS\system32\Tasks
2015-12-14 21:29:22 ----RD---- C:\Program Files (x86)
2015-12-14 21:29:22 ----HD---- C:\ProgramData
2015-12-14 14:25:36 ----RD---- C:\Program Files
2015-12-14 14:23:55 ----D---- C:\WINDOWS\SoftwareDistribution
2015-12-14 09:47:17 ----D---- C:\WINDOWS\Logs
2015-12-14 08:39:19 ----D---- C:\Users\Martin\AppData\Roaming\TS3Client
2015-12-14 08:39:19 ----D---- C:\Program Files\PDFCreator
2015-12-14 08:39:15 ----D---- C:\WINDOWS\debug
2015-12-14 07:41:44 ----D---- C:\WINDOWS\AppReadiness
2015-12-13 19:32:13 ----D---- C:\Program Files\Cloud Imperium Games
2015-12-13 02:17:31 ----HD---- C:\Program Files\WindowsApps
2015-12-12 01:13:34 ----D---- C:\ProgramData\Origin
2015-12-11 23:55:16 ----D---- C:\WINDOWS\SysWOW64
2015-12-11 23:55:09 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrB.exe
2015-12-10 18:19:03 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-12-10 18:19:03 ----AD---- C:\Program Files\Microsoft Silverlight
2015-12-10 18:18:29 ----D---- C:\WINDOWS\system32\oobe
2015-12-10 18:18:29 ----D---- C:\Program Files\Internet Explorer
2015-12-10 18:18:29 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-10 18:18:28 ----D---- C:\WINDOWS\system32\drivers
2015-12-10 18:16:52 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-12-10 12:36:49 ----D---- C:\WINDOWS\rescache
2015-12-10 12:32:07 ----SHD---- C:\System Volume Information
2015-12-10 12:25:01 ----SHD---- C:\WINDOWS\Installer
2015-12-10 12:03:05 ----D---- C:\WINDOWS\CbsTemp
2015-12-10 11:59:52 ----D---- C:\WINDOWS\system32\MRT
2015-12-10 11:58:09 ----A---- C:\WINDOWS\system32\MRT.exe
2015-12-10 09:43:11 ----SHD---- C:\$Recycle.Bin
2015-12-10 09:41:29 ----D---- C:\WINDOWS\system32\catroot2
2015-12-04 16:57:33 ----D---- C:\Program Files (x86)\Google
2015-12-04 16:55:10 ----D---- C:\ProgramData\SoftwareDistribution
2015-12-04 16:51:05 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-12-04 16:51:05 ----D---- C:\WINDOWS\system32\cs-CZ
2015-12-04 16:51:04 ----D---- C:\WINDOWS\AppPatch
2015-12-03 00:36:08 ----AD---- C:\Program Files (x86)\Origin
2015-12-02 21:39:12 ----HD---- C:\WINDOWS\ELAMBKUP
2015-12-02 20:24:33 ----D---- C:\Program Files (x86)\Origin Games
2015-12-01 01:33:29 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-11-30 17:36:33 ----RSD---- C:\WINDOWS\assembly
2015-11-28 15:43:03 ----D---- C:\WINDOWS\system32\WDI
2015-11-28 14:03:48 ----A---- C:\WINDOWS\system32\PnkBstrA.exe
2015-11-28 13:51:34 ----D---- C:\Users\Martin\AppData\Roaming\Adobe
2015-11-28 13:50:44 ----D---- C:\ProgramData\Adobe
2015-11-28 12:21:24 ----AD---- C:\Program Files (x86)\Battlelog Web Plugins
2015-11-28 12:20:57 ----D---- C:\WINDOWS\system32\LogFiles
2015-11-28 04:42:14 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrA.exe
2015-11-28 04:42:12 ----D---- C:\ProgramData\Package Cache
2015-11-28 04:40:55 ----D---- C:\WINDOWS\system32\restore
2015-11-28 04:25:03 ----D---- C:\WINDOWS\appcompat
2015-11-28 02:20:02 ----RD---- C:\WINDOWS\DevicesFlow
2015-11-28 02:05:21 ----D---- C:\WINDOWS\OCR
2015-11-28 02:04:03 ----SD---- C:\ProgramData\Microsoft
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\PurchaseDialog
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\PrintDialog
2015-11-28 02:03:51 ----RD---- C:\WINDOWS\MiracastView
2015-11-28 02:03:48 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-11-28 01:59:49 ----D---- C:\ProgramData\USOPrivate
2015-11-28 01:59:10 ----D---- C:\WINDOWS\system32\wbem
2015-11-28 01:59:06 ----D---- C:\WINDOWS\Registration
2015-11-28 01:59:05 ----D---- C:\Program Files\Windows NT
2015-11-28 01:59:02 ----D---- C:\WINDOWS\system32\WinBioDatabase
2015-11-28 01:58:33 ----D---- C:\WINDOWS\system32\drivers\etc
2015-11-28 01:58:32 ----RSD---- C:\WINDOWS\Media
2015-11-28 01:58:10 ----D---- C:\WINDOWS\system32\spool
2015-11-28 01:57:21 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-11-28 01:57:21 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-TW
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-HK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\zh-CN
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\tr-TR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\th-TH
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sv-SE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sl-SI
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\sk-SK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ru-RU
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ro-RO
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pt-PT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pt-BR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\pl-PL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\nl-NL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\nb-NO
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\lv-LV
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\lt-LT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ko-KR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ja-JP
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\it-IT
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\hu-HU
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\hr-HR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\he-IL
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\fr-FR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\fi-FI
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\et-EE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\es-ES
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\en-US
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\el-GR
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\de-DE
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\da-DK
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\bg-BG
2015-11-28 01:57:21 ----D---- C:\WINDOWS\system32\ar-SA
2015-11-28 01:57:20 ----RSD---- C:\WINDOWS\Fonts
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2015-11-28 01:56:09 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\NDF
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\migration
2015-11-28 01:56:08 ----D---- C:\WINDOWS\system32\IME
2015-11-28 01:56:07 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-11-28 01:56:03 ----D---- C:\WINDOWS\system32\CatRoot
2015-11-28 01:56:02 ----D---- C:\WINDOWS\schemas
2015-11-28 01:56:02 ----D---- C:\WINDOWS\PolicyDefinitions
2015-11-28 01:56:02 ----D---- C:\WINDOWS\LiveKernelReports
2015-11-28 01:56:01 ----D---- C:\WINDOWS\ehome
2015-11-28 01:56:00 ----RD---- C:\Users
2015-11-28 01:55:59 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-11-28 01:55:59 ----D---- C:\Program Files (x86)\Windows Mail
2015-11-28 01:55:59 ----D---- C:\Program Files (x86)\Common Files
2015-11-28 01:55:58 ----SHD---- C:\Program Files\Windows Sidebar
2015-11-28 01:55:58 ----D---- C:\Program Files\Windows Mail
2015-11-28 01:55:58 ----D---- C:\Program Files\WIDCOMM
2015-11-28 01:55:58 ----D---- C:\Program Files\Microsoft Games
2015-11-28 01:55:58 ----D---- C:\Program Files\DVD Maker
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files\microsoft shared
2015-11-28 01:55:58 ----D---- C:\Program Files\Common Files
2015-11-28 01:55:51 ----D---- C:\WINDOWS\system32\Recovery
2015-11-28 01:55:12 ----D---- C:\WINDOWS\system32\Sysprep
2015-11-28 01:54:53 ----D---- C:\Temp
2015-11-28 01:54:52 ----D---- C:\WINDOWS\Help
2015-11-28 01:54:19 ----D---- C:\WINDOWS\ServiceProfiles
2015-11-28 01:52:27 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-11-28 01:52:27 ----D---- C:\WINDOWS\system32\Dism
2015-11-28 01:52:27 ----D---- C:\WINDOWS\system32\appraiser
2015-11-28 01:52:27 ----D---- C:\WINDOWS\Provisioning
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-11-28 01:51:05 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\MUI
2015-11-28 01:51:05 ----D---- C:\WINDOWS\system32\inetsrv
2015-11-28 01:51:03 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2015-11-28 01:51:03 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\wamregps.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqutil.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqrt.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisRtl.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisrstap.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\iisreset.exe
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\ahadmin.dll
2015-11-28 01:51:02 ----A---- C:\WINDOWS\system32\admwprox.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqsnap.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqqm.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqoa.dll
2015-11-28 01:51:01 ----A---- C:\WINDOWS\system32\mqcertui.dll
2015-11-28 01:51:00 ----A---- C:\WINDOWS\system32\mqsvc.exe
2015-11-28 01:51:00 ----A---- C:\WINDOWS\system32\mqbkup.exe
2015-11-28 01:47:43 ----HD---- C:\$WINDOWS.~BT
2015-11-24 21:09:40 ----D---- C:\ProgramData\Oracle
2015-11-24 21:09:33 ----D---- C:\Program Files (x86)\Java
2015-11-24 21:09:02 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2015-11-24 21:09:02 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 asstor64;asstor64; C:\WINDOWS\System32\drivers\asstor64.sys [2014-03-14 84816]
R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2015-09-23 69840]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2014-08-04 670568]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2014-01-28 15232]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2014-02-24 14464]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2015-09-23 264040]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2015-09-23 186784]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2015-09-23 206312]
R1 EpfwLWF;@oem33.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2015-09-23 52872]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2015-10-07 142976]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 AiChargerPlus;AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [2013-01-28 14848]
R3 ASMTFilter;ASMTFilter; C:\Windows\SysWow64\drivers\asmtufdriver.sys [2013-01-28 21400]
R3 bcbtums;@oem66.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2015-03-27 173312]
R3 BCM43XX;@oem8.inf,%BCM43XX_Service_DispName%;Ovladač síťového adaptéru Broadcom 802.11; C:\WINDOWS\system32\DRIVERS\bcmwl664.sys [2014-09-20 9082576]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-10-30 112640]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-10-30 245248]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHUSB.sys [2015-10-30 84992]
R3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\WINDOWS\System32\drivers\e1i63x64.sys [2015-10-30 472576]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2014-05-27 3976792]
R3 LEqdUsb;@oem22.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF USB Filter; C:\WINDOWS\system32\DRIVERS\LEqdUsb.Sys [2014-03-19 77592]
R3 LHidEqd;@oem9.inf,%FltDisplayName%;Logitech SetPoint Unifying KMDF HID Filter; C:\WINDOWS\system32\DRIVERS\LHidEqd.Sys [2014-03-19 13080]
R3 LHidFilt;@oem43.inf,%LHidFilt.SvcDesc%;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2014-03-19 76568]
R3 LMouFilt;@oem43.inf,%LMouFilt.SvcDesc%;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2014-03-19 59160]
R3 MEIx64;@oem68.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-11-28 175616]
R3 NAL;Nal Service ; \??\C:\WINDOWS\system32\Drivers\iqvw64e.sys [2014-02-26 34568]
R3 NVHDA;@oem69.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2015-08-29 206152]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-08-29 11151488]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-06-24 19600]
R3 nvvad_WaveExtensible;@oem28.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-05-19 46768]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-10-30 175104]
R3 tap0901;@oem24.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\System32\drivers\tap0901.sys [2014-11-05 27136]
R4 IOMap;IOMap; \??\C:\WINDOWS\system32\drivers\IOMap64.sys [2014-04-29 24824]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2015-09-23 14976]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHport.sys [2015-10-30 953344]
S3 btwampfl;@oem66.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2015-03-27 188160]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-11-22 117248]
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [2015-11-06 15920]
S3 EsgScanner;EsgScanner; C:\WINDOWS\system32\DRIVERS\EsgScanner.sys [2015-11-06 22704]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2014-01-28 936728]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [2014-04-24 954648]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [2014-04-24 1360016]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.07\AsusFanControlService.exe [2014-05-10 389944]
R2 BcmBtRSupport;@oem66.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2015-03-27 2251992]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DTSRVC;Portrait Displays Display Tune Service; C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe [2014-07-18 138768]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2015-10-09 2505472]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-06-24 1152656]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2014-03-11 260360]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-11-28 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-06-24 1868432]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-06-24 23007376]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-08-07 937592]
R2 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2014-01-22 122384]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2015-11-28 76152]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-06-17 410768]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2014-12-15 5426448]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-01-02 171632]
R3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-11-05 836176]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-08-04 16232]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4f7ab;Hostitel synchronizace_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_58b8c;Hostitel synchronizace_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_5bbd5;Hostitel synchronizace_5bbd5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SpyHunter 4 Service;SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [2015-11-28 1045376]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-10 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2014-09-21 1044816]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-01-31 887232]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2014-03-24 357144]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4f7ab;Služba zasílání zpráv_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_58b8c;Služba zasílání zpráv_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5bbd5;Služba zasílání zpráv_5bbd5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-30 147624]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 OpenVPNService;OpenVPN Service; C:\Program Files\OpenVPN\bin\openvpnserv.exe [2014-12-01 38200]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-12-03 2104840]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4f7ab;Data kontaktů_4f7ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_58b8c;Data kontaktů_58b8c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_5bbd5;Data kontaktů_5bbd5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------

Re: vracející se havet

Napsal: 15 pro 2015 22:41
od Rudy
Dvouklikem na soubor spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.

Re: vracející se havet

Napsal: 15 pro 2015 22:48
od dinospages
kde stahnu HJT?

Re: vracející se havet

Napsal: 15 pro 2015 22:58
od Rudy
Pardon, já to nezkopíroval.
Dvouklikem na soubor C:\Program Files\trend micro\Martin.exe spusťte HijackThis.

Re: vracející se havet

Napsal: 15 pro 2015 23:04
od dinospages
hotovo, to je vše???

Re: vracející se havet

Napsal: 15 pro 2015 23:31
od dinospages
rudy vetsinou kdyz po delsi dobe zkusim dat F5 abych videl jestli jsi zareagoval tak me to hodi na jinou url: ted naposledy napr tuhle:

http://7jgzz.stream.laah.info/?sov=2690 ... 13415-t444

Re: vracející se havet

Napsal: 16 pro 2015 18:27
od Rudy
V kterém prohlížeči?

Re: vracející se havet

Napsal: 17 pro 2015 01:26
od dinospages
chrome

Re: vracející se havet

Napsal: 17 pro 2015 16:33
od dinospages
tak to delaji vsechgny prohlizece IE, mozilla a chrome