Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
fogas1
Návštěvník
Návštěvník
Příspěvky: 1
Registrován: 04 bře 2016 09:16

Prosim o kontrolu logu

#1 Příspěvek od fogas1 »

Dobry den,prosim o kontrolu logu dekuji a vazim si vasi prace.


Logfile of random's system information tool 1.10 (written by random/random)
Run by Ganja at 2016-03-04 09:10:01
Microsoft Windows 10 Pro
System drive C: has 408 GB (88%) free of 465 GB
Total RAM: 11518 MB (76% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:10:12, on 04.03.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\WINDOWS\SysWOW64\rundll32.exe
C:\Windows\SysWOW64\HsMgr.exe
C:\Program Files\ASUS Xonar DG Audio\Customapp\ASUSAUDIOCENTER.EXE
C:\Users\Ganja\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Ganja.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Ganja\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [SpybotPostWindows10UpgradeReInstall] "C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe"
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Ganja\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Ganja\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: RollerCoaster Tycoon 3 Registration.lnk = Ganja\AppData\Local\Temp\{CA2F0263-C6D0-49C3-9E71-D4299F7F728A}\{907B4640-266B-4A21-92FB-CD1A86CD0F63}\ATR1.exe
O4 - Startup: RollerCoaster Tycoon 3_ Wild Registration.lnk = Ganja\AppData\Local\Temp\{99C66A29-ADF2-413F-AC48-E35BA5325D09}\{45653847-497F-47BB-A878-46FBDE34A3E0}\ATR1.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000 (c2wts) - Unknown owner - C:\Program Files (x86)\Windows Identity Foundation\v3.5\c2wtshost.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\System32\dsrolesrv.dll,-1 (DsRoleSvc) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @%windir%\system32\inetsrv\iisres.dll,-30007 (IISADMIN) - Unknown owner - C:\WINDOWS\system32\inetsrv\inetinfo.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @mqutil.dll,-6203 (MSMQTriggers) - Unknown owner - C:\WINDOWS\system32\mqtgsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vmcompute.exe,-100 (vmcompute) - Unknown owner - C:\WINDOWS\system32\vmcompute.exe (file missing)
O23 - Service: @%systemroot%\system32\vmms.exe,-10 (vmms) - Unknown owner - C:\WINDOWS\system32\vmms.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: @%windir%\system32\inetsrv\iisres.dll,-20001 (WMSVC) - Unknown owner - C:\WINDOWS\system32\inetsrv\wmsvc.exe (file missing)

--
End of file - 10415 bytes

======Listing Processes======







C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\ESET\ESET Smart Security\ekrn.exe"
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k ipripsvc
C:\WINDOWS\system32\svchost.exe -k ftpsvc
"C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
C:\WINDOWS\system32\inetsrv\inetinfo.exe
C:\WINDOWS\System32\svchost.exe -k LPDService
C:\WINDOWS\system32\mqsvc.exe
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\System32\tcpsvcs.exe
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\vmms.exe
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
C:\WINDOWS\system32\mqtgsvc.exe
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe"
dashost.exe {1a18342a-a425-40dc-82e0e90fb963c3b5}

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
rundll32 "C:\Program Files\ESET\ESET Smart Security\x86\eplgHooks.dll",Proc32_HooksLoop
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Windows\SysWOW64\HsMgr.exe" Envoke
"C:\Windows\System\HsMgr64.exe" Envoke
"C:\Program Files\ASUS Xonar DG Audio\Customapp\ASUSAUDIOCENTER.EXE"
"C:\Users\Ganja\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cachedir="C:\Users\Ganja\AppData\Local\Steam\htmlcache" -steampid=7672 -buildid=1454621001 -steamid="0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.75 --handshake-handle=0x1c0
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=6516 --on-initialized-event-handle=572 --parent-handle=576 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UpdateRendererPriorityOnStartup/Control2/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4316.21.1376195379\57538598" --font-cache-shared-handle=8008 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UpdateRendererPriorityOnStartup/Control2/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4316.22.6022111\1149948726" --font-cache-shared-handle=7780 /prefetch:1
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UpdateRendererPriorityOnStartup/Control2/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4316.69.360806690\358464020" --font-cache-shared-handle=9064 /prefetch:1
C:\WINDOWS\system32\atiesrxx.exe
atieclxx
C:\WINDOWS\System32\msdtc.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4316.80.2058935611\1858743850" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,25,26,54,58 --gpu-vendor-id=0x1002 --gpu-device-id=0x68ba --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=15.200.1062.1004 --ignored=" --type=renderer " /prefetch:2
"C:\WINDOWS\system32\msinfo32.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UpdateRendererPriorityOnStartup/Control2/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4316.85.1870065888\1071545937" --font-cache-shared-handle=5080 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UpdateRendererPriorityOnStartup/Control2/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4316.87.827053914\251923379" --font-cache-shared-handle=3564 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UpdateRendererPriorityOnStartup/Control2/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4316.88.872456727\1032319940" --font-cache-shared-handle=11008 /prefetch:1

"C:\Users\Ganja\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe69_ Global\UsGthrCtrlFltPipeMssGthrPipe69 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 628 632 640 8192 636

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player PPAPI Notifier.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_20_0_0_306_pepper.exe -check pepperplugin
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MsmqIntCert"=C:\Windows\System32\regsvr32.exe [2015-10-30 18432]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2016-01-25 16404224]
"Cmaudio8788"=C:\Windows\syswow64\RunDll32.exe [2015-10-30 53760]
"Cmaudio8788GX"=C:\Windows\syswow64\HsMgr.exe [2016-01-23 200704]
"Cmaudio8788GX64"=C:\Windows\system\HsMgr64.exe [2016-01-23 282112]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Ganja\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-02-11 551112]
"SpybotPostWindows10UpgradeReInstall"=C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [2016-01-22 1011200]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-02-04 3014224]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2016-01-15 4177784]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-02-10 50599552]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-02-12 8641240]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Ganja\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2016-01-25 4101576]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-11-04 767176]

C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
RollerCoaster Tycoon 3 Registration.lnk - C:\Users\Ganja\AppData\Local\Temp\{CA2F0263-C6D0-49C3-9E71-D4299F7F728A}\{907B4640-266B-4A21-92FB-CD1A86CD0F63}\ATR1.exe
RollerCoaster Tycoon 3_ Wild Registration.lnk - C:\Users\Ganja\AppData\Local\Temp\{99C66A29-ADF2-413F-AC48-E35BA5325D09}\{45653847-497F-47BB-A878-46FBDE34A3E0}\ATR1.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoSimpleNetIDList"=1
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.RTV1"=rtvcvfw64.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-03-04 09:10:02 ----D---- C:\Program Files\trend micro
2016-03-04 09:10:01 ----D---- C:\rsit
2016-03-04 08:21:10 ----SHD---- C:\Config.Msi
2016-03-04 08:19:21 ----D---- C:\WINDOWS\LastGood
2016-03-04 06:58:18 ----D---- C:\Program Files\Defraggler
2016-03-04 06:17:13 ----HD---- C:\OneDriveTemp
2016-03-03 09:36:44 ----D---- C:\Program Files (x86)\RivaTuner Statistics Server
2016-03-03 09:36:12 ----D---- C:\Program Files (x86)\MSI Afterburner
2016-03-03 09:33:06 ----AD---- C:\Program Files\MSI Kombustor 3
2016-03-02 08:33:44 ----AD---- C:\Program Files\CCleaner
2016-03-02 08:31:31 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2016-03-02 08:26:17 ----D---- C:\ProgramData\Malwarebytes
2016-03-02 08:26:17 ----AD---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-03-02 08:26:17 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2016-03-02 08:26:17 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2016-03-02 08:26:17 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2016-03-02 08:01:37 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 08:01:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 08:01:34 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-02 08:01:32 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-02 08:01:32 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 08:01:31 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 08:01:31 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 08:01:30 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 08:01:30 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 08:01:30 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 08:01:30 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 08:01:29 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 08:01:28 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 08:01:28 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 08:01:27 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-02 08:01:27 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 08:01:27 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 08:01:27 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 08:01:26 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 08:01:25 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 08:01:24 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-02 08:01:23 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-02 08:01:23 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-02 08:01:23 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-02 08:01:21 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-02 08:01:20 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 08:01:20 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 08:01:19 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 08:01:19 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 08:01:19 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 08:01:18 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 08:01:18 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 08:01:18 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 08:01:17 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 08:01:17 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 08:01:16 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 08:01:15 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-02 08:01:14 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 08:01:13 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-02 08:01:11 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 08:01:11 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 08:01:11 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-02 08:01:11 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-02 08:01:11 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-02 08:01:10 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 08:01:03 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 08:01:00 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-02 08:01:00 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 08:00:59 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 08:00:59 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-02 08:00:59 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 08:00:59 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 08:00:58 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 08:00:58 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-02 08:00:58 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 08:00:57 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 08:00:57 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 08:00:57 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 08:00:57 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 08:00:56 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-02 08:00:55 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 08:00:55 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-02 08:00:54 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-02 08:00:54 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 08:00:54 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-02 08:00:53 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 08:00:53 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 08:00:52 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 08:00:52 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 08:00:51 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 08:00:51 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 08:00:51 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 08:00:50 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 08:00:50 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-02 08:00:50 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 08:00:49 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 08:00:48 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-02 08:00:48 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 08:00:47 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 08:00:47 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 08:00:47 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 08:00:47 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 08:00:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 08:00:46 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-02 08:00:46 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 08:00:45 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 08:00:45 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 08:00:45 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-02 08:00:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 08:00:44 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 08:00:44 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 08:00:44 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 08:00:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 08:00:43 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 08:00:42 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 08:00:42 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 08:00:42 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 08:00:42 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 08:00:41 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 08:00:41 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 08:00:41 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-02 08:00:41 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-02 08:00:40 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 08:00:40 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 08:00:40 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 08:00:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 08:00:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 08:00:39 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 08:00:39 ----A---- C:\WINDOWS\system32\hvloader.exe
2016-03-02 08:00:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 08:00:38 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 08:00:38 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 08:00:37 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 08:00:37 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 08:00:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 08:00:36 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-02 08:00:36 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 08:00:36 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 08:00:36 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 08:00:36 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-02 08:00:35 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 08:00:35 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 08:00:35 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 08:00:35 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-02 08:00:34 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-02 08:00:34 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 08:00:34 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 08:00:34 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 08:00:34 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 08:00:33 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 08:00:33 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-02 08:00:33 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 08:00:32 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 08:00:32 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 08:00:32 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 08:00:32 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 08:00:32 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 08:00:32 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 08:00:31 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-02 08:00:31 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 08:00:31 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 08:00:31 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 08:00:30 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 08:00:30 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 08:00:29 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-02 08:00:29 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 08:00:29 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 08:00:29 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 08:00:29 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 08:00:28 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-02 08:00:28 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 08:00:28 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 08:00:28 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-02 08:00:28 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 08:00:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 08:00:27 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-02 08:00:27 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 08:00:27 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 08:00:27 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 08:00:27 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 08:00:27 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 08:00:26 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 08:00:26 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 08:00:26 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 08:00:26 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 08:00:26 ----A---- C:\WINDOWS\system32\drivers\vmswitch.sys
2016-03-02 08:00:26 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 08:00:26 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 08:00:25 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 08:00:25 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 08:00:25 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-02 08:00:24 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 08:00:24 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-02 08:00:24 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 08:00:24 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 08:00:24 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 08:00:24 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-02 08:00:24 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 08:00:24 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 08:00:24 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 08:00:23 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 08:00:23 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 08:00:23 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-02 08:00:23 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 08:00:23 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 08:00:23 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 08:00:23 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 08:00:23 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-02 08:00:22 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 08:00:21 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 08:00:21 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-02 08:00:21 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 08:00:21 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 08:00:20 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-02 08:00:20 ----A---- C:\WINDOWS\system32\hvix64.exe
2016-03-02 08:00:20 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-02 08:00:19 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-02 08:00:19 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 08:00:19 ----A---- C:\WINDOWS\system32\hvax64.exe
2016-03-02 08:00:19 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 08:00:19 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 08:00:18 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 08:00:18 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-02 08:00:18 ----A---- C:\WINDOWS\system32\vmsif.dll
2016-03-02 08:00:18 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 08:00:18 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 08:00:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 08:00:17 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 08:00:17 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 08:00:17 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 08:00:17 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 08:00:17 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-02 08:00:17 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 08:00:17 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 08:00:16 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-02 08:00:16 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 08:00:16 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 08:00:16 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 08:00:16 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 08:00:16 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 08:00:16 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 08:00:16 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 08:00:16 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 08:00:16 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 08:00:15 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 08:00:15 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-02 08:00:15 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-02-29 18:39:17 ----HD---- C:\WINDOWS\msdownld.tmp
2016-02-29 18:39:11 ----D---- C:\WINDOWS\SYSWOW64\directx
2016-02-19 11:30:01 ----D---- C:\Users\Ganja\AppData\Roaming\Atari
2016-02-19 11:19:54 ----D---- C:\Users\Ganja\AppData\Roaming\Leadertech
2016-02-19 11:19:52 ----A---- C:\WINDOWS\patchw32.dll
2016-02-19 11:17:33 ----D---- C:\Program Files (x86)\Atari
2016-02-10 11:58:48 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-02-10 10:32:03 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-02-10 10:32:02 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-02-10 10:32:00 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-02-10 10:31:59 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-02-10 10:31:59 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-02-10 10:31:59 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-02-10 10:31:59 ----A---- C:\WINDOWS\explorer.exe
2016-02-10 10:31:58 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-02-10 10:31:58 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-02-10 10:31:58 ----A---- C:\WINDOWS\system32\combase.dll
2016-02-10 10:31:57 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-02-10 10:31:57 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-02-10 10:31:56 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-02-10 10:31:56 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-02-10 10:31:56 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-02-10 10:31:56 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-02-10 10:31:55 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-02-10 10:31:55 ----A---- C:\WINDOWS\system32\systemreset.exe
2016-02-10 10:31:55 ----A---- C:\WINDOWS\system32\OpenWith.exe
2016-02-10 10:31:55 ----A---- C:\WINDOWS\system32\iassam.dll
2016-02-10 10:31:53 ----A---- C:\WINDOWS\SYSWOW64\ztrace_maps.dll
2016-02-10 10:31:53 ----A---- C:\WINDOWS\SYSWOW64\OpenWith.exe
2016-02-10 10:31:53 ----A---- C:\WINDOWS\SYSWOW64\mtxoci.dll
2016-02-10 10:31:53 ----A---- C:\WINDOWS\SYSWOW64\msorcl32.dll
2016-02-10 10:31:53 ----A---- C:\WINDOWS\system32\ztrace_maps.dll
2016-02-10 10:31:53 ----A---- C:\WINDOWS\system32\mtxoci.dll
2016-02-10 10:31:53 ----A---- C:\WINDOWS\system32\hlink.dll
2016-02-10 10:31:53 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2016-02-10 10:31:53 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-02-10 10:31:53 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2016-02-10 10:31:52 ----A---- C:\WINDOWS\SYSWOW64\iassam.dll
2016-02-10 10:31:52 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2016-02-10 10:31:52 ----A---- C:\WINDOWS\SYSWOW64\cfgbkend.dll
2016-02-10 10:31:52 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-02-09 13:19:34 ----AD---- C:\Program Files (x86)\MSXML 4.0
2016-02-09 13:18:19 ----D---- C:\Users\Ganja\AppData\Roaming\MAGIX
2016-02-09 13:17:51 ----D---- C:\ProgramData\MAGIX
2016-02-09 11:17:56 ----AD---- C:\Program Files (x86)\MAGIX Music Maker 2015 Premium

======List of files/folders modified in the last 1 month======

2016-03-04 09:10:02 ----RD---- C:\Program Files
2016-03-04 09:06:41 ----D---- C:\WINDOWS\Temp
2016-03-04 08:54:27 ----D---- C:\WINDOWS\Prefetch
2016-03-04 08:50:58 ----SHDC---- C:\WINDOWS\Installer
2016-03-04 08:50:57 ----RD---- C:\Program Files (x86)
2016-03-04 08:50:39 ----SHD---- C:\System Volume Information
2016-03-04 08:37:39 ----D---- C:\Windows
2016-03-04 08:37:29 ----D---- C:\WINDOWS\registration
2016-03-04 08:35:01 ----D---- C:\WINDOWS\system32\inetsrv
2016-03-04 08:33:05 ----SD---- C:\Users\Ganja\AppData\Roaming\Microsoft
2016-03-04 08:22:42 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-04 08:22:42 ----AD---- C:\WINDOWS\SysWOW64
2016-03-04 08:21:35 ----AD---- C:\Program Files (x86)\ATI Technologies
2016-03-04 08:21:34 ----D---- C:\ProgramData\Package Cache
2016-03-04 08:21:25 ----HD---- C:\ProgramData
2016-03-04 08:20:22 ----D---- C:\AMD
2016-03-04 08:20:15 ----D---- C:\WINDOWS\System32
2016-03-04 08:19:57 ----D---- C:\WINDOWS\system32\drivers
2016-03-04 08:19:09 ----D---- C:\WINDOWS\INF
2016-03-04 08:17:00 ----D---- C:\WINDOWS\system32\sru
2016-03-04 06:22:54 ----D---- C:\Program Files (x86)\Steam
2016-03-04 06:22:42 ----D---- C:\WINDOWS\Logs
2016-03-04 06:22:42 ----D---- C:\WINDOWS\debug
2016-03-04 06:21:34 ----HD---- C:\Program Files\WindowsApps
2016-03-03 09:01:59 ----D---- C:\WINDOWS\pss
2016-03-03 08:42:00 ----D---- C:\WINDOWS\AppReadiness
2016-03-02 15:52:41 ----D---- C:\WINDOWS\rescache
2016-03-02 08:59:19 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-02 08:59:07 ----D---- C:\Users\Ganja\AppData\Roaming\DAEMON Tools Lite
2016-03-02 08:59:07 ----D---- C:\Users\Ganja\AppData\Roaming\BitTorrent
2016-03-02 08:58:43 ----D---- C:\WINDOWS\system32\config
2016-03-02 08:58:40 ----DC---- C:\WINDOWS\Panther
2016-03-02 08:54:40 ----D---- C:\WINDOWS\WinSxS
2016-03-02 08:54:35 ----SHD---- C:\Boot
2016-03-02 08:51:45 ----D---- C:\WINDOWS\Speech
2016-03-02 08:48:58 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-02 08:48:58 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-02 08:48:52 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-02 08:48:51 ----D---- C:\WINDOWS\system32\wbem
2016-03-02 08:48:51 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-02 08:48:51 ----D---- C:\WINDOWS\system32\migration
2016-03-02 08:48:45 ----D---- C:\WINDOWS\system32\Dism
2016-03-02 08:48:41 ----D---- C:\WINDOWS\system32\Boot
2016-03-02 08:48:41 ----D---- C:\WINDOWS\system32\appraiser
2016-03-02 08:48:34 ----RSD---- C:\WINDOWS\Media
2016-03-02 08:48:34 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-02 08:48:33 ----RSD---- C:\WINDOWS\Fonts
2016-03-02 08:48:33 ----D---- C:\WINDOWS\bcastdvr
2016-03-02 08:48:33 ----D---- C:\WINDOWS\AppPatch
2016-03-02 08:48:33 ----D---- C:\Program Files\Windows Portable Devices
2016-03-02 08:48:33 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-02 08:48:33 ----D---- C:\Program Files\Windows Media Player
2016-03-02 08:48:33 ----D---- C:\Program Files\Windows Journal
2016-03-02 08:48:33 ----D---- C:\Program Files\Internet Explorer
2016-03-02 08:48:33 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-02 08:48:33 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-02 08:48:33 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-02 08:48:30 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-02 08:47:07 ----D---- C:\Program Files (x86)\TNod
2016-03-02 08:33:52 ----D---- C:\WINDOWS\system32\Tasks
2016-03-02 08:07:49 ----D---- C:\WINDOWS\CbsTemp
2016-03-02 07:44:09 ----D---- C:\WINDOWS\system32\catroot2
2016-02-19 11:23:17 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-02-19 11:19:52 ----D---- C:\Program Files (x86)\Common Files
2016-02-16 10:04:58 ----D---- C:\WINDOWS\system32\NDF
2016-02-14 15:34:46 ----D---- C:\Users\Ganja\AppData\Roaming\Skype
2016-02-14 15:33:19 ----D---- C:\ProgramData\Skype
2016-02-14 15:33:17 ----RD---- C:\Program Files (x86)\Skype
2016-02-12 11:51:47 ----RSD---- C:\WINDOWS\assembly
2016-02-11 17:29:48 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-02-11 17:29:46 ----D---- C:\WINDOWS\system32\cs-CZ
2016-02-11 11:35:20 ----D---- C:\WINDOWS\system32\MRT
2016-02-11 11:30:14 ----A---- C:\WINDOWS\system32\MRT.exe
2016-02-09 13:20:45 ----D---- C:\WINDOWS\Help

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdide64;amdide64; C:\WINDOWS\System32\drivers\amdide64.sys [2016-01-22 11944]
R0 amdkmafd;@oem21.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmafd.sys [2016-01-26 31992]
R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2016-01-26 69840]
R1 CFRMD;CFRMD; C:\WINDOWS\system32\DRIVERS\CFRMD.sys [2014-06-26 40224]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2016-01-26 263528]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2016-01-26 186784]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2015-11-16 206312]
R1 EpfwLWF;@oem29.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2015-11-16 52872]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-01-24 71008]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2016-01-22 26528]
R2 AODDriver4.3;AODDriver4.3; \??\C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-11 59616]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2016-01-26 142976]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\WINDOWS\system32\DRIVERS\RMCAST.sys [2016-01-24 147968]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-12-16 21648880]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-12-16 674288]
R3 AtiHDAudioService;@oem20.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2016-01-25 102912]
R3 cmudaxp;@oem9.inf,%CMUDA.SvcDesc%;ASUS Xonar DG Audio Interface; C:\WINDOWS\system32\drivers\cmudaxp.sys [2016-01-23 2735616]
R3 dtlitescsibus;@oem13.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-02-01 30264]
R3 dtliteusbbus;@oem14.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-02-01 47672]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2016-01-25 4592384]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-01-24 175616]
R3 rt640x64;@oem19.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-01-25 935168]
R3 Synth3dVsp;Synth3dVsp; C:\WINDOWS\System32\drivers\synth3dvsp.sys [2016-01-24 101888]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2016-01-26 14976]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-01-24 117248]
S3 ESETCleanersDriver;ESET Cleaner Service; \??\C:\WINDOWS\system32\Drivers\ESETCleanersDriver.sys [2016-01-29 170280]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 lunparser;@%systemroot%\system32\drivers\lunparser.sys,-10010; C:\WINDOWS\system32\drivers\lunparser.sys [2016-01-24 22528]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2015-10-05 64216]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 passthruparser;@%systemroot%\system32\drivers\passthruparser.sys,-10010; C:\WINDOWS\system32\drivers\passthruparser.sys [2016-01-24 23552]
S3 pcip;@wpcip.inf,%pcip.SVCDESC%;PCI Proxy driver; C:\WINDOWS\System32\drivers\pcip.sys [2016-01-24 44544]
S3 pvhdparser;@%systemroot%\system32\drivers\pvhdparser.sys,-10010; C:\WINDOWS\system32\drivers\pvhdparser.sys [2016-01-24 50176]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RTL8168;@oem6.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\System32\drivers\Rt630x64.sys [2016-01-22 935168]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-12-16 255472]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [2016-01-26 344064]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2016-01-26 2521080]
R2 ftpsvc;@%windir%\system32\inetsrv\ftpres.dll,-30001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 IISADMIN;@%windir%\system32\inetsrv\iisres.dll,-30007; C:\WINDOWS\system32\inetsrv\inetinfo.exe [2016-01-24 17408]
R2 iprip;@%Systemroot%\system32\iprip.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 LPDSVC;@%systemroot%\system32\lpdsvc.dll,-500; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-01-24 26624]
R2 MSMQTriggers;@mqutil.dll,-6203; C:\WINDOWS\system32\mqtgsvc.exe [2016-01-24 164864]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 OneSyncSvc_319f423;Hostitel synchronizace_319f423; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2016-01-25 171928]
R2 simptcp;@%SystemRoot%\system32\simptcp.dll,-200; C:\WINDOWS\System32\tcpsvcs.exe [2015-10-30 12288]
R2 SNMP;@%SystemRoot%\system32\snmp.exe,-3; C:\WINDOWS\System32\snmp.exe [2016-01-24 51712]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2016-01-15 1369464]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 PimIndexMaintenanceSvc_319f423;Data kontaktů_319f423; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2016-01-25 1738168]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-01-29 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2016-01-25 2088408]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 c2wts;@%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [2016-01-24 5632]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsRoleSvc;@%SystemRoot%\System32\dsrolesrv.dll,-1; C:\WINDOWS\System32\lsass.exe [2015-10-30 57912]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-01-29 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_319f423;Služba zasílání zpráv_319f423; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu logu

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět