Stránka 1 z 2

Kontrola logu

Napsal: 14 bře 2016 09:17
od Spikl
Dobrý den,
prosím ok kontrolu logu NTB W10 x64. Pravidelně během dne zamrzne tak, že s ním nelze nic dělat dokuh ho ručn neodpojím od netu, pak se po chvíli vzpamatuje :-).
U některých programů procesy "zamrzly" a využívali procesor a disk na maximum (Acrobat Reader, už jsem jej odinstaloval).
U Wordu a Excelu mi to semtam hodí hlášku, že jsou potíže s kompatibilitou.
V Outlooku nejde příjmat ani odesílat pošta z některých účtů.
Děkuji. P

Log:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Dios at 2016-03-14 09:11:39
Microsoft Windows 10 Pro
System drive C: has 23 GB (4%) free of 588 GB
Total RAM: 4030 MB (45% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:11:46, on 14.3.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTMngr.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coNatHst.exe
C:\WINDOWS\sysWow64\SearchProtocolHost.exe
C:\Program Files\trend micro\Dios.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.tipmatchbets.com/?cz&page=di ... egory=chat
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: (no name) - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - (no file)
O2 - BHO: PXCIEaddin - {42DFA04F-0F16-418e-B80C-AB97A5AFAD39} - C:\Program Files\Tracker Software\PDF-XChange 4\PXCIEAddin4.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coIEPlg.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: (no name) - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: PDFXChange 4.0 - {42DFA04F-0F16-418e-B80C-AB97A5AFAD39} - C:\Program Files\Tracker Software\PDF-XChange 4\PXCIEAddin4.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coIEPlg.dll
O3 - Toolbar: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [DriveUtilitiesHelper] C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe
O4 - HKLM\..\Run: [NetLockMngr] C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTMngr.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Dios\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [iCloudDrive] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
O4 - HKCU\..\Run: [iCloudPhotos] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: Clip bookmark - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: Clip Image - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=4
O8 - Extra context menu item: Clip selection - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=3
O8 - Extra context menu item: Clip this page - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=1
O8 - Extra context menu item: Clip URL - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: New Note - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\NewNote.html
O8 - Extra context menu item: Nová poznámka - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\NewNote.html
O8 - Extra context menu item: Oříznutý obrázek - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=4
O8 - Extra context menu item: Vystřihnout tuto stránku - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=1
O8 - Extra context menu item: Vystřihnout výběr - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=3
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - (no file)
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - (no file)
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - (no file)
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - (no file)
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - (no file)
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{010225A0-1DFD-CB3D-7CBF-F81DEAD6A5B5}: NameServer = 62.141.0.1 213.162.65.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{010225A2-1DFD-CB3D-7CBF-F81DEAD6A5B5}: NameServer = 93.153.117.1 93.153.117.33
O17 - HKLM\System\CCS\Services\Tcpip\..\{44da3733-12ea-4092-ab15-cb3b918a7993}: NameServer = 192.168.100.1,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\..\{010225A0-1DFD-CB3D-7CBF-F81DEAD6A5B5}: NameServer = 62.141.0.1 213.162.65.1
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Atheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: DraftSight API Service - Dassault Systemes - C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) - The Firebird Project - C:\Program Files (x86)\Firebird\bin\fbguard.exe
O23 - Service: Firebird Server - DefaultInstance (FirebirdServerDefaultInstance) - The Firebird Project - C:\Program Files (x86)\Firebird\bin\fbserver.exe
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: HP DS Service - Hewlett-Packard Company - C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP DayStarter Service (HPDayStarterService) - Hewlett-Packard Company - c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP SI Service (HPSIService) - Unknown owner - C:\WINDOWS\system32\HPSIsvc.exe (file missing)
O23 - Service: @oem19.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Identity Protection Technology Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\windows\SysWOW64\NLSSRV32.EXE
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: Soluto Launcher Service (SolutoLauncherService) - Soluto - C:\Program Files\Soluto\SolutoLauncherService.exe
O23 - Service: Soluto Remote Service (SolutoRemoteService) - GlavSoft LLC. - C:\Program Files\Soluto\SolutoRemoteService.exe
O23 - Service: Soluto PCGenome Core Service (SolutoService) - Soluto - C:\Program Files\Soluto\SolutoService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - IDT, Inc. - (no file)
O23 - Service: SWLock Server (SWLckServer) - Unknown owner - C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: WD Drive Manager (WDDriveService) - Western Digital Technologies, Inc. - C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: CryptoPlus XME Engine Service (xmengine service) - Monet+, a.s. - C:\windows\SysWOW64\xmesrv.exe
O23 - Service: XobniService - Xobni Corporation - C:\Program Files (x86)\Xobni\XobniService.exe

--
End of file - 17933 bytes

======Listing Processes======







winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
dashost.exe {d517495b-2227-473a-8f89c2083d829502}
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe"
"C:\Program Files\IDT\WDM\AESTSr64.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe"
C:\WINDOWS\system32\mqsvc.exe
C:\WINDOWS\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\diMaster.dll" /prefetch:1
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe"
C:\windows\system32\vcsFPService.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTService.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files\Soluto\SolutoLauncherService.exe"
"C:\Program Files\Soluto\SolutoService.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe" /c /a /s UserSession
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"c:\program files\soluto\soluto.exe" /userinit
C:\WINDOWS\Explorer.EXE
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
"C:\Program Files\iTunes\iTunesHelper.exe"
"C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe"
"C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe"
"C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
"C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
"C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTMngr.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Soluto\SolutoRemoteService.exe" -service
"C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe"
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\WINDOWS\system32\srtasks.exe ExecuteScopeRestorePoint /WaitForRestorePoint:16
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Users\Dios\Desktop\Odvirování\RSITx64.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coNatHst.exe" firefox
"C:\WINDOWS\system32\taskmgr.exe" /4
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2675517426-136286855-1641891982-10014_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2675517426-136286855-1641891982-10014 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 632 636 644 8192 640
"C:\WINDOWS\sysWow64\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2675517426-136286855-1641891982-10015_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2675517426-136286855-1641891982-10015 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe6_ Global\UsGthrCtrlFltPipeMssGthrPipe6 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\WINDOWS\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Dios\AppData\Roaming\Mozilla\Firefox\Profiles\h0iijypa.default-1414995702743

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"

"{C1A2A613-35F1-4FCF-B27F-2840527B6556}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.5.2.15\coFFAddon\


[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\windows\SysWOW64\Adobe\Director\np32dsw_1207148.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@parallelgraphics.com/Cortona]
"Description"=Cortona VRML Plugin
"Path"=C:\Program Files (x86)\Common Files\ParallelGraphics\Cortona\npcortona.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5]
"Description"=A component of your photo software powered by RocketLife
"Path"=C:\Users\Dios\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@software602.cz/602XML Filler]
"Description"=602XML Filler Plugin
"Path"=C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0]
"Description"=WildTangent Games App V2 Presence Detector Plugin
"Path"=C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll


C:\Program Files (x86)\Mozilla Firefox\components\
nsIQTScriptablePlugin.xpt

C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFFICE.DLL
npPDFXCviewNPPlugin.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Users\Dios\AppData\Roaming\Mozilla\Firefox\Profiles\h0iijypa.default-1414995702743\extensions\
firefoxdav@icloud.com

C:\Users\Dios\AppData\Roaming\Mozilla\Firefox\Profiles\h0iijypa.default-1414995702743\searchplugins\
firmycz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine64\22.5.5.15\coIEPlg.dll [2015-11-05 1038648]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-10-22 328248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{42DFA04F-0F16-418e-B80C-AB97A5AFAD39}]
PDFXChange 4.0 - C:\Program Files\Tracker Software\PDF-XChange 4\PXCIEAddin4.dll [2011-09-27 422496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coIEPlg.dll [2015-11-05 794424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-10 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-01-07 60576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-10 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-10-22 517688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine64\22.5.5.15\coIEPlg.dll [2015-11-05 1038648]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{42DFA04F-0F16-418e-B80C-AB97A5AFAD39} - PDFXChange 4.0 - C:\Program Files\Tracker Software\PDF-XChange 4\PXCIEAddin4.dll [2011-09-27 422496]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coIEPlg.dll [2015-11-05 794424]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2011-01-27 835072]
"AthBtTray"=C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [2011-01-07 379040]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-03 3944136]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2015-12-17 170256]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"iCloudServices"=C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [2015-11-30 60688]
"OneDrive"=C:\Users\Dios\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-28 551112]
"iCloudDrive"=C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [2015-11-30 103696]
"iCloudPhotos"=C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [2015-11-30 349968]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DTRun]
c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2010-11-24 517456]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPPowerAssistant]
C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe [2011-01-27 13880]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPQuickWebProxy]
c:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [2015-10-05 169528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe --auto-start []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2015-08-06 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-06-08 334896]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SysTrayApp]
C:\Program Files\IDT\WDM\sttray64.exe [2011-01-27 835072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WD Quick View]
C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [2014-06-02 5563760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [2009-11-18 275072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Dios^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Kooperativa - PDF Server.lnk]
C:\Program Files\Kooperativa\KoopPxBN\KoopPDFServerSA.exe []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2015-12-17 60688]
"DriveUtilitiesHelper"=C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe [2015-05-20 1890664]
"NetLockMngr"=C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTMngr.exe [2012-09-30 3076512]
""= []
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13 1085656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
"NoDrives"=0
"NoDriveAutoRun"=3
"NoDriveTypeAutoRun"=0
"NofolderOptions"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveAutoRun"=3
"NoDriveTypeAutoRun"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-03-10 14:17:12 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-10 14:17:07 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-10 14:17:06 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-10 14:17:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-10 14:16:58 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-10 14:16:55 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-10 14:16:51 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-10 14:16:46 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-10 14:16:45 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-10 14:16:43 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-10 14:16:39 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-10 14:16:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-10 14:16:36 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-10 14:16:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-10 14:16:33 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-10 14:16:32 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-10 14:16:28 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-10 14:16:28 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-10 14:16:27 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-10 14:16:27 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-10 14:16:26 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-10 14:16:24 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-10 14:16:23 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-10 14:16:23 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-10 14:16:23 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-10 14:16:22 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-10 14:16:22 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-10 14:16:21 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-10 14:16:21 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-10 14:16:21 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-10 14:16:20 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-10 14:16:20 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-10 14:16:20 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-10 14:16:20 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-10 14:16:19 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-10 14:16:19 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-10 14:16:19 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-10 14:16:19 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-10 14:16:18 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-10 14:16:18 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-10 14:16:18 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-10 14:16:17 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-10 14:16:17 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-10 14:16:17 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-10 14:16:15 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-10 14:16:15 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-10 14:16:13 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-10 14:16:13 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-10 14:16:13 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-10 14:16:12 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-10 14:16:12 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-10 14:16:12 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-10 14:16:11 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-10 14:16:11 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-10 14:16:10 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-10 14:16:10 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-10 14:16:10 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-10 14:16:09 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-10 14:16:09 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-10 14:16:08 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-10 14:16:08 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-10 14:16:08 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-10 14:16:08 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-10 14:16:07 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-10 14:16:07 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-10 14:16:06 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-10 14:16:06 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-10 14:16:06 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-10 14:16:05 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-10 14:16:05 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-10 14:16:05 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-10 14:16:05 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-10 14:16:04 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-10 14:16:04 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-10 14:16:04 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-10 14:16:04 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-10 14:16:03 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-10 14:16:02 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-10 14:16:01 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-10 14:16:01 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-10 14:16:00 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-10 14:16:00 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-10 14:15:56 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-10 14:15:56 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-10 14:15:55 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-10 14:15:55 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-10 14:15:55 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-10 14:15:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-10 14:15:52 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-10 14:15:52 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-10 14:15:51 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-10 14:15:51 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-10 14:15:51 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-10 14:15:51 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-10 14:15:51 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-10 14:15:50 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-10 14:15:50 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-10 14:15:49 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-10 14:15:49 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-10 14:15:48 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-10 14:15:48 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-10 14:15:48 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-10 14:15:46 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-10 14:15:45 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-10 14:15:45 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-10 14:15:45 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-10 14:15:45 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-10 14:15:40 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-10 14:15:40 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-10 14:15:38 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-10 14:15:36 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-10 14:15:36 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-10 14:15:36 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-10 14:15:35 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-10 14:15:33 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-10 14:15:33 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-10 14:15:33 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-10 14:15:33 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-10 14:15:32 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-10 14:15:32 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-10 14:15:32 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-10 14:15:32 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-07 10:20:02 ----D---- C:\Users\Dios\AppData\Roaming\PDAppFlex
2016-03-07 09:59:41 ----A---- C:\Users\Dios\AppData\Roaming\AdobeWLCMCache.dat
2016-03-07 09:41:12 ----D---- C:\ProgramData\boost_interprocess
2016-03-05 11:48:50 ----D---- C:\Program Files (x86)\JoWooD
2016-03-02 07:29:52 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 07:29:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 07:29:42 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 07:29:39 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 07:29:38 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 07:29:38 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 07:29:38 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 07:29:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 07:29:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 07:29:36 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 07:29:33 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 07:29:33 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 07:29:32 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 07:29:30 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 07:29:29 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 07:29:27 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 07:29:26 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 07:29:15 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 07:29:15 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 07:29:14 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 07:29:14 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 07:29:14 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 07:29:14 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 07:29:13 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 07:29:13 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 07:29:12 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 07:29:10 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 07:29:09 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 07:29:03 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 07:28:53 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 07:28:52 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 07:28:51 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 07:28:27 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 07:28:21 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 07:28:17 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 07:28:16 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 07:28:15 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 07:28:13 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 07:28:13 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 07:28:12 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 07:28:11 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 07:28:03 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 07:28:02 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 07:27:58 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 07:27:55 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 07:27:53 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 07:27:52 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 07:27:51 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 07:27:51 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 07:27:50 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 07:27:49 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 07:27:49 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 07:27:48 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 07:27:46 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 07:27:44 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 07:27:41 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 07:27:41 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 07:27:41 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 07:27:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 07:27:40 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 07:27:40 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 07:27:39 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 07:27:37 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 07:27:36 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 07:27:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 07:27:35 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 07:27:35 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 07:27:34 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 07:27:33 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 07:27:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 07:27:30 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 07:27:30 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 07:27:29 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 07:27:28 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 07:27:27 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 07:27:27 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 07:27:26 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 07:27:26 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 07:27:24 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 07:24:53 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 07:24:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 07:23:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 07:23:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 07:23:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 07:23:01 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 07:22:59 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 07:22:59 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 07:22:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 07:22:55 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 07:22:55 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 07:22:55 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 07:22:52 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 07:22:52 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 07:22:51 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 07:22:50 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 07:22:50 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 07:22:49 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 07:22:49 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 07:22:48 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 07:22:48 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 07:22:47 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 07:22:47 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 07:22:47 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 07:22:46 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 07:22:46 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 07:22:45 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 07:22:45 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 07:22:44 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 07:22:43 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 07:22:41 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 07:22:41 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 07:22:40 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 07:22:40 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 07:22:39 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 07:22:39 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 07:22:39 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 07:22:38 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 07:22:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 07:22:37 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 07:22:37 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 07:22:37 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 07:22:36 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 07:22:36 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 07:22:36 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 07:22:35 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 07:22:35 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 07:22:35 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 07:22:34 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 07:22:34 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 07:22:34 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 07:22:34 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 07:22:33 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 07:22:33 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 07:22:32 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 07:22:31 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 07:22:31 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 07:22:31 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 07:22:30 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 07:22:30 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 07:22:29 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 07:22:28 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 07:22:28 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 07:22:28 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 07:22:28 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 07:22:27 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 07:22:26 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 07:22:25 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 07:22:24 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 07:22:22 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 07:22:22 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 07:22:19 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 07:22:19 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 07:22:19 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 07:22:18 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 07:22:17 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 07:22:17 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 07:22:17 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 07:22:17 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 07:22:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 07:22:16 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 07:22:15 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 07:22:15 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 07:22:15 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 07:22:15 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 07:22:14 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 07:22:14 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 07:22:14 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 07:22:13 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 07:22:13 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 07:22:13 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 07:22:13 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 07:22:12 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 07:22:12 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-02 07:22:11 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 07:22:11 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll

======List of files/folders modified in the last 1 month======

2016-03-14 09:11:43 ----D---- C:\Program Files\trend micro
2016-03-14 09:11:20 ----D---- C:\WINDOWS\Prefetch
2016-03-14 09:05:42 ----D---- C:\Users\Dios\AppData\Roaming\uTorrent
2016-03-14 09:03:32 ----D---- C:\WINDOWS\INF
2016-03-14 09:03:31 ----D---- C:\WINDOWS\debug
2016-03-14 09:03:31 ----D---- C:\Windows
2016-03-14 09:03:29 ----D---- C:\WINDOWS\Temp
2016-03-14 09:02:03 ----SHD---- C:\WINDOWS\Installer
2016-03-14 09:02:02 ----D---- C:\Program Files (x86)\Adobe
2016-03-14 09:01:34 ----D---- C:\ProgramData\Adobe
2016-03-14 09:01:16 ----D---- C:\Temp
2016-03-14 09:00:57 ----D---- C:\WINDOWS\system32\config
2016-03-14 08:59:45 ----RD---- C:\Program Files
2016-03-14 08:59:29 ----D---- C:\Program Files\Common Files\Adobe
2016-03-14 08:58:34 ----D---- C:\Users\Dios\AppData\Roaming\Adobe
2016-03-14 08:57:45 ----D---- C:\WINDOWS\system32\Tasks
2016-03-14 08:53:37 ----D---- C:\WINDOWS\SysWOW64
2016-03-14 08:53:34 ----SHD---- C:\System Volume Information
2016-03-14 08:42:38 ----D---- C:\ProgramData\Soluto
2016-03-14 08:25:24 ----D---- C:\WINDOWS\system32\sru
2016-03-14 08:07:59 ----D---- C:\WINDOWS\System32
2016-03-14 08:07:59 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-14 07:16:50 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-13 19:22:35 ----D---- C:\Users\Dios\AppData\Roaming\vlc
2016-03-13 19:02:58 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-03-12 08:32:09 ----D---- C:\WINDOWS\AppReadiness
2016-03-11 13:34:44 ----AD---- C:\KROSplusData
2016-03-11 11:46:31 ----RSD---- C:\WINDOWS\assembly
2016-03-11 08:56:32 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 08:56:27 ----D---- C:\WINDOWS\WinSxS
2016-03-11 06:48:53 ----HD---- C:\Program Files\WindowsApps
2016-03-11 06:13:28 ----D---- C:\WINDOWS\system32\drivers
2016-03-10 23:48:19 ----D---- C:\WINDOWS\system32\migration
2016-03-10 23:48:14 ----D---- C:\WINDOWS\AppPatch
2016-03-10 23:48:14 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 23:48:14 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 23:48:13 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 23:48:13 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 23:48:13 ----D---- C:\Program Files\Windows Media Player
2016-03-10 23:48:13 ----D---- C:\Program Files\Internet Explorer
2016-03-10 23:48:13 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 23:48:11 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-10 18:40:02 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 18:22:48 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 18:22:39 ----D---- C:\ProgramData\Microsoft Help
2016-03-10 13:26:02 ----HD---- C:\ProgramData
2016-03-10 13:25:56 ----RD---- C:\Program Files (x86)
2016-03-10 06:49:35 ----D---- C:\WINDOWS\system32\catroot2
2016-03-09 08:36:00 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-08 07:19:54 ----D---- C:\NPE
2016-03-07 09:59:40 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2016-03-07 09:01:45 ----D---- C:\ProgramData\Package Cache
2016-03-07 07:04:12 ----D---- C:\Program Files\Common Files
2016-03-03 13:05:00 ----D---- C:\WINDOWS\system32\drivers\NISx64
2016-03-02 16:35:56 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-02 16:35:56 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-02 16:35:42 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-02 16:35:42 ----D---- C:\WINDOWS\system32\wbem
2016-03-02 16:35:42 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-02 16:35:41 ----D---- C:\WINDOWS\system32\Dism
2016-03-02 16:35:41 ----D---- C:\WINDOWS\system32\Boot
2016-03-02 16:35:41 ----D---- C:\WINDOWS\system32\appraiser
2016-03-02 16:35:36 ----RSD---- C:\WINDOWS\Media
2016-03-02 16:35:36 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-02 16:35:35 ----RSD---- C:\WINDOWS\Fonts
2016-03-02 16:35:35 ----D---- C:\WINDOWS\bcastdvr
2016-03-02 16:35:35 ----D---- C:\Program Files\Windows Journal
2016-03-01 10:54:37 ----AD---- C:\Program Files (x86)\KROSplus
2016-02-23 10:43:49 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-02-23 07:33:37 ----D---- C:\WINDOWS\Tasks
2016-02-20 13:58:36 ----D---- C:\Users\Dios\AppData\Roaming\dvdcss
2016-02-19 09:17:04 ----AD---- C:\Program Files\NemKalk 7

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 hpdskflt;@oem19.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2012-09-24 31040]
R0 Soluto;Soluto; C:\WINDOWS\system32\DRIVERS\Soluto.sys [2013-11-14 54728]
R1 BHDrvx64;BHDrvx64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\BASHDefs\20160309.001\BHDrvx64.sys [2016-03-03 1766640]
R1 ccSet_NIS;NIS Settings Manager; C:\WINDOWS\system32\drivers\NISx64\1605050.00F\ccSetx64.sys [2015-07-11 173808]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2015-12-17 498512]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 IDSVia64;IDSVia64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\IPSDefs\20160311.001\IDSvia64.sys [2016-02-13 767224]
R1 SRTSP;Symantec Real Time Storage Protection x64; C:\WINDOWS\System32\Drivers\NISx64\1605050.00F\SRTSP64.SYS [2015-11-12 928496]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\WINDOWS\system32\drivers\NISx64\1605050.00F\SRTSPX64.SYS [2015-07-11 50936]
R2 LMIRfsDriver;LogMeIn Remote File System Driver; \??\C:\windows\system32\drivers\LMIRfsDriver.sys [2012-11-29 72216]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 Accelerometer;@oem19.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2012-09-24 43840]
R3 ARCVCAM;@oem112.inf,%avshws.DeviceDesc%;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\WINDOWS\system32\DRIVERS\ArcSoftVCapture.sys [2010-11-11 32192]
R3 athr;@netathrx.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athwnx.sys [2015-10-30 4207104]
R3 BTATH_BUS;@oem98.inf,%BTATH_BUS.SVCDESC%;Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2011-01-07 28832]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2015-10-10 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 cpuz136;cpuz136; \??\C:\WINDOWS\TEMP\cpuz136\cpuz136_x64.sys [2016-03-11 23856]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2015-11-18 157520]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 HpqKbFiltr;@oem58.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2010-12-03 25912]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]
R3 IntcDAud;@oem110.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2011-08-23 317440]
R3 JMCR;JMCR; C:\WINDOWS\System32\drivers\jmcr.sys [2012-07-31 175928]
R3 MEIx64;@oem52.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface; C:\WINDOWS\System32\drivers\HECIx64.sys [2010-10-20 56344]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-12-28 175616]
R3 NAVENG;NAVENG; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\VirusDefs\20160313.003\ENG64.SYS [2015-12-17 138488]
R3 NAVEX15;NAVEX15; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\VirusDefs\20160313.003\EX64.SYS [2015-12-17 2148080]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
R3 ROCKEYNT;@oem93.inf,%Rockey.SVCDESC%;Feitian ROCKEY4 Device Service; C:\WINDOWS\system32\DRIVERS\Rockey4.sys [2013-12-04 36904]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
R3 SNP2UVC;@oem118.inf,%SERVICE_DISPLAY_NAME%;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [2015-12-10 2668424]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 Afc;PPdus ASPI Shell; C:\WINDOWS\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-28 117248]
S3 FsUsbExDisk;FsUsbExDisk; \??\C:\windows\SysWOW64\FsUsbExDisk.SYS [2013-12-30 37344]
S3 GemCCID;GemCCID; C:\WINDOWS\system32\DRIVERS\GemCCID.sys [2015-11-04 139632]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 lmimirr;lmimirr; C:\WINDOWS\system32\DRIVERS\lmimirr.sys [2012-11-29 11552]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 mvusbews;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2012-11-08 19968]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-07-03 42696]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [2011-10-10 85344]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2009-03-03 89600]
R2 AGSService;Adobe Genuine Software Integrity Service; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2016-02-09 2020056]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2015-10-07 77104]
R2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-01-07 138400]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2015-08-12 462096]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 hpsrv;@oem19.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2012-09-24 31040]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2015-09-28 25800]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-12-28 26624]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe [2015-11-20 282016]
R2 OneSyncSvc_555ad;Hostitel synchronizace_555ad; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 SolutoLauncherService;Soluto Launcher Service; C:\Program Files\Soluto\SolutoLauncherService.exe [2013-11-14 182848]
R2 SolutoService;Soluto PCGenome Core Service; C:\Program Files\Soluto\SolutoService.exe [2013-11-14 856128]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2011-01-27 296448]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2015-04-28 1102472]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2015-12-17 644880]
R3 PimIndexMaintenanceSvc_555ad;Data kontaktů_555ad; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 SolutoRemoteService;Soluto Remote Service; C:\Program Files\Soluto\SolutoRemoteService.exe [2013-11-14 1942016]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1d15f81;Hostitel synchronizace_1d15f81; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2e1ae09;Hostitel synchronizace_2e1ae09; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4e5028;Hostitel synchronizace_4e5028; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_58614;Hostitel synchronizace_58614; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_fadbc8;Hostitel synchronizace_fadbc8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-11 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DraftSight API Service;DraftSight API Service; C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe [2014-03-14 123392]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FirebirdGuardianDefaultInstance;Firebird Guardian - DefaultInstance; C:\Program Files (x86)\Firebird\bin\fbguard.exe [2007-12-12 65536]
S3 FirebirdServerDefaultInstance;Firebird Server - DefaultInstance; C:\Program Files (x86)\Firebird\bin\fbserver.exe [2007-12-12 1531989]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-06-05 1432400]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2014-04-24 227904]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2014-08-06 203344]
S3 HP DS Service;HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [2011-10-17 13824]
S3 HP LaserJet Service;HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [2012-05-02 164864]
S3 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2011-01-27 131128]
S3 HPDayStarterService;HP DayStarter Service; c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [2011-01-28 133688]
S3 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [2011-01-28 281656]
S3 hpqcxs08;hpqcxs08; C:\WINDOWS\syswow64\svchost.exe [2015-10-30 37256]
S3 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\WINDOWS\syswow64\svchost.exe [2015-10-30 37256]
S3 HPSIService;HP SI Service; C:\WINDOWS\system32\HPSIsvc.exe [2010-04-29 127800]
S3 HPSLPSVC;HP Network Devices Support; C:\windows\system32\svchost.exe [2015-10-30 43944]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 jhi_service;Intel(R) Identity Protection Technology Host Interface Service; C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe [2010-11-29 210896]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-01-17 326168]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2e1ae09;Služba zasílání zpráv_2e1ae09; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e5028;Služba zasílání zpráv_4e5028; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_555ad;Služba zasílání zpráv_555ad; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_fadbc8;Služba zasílání zpráv_fadbc8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-02-12 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 nlsX86cc;Nalpeiron Licensing Service; C:\windows\SysWOW64\NLSSRV32.EXE [2013-03-25 70152]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-02-01 1127448]
S3 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2011-01-18 113264]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2e1ae09;Data kontaktů_2e1ae09; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4e5028;Data kontaktů_4e5028; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_fadbc8;Data kontaktů_fadbc8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 AdobeUpdateService;AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe []
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-09 116648]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-09 116648]

-----------------EOF-----------------

Re: Kontrola logu

Napsal: 14 bře 2016 18:49
od Rudy
Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Kontrola logu

Napsal: 15 bře 2016 07:38
od Spikl
dobré ráno, zasílám log z AdwCleaner:

# AdwCleaner v5.102 - Logfile created 15/03/2016 at 07:08:47
# Updated 13/03/2016 by Xplode
# Database : 2016-03-14.1 [Server]
# Operating system : Windows 10 Pro (x64)
# Username : Dios - SPIKL
# Running from : C:\Users\Dios\Desktop\adwcleaner_5.102.exe
# Option : Clean
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[#] Folder Deleted : C:\ProgramData\mntemp

***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKCU\Software\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{82443621-A29A-473E-8335-F5C958A7A4CA}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{82443621-A29A-473E-8335-F5C958A7A4CA}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2675517426-136286855-1641891982-1001\Software\MyAshampoo\toolbar
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2675517426-136286855-1641891982-1001\Software\vShare.tv

***** [ Web browsers ] *****


*************************

:: "Tracing" keys removed
:: Winsock settings cleared

*************************

C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [1316 bytes] - [15/03/2016 07:08:47]
C:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [1387 bytes] - [15/03/2016 07:01:41]

########## EOF - C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [1502 bytes] ##########



Ještě jsem naposled zapomměl napsat, že je ntb cca každých 14 dní čištěm CCleanerem.

Díky P. :thumbsup:

Re: Kontrola logu

Napsal: 15 bře 2016 17:59
od Rudy
Dejte nový log RSIT.

Re: Kontrola logu

Napsal: 16 bře 2016 07:22
od Spikl
Dobré ráno,
log zde:


Logfile of random's system information tool 1.10 (written by random/random)
Run by Dios at 2016-03-16 07:20:59
Microsoft Windows 10 Pro
System drive C: has 25 GB (4%) free of 588 GB
Total RAM: 4030 MB (44% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:21:05, on 16.3.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTMngr.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coNatHst.exe
C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\Reader_sl.exe
C:\Program Files\trend micro\Dios.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.tipmatchbets.com/?cz&page=di ... egory=chat
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: (no name) - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - (no file)
O2 - BHO: PXCIEaddin - {42DFA04F-0F16-418e-B80C-AB97A5AFAD39} - C:\Program Files\Tracker Software\PDF-XChange 4\PXCIEAddin4.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coIEPlg.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: (no name) - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: PDFXChange 4.0 - {42DFA04F-0F16-418e-B80C-AB97A5AFAD39} - C:\Program Files\Tracker Software\PDF-XChange 4\PXCIEAddin4.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coIEPlg.dll
O3 - Toolbar: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [DriveUtilitiesHelper] C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe
O4 - HKLM\..\Run: [NetLockMngr] C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTMngr.exe
O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Dios\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [iCloudDrive] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
O4 - HKCU\..\Run: [iCloudPhotos] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'DefaultAppPool')
O4 - HKUS\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'DefaultAppPool')
O8 - Extra context menu item: Clip bookmark - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: Clip Image - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=4
O8 - Extra context menu item: Clip selection - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=3
O8 - Extra context menu item: Clip this page - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=1
O8 - Extra context menu item: Clip URL - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: New Note - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\NewNote.html
O8 - Extra context menu item: Nová poznámka - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\NewNote.html
O8 - Extra context menu item: Oříznutý obrázek - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=4
O8 - Extra context menu item: Vystřihnout tuto stránku - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=1
O8 - Extra context menu item: Vystřihnout výběr - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=3
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - (no file)
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - (no file)
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - (no file)
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - (no file)
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - (no file)
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{010225A0-1DFD-CB3D-7CBF-F81DEAD6A5B5}: NameServer = 62.141.0.1 213.162.65.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{010225A2-1DFD-CB3D-7CBF-F81DEAD6A5B5}: NameServer = 93.153.117.1 93.153.117.33
O17 - HKLM\System\CCS\Services\Tcpip\..\{44da3733-12ea-4092-ab15-cb3b918a7993}: NameServer = 192.168.100.1,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\..\{010225A0-1DFD-CB3D-7CBF-F81DEAD6A5B5}: NameServer = 62.141.0.1 213.162.65.1
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Atheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: DraftSight API Service - Dassault Systemes - C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) - The Firebird Project - C:\Program Files (x86)\Firebird\bin\fbguard.exe
O23 - Service: Firebird Server - DefaultInstance (FirebirdServerDefaultInstance) - The Firebird Project - C:\Program Files (x86)\Firebird\bin\fbserver.exe
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: HP DS Service - Hewlett-Packard Company - C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP DayStarter Service (HPDayStarterService) - Hewlett-Packard Company - c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP SI Service (HPSIService) - Unknown owner - C:\WINDOWS\system32\HPSIsvc.exe (file missing)
O23 - Service: @oem19.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Identity Protection Technology Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\windows\SysWOW64\NLSSRV32.EXE
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: Soluto Launcher Service (SolutoLauncherService) - Soluto - C:\Program Files\Soluto\SolutoLauncherService.exe
O23 - Service: Soluto Remote Service (SolutoRemoteService) - GlavSoft LLC. - C:\Program Files\Soluto\SolutoRemoteService.exe
O23 - Service: Soluto PCGenome Core Service (SolutoService) - Soluto - C:\Program Files\Soluto\SolutoService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - IDT, Inc. - (no file)
O23 - Service: SWLock Server (SWLckServer) - Unknown owner - C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: WD Drive Manager (WDDriveService) - Western Digital Technologies, Inc. - C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: CryptoPlus XME Engine Service (xmengine service) - Monet+, a.s. - C:\windows\SysWOW64\xmesrv.exe
O23 - Service: XobniService - Xobni Corporation - C:\Program Files (x86)\Xobni\XobniService.exe

--
End of file - 18203 bytes

======Listing Processes======







C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
dashost.exe {b37d283a-53cd-4999-991f54656c2b2394}
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files\IDT\WDM\AESTSr64.exe"
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe"
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe"
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\diMaster.dll" /prefetch:1
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\windows\system32\vcsFPService.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTService.exe"
"C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe"
"C:\Program Files\Soluto\SolutoLauncherService.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\iPod\bin\iPodService.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe" /c /a /s UserSession
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"c:\program files\soluto\soluto.exe" /userinit
C:\WINDOWS\Explorer.EXE
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
"C:\Program Files\iTunes\iTunesHelper.exe"
"C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe"
"C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe"
"C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe"
"C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTMngr.exe"
"C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" -Embedding
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\System32\svchost.exe -k smphost
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.113_none_7689896a26389b16\TiWorker.exe -Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe" -source HPSA
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"

"C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coNatHst.exe" firefox
C:\WINDOWS\system32\msiexec.exe /V
"C:\Program Files\Soluto\SolutoService.exe"
"C:\Program Files\Soluto\SolutoRemoteService.exe" -service
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe124_ Global\UsGthrCtrlFltPipeMssGthrPipe124 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Users\Dios\Desktop\RSITx64.exe"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 616 628 636 8192 632
"C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\Reader_sl.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Dios\AppData\Roaming\Mozilla\Firefox\Profiles\h0iijypa.default-1414995702743

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"

"{C1A2A613-35F1-4FCF-B27F-2840527B6556}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.5.2.15\coFFAddon\


[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\windows\SysWOW64\Adobe\Director\np32dsw_1207148.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@parallelgraphics.com/Cortona]
"Description"=Cortona VRML Plugin
"Path"=C:\Program Files (x86)\Common Files\ParallelGraphics\Cortona\npcortona.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5]
"Description"=A component of your photo software powered by RocketLife
"Path"=C:\Users\Dios\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@software602.cz/602XML Filler]
"Description"=602XML Filler Plugin
"Path"=C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0]
"Description"=WildTangent Games App V2 Presence Detector Plugin
"Path"=C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll


C:\Program Files (x86)\Mozilla Firefox\components\
nsIQTScriptablePlugin.xpt

C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFFICE.DLL
nppdf32.dll
npPDFXCviewNPPlugin.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Users\Dios\AppData\Roaming\Mozilla\Firefox\Profiles\h0iijypa.default-1414995702743\extensions\
firefoxdav@icloud.com

C:\Users\Dios\AppData\Roaming\Mozilla\Firefox\Profiles\h0iijypa.default-1414995702743\searchplugins\
firmycz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine64\22.5.5.15\coIEPlg.dll [2015-11-05 1038648]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-10-22 328248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{42DFA04F-0F16-418e-B80C-AB97A5AFAD39}]
PDFXChange 4.0 - C:\Program Files\Tracker Software\PDF-XChange 4\PXCIEAddin4.dll [2011-09-27 422496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coIEPlg.dll [2015-11-05 794424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-10 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-01-07 60576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-10 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-10-22 517688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine64\22.5.5.15\coIEPlg.dll [2015-11-05 1038648]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{42DFA04F-0F16-418e-B80C-AB97A5AFAD39} - PDFXChange 4.0 - C:\Program Files\Tracker Software\PDF-XChange 4\PXCIEAddin4.dll [2011-09-27 422496]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coIEPlg.dll [2015-11-05 794424]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2011-01-27 835072]
"AthBtTray"=C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [2011-01-07 379040]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-03 3944136]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2015-12-17 170256]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"iCloudServices"=C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [2015-11-30 60688]
"OneDrive"=C:\Users\Dios\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-28 551112]
"iCloudDrive"=C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [2015-11-30 103696]
"iCloudPhotos"=C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [2015-11-30 349968]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DTRun]
c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2010-11-24 517456]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPPowerAssistant]
C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe [2011-01-27 13880]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPQuickWebProxy]
c:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [2015-10-05 169528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe --auto-start []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2015-08-06 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-06-08 334896]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SysTrayApp]
C:\Program Files\IDT\WDM\sttray64.exe [2011-01-27 835072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WD Quick View]
C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [2014-06-02 5563760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [2009-11-18 275072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Dios^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Kooperativa - PDF Server.lnk]
C:\Program Files\Kooperativa\KoopPxBN\KoopPDFServerSA.exe []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2015-12-17 60688]
"DriveUtilitiesHelper"=C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe [2015-05-20 1890664]
"NetLockMngr"=C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTMngr.exe [2012-09-30 3076512]
""= []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
"NoDrives"=0
"NoDriveAutoRun"=3
"NoDriveTypeAutoRun"=0
"NofolderOptions"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveAutoRun"=3
"NoDriveTypeAutoRun"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-03-15 07:01:02 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-10 14:17:12 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-10 14:17:07 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-10 14:17:06 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-10 14:17:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-10 14:16:58 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-10 14:16:55 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-10 14:16:51 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-10 14:16:46 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-10 14:16:45 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-10 14:16:43 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-10 14:16:39 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-10 14:16:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-10 14:16:36 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-10 14:16:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-10 14:16:33 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-10 14:16:32 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-10 14:16:28 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-10 14:16:28 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-10 14:16:27 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-10 14:16:27 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-10 14:16:26 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-10 14:16:24 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-10 14:16:23 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-10 14:16:23 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-10 14:16:23 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-10 14:16:22 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-10 14:16:22 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-10 14:16:21 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-10 14:16:21 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-10 14:16:21 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-10 14:16:20 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-10 14:16:20 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-10 14:16:20 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-10 14:16:20 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-10 14:16:19 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-10 14:16:19 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-10 14:16:19 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-10 14:16:19 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-10 14:16:18 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-10 14:16:18 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-10 14:16:18 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-10 14:16:17 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-10 14:16:17 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-10 14:16:17 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-10 14:16:15 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-10 14:16:15 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-10 14:16:13 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-10 14:16:13 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-10 14:16:13 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-10 14:16:12 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-10 14:16:12 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-10 14:16:12 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-10 14:16:11 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-10 14:16:11 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-10 14:16:10 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-10 14:16:10 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-10 14:16:10 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-10 14:16:09 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-10 14:16:09 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-10 14:16:08 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-10 14:16:08 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-10 14:16:08 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-10 14:16:08 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-10 14:16:07 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-10 14:16:07 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-10 14:16:06 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-10 14:16:06 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-10 14:16:06 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-10 14:16:05 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-10 14:16:05 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-10 14:16:05 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-10 14:16:05 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-10 14:16:04 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-10 14:16:04 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-10 14:16:04 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-10 14:16:04 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-10 14:16:03 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-10 14:16:02 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-10 14:16:01 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-10 14:16:01 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-10 14:16:00 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-10 14:16:00 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-10 14:15:56 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-10 14:15:56 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-10 14:15:55 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-10 14:15:55 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-10 14:15:55 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-10 14:15:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-10 14:15:52 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-10 14:15:52 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-10 14:15:51 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-10 14:15:51 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-10 14:15:51 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-10 14:15:51 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-10 14:15:51 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-10 14:15:50 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-10 14:15:50 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-10 14:15:49 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-10 14:15:49 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-10 14:15:48 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-10 14:15:48 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-10 14:15:48 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-10 14:15:46 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-10 14:15:45 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-10 14:15:45 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-10 14:15:45 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-10 14:15:45 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-10 14:15:40 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-10 14:15:40 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-10 14:15:38 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-10 14:15:36 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-10 14:15:36 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-10 14:15:36 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-10 14:15:35 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-10 14:15:33 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-10 14:15:33 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-10 14:15:33 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-10 14:15:33 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-10 14:15:32 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-10 14:15:32 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-10 14:15:32 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-10 14:15:32 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-07 10:20:02 ----D---- C:\Users\Dios\AppData\Roaming\PDAppFlex
2016-03-07 09:59:41 ----A---- C:\Users\Dios\AppData\Roaming\AdobeWLCMCache.dat
2016-03-07 09:41:12 ----D---- C:\ProgramData\boost_interprocess
2016-03-05 11:48:50 ----D---- C:\Program Files (x86)\JoWooD
2016-03-02 07:29:52 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 07:29:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 07:29:42 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 07:29:39 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 07:29:38 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 07:29:38 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 07:29:38 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 07:29:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 07:29:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 07:29:36 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 07:29:33 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 07:29:33 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 07:29:32 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 07:29:30 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 07:29:29 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 07:29:27 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 07:29:26 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 07:29:15 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 07:29:15 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 07:29:14 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 07:29:14 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 07:29:14 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 07:29:14 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 07:29:13 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 07:29:13 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 07:29:12 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 07:29:10 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 07:29:09 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 07:29:03 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 07:28:53 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 07:28:52 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 07:28:51 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 07:28:27 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 07:28:21 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 07:28:17 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 07:28:16 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 07:28:15 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 07:28:13 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 07:28:13 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 07:28:12 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 07:28:11 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 07:28:03 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 07:28:02 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 07:27:58 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 07:27:55 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 07:27:53 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 07:27:52 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 07:27:51 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 07:27:51 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 07:27:50 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 07:27:49 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 07:27:49 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 07:27:48 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 07:27:46 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 07:27:44 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 07:27:41 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 07:27:41 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 07:27:41 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 07:27:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 07:27:40 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 07:27:40 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 07:27:39 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 07:27:37 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 07:27:36 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 07:27:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 07:27:35 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 07:27:35 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 07:27:34 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 07:27:33 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 07:27:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 07:27:30 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 07:27:30 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 07:27:29 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 07:27:28 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 07:27:27 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 07:27:27 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 07:27:26 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 07:27:26 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 07:27:24 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 07:24:53 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 07:24:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 07:23:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 07:23:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 07:23:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 07:23:01 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 07:22:59 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 07:22:59 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 07:22:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 07:22:55 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 07:22:55 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 07:22:55 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 07:22:52 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 07:22:52 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 07:22:51 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 07:22:50 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 07:22:50 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 07:22:49 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 07:22:49 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 07:22:48 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 07:22:48 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 07:22:47 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 07:22:47 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 07:22:47 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 07:22:46 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 07:22:46 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 07:22:45 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 07:22:45 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 07:22:44 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 07:22:43 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 07:22:41 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 07:22:41 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 07:22:40 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 07:22:40 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 07:22:39 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 07:22:39 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 07:22:39 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 07:22:38 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 07:22:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 07:22:37 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 07:22:37 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 07:22:37 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 07:22:36 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 07:22:36 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 07:22:36 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 07:22:35 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 07:22:35 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 07:22:35 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 07:22:34 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 07:22:34 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 07:22:34 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 07:22:34 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 07:22:33 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 07:22:33 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 07:22:32 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 07:22:31 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 07:22:31 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 07:22:31 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 07:22:30 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 07:22:30 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 07:22:29 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 07:22:28 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 07:22:28 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 07:22:28 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 07:22:28 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 07:22:27 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 07:22:26 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 07:22:25 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 07:22:24 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 07:22:22 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 07:22:22 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 07:22:19 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 07:22:19 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 07:22:19 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 07:22:18 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 07:22:17 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 07:22:17 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 07:22:17 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 07:22:17 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 07:22:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 07:22:16 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 07:22:15 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 07:22:15 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 07:22:15 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 07:22:15 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 07:22:14 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 07:22:14 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 07:22:14 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 07:22:13 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 07:22:13 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 07:22:13 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 07:22:13 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 07:22:12 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 07:22:12 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-02 07:22:11 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 07:22:11 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll

======List of files/folders modified in the last 1 month======

2016-03-16 07:21:03 ----D---- C:\Program Files\trend micro
2016-03-16 07:20:37 ----D---- C:\WINDOWS\Prefetch
2016-03-16 07:19:38 ----D---- C:\WINDOWS\Temp
2016-03-16 07:09:35 ----D---- C:\WINDOWS\system32\sru
2016-03-15 16:28:32 ----AD---- C:\KROSplusData
2016-03-15 15:50:36 ----D---- C:\Users\Dios\AppData\Roaming\vlc
2016-03-15 12:12:19 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-03-15 12:03:23 ----D---- C:\WINDOWS\rescache
2016-03-15 11:55:47 ----D---- C:\WINDOWS\system32\config
2016-03-15 07:56:34 ----SHD---- C:\WINDOWS\Installer
2016-03-15 07:56:31 ----D---- C:\WINDOWS\system32\Tasks
2016-03-15 07:55:51 ----D---- C:\Program Files (x86)\Adobe
2016-03-15 07:55:35 ----D---- C:\WINDOWS\SysWOW64
2016-03-15 07:23:05 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-15 07:11:08 ----HD---- C:\ProgramData
2016-03-15 07:11:00 ----SHD---- C:\System Volume Information
2016-03-15 07:06:28 ----D---- C:\WINDOWS\AppReadiness
2016-03-15 07:06:10 ----HD---- C:\Program Files\WindowsApps
2016-03-15 07:04:20 ----D---- C:\Windows
2016-03-15 07:01:02 ----RD---- C:\Program Files (x86)
2016-03-15 06:43:17 ----D---- C:\WINDOWS\INF
2016-03-14 14:01:04 ----D---- C:\WINDOWS\debug
2016-03-14 09:05:42 ----D---- C:\Users\Dios\AppData\Roaming\uTorrent
2016-03-14 09:01:34 ----D---- C:\ProgramData\Adobe
2016-03-14 09:01:16 ----D---- C:\Temp
2016-03-14 09:00:56 ----D---- C:\Users\Dios\AppData\Roaming\Adobe
2016-03-14 08:59:45 ----RD---- C:\Program Files
2016-03-14 08:59:29 ----D---- C:\Program Files\Common Files\Adobe
2016-03-14 08:42:38 ----D---- C:\ProgramData\Soluto
2016-03-14 08:07:59 ----D---- C:\WINDOWS\System32
2016-03-14 08:07:59 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-11 11:46:31 ----RSD---- C:\WINDOWS\assembly
2016-03-11 08:56:32 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 08:56:27 ----D---- C:\WINDOWS\WinSxS
2016-03-11 06:13:28 ----D---- C:\WINDOWS\system32\drivers
2016-03-10 23:48:19 ----D---- C:\WINDOWS\system32\migration
2016-03-10 23:48:14 ----D---- C:\WINDOWS\AppPatch
2016-03-10 23:48:14 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 23:48:14 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 23:48:13 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 23:48:13 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 23:48:13 ----D---- C:\Program Files\Windows Media Player
2016-03-10 23:48:13 ----D---- C:\Program Files\Internet Explorer
2016-03-10 23:48:13 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 23:48:11 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-10 18:40:02 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 18:22:48 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 18:22:39 ----D---- C:\ProgramData\Microsoft Help
2016-03-10 06:49:35 ----D---- C:\WINDOWS\system32\catroot2
2016-03-09 08:36:00 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-08 07:19:54 ----D---- C:\NPE
2016-03-07 09:59:40 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2016-03-07 09:01:45 ----D---- C:\ProgramData\Package Cache
2016-03-07 07:04:12 ----D---- C:\Program Files\Common Files
2016-03-03 13:05:00 ----D---- C:\WINDOWS\system32\drivers\NISx64
2016-03-02 16:35:56 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-02 16:35:56 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-02 16:35:42 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-02 16:35:42 ----D---- C:\WINDOWS\system32\wbem
2016-03-02 16:35:42 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-02 16:35:41 ----D---- C:\WINDOWS\system32\Dism
2016-03-02 16:35:41 ----D---- C:\WINDOWS\system32\Boot
2016-03-02 16:35:41 ----D---- C:\WINDOWS\system32\appraiser
2016-03-02 16:35:36 ----RSD---- C:\WINDOWS\Media
2016-03-02 16:35:36 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-02 16:35:35 ----RSD---- C:\WINDOWS\Fonts
2016-03-02 16:35:35 ----D---- C:\WINDOWS\bcastdvr
2016-03-02 16:35:35 ----D---- C:\Program Files\Windows Journal
2016-03-01 10:54:37 ----AD---- C:\Program Files (x86)\KROSplus
2016-02-23 10:43:49 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-02-23 07:33:37 ----D---- C:\WINDOWS\Tasks
2016-02-20 13:58:36 ----D---- C:\Users\Dios\AppData\Roaming\dvdcss
2016-02-19 09:17:04 ----AD---- C:\Program Files\NemKalk 7

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 hpdskflt;@oem19.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2012-09-24 31040]
R0 Soluto;Soluto; C:\WINDOWS\system32\DRIVERS\Soluto.sys [2013-11-14 54728]
R1 BHDrvx64;BHDrvx64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\BASHDefs\20160309.001\BHDrvx64.sys [2016-03-03 1766640]
R1 ccSet_NIS;NIS Settings Manager; C:\WINDOWS\system32\drivers\NISx64\1605050.00F\ccSetx64.sys [2015-07-11 173808]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2015-12-17 498512]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 IDSVia64;IDSVia64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\IPSDefs\20160315.001\IDSvia64.sys [2016-02-13 767224]
R1 SRTSP;Symantec Real Time Storage Protection x64; C:\WINDOWS\System32\Drivers\NISx64\1605050.00F\SRTSP64.SYS [2015-11-12 928496]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\WINDOWS\system32\drivers\NISx64\1605050.00F\SRTSPX64.SYS [2015-07-11 50936]
R2 LMIRfsDriver;LogMeIn Remote File System Driver; \??\C:\windows\system32\drivers\LMIRfsDriver.sys [2012-11-29 72216]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 Accelerometer;@oem19.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2012-09-24 43840]
R3 ARCVCAM;@oem112.inf,%avshws.DeviceDesc%;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\WINDOWS\system32\DRIVERS\ArcSoftVCapture.sys [2010-11-11 32192]
R3 athr;@netathrx.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athwnx.sys [2015-10-30 4207104]
R3 BTATH_BUS;@oem98.inf,%BTATH_BUS.SVCDESC%;Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2011-01-07 28832]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2015-10-10 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 cpuz136;cpuz136; \??\C:\WINDOWS\TEMP\cpuz136\cpuz136_x64.sys [2016-03-11 23856]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2015-11-18 157520]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 HpqKbFiltr;@oem58.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2010-12-03 25912]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]
R3 IntcDAud;@oem110.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2011-08-23 317440]
R3 MEIx64;@oem52.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface; C:\WINDOWS\System32\drivers\HECIx64.sys [2010-10-20 56344]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-12-28 175616]
R3 NAVENG;NAVENG; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\VirusDefs\20160315.008\ENG64.SYS [2015-12-17 138488]
R3 NAVEX15;NAVEX15; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\VirusDefs\20160315.008\EX64.SYS [2015-12-17 2148080]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
R3 ROCKEYNT;@oem93.inf,%Rockey.SVCDESC%;Feitian ROCKEY4 Device Service; C:\WINDOWS\system32\DRIVERS\Rockey4.sys [2013-12-04 36904]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
R3 SNP2UVC;@oem118.inf,%SERVICE_DISPLAY_NAME%;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [2015-12-10 2668424]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 Afc;PPdus ASPI Shell; C:\WINDOWS\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-28 117248]
S3 FsUsbExDisk;FsUsbExDisk; \??\C:\windows\SysWOW64\FsUsbExDisk.SYS [2013-12-30 37344]
S3 GemCCID;GemCCID; C:\WINDOWS\system32\DRIVERS\GemCCID.sys [2015-11-04 139632]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 JMCR;JMCR; C:\WINDOWS\System32\drivers\jmcr.sys [2012-07-31 175928]
S3 lmimirr;lmimirr; C:\WINDOWS\system32\DRIVERS\lmimirr.sys [2012-11-29 11552]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 mvusbews;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2012-11-08 19968]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-07-03 42696]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [2011-10-10 85344]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-03-07 81088]
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2009-03-03 89600]
R2 AGSService;Adobe Genuine Software Integrity Service; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2016-02-09 2020056]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2015-10-07 77104]
R2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-01-07 138400]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2015-08-12 462096]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 hpsrv;@oem19.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2012-09-24 31040]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2015-09-28 25800]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-12-28 26624]
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe [2015-11-20 282016]
R2 OneSyncSvc_1229264;Hostitel synchronizace_1229264; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 SolutoLauncherService;Soluto Launcher Service; C:\Program Files\Soluto\SolutoLauncherService.exe [2013-11-14 182848]
R2 SolutoService;Soluto PCGenome Core Service; C:\Program Files\Soluto\SolutoService.exe [2013-11-14 856128]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2011-01-27 296448]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2015-04-28 1102472]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2015-12-17 644880]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 PimIndexMaintenanceSvc_1229264;Data kontaktů_1229264; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 SolutoRemoteService;Soluto Remote Service; C:\Program Files\Soluto\SolutoRemoteService.exe [2013-11-14 1942016]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1d15f81;Hostitel synchronizace_1d15f81; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2e1ae09;Hostitel synchronizace_2e1ae09; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4e5028;Hostitel synchronizace_4e5028; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_58614;Hostitel synchronizace_58614; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_fadbc8;Hostitel synchronizace_fadbc8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-11 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DraftSight API Service;DraftSight API Service; C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe [2014-03-14 123392]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FirebirdGuardianDefaultInstance;Firebird Guardian - DefaultInstance; C:\Program Files (x86)\Firebird\bin\fbguard.exe [2007-12-12 65536]
S3 FirebirdServerDefaultInstance;Firebird Server - DefaultInstance; C:\Program Files (x86)\Firebird\bin\fbserver.exe [2007-12-12 1531989]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-06-05 1432400]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2014-04-24 227904]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2014-08-06 203344]
S3 HP DS Service;HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [2011-10-17 13824]
S3 HP LaserJet Service;HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [2012-05-02 164864]
S3 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2011-01-27 131128]
S3 HPDayStarterService;HP DayStarter Service; c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [2011-01-28 133688]
S3 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [2011-01-28 281656]
S3 hpqcxs08;hpqcxs08; C:\WINDOWS\syswow64\svchost.exe [2015-10-30 37256]
S3 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\WINDOWS\syswow64\svchost.exe [2015-10-30 37256]
S3 HPSIService;HP SI Service; C:\WINDOWS\system32\HPSIsvc.exe [2010-04-29 127800]
S3 HPSLPSVC;HP Network Devices Support; C:\windows\system32\svchost.exe [2015-10-30 43944]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 jhi_service;Intel(R) Identity Protection Technology Host Interface Service; C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe [2010-11-29 210896]
S3 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-01-17 326168]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1229264;Služba zasílání zpráv_1229264; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2e1ae09;Služba zasílání zpráv_2e1ae09; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e5028;Služba zasílání zpráv_4e5028; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_fadbc8;Služba zasílání zpráv_fadbc8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-02-12 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 nlsX86cc;Nalpeiron Licensing Service; C:\windows\SysWOW64\NLSSRV32.EXE [2013-03-25 70152]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-02-01 1127448]
S3 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2011-01-18 113264]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2e1ae09;Data kontaktů_2e1ae09; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4e5028;Data kontaktů_4e5028; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_fadbc8;Data kontaktů_fadbc8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-09 116648]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-09 116648]

-----------------EOF-----------------

Re: Kontrola logu

Napsal: 16 bře 2016 18:10
od Rudy
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]/64

:services
Bonjour Service

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.

Re: Kontrola logu

Napsal: 16 bře 2016 19:10
od Spikl
Log OTM:
All processes killed
========== REGISTRY ==========
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar\ deleted successfully.
========== SERVICES/DRIVERS ==========
Service Bonjour Service stopped successfully!
Service Bonjour Service deleted successfully!
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default.migrated

User: DefaultAppPool
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Dios
->Temp folder emptied: 40996364 bytes
->Temporary Internet Files folder emptied: 9692152 bytes
->Java cache emptied: 5307492 bytes
->FireFox cache emptied: 255939827 bytes
->Google Chrome cache emptied: 0 bytes
->Apple Safari cache emptied: 0 bytes
->Flash cache emptied: 1101 bytes

User: Public
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 13068161 bytes
RecycleBin emptied: 11559 bytes

Total Files Cleaned = 310,00 mb


[EMPTYFLASH]

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: Default.migrated

User: DefaultAppPool
->Flash cache emptied: 0 bytes

User: Dios
->Flash cache emptied: 0 bytes

User: Public

Total Flash Files Cleaned = 0,00 mb


OTM by OldTimer - Version 3.1.21.0 log created on 03162016_184451

Files moved on Reboot...
C:\Users\Dios\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.
C:\WINDOWS\temp\cpuz136\cpuz136_x64.sys moved successfully.
File move failed. C:\WINDOWS\temp\adobegc.log scheduled to be moved on reboot.

Registry entries deleted on Reboot...


Log RSIT:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Dios at 2016-03-16 19:09:02
Microsoft Windows 10 Pro
System drive C: has 26 GB (4%) free of 588 GB
Total RAM: 4030 MB (47% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:09:21, on 16.3.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTMngr.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coNatHst.exe
C:\Program Files\trend micro\Dios.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.tipmatchbets.com/?cz&page=di ... egory=chat
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: PXCIEaddin - {42DFA04F-0F16-418e-B80C-AB97A5AFAD39} - C:\Program Files\Tracker Software\PDF-XChange 4\PXCIEAddin4.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coIEPlg.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coIEPlg.dll
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [DriveUtilitiesHelper] C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe
O4 - HKLM\..\Run: [NetLockMngr] C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTMngr.exe
O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Dios\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [iCloudDrive] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
O4 - HKCU\..\Run: [iCloudPhotos] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: Clip bookmark - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: Clip Image - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=4
O8 - Extra context menu item: Clip selection - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=3
O8 - Extra context menu item: Clip this page - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=1
O8 - Extra context menu item: Clip URL - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: New Note - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\NewNote.html
O8 - Extra context menu item: Nová poznámka - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\NewNote.html
O8 - Extra context menu item: Oříznutý obrázek - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=4
O8 - Extra context menu item: Vystřihnout tuto stránku - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=1
O8 - Extra context menu item: Vystřihnout výběr - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=3
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - (no file)
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - (no file)
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - (no file)
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - (no file)
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - (no file)
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{010225A0-1DFD-CB3D-7CBF-F81DEAD6A5B5}: NameServer = 62.141.0.1 213.162.65.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{010225A2-1DFD-CB3D-7CBF-F81DEAD6A5B5}: NameServer = 93.153.117.1 93.153.117.33
O17 - HKLM\System\CCS\Services\Tcpip\..\{44da3733-12ea-4092-ab15-cb3b918a7993}: NameServer = 192.168.100.1,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\..\{010225A0-1DFD-CB3D-7CBF-F81DEAD6A5B5}: NameServer = 62.141.0.1 213.162.65.1
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Atheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: DraftSight API Service - Dassault Systemes - C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) - The Firebird Project - C:\Program Files (x86)\Firebird\bin\fbguard.exe
O23 - Service: Firebird Server - DefaultInstance (FirebirdServerDefaultInstance) - The Firebird Project - C:\Program Files (x86)\Firebird\bin\fbserver.exe
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: HP DS Service - Hewlett-Packard Company - C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP DayStarter Service (HPDayStarterService) - Hewlett-Packard Company - c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP SI Service (HPSIService) - Unknown owner - C:\WINDOWS\system32\HPSIsvc.exe (file missing)
O23 - Service: @oem19.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Identity Protection Technology Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\windows\SysWOW64\NLSSRV32.EXE
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: Soluto Launcher Service (SolutoLauncherService) - Soluto - C:\Program Files\Soluto\SolutoLauncherService.exe
O23 - Service: Soluto Remote Service (SolutoRemoteService) - GlavSoft LLC. - C:\Program Files\Soluto\SolutoRemoteService.exe
O23 - Service: Soluto PCGenome Core Service (SolutoService) - Soluto - C:\Program Files\Soluto\SolutoService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - IDT, Inc. - (no file)
O23 - Service: SWLock Server (SWLckServer) - Unknown owner - C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: WD Drive Manager (WDDriveService) - Western Digital Technologies, Inc. - C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: CryptoPlus XME Engine Service (xmengine service) - Monet+, a.s. - C:\windows\SysWOW64\xmesrv.exe
O23 - Service: XobniService - Xobni Corporation - C:\Program Files (x86)\Xobni\XobniService.exe

--
End of file - 17341 bytes

======Listing Processes======







winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
dashost.exe {209b6667-e4ca-46c2-918309ec86172d1a}
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe"
"C:\Program Files\IDT\WDM\AESTSr64.exe"
"C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\diMaster.dll" /prefetch:1
C:\WINDOWS\System32\svchost.exe -k HPZ12
"C:\Program Files\Soluto\SolutoService.exe"
"C:\Program Files\Soluto\SolutoLauncherService.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTService.exe"
C:\windows\system32\vcsFPService.exe
"C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
sihost.exe
"C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe" /c /a /s UserSession
C:\Windows\System32\RuntimeBroker.exe -Embedding
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"c:\program files\soluto\soluto.exe" /userinit
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
"C:\Program Files\iTunes\iTunesHelper.exe"
"C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe"
"C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe"
"C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe"
"C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTMngr.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
"C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coNatHst.exe" firefox
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe" /taskrestart
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Soluto\SolutoRemoteService.exe" -service
"C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe"

"C:\WINDOWS\system32\SearchFilterHost.exe" 0 620 624 632 8192 628
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXmtcan0h2tfbfy7k9kn8hbxb6dmzz1zh0.mca
"C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\WSCStub.exe" /taskschd
"C:\Users\Dios\Desktop\RSITx64.exe"
"C:\Program Files\Windows Defender\mpcmdrun.exe" -wddisable
\??\C:\WINDOWS\system32\conhost.exe 0x4

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Dios\AppData\Roaming\Mozilla\Firefox\Profiles\h0iijypa.default-1414995702743

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"

"{C1A2A613-35F1-4FCF-B27F-2840527B6556}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.5.2.15\coFFAddon\


[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\windows\SysWOW64\Adobe\Director\np32dsw_1207148.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@parallelgraphics.com/Cortona]
"Description"=Cortona VRML Plugin
"Path"=C:\Program Files (x86)\Common Files\ParallelGraphics\Cortona\npcortona.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5]
"Description"=A component of your photo software powered by RocketLife
"Path"=C:\Users\Dios\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@software602.cz/602XML Filler]
"Description"=602XML Filler Plugin
"Path"=C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0]
"Description"=WildTangent Games App V2 Presence Detector Plugin
"Path"=C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll


C:\Program Files (x86)\Mozilla Firefox\components\
nsIQTScriptablePlugin.xpt

C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFFICE.DLL
nppdf32.dll
npPDFXCviewNPPlugin.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Users\Dios\AppData\Roaming\Mozilla\Firefox\Profiles\h0iijypa.default-1414995702743\extensions\
firefoxdav@icloud.com

C:\Users\Dios\AppData\Roaming\Mozilla\Firefox\Profiles\h0iijypa.default-1414995702743\searchplugins\
firmycz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine64\22.5.5.15\coIEPlg.dll [2015-11-05 1038648]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-10-22 328248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{42DFA04F-0F16-418e-B80C-AB97A5AFAD39}]
PDFXChange 4.0 - C:\Program Files\Tracker Software\PDF-XChange 4\PXCIEAddin4.dll [2011-09-27 422496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coIEPlg.dll [2015-11-05 794424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-10 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-01-07 60576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-10 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-10-22 517688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine64\22.5.5.15\coIEPlg.dll [2015-11-05 1038648]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\coIEPlg.dll [2015-11-05 794424]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2011-01-27 835072]
"AthBtTray"=C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [2011-01-07 379040]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-03 3944136]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2015-12-17 170256]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"iCloudServices"=C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [2015-11-30 60688]
"OneDrive"=C:\Users\Dios\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-28 551112]
"iCloudDrive"=C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [2015-11-30 103696]
"iCloudPhotos"=C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [2015-11-30 349968]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DTRun]
c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2010-11-24 517456]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPPowerAssistant]
C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe [2011-01-27 13880]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPQuickWebProxy]
c:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [2015-10-05 169528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe --auto-start []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2015-08-06 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-06-08 334896]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SysTrayApp]
C:\Program Files\IDT\WDM\sttray64.exe [2011-01-27 835072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WD Quick View]
C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [2014-06-02 5563760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [2009-11-18 275072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Dios^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Kooperativa - PDF Server.lnk]
C:\Program Files\Kooperativa\KoopPxBN\KoopPDFServerSA.exe []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2015-12-17 60688]
"DriveUtilitiesHelper"=C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe [2015-05-20 1890664]
"NetLockMngr"=C:\Program Files (x86)\CIGLER SOFTWARE\NetLicence\CSW_NetSWKeyNTMngr.exe [2012-09-30 3076512]
""= []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
"NoDrives"=0
"NoDriveAutoRun"=3
"NoDriveTypeAutoRun"=0
"NofolderOptions"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveAutoRun"=3
"NoDriveTypeAutoRun"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-03-16 18:44:51 ----D---- C:\_OTM
2016-03-15 07:01:02 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-10 14:17:12 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-10 14:17:07 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-10 14:17:06 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-10 14:17:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-10 14:16:58 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-10 14:16:55 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-10 14:16:51 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-10 14:16:46 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-10 14:16:45 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-10 14:16:43 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-10 14:16:39 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-10 14:16:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-10 14:16:36 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-10 14:16:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-10 14:16:33 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-10 14:16:32 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-10 14:16:28 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-10 14:16:28 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-10 14:16:27 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-10 14:16:27 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-10 14:16:26 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-10 14:16:24 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-10 14:16:23 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-10 14:16:23 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-10 14:16:23 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-10 14:16:22 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-10 14:16:22 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-10 14:16:21 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-10 14:16:21 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-10 14:16:21 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-10 14:16:20 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-10 14:16:20 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-10 14:16:20 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-10 14:16:20 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-10 14:16:19 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-10 14:16:19 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-10 14:16:19 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-10 14:16:19 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-10 14:16:18 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-10 14:16:18 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-10 14:16:18 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-10 14:16:17 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-10 14:16:17 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-10 14:16:17 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-10 14:16:16 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-10 14:16:15 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-10 14:16:15 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-10 14:16:14 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-10 14:16:13 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-10 14:16:13 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-10 14:16:13 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-10 14:16:12 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-10 14:16:12 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-10 14:16:12 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-10 14:16:11 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-10 14:16:11 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-10 14:16:10 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-10 14:16:10 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-10 14:16:10 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-10 14:16:09 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-10 14:16:09 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-10 14:16:08 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-10 14:16:08 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-10 14:16:08 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-10 14:16:08 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-10 14:16:07 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-10 14:16:07 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-10 14:16:06 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-10 14:16:06 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-10 14:16:06 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-10 14:16:05 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-10 14:16:05 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-10 14:16:05 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-10 14:16:05 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-10 14:16:04 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-10 14:16:04 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-10 14:16:04 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-10 14:16:04 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-10 14:16:03 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-10 14:16:02 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-10 14:16:01 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-10 14:16:01 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-10 14:16:00 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-10 14:16:00 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-10 14:15:56 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-10 14:15:56 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-10 14:15:55 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-10 14:15:55 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-10 14:15:55 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-10 14:15:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-10 14:15:52 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-10 14:15:52 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-10 14:15:51 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-10 14:15:51 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-10 14:15:51 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-10 14:15:51 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-10 14:15:51 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-10 14:15:50 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-10 14:15:50 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-10 14:15:49 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-10 14:15:49 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-10 14:15:48 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-10 14:15:48 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-10 14:15:48 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-10 14:15:46 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-10 14:15:45 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-10 14:15:45 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-10 14:15:45 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-10 14:15:45 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-10 14:15:44 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-10 14:15:43 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-10 14:15:42 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-10 14:15:40 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-10 14:15:40 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-10 14:15:38 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-10 14:15:36 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-10 14:15:36 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-10 14:15:36 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-10 14:15:35 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-10 14:15:34 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-10 14:15:33 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-10 14:15:33 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-10 14:15:33 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-10 14:15:33 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-10 14:15:32 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-10 14:15:32 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-10 14:15:32 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-10 14:15:32 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-07 10:20:02 ----D---- C:\Users\Dios\AppData\Roaming\PDAppFlex
2016-03-07 09:59:41 ----A---- C:\Users\Dios\AppData\Roaming\AdobeWLCMCache.dat
2016-03-07 09:41:12 ----D---- C:\ProgramData\boost_interprocess
2016-03-05 11:48:50 ----D---- C:\Program Files (x86)\JoWooD
2016-03-02 07:29:52 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 07:29:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 07:29:42 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 07:29:39 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 07:29:38 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 07:29:38 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 07:29:38 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 07:29:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 07:29:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 07:29:36 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 07:29:33 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 07:29:33 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 07:29:32 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 07:29:30 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 07:29:29 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 07:29:27 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 07:29:26 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 07:29:15 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 07:29:15 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 07:29:14 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 07:29:14 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 07:29:14 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 07:29:14 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 07:29:13 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 07:29:13 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 07:29:12 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 07:29:10 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 07:29:09 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 07:29:03 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 07:28:53 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 07:28:52 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 07:28:51 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 07:28:27 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 07:28:21 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 07:28:17 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 07:28:16 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 07:28:15 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 07:28:13 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 07:28:13 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 07:28:12 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 07:28:11 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 07:28:03 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 07:28:02 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 07:27:58 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 07:27:55 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 07:27:53 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 07:27:52 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 07:27:51 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 07:27:51 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 07:27:50 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 07:27:49 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 07:27:49 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 07:27:48 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 07:27:46 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 07:27:44 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 07:27:41 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 07:27:41 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 07:27:41 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 07:27:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 07:27:40 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 07:27:40 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 07:27:39 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 07:27:37 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 07:27:36 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 07:27:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 07:27:35 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 07:27:35 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 07:27:34 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 07:27:33 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 07:27:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 07:27:30 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 07:27:30 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 07:27:29 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 07:27:28 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 07:27:27 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 07:27:27 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 07:27:26 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 07:27:26 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 07:27:24 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 07:24:53 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 07:24:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 07:23:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 07:23:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 07:23:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 07:23:01 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 07:22:59 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 07:22:59 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 07:22:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 07:22:55 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 07:22:55 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 07:22:55 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 07:22:52 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 07:22:52 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 07:22:51 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 07:22:50 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 07:22:50 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 07:22:49 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 07:22:49 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 07:22:48 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 07:22:48 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 07:22:47 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 07:22:47 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 07:22:47 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 07:22:46 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 07:22:46 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 07:22:45 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 07:22:45 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 07:22:44 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 07:22:43 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 07:22:41 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 07:22:41 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 07:22:40 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 07:22:40 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 07:22:39 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 07:22:39 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 07:22:39 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 07:22:38 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 07:22:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 07:22:37 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 07:22:37 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 07:22:37 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 07:22:36 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 07:22:36 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 07:22:36 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 07:22:35 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 07:22:35 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 07:22:35 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 07:22:34 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 07:22:34 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 07:22:34 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 07:22:34 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 07:22:33 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 07:22:33 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 07:22:32 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 07:22:31 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 07:22:31 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 07:22:31 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 07:22:30 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 07:22:30 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 07:22:29 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 07:22:28 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 07:22:28 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 07:22:28 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 07:22:28 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 07:22:27 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 07:22:26 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 07:22:25 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 07:22:24 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 07:22:22 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 07:22:22 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 07:22:19 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 07:22:19 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 07:22:19 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 07:22:18 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 07:22:17 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 07:22:17 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 07:22:17 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 07:22:17 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 07:22:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 07:22:16 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 07:22:15 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 07:22:15 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 07:22:15 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 07:22:15 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 07:22:14 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 07:22:14 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 07:22:14 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 07:22:13 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 07:22:13 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 07:22:13 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 07:22:13 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 07:22:12 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 07:22:12 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-02 07:22:11 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 07:22:11 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll

======List of files/folders modified in the last 1 month======

2016-03-16 19:09:19 ----D---- C:\Program Files\trend micro
2016-03-16 19:08:48 ----D---- C:\WINDOWS\Prefetch
2016-03-16 19:08:30 ----D---- C:\WINDOWS\Temp
2016-03-16 19:01:11 ----SHD---- C:\System Volume Information
2016-03-16 19:00:36 ----D---- C:\WINDOWS\system32\sru
2016-03-16 16:13:58 ----AD---- C:\KROSplusData
2016-03-16 13:23:26 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-03-16 13:17:39 ----D---- C:\WINDOWS\system32\config
2016-03-16 13:12:10 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-16 08:28:29 ----D---- C:\WINDOWS\AppReadiness
2016-03-16 08:03:10 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-16 08:02:08 ----D---- C:\WINDOWS\WinSxS
2016-03-16 07:57:02 ----SHD---- C:\WINDOWS\Installer
2016-03-16 07:56:55 ----D---- C:\ProgramData\Microsoft Help
2016-03-15 15:50:36 ----D---- C:\Users\Dios\AppData\Roaming\vlc
2016-03-15 12:03:23 ----D---- C:\WINDOWS\rescache
2016-03-15 07:56:31 ----D---- C:\WINDOWS\system32\Tasks
2016-03-15 07:55:51 ----D---- C:\Program Files (x86)\Adobe
2016-03-15 07:55:35 ----D---- C:\WINDOWS\SysWOW64
2016-03-15 07:11:08 ----HD---- C:\ProgramData
2016-03-15 07:06:10 ----HD---- C:\Program Files\WindowsApps
2016-03-15 07:04:20 ----D---- C:\Windows
2016-03-15 07:01:02 ----RD---- C:\Program Files (x86)
2016-03-15 06:43:17 ----D---- C:\WINDOWS\INF
2016-03-14 14:01:04 ----D---- C:\WINDOWS\debug
2016-03-14 09:05:42 ----D---- C:\Users\Dios\AppData\Roaming\uTorrent
2016-03-14 09:01:34 ----D---- C:\ProgramData\Adobe
2016-03-14 09:01:16 ----D---- C:\Temp
2016-03-14 09:00:56 ----D---- C:\Users\Dios\AppData\Roaming\Adobe
2016-03-14 08:59:45 ----RD---- C:\Program Files
2016-03-14 08:59:29 ----D---- C:\Program Files\Common Files\Adobe
2016-03-14 08:42:38 ----D---- C:\ProgramData\Soluto
2016-03-14 08:07:59 ----D---- C:\WINDOWS\System32
2016-03-14 08:07:59 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-11 11:46:31 ----RSD---- C:\WINDOWS\assembly
2016-03-11 08:56:32 ----D---- C:\WINDOWS\CbsTemp
2016-03-11 06:13:28 ----D---- C:\WINDOWS\system32\drivers
2016-03-10 23:48:19 ----D---- C:\WINDOWS\system32\migration
2016-03-10 23:48:14 ----D---- C:\WINDOWS\AppPatch
2016-03-10 23:48:14 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 23:48:14 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 23:48:13 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 23:48:13 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 23:48:13 ----D---- C:\Program Files\Windows Media Player
2016-03-10 23:48:13 ----D---- C:\Program Files\Internet Explorer
2016-03-10 23:48:13 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 18:40:02 ----D---- C:\WINDOWS\system32\MRT
2016-03-10 18:22:48 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 06:49:35 ----D---- C:\WINDOWS\system32\catroot2
2016-03-09 08:36:00 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-08 07:19:54 ----D---- C:\NPE
2016-03-07 09:59:40 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2016-03-07 09:01:45 ----D---- C:\ProgramData\Package Cache
2016-03-07 07:04:12 ----D---- C:\Program Files\Common Files
2016-03-03 13:05:00 ----D---- C:\WINDOWS\system32\drivers\NISx64
2016-03-02 16:35:56 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-02 16:35:56 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-02 16:35:42 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-02 16:35:42 ----D---- C:\WINDOWS\system32\wbem
2016-03-02 16:35:42 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-02 16:35:41 ----D---- C:\WINDOWS\system32\Dism
2016-03-02 16:35:41 ----D---- C:\WINDOWS\system32\Boot
2016-03-02 16:35:41 ----D---- C:\WINDOWS\system32\appraiser
2016-03-02 16:35:36 ----RSD---- C:\WINDOWS\Media
2016-03-02 16:35:36 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-02 16:35:35 ----RSD---- C:\WINDOWS\Fonts
2016-03-02 16:35:35 ----D---- C:\WINDOWS\bcastdvr
2016-03-02 16:35:35 ----D---- C:\Program Files\Windows Journal
2016-03-01 10:54:37 ----AD---- C:\Program Files (x86)\KROSplus
2016-02-23 10:43:49 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-02-23 07:33:37 ----D---- C:\WINDOWS\Tasks
2016-02-20 13:58:36 ----D---- C:\Users\Dios\AppData\Roaming\dvdcss
2016-02-19 09:17:04 ----AD---- C:\Program Files\NemKalk 7

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 hpdskflt;@oem19.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2012-09-24 31040]
R0 Soluto;Soluto; C:\WINDOWS\system32\DRIVERS\Soluto.sys [2013-11-14 54728]
R1 BHDrvx64;BHDrvx64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\BASHDefs\20160309.001\BHDrvx64.sys [2016-03-03 1766640]
R1 ccSet_NIS;NIS Settings Manager; C:\WINDOWS\system32\drivers\NISx64\1605050.00F\ccSetx64.sys [2015-07-11 173808]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2015-12-17 498512]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 IDSVia64;IDSVia64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\IPSDefs\20160315.001\IDSvia64.sys [2016-02-13 767224]
R1 SRTSP;Symantec Real Time Storage Protection x64; C:\WINDOWS\System32\Drivers\NISx64\1605050.00F\SRTSP64.SYS [2015-11-12 928496]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\WINDOWS\system32\drivers\NISx64\1605050.00F\SRTSPX64.SYS [2015-07-11 50936]
R2 LMIRfsDriver;LogMeIn Remote File System Driver; \??\C:\windows\system32\drivers\LMIRfsDriver.sys [2012-11-29 72216]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 Accelerometer;@oem19.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2012-09-24 43840]
R3 ARCVCAM;@oem112.inf,%avshws.DeviceDesc%;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\WINDOWS\system32\DRIVERS\ArcSoftVCapture.sys [2010-11-11 32192]
R3 athr;@netathrx.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athwnx.sys [2015-10-30 4207104]
R3 BTATH_BUS;@oem98.inf,%BTATH_BUS.SVCDESC%;Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2011-01-07 28832]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2015-10-10 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 cpuz136;cpuz136; \??\C:\WINDOWS\TEMP\cpuz136\cpuz136_x64.sys [2016-03-16 23856]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2015-11-18 157520]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 HpqKbFiltr;@oem58.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2010-12-03 25912]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]
R3 IntcDAud;@oem110.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2011-08-23 317440]
R3 MEIx64;@oem52.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface; C:\WINDOWS\System32\drivers\HECIx64.sys [2010-10-20 56344]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-12-28 175616]
R3 NAVENG;NAVENG; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\VirusDefs\20160315.024\ENG64.SYS [2015-12-17 138488]
R3 NAVEX15;NAVEX15; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\VirusDefs\20160315.024\EX64.SYS [2015-12-17 2148080]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
R3 ROCKEYNT;@oem93.inf,%Rockey.SVCDESC%;Feitian ROCKEY4 Device Service; C:\WINDOWS\system32\DRIVERS\Rockey4.sys [2013-12-04 36904]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
R3 SNP2UVC;@oem118.inf,%SERVICE_DISPLAY_NAME%;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [2015-12-10 2668424]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 Afc;PPdus ASPI Shell; C:\WINDOWS\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-28 117248]
S3 FsUsbExDisk;FsUsbExDisk; \??\C:\windows\SysWOW64\FsUsbExDisk.SYS [2013-12-30 37344]
S3 GemCCID;GemCCID; C:\WINDOWS\system32\DRIVERS\GemCCID.sys [2015-11-04 139632]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 JMCR;JMCR; C:\WINDOWS\System32\drivers\jmcr.sys [2012-07-31 175928]
S3 lmimirr;lmimirr; C:\WINDOWS\system32\DRIVERS\lmimirr.sys [2012-11-29 11552]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 mvusbews;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2012-11-08 19968]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-07-03 42696]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [2011-10-10 85344]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-03-07 81088]
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2009-03-03 89600]
R2 AGSService;Adobe Genuine Software Integrity Service; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2016-02-09 2020056]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2015-10-07 77104]
R2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-01-07 138400]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 hpsrv;@oem19.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2012-09-24 31040]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2015-09-28 25800]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-12-28 26624]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\NIS.exe [2015-11-20 282016]
R2 OneSyncSvc_52fb1;Hostitel synchronizace_52fb1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 SolutoLauncherService;Soluto Launcher Service; C:\Program Files\Soluto\SolutoLauncherService.exe [2013-11-14 182848]
R2 SolutoService;Soluto PCGenome Core Service; C:\Program Files\Soluto\SolutoService.exe [2013-11-14 856128]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2011-01-27 296448]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2015-12-17 644880]
R3 PimIndexMaintenanceSvc_52fb1;Data kontaktů_52fb1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 SolutoRemoteService;Soluto Remote Service; C:\Program Files\Soluto\SolutoRemoteService.exe [2013-11-14 1942016]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1d15f81;Hostitel synchronizace_1d15f81; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2e1ae09;Hostitel synchronizace_2e1ae09; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4e5028;Hostitel synchronizace_4e5028; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_58614;Hostitel synchronizace_58614; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_fadbc8;Hostitel synchronizace_fadbc8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-11 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DraftSight API Service;DraftSight API Service; C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe [2014-03-14 123392]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FirebirdGuardianDefaultInstance;Firebird Guardian - DefaultInstance; C:\Program Files (x86)\Firebird\bin\fbguard.exe [2007-12-12 65536]
S3 FirebirdServerDefaultInstance;Firebird Server - DefaultInstance; C:\Program Files (x86)\Firebird\bin\fbserver.exe [2007-12-12 1531989]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-06-05 1432400]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2014-04-24 227904]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2014-08-06 203344]
S3 HP DS Service;HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [2011-10-17 13824]
S3 HP LaserJet Service;HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [2012-05-02 164864]
S3 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2011-01-27 131128]
S3 HPDayStarterService;HP DayStarter Service; c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [2011-01-28 133688]
S3 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [2011-01-28 281656]
S3 hpqcxs08;hpqcxs08; C:\WINDOWS\syswow64\svchost.exe [2015-10-30 37256]
S3 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\WINDOWS\syswow64\svchost.exe [2015-10-30 37256]
S3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2015-04-28 1102472]
S3 HPSIService;HP SI Service; C:\WINDOWS\system32\HPSIsvc.exe [2010-04-29 127800]
S3 HPSLPSVC;HP Network Devices Support; C:\windows\system32\svchost.exe [2015-10-30 43944]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 jhi_service;Intel(R) Identity Protection Technology Host Interface Service; C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe [2010-11-29 210896]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-01-17 326168]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2e1ae09;Služba zasílání zpráv_2e1ae09; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e5028;Služba zasílání zpráv_4e5028; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_52fb1;Služba zasílání zpráv_52fb1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_fadbc8;Služba zasílání zpráv_fadbc8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-02-12 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 nlsX86cc;Nalpeiron Licensing Service; C:\windows\SysWOW64\NLSSRV32.EXE [2013-03-25 70152]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-02-01 1127448]
S3 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2011-01-18 113264]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2e1ae09;Data kontaktů_2e1ae09; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4e5028;Data kontaktů_4e5028; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_fadbc8;Data kontaktů_fadbc8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-09 116648]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-09 116648]

-----------------EOF-----------------

Re: Kontrola logu

Napsal: 16 bře 2016 19:17
od Rudy
Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?

Re: Kontrola logu

Napsal: 17 bře 2016 09:59
od Spikl
Dobrý den,
po OTM ulklizeno.

NTB se chová:
- po zapnutí systém nabíhá rychleji
- odezva při psaní textu pomalá, nebo žádná (musím psát pomalu, jinak vynechává písmena....)
- odezva "pravé myši" pomalá
- ikona START úplně bez odezvy


Co s tím?
Zatím díky. P.

Re: Kontrola logu

Napsal: 17 bře 2016 17:54
od Rudy
Zkuste obnovu systému k datu, kdy korektně fungoval.

Re: Kontrola logu

Napsal: 18 bře 2016 09:42
od Spikl
Dobrý den,

vůbec netuším kde se to ve w10 dá udělat. Ve W7 to jsem dělal tolik bodů obnovení co jsem potřeboval, ale tady nevím.....

Jinak od včerejška změna malinko k lepšímu: psaní OK, myš OK, jen nejdou ikony na dolní liště - START, Prohledat Windows, Ovládání hlasitosti, správce připojení k internetu.

Antivir v NTB mám Norton.

Ve správci zařízení žádné chyby nejsou.

Dnes se objevila tato hláška "V počítači došlo k problému a je třeba jej restartovat. Právě shromažďujeme určité informace o chybách a následně provedeme restartování. Chcete-li získat další informace, můžete později vyhledat online následující chybu: SYSTEM_SERVICE_EXCEPTION (Soluto.sys)"

To SOLUTO jsem již odinstaloval.

Prosím o radu jak pokračovat.

Re: Kontrola logu

Napsal: 18 bře 2016 12:03
od Spikl
ještě jsem zkusi SFC Scan s tímto výsledkem "Windows Resource Protection nenašel žádné porušení integrity".

Re: Kontrola logu

Napsal: 18 bře 2016 13:07
od Spikl
Tak obnovení provedeno k 14.3, všechno v dolní liště funguje.
Ale dostali jsme se před to čištění OTM....

Re: Kontrola logu

Napsal: 18 bře 2016 18:42
od Rudy
Opakuje se ten původní problém?

Re: Kontrola logu

Napsal: 21 bře 2016 07:59
od Spikl
Dobrý den,

doposud NTB nezamrznul. Ale vyskytl se jiný problém. Po zapmutí NTB nenaběhnou Windowsy, je pouze hnědá obrazovka, kde se "jakoba" neustále něco načítá ani po 20min nic nenaběhne. Pomůže akorát trvdý restart.