
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu zasekaného notebooku
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
r.o.s.t.a.c.k.a
- Návštěvník

- Příspěvky: 200
- Registrován: 12 zář 2006 09:40
- Bydliště: Teplice
- Kontaktovat uživatele:
Prosím o kontrolu zasekaného notebooku
Prosím o kontrolu logu, PC se začal před několika dny výrazně sekat. Děkuji
Logfile of random's system information tool 1.10 (written by random/random)
Run by Veronika at 2016-03-29 20:14:30
Microsoft Windows 10 Home
System drive C: has 281 GB (61%) free of 460 GB
Total RAM: 3983 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:14:37, on 29. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\NIS.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Veronika.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.search.ask.com/?tpid=ATU4SP- ... psv=&pt=tb
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL (file missing)
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\coIEPlg.dll
O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\skype4com.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\NIS.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11392 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
dashost.exe {ee3b7d9e-47bd-4f09-8a8dcb1e2b340a2a}
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\NIS.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\NIS.exe" /c /a /s UserSession
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Veronika\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0x1b0
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6804.0.892282762\87062944" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0116 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.4229 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_89/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="6804.3.465718057\673261038" /prefetch:1
C:\Windows\System32\DataExchangeHost.exe -Embedding
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 628 632 640 8192 636
"C:\Users\Veronika\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine64\22.6.0.142\coIEPlg.dll [2016-02-21 1051320]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\coIEPlg.dll [2016-02-21 805560]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine64\22.6.0.142\coIEPlg.dll [2016-02-21 1051320]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\coIEPlg.dll [2016-02-21 805560]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-06-12 6548112]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-01-08 3951280]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-09 551104]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"CLVirtualDrive"=C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-26 491320]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-28 91432]
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-07-09 580512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-29 20:14:31 ----D---- C:\Program Files\trend micro
2016-03-29 20:14:30 ----D---- C:\rsit
2016-03-22 10:09:27 ----D---- C:\WINDOWS\%LOCALAPPDATA%
2016-03-09 19:56:54 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-03-09 09:42:11 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 09:42:09 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 09:42:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 09:42:06 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 09:42:03 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 09:42:02 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 09:42:01 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 09:41:59 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 09:41:57 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 09:41:56 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 09:41:55 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 09:41:53 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 09:41:52 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 09:41:48 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 09:41:47 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 09:41:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-09 09:41:14 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:41:53 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 16:41:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 16:41:40 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 16:41:33 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 16:41:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 16:41:30 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 16:41:29 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 16:41:27 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 16:41:26 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 16:41:23 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 16:41:21 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 16:41:20 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 16:41:18 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 16:41:15 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 16:41:06 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 16:40:58 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 16:40:52 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 16:40:47 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 16:40:41 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 16:40:36 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 16:40:34 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 16:40:30 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
======List of files/folders modified in the last 1 month======
2016-03-29 20:14:32 ----D---- C:\WINDOWS\Prefetch
2016-03-29 20:14:31 ----RD---- C:\Program Files
2016-03-29 20:08:02 ----D---- C:\WINDOWS\Temp
2016-03-29 20:05:29 ----D---- C:\WINDOWS\System32
2016-03-29 20:05:29 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-29 20:05:28 ----D---- C:\WINDOWS\INF
2016-03-29 20:02:57 ----SHD---- C:\System Volume Information
2016-03-29 20:01:43 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-03-29 19:45:07 ----D---- C:\WINDOWS\system32\sru
2016-03-29 19:44:37 ----D---- C:\WINDOWS\Minidump
2016-03-29 19:44:32 ----D---- C:\Windows
2016-03-29 19:41:20 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-29 18:17:46 ----D---- C:\WINDOWS\system32\NDF
2016-03-29 15:57:47 ----HD---- C:\Program Files\WindowsApps
2016-03-29 15:57:47 ----D---- C:\WINDOWS\AppReadiness
2016-03-28 18:14:23 ----D---- C:\WINDOWS\system32\config
2016-03-25 14:59:58 ----D---- C:\Users\Veronika\AppData\Roaming\uTorrent
2016-03-24 10:39:02 ----D---- C:\WINDOWS\CbsTemp
2016-03-23 22:55:14 ----D---- C:\WINDOWS\WinSxS
2016-03-23 22:48:14 ----D---- C:\WINDOWS\system32\WDI
2016-03-20 17:42:58 ----D---- C:\WINDOWS\system32\catroot2
2016-03-20 17:41:16 ----HD---- C:\WINDOWS\ELAMBKUP
2016-03-20 17:01:56 ----D---- C:\WINDOWS\system32\Tasks
2016-03-20 16:56:30 ----D---- C:\WINDOWS\system32\drivers\NISx64
2016-03-18 16:40:07 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-17 11:58:19 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-14 13:21:27 ----D---- C:\WINDOWS\SysWOW64
2016-03-14 13:03:09 ----D---- C:\WINDOWS\system32\MRT
2016-03-14 12:57:02 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 12:49:19 ----D---- C:\WINDOWS\rescache
2016-03-10 04:51:59 ----RD---- C:\WINDOWS\assembly
2016-03-10 04:32:57 ----D---- C:\WINDOWS\system32\drivers
2016-03-10 04:30:56 ----D---- C:\WINDOWS\system32\migration
2016-03-10 04:30:55 ----D---- C:\WINDOWS\AppPatch
2016-03-10 04:30:55 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Media Player
2016-03-10 04:30:54 ----D---- C:\Program Files\Internet Explorer
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\wbem
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Boot
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\appraiser
2016-03-09 10:24:50 ----RSD---- C:\WINDOWS\Media
2016-03-09 10:24:50 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-09 10:24:49 ----RSD---- C:\WINDOWS\Fonts
2016-03-09 10:24:49 ----D---- C:\WINDOWS\bcastdvr
2016-03-09 10:24:49 ----D---- C:\Program Files\Windows Journal
2016-03-08 09:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-02 16:25:05 ----D---- C:\WINDOWS\Logs
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-08-01 645952]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 BHDrvx64;BHDrvx64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.4.24\Definitions\BASHDefs\20160316.006\BHDrvx64.sys [2016-03-09 1766640]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 ccSet_NIS;NIS Settings Manager; C:\WINDOWS\system32\drivers\NISx64\1606000.08E\ccSetx64.sys [2015-09-24 173808]
R3 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2015-12-20 498512]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2015-12-20 157520]
R3 IDSVia64;IDSVia64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.4.24\Definitions\IPSDefs\20160317.001\IDSvia64.sys [2016-02-14 767224]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-06-20 4065296]
R3 IntcDAud;@oem17.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-20 342528]
R3 MEIx64;@oem15.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 NAVENG;NAVENG; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.4.24\Definitions\VirusDefs\20160319.001\ENG64.SYS [2015-10-16 138488]
R3 NAVEX15;NAVEX15; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.4.24\Definitions\VirusDefs\20160319.001\EX64.SYS [2015-10-16 2148080]
R3 netr28x;@oem25.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2015-06-12 2554528]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
R3 rtbth;@oem28.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2015-06-03 1219200]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2016-01-08 42664]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\WINDOWS\System32\Drivers\NISx64\1606000.08E\SRTSP64.SYS [2016-02-24 928504]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-02-25 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-25 117248]
S3 dg_ssudbus;@oem8.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
S3 RSP2STOR;@oem27.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-29 41272]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-08-10 85504]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-07-09 35232]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-07-14 2451456]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\NIS.exe [2016-02-26 289080]
R2 OneSyncSvc_3c7eb;Hostitel synchronizace_3c7eb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
R3 PimIndexMaintenanceSvc_3c7eb;Data kontaktů_3c7eb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_231bec;Hostitel synchronizace_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_239b5e;Hostitel synchronizace_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_26feeb;Hostitel synchronizace_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2ebe22;Hostitel synchronizace_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3055f;Hostitel synchronizace_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_35e63;Hostitel synchronizace_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_366bf;Hostitel synchronizace_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37247;Hostitel synchronizace_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37579;Hostitel synchronizace_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37dcf;Hostitel synchronizace_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cb8;Hostitel synchronizace_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cea;Hostitel synchronizace_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_390ed;Hostitel synchronizace_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_39e37;Hostitel synchronizace_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ab4e;Hostitel synchronizace_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3abec;Hostitel synchronizace_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3b03e;Hostitel synchronizace_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3d1c1;Hostitel synchronizace_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3e36f;Hostitel synchronizace_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ec22;Hostitel synchronizace_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fd5c;Hostitel synchronizace_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_42794;Hostitel synchronizace_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4e063;Hostitel synchronizace_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_7ce80;Hostitel synchronizace_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_9a01d;Hostitel synchronizace_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_ddcbed;Hostitel synchronizace_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_231bec;Služba zasílání zpráv_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_239b5e;Služba zasílání zpráv_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_26feeb;Služba zasílání zpráv_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2ebe22;Služba zasílání zpráv_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3055f;Služba zasílání zpráv_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_35e63;Služba zasílání zpráv_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_366bf;Služba zasílání zpráv_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37247;Služba zasílání zpráv_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37579;Služba zasílání zpráv_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37dcf;Služba zasílání zpráv_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cb8;Služba zasílání zpráv_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cea;Služba zasílání zpráv_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_390ed;Služba zasílání zpráv_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_39e37;Služba zasílání zpráv_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ab4e;Služba zasílání zpráv_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3abec;Služba zasílání zpráv_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b03e;Služba zasílání zpráv_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3c7eb;Služba zasílání zpráv_3c7eb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d1c1;Služba zasílání zpráv_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3e36f;Služba zasílání zpráv_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ec22;Služba zasílání zpráv_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fd5c;Služba zasílání zpráv_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_42794;Služba zasílání zpráv_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e063;Služba zasílání zpráv_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7ce80;Služba zasílání zpráv_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_9a01d;Služba zasílání zpráv_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_ddcbed;Služba zasílání zpráv_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_231bec;Data kontaktů_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_239b5e;Data kontaktů_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_26feeb;Data kontaktů_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2ebe22;Data kontaktů_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3055f;Data kontaktů_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_35e63;Data kontaktů_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_366bf;Data kontaktů_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37247;Data kontaktů_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37579;Data kontaktů_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37dcf;Data kontaktů_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cb8;Data kontaktů_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cea;Data kontaktů_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_390ed;Data kontaktů_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_39e37;Data kontaktů_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ab4e;Data kontaktů_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3abec;Data kontaktů_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3b03e;Data kontaktů_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3d1c1;Data kontaktů_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3e36f;Data kontaktů_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ec22;Data kontaktů_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fd5c;Data kontaktů_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_42794;Data kontaktů_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4e063;Data kontaktů_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_7ce80;Data kontaktů_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_9a01d;Data kontaktů_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_ddcbed;Data kontaktů_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Veronika at 2016-03-29 20:14:30
Microsoft Windows 10 Home
System drive C: has 281 GB (61%) free of 460 GB
Total RAM: 3983 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:14:37, on 29. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\NIS.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Veronika.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.search.ask.com/?tpid=ATU4SP- ... psv=&pt=tb
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL (file missing)
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\coIEPlg.dll
O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\skype4com.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\NIS.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11392 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
dashost.exe {ee3b7d9e-47bd-4f09-8a8dcb1e2b340a2a}
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\NIS.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\NIS.exe" /c /a /s UserSession
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Veronika\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0x1b0
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6804.0.892282762\87062944" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0116 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.4229 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_89/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="6804.3.465718057\673261038" /prefetch:1
C:\Windows\System32\DataExchangeHost.exe -Embedding
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 628 632 640 8192 636
"C:\Users\Veronika\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine64\22.6.0.142\coIEPlg.dll [2016-02-21 1051320]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\coIEPlg.dll [2016-02-21 805560]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine64\22.6.0.142\coIEPlg.dll [2016-02-21 1051320]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\coIEPlg.dll [2016-02-21 805560]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-06-12 6548112]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-01-08 3951280]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-09 551104]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"CLVirtualDrive"=C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-26 491320]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-28 91432]
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-07-09 580512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-29 20:14:31 ----D---- C:\Program Files\trend micro
2016-03-29 20:14:30 ----D---- C:\rsit
2016-03-22 10:09:27 ----D---- C:\WINDOWS\%LOCALAPPDATA%
2016-03-09 19:56:54 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-03-09 09:42:11 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 09:42:09 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 09:42:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 09:42:06 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 09:42:03 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 09:42:02 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 09:42:01 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 09:41:59 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 09:41:57 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 09:41:56 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 09:41:55 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 09:41:53 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 09:41:52 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 09:41:48 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 09:41:47 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 09:41:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-09 09:41:14 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:41:53 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 16:41:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 16:41:40 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 16:41:33 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 16:41:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 16:41:30 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 16:41:29 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 16:41:27 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 16:41:26 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 16:41:23 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 16:41:21 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 16:41:20 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 16:41:18 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 16:41:15 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 16:41:06 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 16:40:58 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 16:40:52 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 16:40:47 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 16:40:41 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 16:40:36 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 16:40:34 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 16:40:30 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
======List of files/folders modified in the last 1 month======
2016-03-29 20:14:32 ----D---- C:\WINDOWS\Prefetch
2016-03-29 20:14:31 ----RD---- C:\Program Files
2016-03-29 20:08:02 ----D---- C:\WINDOWS\Temp
2016-03-29 20:05:29 ----D---- C:\WINDOWS\System32
2016-03-29 20:05:29 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-29 20:05:28 ----D---- C:\WINDOWS\INF
2016-03-29 20:02:57 ----SHD---- C:\System Volume Information
2016-03-29 20:01:43 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-03-29 19:45:07 ----D---- C:\WINDOWS\system32\sru
2016-03-29 19:44:37 ----D---- C:\WINDOWS\Minidump
2016-03-29 19:44:32 ----D---- C:\Windows
2016-03-29 19:41:20 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-29 18:17:46 ----D---- C:\WINDOWS\system32\NDF
2016-03-29 15:57:47 ----HD---- C:\Program Files\WindowsApps
2016-03-29 15:57:47 ----D---- C:\WINDOWS\AppReadiness
2016-03-28 18:14:23 ----D---- C:\WINDOWS\system32\config
2016-03-25 14:59:58 ----D---- C:\Users\Veronika\AppData\Roaming\uTorrent
2016-03-24 10:39:02 ----D---- C:\WINDOWS\CbsTemp
2016-03-23 22:55:14 ----D---- C:\WINDOWS\WinSxS
2016-03-23 22:48:14 ----D---- C:\WINDOWS\system32\WDI
2016-03-20 17:42:58 ----D---- C:\WINDOWS\system32\catroot2
2016-03-20 17:41:16 ----HD---- C:\WINDOWS\ELAMBKUP
2016-03-20 17:01:56 ----D---- C:\WINDOWS\system32\Tasks
2016-03-20 16:56:30 ----D---- C:\WINDOWS\system32\drivers\NISx64
2016-03-18 16:40:07 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-17 11:58:19 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-14 13:21:27 ----D---- C:\WINDOWS\SysWOW64
2016-03-14 13:03:09 ----D---- C:\WINDOWS\system32\MRT
2016-03-14 12:57:02 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 12:49:19 ----D---- C:\WINDOWS\rescache
2016-03-10 04:51:59 ----RD---- C:\WINDOWS\assembly
2016-03-10 04:32:57 ----D---- C:\WINDOWS\system32\drivers
2016-03-10 04:30:56 ----D---- C:\WINDOWS\system32\migration
2016-03-10 04:30:55 ----D---- C:\WINDOWS\AppPatch
2016-03-10 04:30:55 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Media Player
2016-03-10 04:30:54 ----D---- C:\Program Files\Internet Explorer
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\wbem
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Boot
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\appraiser
2016-03-09 10:24:50 ----RSD---- C:\WINDOWS\Media
2016-03-09 10:24:50 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-09 10:24:49 ----RSD---- C:\WINDOWS\Fonts
2016-03-09 10:24:49 ----D---- C:\WINDOWS\bcastdvr
2016-03-09 10:24:49 ----D---- C:\Program Files\Windows Journal
2016-03-08 09:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-02 16:25:05 ----D---- C:\WINDOWS\Logs
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-08-01 645952]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 BHDrvx64;BHDrvx64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.4.24\Definitions\BASHDefs\20160316.006\BHDrvx64.sys [2016-03-09 1766640]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 ccSet_NIS;NIS Settings Manager; C:\WINDOWS\system32\drivers\NISx64\1606000.08E\ccSetx64.sys [2015-09-24 173808]
R3 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2015-12-20 498512]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2015-12-20 157520]
R3 IDSVia64;IDSVia64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.4.24\Definitions\IPSDefs\20160317.001\IDSvia64.sys [2016-02-14 767224]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-06-20 4065296]
R3 IntcDAud;@oem17.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-20 342528]
R3 MEIx64;@oem15.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 NAVENG;NAVENG; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.4.24\Definitions\VirusDefs\20160319.001\ENG64.SYS [2015-10-16 138488]
R3 NAVEX15;NAVEX15; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.4.24\Definitions\VirusDefs\20160319.001\EX64.SYS [2015-10-16 2148080]
R3 netr28x;@oem25.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2015-06-12 2554528]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
R3 rtbth;@oem28.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2015-06-03 1219200]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2016-01-08 42664]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\WINDOWS\System32\Drivers\NISx64\1606000.08E\SRTSP64.SYS [2016-02-24 928504]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-02-25 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-25 117248]
S3 dg_ssudbus;@oem8.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
S3 RSP2STOR;@oem27.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-29 41272]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-08-10 85504]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-07-09 35232]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-07-14 2451456]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\NIS.exe [2016-02-26 289080]
R2 OneSyncSvc_3c7eb;Hostitel synchronizace_3c7eb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
R3 PimIndexMaintenanceSvc_3c7eb;Data kontaktů_3c7eb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_231bec;Hostitel synchronizace_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_239b5e;Hostitel synchronizace_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_26feeb;Hostitel synchronizace_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2ebe22;Hostitel synchronizace_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3055f;Hostitel synchronizace_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_35e63;Hostitel synchronizace_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_366bf;Hostitel synchronizace_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37247;Hostitel synchronizace_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37579;Hostitel synchronizace_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37dcf;Hostitel synchronizace_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cb8;Hostitel synchronizace_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cea;Hostitel synchronizace_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_390ed;Hostitel synchronizace_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_39e37;Hostitel synchronizace_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ab4e;Hostitel synchronizace_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3abec;Hostitel synchronizace_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3b03e;Hostitel synchronizace_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3d1c1;Hostitel synchronizace_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3e36f;Hostitel synchronizace_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ec22;Hostitel synchronizace_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fd5c;Hostitel synchronizace_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_42794;Hostitel synchronizace_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4e063;Hostitel synchronizace_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_7ce80;Hostitel synchronizace_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_9a01d;Hostitel synchronizace_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_ddcbed;Hostitel synchronizace_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_231bec;Služba zasílání zpráv_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_239b5e;Služba zasílání zpráv_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_26feeb;Služba zasílání zpráv_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2ebe22;Služba zasílání zpráv_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3055f;Služba zasílání zpráv_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_35e63;Služba zasílání zpráv_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_366bf;Služba zasílání zpráv_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37247;Služba zasílání zpráv_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37579;Služba zasílání zpráv_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37dcf;Služba zasílání zpráv_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cb8;Služba zasílání zpráv_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cea;Služba zasílání zpráv_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_390ed;Služba zasílání zpráv_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_39e37;Služba zasílání zpráv_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ab4e;Služba zasílání zpráv_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3abec;Služba zasílání zpráv_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b03e;Služba zasílání zpráv_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3c7eb;Služba zasílání zpráv_3c7eb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d1c1;Služba zasílání zpráv_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3e36f;Služba zasílání zpráv_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ec22;Služba zasílání zpráv_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fd5c;Služba zasílání zpráv_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_42794;Služba zasílání zpráv_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e063;Služba zasílání zpráv_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7ce80;Služba zasílání zpráv_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_9a01d;Služba zasílání zpráv_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_ddcbed;Služba zasílání zpráv_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_231bec;Data kontaktů_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_239b5e;Data kontaktů_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_26feeb;Data kontaktů_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2ebe22;Data kontaktů_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3055f;Data kontaktů_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_35e63;Data kontaktů_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_366bf;Data kontaktů_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37247;Data kontaktů_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37579;Data kontaktů_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37dcf;Data kontaktů_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cb8;Data kontaktů_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cea;Data kontaktů_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_390ed;Data kontaktů_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_39e37;Data kontaktů_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ab4e;Data kontaktů_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3abec;Data kontaktů_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3b03e;Data kontaktů_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3d1c1;Data kontaktů_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3e36f;Data kontaktů_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ec22;Data kontaktů_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fd5c;Data kontaktů_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_42794;Data kontaktů_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4e063;Data kontaktů_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_7ce80;Data kontaktů_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_9a01d;Data kontaktů_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_ddcbed;Data kontaktů_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu zasekaného notebooku
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
r.o.s.t.a.c.k.a
- Návštěvník

- Příspěvky: 200
- Registrován: 12 zář 2006 09:40
- Bydliště: Teplice
- Kontaktovat uživatele:
Re: Prosím o kontrolu zasekaného notebooku
# AdwCleaner v5.107 - Log soubor vytvořen 29/03/2016 o 21:32:37
# Aktualizováno 28/03/2016 by Xplode
# Databáze : 2016-03-28.2 [Server]
# Operační systém : Windows 10 Home (x64)
# Jméno uživatele : Veronika - VERUNKA
# Spuštěno z : C:\Users\Veronika\Desktop\adwcleaner_5.107.exe
# Volba : Čištění
# Podpora : http://toolslib.net/forum
***** [ Služby ] *****
***** [ Složky ] *****
[-] Složka Smazáno : C:\Users\Veronika\AppData\LocalLow\BS_Player_ControlBar
[-] Složka Smazáno : C:\Users\Veronika\AppData\LocalLow\Conduit
[-] Složka Smazáno : C:\Users\Veronika\AppData\LocalLow\ilividmoviestoolbarha
***** [ Soubory ] *****
[-] Soubor Smazáno : C:\END
***** [ DLLs ] *****
***** [ Zástupci ] *****
***** [ Naplánované úkoly ] *****
***** [ Registr ] *****
[-] Klávesa Smazáno : HKCU\Software\Conduit
[-] Klávesa Smazáno : HKLM\SOFTWARE\Conduit
[-] Data Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Obnoveno : HKU\S-1-5-21-846040917-1358157247-1843232365-1001\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Klávesa Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
[-] Klávesa Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
***** [ Webové prohlížeče ] *****
[-] [C:\Users\Veronika\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Smazáno : sopcast.en.softonic.com
*************************
:: "Tracing" odstraněných kláves
:: Nastavení Winsock odstraněno
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [1801 bytes] - [29/03/2016 21:32:37]
C:\AdwCleaner\AdwCleaner[S1].txt - [2602 bytes] - [29/03/2016 21:18:40]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1947 bytes] ##########
# Aktualizováno 28/03/2016 by Xplode
# Databáze : 2016-03-28.2 [Server]
# Operační systém : Windows 10 Home (x64)
# Jméno uživatele : Veronika - VERUNKA
# Spuštěno z : C:\Users\Veronika\Desktop\adwcleaner_5.107.exe
# Volba : Čištění
# Podpora : http://toolslib.net/forum
***** [ Služby ] *****
***** [ Složky ] *****
[-] Složka Smazáno : C:\Users\Veronika\AppData\LocalLow\BS_Player_ControlBar
[-] Složka Smazáno : C:\Users\Veronika\AppData\LocalLow\Conduit
[-] Složka Smazáno : C:\Users\Veronika\AppData\LocalLow\ilividmoviestoolbarha
***** [ Soubory ] *****
[-] Soubor Smazáno : C:\END
***** [ DLLs ] *****
***** [ Zástupci ] *****
***** [ Naplánované úkoly ] *****
***** [ Registr ] *****
[-] Klávesa Smazáno : HKCU\Software\Conduit
[-] Klávesa Smazáno : HKLM\SOFTWARE\Conduit
[-] Data Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Obnoveno : HKU\S-1-5-21-846040917-1358157247-1843232365-1001\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Klávesa Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
[-] Klávesa Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
[-] Klávesa Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
***** [ Webové prohlížeče ] *****
[-] [C:\Users\Veronika\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Smazáno : sopcast.en.softonic.com
*************************
:: "Tracing" odstraněných kláves
:: Nastavení Winsock odstraněno
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [1801 bytes] - [29/03/2016 21:32:37]
C:\AdwCleaner\AdwCleaner[S1].txt - [2602 bytes] - [29/03/2016 21:18:40]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1947 bytes] ##########
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu zasekaného notebooku
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
r.o.s.t.a.c.k.a
- Návštěvník

- Příspěvky: 200
- Registrován: 12 zář 2006 09:40
- Bydliště: Teplice
- Kontaktovat uživatele:
Re: Prosím o kontrolu zasekaného notebooku
Tady ho máte:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Veronika at 2016-03-29 22:31:38
Microsoft Windows 10 Home
System drive C: has 281 GB (61%) free of 460 GB
Total RAM: 3983 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:31:40, on 29. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\trend micro\Veronika.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL (file missing)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\skype4com.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10672 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
sihost.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"fontdrvhost.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.18671.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
dashost.exe {d2e752ae-38c2-4bc8-98bd5c7c25aa499a}
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\WINDOWS\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} -Embedding
C:\WINDOWS\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} -Embedding
wmiadap.exe /R /T
"C:\Users\Veronika\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-03-29 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-03-29 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-06-12 6548112]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-01-08 3951280]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-09 551104]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"CLVirtualDrive"=C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-26 491320]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-28 91432]
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-07-09 580512]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-29 7139256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-29 21:17:42 ----D---- C:\AdwCleaner
2016-03-29 21:11:19 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-03-29 21:10:28 ----D---- C:\Users\Veronika\AppData\Roaming\AVAST Software
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2016-03-29 21:09:40 ----A---- C:\WINDOWS\avastSS.scr
2016-03-29 21:08:55 ----D---- C:\Program Files\AVAST Software
2016-03-29 20:46:24 ----A---- C:\WINDOWS\system32\drivers\soketawy.sys
2016-03-29 20:40:54 ----SHD---- C:\found.001
2016-03-29 20:14:31 ----D---- C:\Program Files\trend micro
2016-03-29 20:14:30 ----D---- C:\rsit
2016-03-22 10:09:27 ----D---- C:\WINDOWS\%LOCALAPPDATA%
2016-03-09 19:56:54 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-03-09 09:42:11 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 09:42:09 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 09:42:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 09:42:06 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 09:42:03 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 09:42:02 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 09:42:01 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 09:41:59 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 09:41:57 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 09:41:56 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 09:41:55 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 09:41:53 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 09:41:52 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 09:41:48 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 09:41:47 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 09:41:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-09 09:41:14 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:41:53 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 16:41:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 16:41:40 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 16:41:33 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 16:41:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 16:41:30 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 16:41:29 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 16:41:27 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 16:41:26 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 16:41:23 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 16:41:21 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 16:41:20 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 16:41:18 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 16:41:15 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 16:41:06 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 16:40:58 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 16:40:52 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 16:40:47 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 16:40:41 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 16:40:36 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 16:40:34 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 16:40:30 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
======List of files/folders modified in the last 1 month======
2016-03-29 22:07:03 ----D---- C:\WINDOWS\system32\config
2016-03-29 22:06:02 ----D---- C:\WINDOWS\system32\NDF
2016-03-29 22:05:54 ----D---- C:\WINDOWS\Temp
2016-03-29 22:05:28 ----SHD---- C:\System Volume Information
2016-03-29 21:40:38 ----D---- C:\WINDOWS\System32
2016-03-29 21:40:38 ----D---- C:\WINDOWS\INF
2016-03-29 21:40:38 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-29 21:36:45 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-03-29 21:33:36 ----D---- C:\WINDOWS\system32\drivers
2016-03-29 21:33:08 ----D---- C:\WINDOWS\system32\sru
2016-03-29 21:32:50 ----D---- C:\WINDOWS\Prefetch
2016-03-29 21:25:26 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-29 21:14:52 ----SHD---- C:\WINDOWS\Installer
2016-03-29 21:11:40 ----D---- C:\WINDOWS\system32\Tasks
2016-03-29 21:11:18 ----D---- C:\Windows
2016-03-29 21:09:54 ----D---- C:\WINDOWS\WinSxS
2016-03-29 21:08:55 ----RD---- C:\Program Files
2016-03-29 21:08:39 ----D---- C:\ProgramData\AVAST Software
2016-03-29 20:53:40 ----D---- C:\WINDOWS\Minidump
2016-03-29 20:42:24 ----RD---- C:\Program Files (x86)
2016-03-29 20:42:24 ----D---- C:\Program Files (x86)\NortonInstaller
2016-03-29 20:20:03 ----HD---- C:\WINDOWS\ELAMBKUP
2016-03-29 20:20:02 ----D---- C:\Program Files\Common Files
2016-03-29 15:57:47 ----HD---- C:\Program Files\WindowsApps
2016-03-29 15:57:47 ----D---- C:\WINDOWS\AppReadiness
2016-03-25 14:59:58 ----D---- C:\Users\Veronika\AppData\Roaming\uTorrent
2016-03-24 10:39:02 ----D---- C:\WINDOWS\CbsTemp
2016-03-23 22:48:14 ----D---- C:\WINDOWS\system32\WDI
2016-03-20 17:42:58 ----D---- C:\WINDOWS\system32\catroot2
2016-03-18 16:40:07 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-17 11:58:19 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-14 13:21:27 ----D---- C:\WINDOWS\SysWOW64
2016-03-14 13:03:09 ----D---- C:\WINDOWS\system32\MRT
2016-03-14 12:57:02 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 12:49:19 ----D---- C:\WINDOWS\rescache
2016-03-10 04:51:59 ----RD---- C:\WINDOWS\assembly
2016-03-10 04:30:56 ----D---- C:\WINDOWS\system32\migration
2016-03-10 04:30:55 ----D---- C:\WINDOWS\AppPatch
2016-03-10 04:30:55 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Media Player
2016-03-10 04:30:54 ----D---- C:\Program Files\Internet Explorer
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\wbem
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Boot
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\appraiser
2016-03-09 10:24:50 ----RSD---- C:\WINDOWS\Media
2016-03-09 10:24:50 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-09 10:24:49 ----RSD---- C:\WINDOWS\Fonts
2016-03-09 10:24:49 ----D---- C:\WINDOWS\bcastdvr
2016-03-09 10:24:49 ----D---- C:\Program Files\Windows Journal
2016-03-08 09:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-02 16:25:05 ----D---- C:\WINDOWS\Logs
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-03-29 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-03-29 287016]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-08-01 645952]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-03-29 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-03-29 1070904]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-03-29 463744]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-03-29 37656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-03-29 107792]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-03-29 165344]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-06-20 4065296]
R3 IntcDAud;@oem17.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-20 342528]
R3 MEIx64;@oem15.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 netr28x;@oem25.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2015-06-12 2554528]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
R3 rtbth;@oem28.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2015-06-03 1219200]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2016-01-08 42664]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-02-25 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-25 117248]
S3 dg_ssudbus;@oem8.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
S3 RSP2STOR;@oem27.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-29 41272]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-03-29 237096]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-08-10 85504]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-07-09 35232]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-07-14 2451456]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 OneSyncSvc_3b928;Hostitel synchronizace_3b928; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
R3 PimIndexMaintenanceSvc_3b928;Data kontaktů_3b928; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_231bec;Hostitel synchronizace_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_239b5e;Hostitel synchronizace_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_26feeb;Hostitel synchronizace_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2ebe22;Hostitel synchronizace_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3055f;Hostitel synchronizace_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_35e63;Hostitel synchronizace_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_36478;Hostitel synchronizace_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_366bf;Hostitel synchronizace_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37247;Hostitel synchronizace_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37579;Hostitel synchronizace_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37dcf;Hostitel synchronizace_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cb8;Hostitel synchronizace_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cea;Hostitel synchronizace_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_390ed;Hostitel synchronizace_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_39e37;Hostitel synchronizace_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ab4e;Hostitel synchronizace_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3abec;Hostitel synchronizace_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3b03e;Hostitel synchronizace_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3d1c1;Hostitel synchronizace_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3e36f;Hostitel synchronizace_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ec22;Hostitel synchronizace_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fd5c;Hostitel synchronizace_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_42794;Hostitel synchronizace_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4e063;Hostitel synchronizace_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_7ce80;Hostitel synchronizace_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_9a01d;Hostitel synchronizace_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_ddcbed;Hostitel synchronizace_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_231bec;Služba zasílání zpráv_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_239b5e;Služba zasílání zpráv_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_26feeb;Služba zasílání zpráv_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2ebe22;Služba zasílání zpráv_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3055f;Služba zasílání zpráv_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_35e63;Služba zasílání zpráv_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_36478;Služba zasílání zpráv_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_366bf;Služba zasílání zpráv_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37247;Služba zasílání zpráv_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37579;Služba zasílání zpráv_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37dcf;Služba zasílání zpráv_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cb8;Služba zasílání zpráv_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cea;Služba zasílání zpráv_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_390ed;Služba zasílání zpráv_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_39e37;Služba zasílání zpráv_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ab4e;Služba zasílání zpráv_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3abec;Služba zasílání zpráv_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b03e;Služba zasílání zpráv_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b928;Služba zasílání zpráv_3b928; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d1c1;Služba zasílání zpráv_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3e36f;Služba zasílání zpráv_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ec22;Služba zasílání zpráv_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fd5c;Služba zasílání zpráv_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_42794;Služba zasílání zpráv_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e063;Služba zasílání zpráv_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7ce80;Služba zasílání zpráv_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_9a01d;Služba zasílání zpráv_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_ddcbed;Služba zasílání zpráv_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_231bec;Data kontaktů_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_239b5e;Data kontaktů_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_26feeb;Data kontaktů_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2ebe22;Data kontaktů_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3055f;Data kontaktů_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_35e63;Data kontaktů_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_36478;Data kontaktů_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_366bf;Data kontaktů_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37247;Data kontaktů_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37579;Data kontaktů_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37dcf;Data kontaktů_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cb8;Data kontaktů_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cea;Data kontaktů_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_390ed;Data kontaktů_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_39e37;Data kontaktů_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ab4e;Data kontaktů_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3abec;Data kontaktů_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3b03e;Data kontaktů_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3d1c1;Data kontaktů_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3e36f;Data kontaktů_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ec22;Data kontaktů_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fd5c;Data kontaktů_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_42794;Data kontaktů_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4e063;Data kontaktů_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_7ce80;Data kontaktů_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_9a01d;Data kontaktů_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_ddcbed;Data kontaktů_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Veronika at 2016-03-29 22:31:38
Microsoft Windows 10 Home
System drive C: has 281 GB (61%) free of 460 GB
Total RAM: 3983 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:31:40, on 29. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\trend micro\Veronika.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL (file missing)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\skype4com.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10672 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
sihost.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"fontdrvhost.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.18671.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
dashost.exe {d2e752ae-38c2-4bc8-98bd5c7c25aa499a}
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\WINDOWS\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} -Embedding
C:\WINDOWS\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} -Embedding
wmiadap.exe /R /T
"C:\Users\Veronika\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-03-29 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-03-29 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-06-12 6548112]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-01-08 3951280]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-09 551104]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"CLVirtualDrive"=C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-26 491320]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-28 91432]
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-07-09 580512]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-29 7139256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-29 21:17:42 ----D---- C:\AdwCleaner
2016-03-29 21:11:19 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-03-29 21:10:28 ----D---- C:\Users\Veronika\AppData\Roaming\AVAST Software
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2016-03-29 21:09:40 ----A---- C:\WINDOWS\avastSS.scr
2016-03-29 21:08:55 ----D---- C:\Program Files\AVAST Software
2016-03-29 20:46:24 ----A---- C:\WINDOWS\system32\drivers\soketawy.sys
2016-03-29 20:40:54 ----SHD---- C:\found.001
2016-03-29 20:14:31 ----D---- C:\Program Files\trend micro
2016-03-29 20:14:30 ----D---- C:\rsit
2016-03-22 10:09:27 ----D---- C:\WINDOWS\%LOCALAPPDATA%
2016-03-09 19:56:54 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-03-09 09:42:11 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 09:42:09 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 09:42:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 09:42:06 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 09:42:03 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 09:42:02 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 09:42:01 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 09:41:59 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 09:41:57 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 09:41:56 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 09:41:55 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 09:41:53 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 09:41:52 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 09:41:48 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 09:41:47 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 09:41:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-09 09:41:14 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:41:53 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 16:41:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 16:41:40 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 16:41:33 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 16:41:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 16:41:30 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 16:41:29 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 16:41:27 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 16:41:26 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 16:41:23 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 16:41:21 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 16:41:20 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 16:41:18 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 16:41:15 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 16:41:06 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 16:40:58 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 16:40:52 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 16:40:47 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 16:40:41 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 16:40:36 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 16:40:34 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 16:40:30 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
======List of files/folders modified in the last 1 month======
2016-03-29 22:07:03 ----D---- C:\WINDOWS\system32\config
2016-03-29 22:06:02 ----D---- C:\WINDOWS\system32\NDF
2016-03-29 22:05:54 ----D---- C:\WINDOWS\Temp
2016-03-29 22:05:28 ----SHD---- C:\System Volume Information
2016-03-29 21:40:38 ----D---- C:\WINDOWS\System32
2016-03-29 21:40:38 ----D---- C:\WINDOWS\INF
2016-03-29 21:40:38 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-29 21:36:45 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-03-29 21:33:36 ----D---- C:\WINDOWS\system32\drivers
2016-03-29 21:33:08 ----D---- C:\WINDOWS\system32\sru
2016-03-29 21:32:50 ----D---- C:\WINDOWS\Prefetch
2016-03-29 21:25:26 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-29 21:14:52 ----SHD---- C:\WINDOWS\Installer
2016-03-29 21:11:40 ----D---- C:\WINDOWS\system32\Tasks
2016-03-29 21:11:18 ----D---- C:\Windows
2016-03-29 21:09:54 ----D---- C:\WINDOWS\WinSxS
2016-03-29 21:08:55 ----RD---- C:\Program Files
2016-03-29 21:08:39 ----D---- C:\ProgramData\AVAST Software
2016-03-29 20:53:40 ----D---- C:\WINDOWS\Minidump
2016-03-29 20:42:24 ----RD---- C:\Program Files (x86)
2016-03-29 20:42:24 ----D---- C:\Program Files (x86)\NortonInstaller
2016-03-29 20:20:03 ----HD---- C:\WINDOWS\ELAMBKUP
2016-03-29 20:20:02 ----D---- C:\Program Files\Common Files
2016-03-29 15:57:47 ----HD---- C:\Program Files\WindowsApps
2016-03-29 15:57:47 ----D---- C:\WINDOWS\AppReadiness
2016-03-25 14:59:58 ----D---- C:\Users\Veronika\AppData\Roaming\uTorrent
2016-03-24 10:39:02 ----D---- C:\WINDOWS\CbsTemp
2016-03-23 22:48:14 ----D---- C:\WINDOWS\system32\WDI
2016-03-20 17:42:58 ----D---- C:\WINDOWS\system32\catroot2
2016-03-18 16:40:07 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-17 11:58:19 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-14 13:21:27 ----D---- C:\WINDOWS\SysWOW64
2016-03-14 13:03:09 ----D---- C:\WINDOWS\system32\MRT
2016-03-14 12:57:02 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 12:49:19 ----D---- C:\WINDOWS\rescache
2016-03-10 04:51:59 ----RD---- C:\WINDOWS\assembly
2016-03-10 04:30:56 ----D---- C:\WINDOWS\system32\migration
2016-03-10 04:30:55 ----D---- C:\WINDOWS\AppPatch
2016-03-10 04:30:55 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Media Player
2016-03-10 04:30:54 ----D---- C:\Program Files\Internet Explorer
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\wbem
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Boot
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\appraiser
2016-03-09 10:24:50 ----RSD---- C:\WINDOWS\Media
2016-03-09 10:24:50 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-09 10:24:49 ----RSD---- C:\WINDOWS\Fonts
2016-03-09 10:24:49 ----D---- C:\WINDOWS\bcastdvr
2016-03-09 10:24:49 ----D---- C:\Program Files\Windows Journal
2016-03-08 09:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-02 16:25:05 ----D---- C:\WINDOWS\Logs
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-03-29 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-03-29 287016]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-08-01 645952]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-03-29 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-03-29 1070904]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-03-29 463744]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-03-29 37656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-03-29 107792]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-03-29 165344]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-06-20 4065296]
R3 IntcDAud;@oem17.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-20 342528]
R3 MEIx64;@oem15.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 netr28x;@oem25.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2015-06-12 2554528]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
R3 rtbth;@oem28.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2015-06-03 1219200]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2016-01-08 42664]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-02-25 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-25 117248]
S3 dg_ssudbus;@oem8.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
S3 RSP2STOR;@oem27.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-29 41272]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-03-29 237096]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-08-10 85504]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-07-09 35232]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-07-14 2451456]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 OneSyncSvc_3b928;Hostitel synchronizace_3b928; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
R3 PimIndexMaintenanceSvc_3b928;Data kontaktů_3b928; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_231bec;Hostitel synchronizace_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_239b5e;Hostitel synchronizace_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_26feeb;Hostitel synchronizace_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2ebe22;Hostitel synchronizace_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3055f;Hostitel synchronizace_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_35e63;Hostitel synchronizace_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_36478;Hostitel synchronizace_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_366bf;Hostitel synchronizace_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37247;Hostitel synchronizace_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37579;Hostitel synchronizace_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37dcf;Hostitel synchronizace_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cb8;Hostitel synchronizace_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cea;Hostitel synchronizace_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_390ed;Hostitel synchronizace_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_39e37;Hostitel synchronizace_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ab4e;Hostitel synchronizace_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3abec;Hostitel synchronizace_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3b03e;Hostitel synchronizace_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3d1c1;Hostitel synchronizace_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3e36f;Hostitel synchronizace_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ec22;Hostitel synchronizace_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fd5c;Hostitel synchronizace_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_42794;Hostitel synchronizace_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4e063;Hostitel synchronizace_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_7ce80;Hostitel synchronizace_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_9a01d;Hostitel synchronizace_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_ddcbed;Hostitel synchronizace_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_231bec;Služba zasílání zpráv_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_239b5e;Služba zasílání zpráv_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_26feeb;Služba zasílání zpráv_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2ebe22;Služba zasílání zpráv_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3055f;Služba zasílání zpráv_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_35e63;Služba zasílání zpráv_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_36478;Služba zasílání zpráv_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_366bf;Služba zasílání zpráv_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37247;Služba zasílání zpráv_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37579;Služba zasílání zpráv_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37dcf;Služba zasílání zpráv_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cb8;Služba zasílání zpráv_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cea;Služba zasílání zpráv_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_390ed;Služba zasílání zpráv_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_39e37;Služba zasílání zpráv_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ab4e;Služba zasílání zpráv_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3abec;Služba zasílání zpráv_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b03e;Služba zasílání zpráv_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b928;Služba zasílání zpráv_3b928; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d1c1;Služba zasílání zpráv_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3e36f;Služba zasílání zpráv_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ec22;Služba zasílání zpráv_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fd5c;Služba zasílání zpráv_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_42794;Služba zasílání zpráv_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e063;Služba zasílání zpráv_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7ce80;Služba zasílání zpráv_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_9a01d;Služba zasílání zpráv_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_ddcbed;Služba zasílání zpráv_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_231bec;Data kontaktů_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_239b5e;Data kontaktů_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_26feeb;Data kontaktů_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2ebe22;Data kontaktů_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3055f;Data kontaktů_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_35e63;Data kontaktů_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_36478;Data kontaktů_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_366bf;Data kontaktů_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37247;Data kontaktů_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37579;Data kontaktů_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37dcf;Data kontaktů_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cb8;Data kontaktů_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cea;Data kontaktů_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_390ed;Data kontaktů_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_39e37;Data kontaktů_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ab4e;Data kontaktů_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3abec;Data kontaktů_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3b03e;Data kontaktů_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3d1c1;Data kontaktů_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3e36f;Data kontaktů_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ec22;Data kontaktů_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fd5c;Data kontaktů_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_42794;Data kontaktů_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4e063;Data kontaktů_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_7ce80;Data kontaktů_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_9a01d;Data kontaktů_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_ddcbed;Data kontaktů_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
-
r.o.s.t.a.c.k.a
- Návštěvník

- Příspěvky: 200
- Registrován: 12 zář 2006 09:40
- Bydliště: Teplice
- Kontaktovat uživatele:
Re: Prosím o kontrolu zasekaného notebooku
Tady ho máte:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Veronika at 2016-03-29 22:31:38
Microsoft Windows 10 Home
System drive C: has 281 GB (61%) free of 460 GB
Total RAM: 3983 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:31:40, on 29. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\trend micro\Veronika.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL (file missing)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\skype4com.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10672 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
sihost.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"fontdrvhost.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.18671.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
dashost.exe {d2e752ae-38c2-4bc8-98bd5c7c25aa499a}
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\WINDOWS\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} -Embedding
C:\WINDOWS\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} -Embedding
wmiadap.exe /R /T
"C:\Users\Veronika\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-03-29 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-03-29 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-06-12 6548112]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-01-08 3951280]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-09 551104]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"CLVirtualDrive"=C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-26 491320]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-28 91432]
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-07-09 580512]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-29 7139256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-29 21:17:42 ----D---- C:\AdwCleaner
2016-03-29 21:11:19 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-03-29 21:10:28 ----D---- C:\Users\Veronika\AppData\Roaming\AVAST Software
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2016-03-29 21:09:40 ----A---- C:\WINDOWS\avastSS.scr
2016-03-29 21:08:55 ----D---- C:\Program Files\AVAST Software
2016-03-29 20:46:24 ----A---- C:\WINDOWS\system32\drivers\soketawy.sys
2016-03-29 20:40:54 ----SHD---- C:\found.001
2016-03-29 20:14:31 ----D---- C:\Program Files\trend micro
2016-03-29 20:14:30 ----D---- C:\rsit
2016-03-22 10:09:27 ----D---- C:\WINDOWS\%LOCALAPPDATA%
2016-03-09 19:56:54 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-03-09 09:42:11 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 09:42:09 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 09:42:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 09:42:06 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 09:42:03 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 09:42:02 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 09:42:01 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 09:41:59 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 09:41:57 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 09:41:56 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 09:41:55 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 09:41:53 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 09:41:52 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 09:41:48 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 09:41:47 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 09:41:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-09 09:41:14 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:41:53 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 16:41:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 16:41:40 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 16:41:33 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 16:41:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 16:41:30 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 16:41:29 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 16:41:27 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 16:41:26 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 16:41:23 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 16:41:21 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 16:41:20 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 16:41:18 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 16:41:15 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 16:41:06 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 16:40:58 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 16:40:52 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 16:40:47 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 16:40:41 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 16:40:36 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 16:40:34 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 16:40:30 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
======List of files/folders modified in the last 1 month======
2016-03-29 22:07:03 ----D---- C:\WINDOWS\system32\config
2016-03-29 22:06:02 ----D---- C:\WINDOWS\system32\NDF
2016-03-29 22:05:54 ----D---- C:\WINDOWS\Temp
2016-03-29 22:05:28 ----SHD---- C:\System Volume Information
2016-03-29 21:40:38 ----D---- C:\WINDOWS\System32
2016-03-29 21:40:38 ----D---- C:\WINDOWS\INF
2016-03-29 21:40:38 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-29 21:36:45 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-03-29 21:33:36 ----D---- C:\WINDOWS\system32\drivers
2016-03-29 21:33:08 ----D---- C:\WINDOWS\system32\sru
2016-03-29 21:32:50 ----D---- C:\WINDOWS\Prefetch
2016-03-29 21:25:26 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-29 21:14:52 ----SHD---- C:\WINDOWS\Installer
2016-03-29 21:11:40 ----D---- C:\WINDOWS\system32\Tasks
2016-03-29 21:11:18 ----D---- C:\Windows
2016-03-29 21:09:54 ----D---- C:\WINDOWS\WinSxS
2016-03-29 21:08:55 ----RD---- C:\Program Files
2016-03-29 21:08:39 ----D---- C:\ProgramData\AVAST Software
2016-03-29 20:53:40 ----D---- C:\WINDOWS\Minidump
2016-03-29 20:42:24 ----RD---- C:\Program Files (x86)
2016-03-29 20:42:24 ----D---- C:\Program Files (x86)\NortonInstaller
2016-03-29 20:20:03 ----HD---- C:\WINDOWS\ELAMBKUP
2016-03-29 20:20:02 ----D---- C:\Program Files\Common Files
2016-03-29 15:57:47 ----HD---- C:\Program Files\WindowsApps
2016-03-29 15:57:47 ----D---- C:\WINDOWS\AppReadiness
2016-03-25 14:59:58 ----D---- C:\Users\Veronika\AppData\Roaming\uTorrent
2016-03-24 10:39:02 ----D---- C:\WINDOWS\CbsTemp
2016-03-23 22:48:14 ----D---- C:\WINDOWS\system32\WDI
2016-03-20 17:42:58 ----D---- C:\WINDOWS\system32\catroot2
2016-03-18 16:40:07 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-17 11:58:19 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-14 13:21:27 ----D---- C:\WINDOWS\SysWOW64
2016-03-14 13:03:09 ----D---- C:\WINDOWS\system32\MRT
2016-03-14 12:57:02 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 12:49:19 ----D---- C:\WINDOWS\rescache
2016-03-10 04:51:59 ----RD---- C:\WINDOWS\assembly
2016-03-10 04:30:56 ----D---- C:\WINDOWS\system32\migration
2016-03-10 04:30:55 ----D---- C:\WINDOWS\AppPatch
2016-03-10 04:30:55 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Media Player
2016-03-10 04:30:54 ----D---- C:\Program Files\Internet Explorer
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\wbem
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Boot
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\appraiser
2016-03-09 10:24:50 ----RSD---- C:\WINDOWS\Media
2016-03-09 10:24:50 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-09 10:24:49 ----RSD---- C:\WINDOWS\Fonts
2016-03-09 10:24:49 ----D---- C:\WINDOWS\bcastdvr
2016-03-09 10:24:49 ----D---- C:\Program Files\Windows Journal
2016-03-08 09:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-02 16:25:05 ----D---- C:\WINDOWS\Logs
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-03-29 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-03-29 287016]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-08-01 645952]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-03-29 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-03-29 1070904]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-03-29 463744]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-03-29 37656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-03-29 107792]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-03-29 165344]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-06-20 4065296]
R3 IntcDAud;@oem17.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-20 342528]
R3 MEIx64;@oem15.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 netr28x;@oem25.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2015-06-12 2554528]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
R3 rtbth;@oem28.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2015-06-03 1219200]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2016-01-08 42664]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-02-25 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-25 117248]
S3 dg_ssudbus;@oem8.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
S3 RSP2STOR;@oem27.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-29 41272]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-03-29 237096]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-08-10 85504]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-07-09 35232]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-07-14 2451456]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 OneSyncSvc_3b928;Hostitel synchronizace_3b928; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
R3 PimIndexMaintenanceSvc_3b928;Data kontaktů_3b928; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_231bec;Hostitel synchronizace_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_239b5e;Hostitel synchronizace_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_26feeb;Hostitel synchronizace_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2ebe22;Hostitel synchronizace_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3055f;Hostitel synchronizace_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_35e63;Hostitel synchronizace_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_36478;Hostitel synchronizace_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_366bf;Hostitel synchronizace_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37247;Hostitel synchronizace_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37579;Hostitel synchronizace_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37dcf;Hostitel synchronizace_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cb8;Hostitel synchronizace_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cea;Hostitel synchronizace_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_390ed;Hostitel synchronizace_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_39e37;Hostitel synchronizace_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ab4e;Hostitel synchronizace_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3abec;Hostitel synchronizace_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3b03e;Hostitel synchronizace_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3d1c1;Hostitel synchronizace_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3e36f;Hostitel synchronizace_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ec22;Hostitel synchronizace_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fd5c;Hostitel synchronizace_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_42794;Hostitel synchronizace_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4e063;Hostitel synchronizace_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_7ce80;Hostitel synchronizace_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_9a01d;Hostitel synchronizace_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_ddcbed;Hostitel synchronizace_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_231bec;Služba zasílání zpráv_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_239b5e;Služba zasílání zpráv_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_26feeb;Služba zasílání zpráv_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2ebe22;Služba zasílání zpráv_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3055f;Služba zasílání zpráv_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_35e63;Služba zasílání zpráv_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_36478;Služba zasílání zpráv_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_366bf;Služba zasílání zpráv_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37247;Služba zasílání zpráv_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37579;Služba zasílání zpráv_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37dcf;Služba zasílání zpráv_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cb8;Služba zasílání zpráv_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cea;Služba zasílání zpráv_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_390ed;Služba zasílání zpráv_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_39e37;Služba zasílání zpráv_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ab4e;Služba zasílání zpráv_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3abec;Služba zasílání zpráv_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b03e;Služba zasílání zpráv_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b928;Služba zasílání zpráv_3b928; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d1c1;Služba zasílání zpráv_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3e36f;Služba zasílání zpráv_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ec22;Služba zasílání zpráv_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fd5c;Služba zasílání zpráv_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_42794;Služba zasílání zpráv_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e063;Služba zasílání zpráv_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7ce80;Služba zasílání zpráv_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_9a01d;Služba zasílání zpráv_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_ddcbed;Služba zasílání zpráv_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_231bec;Data kontaktů_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_239b5e;Data kontaktů_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_26feeb;Data kontaktů_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2ebe22;Data kontaktů_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3055f;Data kontaktů_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_35e63;Data kontaktů_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_36478;Data kontaktů_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_366bf;Data kontaktů_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37247;Data kontaktů_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37579;Data kontaktů_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37dcf;Data kontaktů_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cb8;Data kontaktů_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cea;Data kontaktů_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_390ed;Data kontaktů_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_39e37;Data kontaktů_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ab4e;Data kontaktů_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3abec;Data kontaktů_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3b03e;Data kontaktů_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3d1c1;Data kontaktů_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3e36f;Data kontaktů_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ec22;Data kontaktů_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fd5c;Data kontaktů_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_42794;Data kontaktů_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4e063;Data kontaktů_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_7ce80;Data kontaktů_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_9a01d;Data kontaktů_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_ddcbed;Data kontaktů_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Veronika at 2016-03-29 22:31:38
Microsoft Windows 10 Home
System drive C: has 281 GB (61%) free of 460 GB
Total RAM: 3983 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:31:40, on 29. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\trend micro\Veronika.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL (file missing)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\skype4com.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10672 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
sihost.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"fontdrvhost.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.18671.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
dashost.exe {d2e752ae-38c2-4bc8-98bd5c7c25aa499a}
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\WINDOWS\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} -Embedding
C:\WINDOWS\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} -Embedding
wmiadap.exe /R /T
"C:\Users\Veronika\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-03-29 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-03-29 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-06-12 6548112]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-01-08 3951280]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-09 551104]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"CLVirtualDrive"=C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-26 491320]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-28 91432]
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-07-09 580512]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-29 7139256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-29 21:17:42 ----D---- C:\AdwCleaner
2016-03-29 21:11:19 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-03-29 21:10:28 ----D---- C:\Users\Veronika\AppData\Roaming\AVAST Software
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2016-03-29 21:09:40 ----A---- C:\WINDOWS\avastSS.scr
2016-03-29 21:08:55 ----D---- C:\Program Files\AVAST Software
2016-03-29 20:46:24 ----A---- C:\WINDOWS\system32\drivers\soketawy.sys
2016-03-29 20:40:54 ----SHD---- C:\found.001
2016-03-29 20:14:31 ----D---- C:\Program Files\trend micro
2016-03-29 20:14:30 ----D---- C:\rsit
2016-03-22 10:09:27 ----D---- C:\WINDOWS\%LOCALAPPDATA%
2016-03-09 19:56:54 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-03-09 09:42:11 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 09:42:09 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 09:42:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 09:42:06 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 09:42:03 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 09:42:02 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 09:42:01 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 09:41:59 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 09:41:57 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 09:41:56 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 09:41:55 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 09:41:53 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 09:41:52 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 09:41:48 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 09:41:47 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 09:41:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-09 09:41:14 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:41:53 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 16:41:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 16:41:40 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 16:41:33 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 16:41:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 16:41:30 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 16:41:29 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 16:41:27 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 16:41:26 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 16:41:23 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 16:41:21 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 16:41:20 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 16:41:18 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 16:41:15 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 16:41:06 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 16:40:58 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 16:40:52 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 16:40:47 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 16:40:41 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 16:40:36 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 16:40:34 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 16:40:30 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
======List of files/folders modified in the last 1 month======
2016-03-29 22:07:03 ----D---- C:\WINDOWS\system32\config
2016-03-29 22:06:02 ----D---- C:\WINDOWS\system32\NDF
2016-03-29 22:05:54 ----D---- C:\WINDOWS\Temp
2016-03-29 22:05:28 ----SHD---- C:\System Volume Information
2016-03-29 21:40:38 ----D---- C:\WINDOWS\System32
2016-03-29 21:40:38 ----D---- C:\WINDOWS\INF
2016-03-29 21:40:38 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-29 21:36:45 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-03-29 21:33:36 ----D---- C:\WINDOWS\system32\drivers
2016-03-29 21:33:08 ----D---- C:\WINDOWS\system32\sru
2016-03-29 21:32:50 ----D---- C:\WINDOWS\Prefetch
2016-03-29 21:25:26 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-29 21:14:52 ----SHD---- C:\WINDOWS\Installer
2016-03-29 21:11:40 ----D---- C:\WINDOWS\system32\Tasks
2016-03-29 21:11:18 ----D---- C:\Windows
2016-03-29 21:09:54 ----D---- C:\WINDOWS\WinSxS
2016-03-29 21:08:55 ----RD---- C:\Program Files
2016-03-29 21:08:39 ----D---- C:\ProgramData\AVAST Software
2016-03-29 20:53:40 ----D---- C:\WINDOWS\Minidump
2016-03-29 20:42:24 ----RD---- C:\Program Files (x86)
2016-03-29 20:42:24 ----D---- C:\Program Files (x86)\NortonInstaller
2016-03-29 20:20:03 ----HD---- C:\WINDOWS\ELAMBKUP
2016-03-29 20:20:02 ----D---- C:\Program Files\Common Files
2016-03-29 15:57:47 ----HD---- C:\Program Files\WindowsApps
2016-03-29 15:57:47 ----D---- C:\WINDOWS\AppReadiness
2016-03-25 14:59:58 ----D---- C:\Users\Veronika\AppData\Roaming\uTorrent
2016-03-24 10:39:02 ----D---- C:\WINDOWS\CbsTemp
2016-03-23 22:48:14 ----D---- C:\WINDOWS\system32\WDI
2016-03-20 17:42:58 ----D---- C:\WINDOWS\system32\catroot2
2016-03-18 16:40:07 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-17 11:58:19 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-14 13:21:27 ----D---- C:\WINDOWS\SysWOW64
2016-03-14 13:03:09 ----D---- C:\WINDOWS\system32\MRT
2016-03-14 12:57:02 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 12:49:19 ----D---- C:\WINDOWS\rescache
2016-03-10 04:51:59 ----RD---- C:\WINDOWS\assembly
2016-03-10 04:30:56 ----D---- C:\WINDOWS\system32\migration
2016-03-10 04:30:55 ----D---- C:\WINDOWS\AppPatch
2016-03-10 04:30:55 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Media Player
2016-03-10 04:30:54 ----D---- C:\Program Files\Internet Explorer
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\wbem
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Boot
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\appraiser
2016-03-09 10:24:50 ----RSD---- C:\WINDOWS\Media
2016-03-09 10:24:50 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-09 10:24:49 ----RSD---- C:\WINDOWS\Fonts
2016-03-09 10:24:49 ----D---- C:\WINDOWS\bcastdvr
2016-03-09 10:24:49 ----D---- C:\Program Files\Windows Journal
2016-03-08 09:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-02 16:25:05 ----D---- C:\WINDOWS\Logs
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-03-29 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-03-29 287016]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-08-01 645952]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-03-29 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-03-29 1070904]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-03-29 463744]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-03-29 37656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-03-29 107792]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-03-29 165344]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-06-20 4065296]
R3 IntcDAud;@oem17.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-20 342528]
R3 MEIx64;@oem15.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 netr28x;@oem25.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2015-06-12 2554528]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
R3 rtbth;@oem28.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2015-06-03 1219200]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2016-01-08 42664]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-02-25 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-25 117248]
S3 dg_ssudbus;@oem8.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
S3 RSP2STOR;@oem27.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-29 41272]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-03-29 237096]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-08-10 85504]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-07-09 35232]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-07-14 2451456]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 OneSyncSvc_3b928;Hostitel synchronizace_3b928; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
R3 PimIndexMaintenanceSvc_3b928;Data kontaktů_3b928; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_231bec;Hostitel synchronizace_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_239b5e;Hostitel synchronizace_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_26feeb;Hostitel synchronizace_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2ebe22;Hostitel synchronizace_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3055f;Hostitel synchronizace_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_35e63;Hostitel synchronizace_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_36478;Hostitel synchronizace_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_366bf;Hostitel synchronizace_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37247;Hostitel synchronizace_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37579;Hostitel synchronizace_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37dcf;Hostitel synchronizace_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cb8;Hostitel synchronizace_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cea;Hostitel synchronizace_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_390ed;Hostitel synchronizace_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_39e37;Hostitel synchronizace_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ab4e;Hostitel synchronizace_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3abec;Hostitel synchronizace_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3b03e;Hostitel synchronizace_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3d1c1;Hostitel synchronizace_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3e36f;Hostitel synchronizace_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ec22;Hostitel synchronizace_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fd5c;Hostitel synchronizace_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_42794;Hostitel synchronizace_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4e063;Hostitel synchronizace_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_7ce80;Hostitel synchronizace_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_9a01d;Hostitel synchronizace_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_ddcbed;Hostitel synchronizace_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_231bec;Služba zasílání zpráv_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_239b5e;Služba zasílání zpráv_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_26feeb;Služba zasílání zpráv_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2ebe22;Služba zasílání zpráv_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3055f;Služba zasílání zpráv_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_35e63;Služba zasílání zpráv_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_36478;Služba zasílání zpráv_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_366bf;Služba zasílání zpráv_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37247;Služba zasílání zpráv_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37579;Služba zasílání zpráv_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37dcf;Služba zasílání zpráv_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cb8;Služba zasílání zpráv_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cea;Služba zasílání zpráv_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_390ed;Služba zasílání zpráv_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_39e37;Služba zasílání zpráv_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ab4e;Služba zasílání zpráv_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3abec;Služba zasílání zpráv_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b03e;Služba zasílání zpráv_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b928;Služba zasílání zpráv_3b928; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d1c1;Služba zasílání zpráv_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3e36f;Služba zasílání zpráv_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ec22;Služba zasílání zpráv_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fd5c;Služba zasílání zpráv_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_42794;Služba zasílání zpráv_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e063;Služba zasílání zpráv_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7ce80;Služba zasílání zpráv_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_9a01d;Služba zasílání zpráv_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_ddcbed;Služba zasílání zpráv_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_231bec;Data kontaktů_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_239b5e;Data kontaktů_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_26feeb;Data kontaktů_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2ebe22;Data kontaktů_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3055f;Data kontaktů_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_35e63;Data kontaktů_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_36478;Data kontaktů_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_366bf;Data kontaktů_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37247;Data kontaktů_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37579;Data kontaktů_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37dcf;Data kontaktů_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cb8;Data kontaktů_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cea;Data kontaktů_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_390ed;Data kontaktů_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_39e37;Data kontaktů_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ab4e;Data kontaktů_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3abec;Data kontaktů_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3b03e;Data kontaktů_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3d1c1;Data kontaktů_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3e36f;Data kontaktů_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ec22;Data kontaktů_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fd5c;Data kontaktů_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_42794;Data kontaktů_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4e063;Data kontaktů_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_7ce80;Data kontaktů_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_9a01d;Data kontaktů_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_ddcbed;Data kontaktů_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu zasekaného notebooku
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
:services
Bonjour Service
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
r.o.s.t.a.c.k.a
- Návštěvník

- Příspěvky: 200
- Registrován: 12 zář 2006 09:40
- Bydliště: Teplice
- Kontaktovat uživatele:
Re: Prosím o kontrolu zasekaného notebooku
Hotovo..
All processes killed
========== FILES ==========
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
========== SERVICES/DRIVERS ==========
Service Bonjour Service stopped successfully!
Service Bonjour Service deleted successfully!
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default.migrated
User: Public
User: Veronika
->Temp folder emptied: 406291626 bytes
->Temporary Internet Files folder emptied: 9839970 bytes
->Google Chrome cache emptied: 96112672 bytes
->Flash cache emptied: 492 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 39862198 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 527,00 mb
[EMPTYFLASH]
User: Administrator
User: All Users
User: Default
User: Default User
User: Default.migrated
User: Public
User: Veronika
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0,00 mb
OTM by OldTimer - Version 3.1.21.0 log created on 03302016_062236
Files moved on Reboot...
C:\Users\Veronika\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.
File move failed. C:\WINDOWS\temp\_avast_\AvastLock.txt scheduled to be moved on reboot.
Registry entries deleted on Reboot...
All processes killed
========== FILES ==========
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
========== SERVICES/DRIVERS ==========
Service Bonjour Service stopped successfully!
Service Bonjour Service deleted successfully!
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default.migrated
User: Public
User: Veronika
->Temp folder emptied: 406291626 bytes
->Temporary Internet Files folder emptied: 9839970 bytes
->Google Chrome cache emptied: 96112672 bytes
->Flash cache emptied: 492 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 39862198 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 527,00 mb
[EMPTYFLASH]
User: Administrator
User: All Users
User: Default
User: Default User
User: Default.migrated
User: Public
User: Veronika
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0,00 mb
OTM by OldTimer - Version 3.1.21.0 log created on 03302016_062236
Files moved on Reboot...
C:\Users\Veronika\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.
File move failed. C:\WINDOWS\temp\_avast_\AvastLock.txt scheduled to be moved on reboot.
Registry entries deleted on Reboot...
-
r.o.s.t.a.c.k.a
- Návštěvník

- Příspěvky: 200
- Registrován: 12 zář 2006 09:40
- Bydliště: Teplice
- Kontaktovat uživatele:
Re: Prosím o kontrolu zasekaného notebooku
rsit:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Veronika at 2016-03-30 06:28:10
Microsoft Windows 10 Home
System drive C: has 282 GB (61%) free of 460 GB
Total RAM: 3983 MB (69% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 6:28:14, on 30. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
c:\program files\avast software\avast\asww10mon.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\trend micro\Veronika.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL (file missing)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\skype4com.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10634 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
dashost.exe {4300ec8a-d068-4b97-bc7e419084d9d9a7}
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
sihost.exe
taskeng.exe {2FD30380-C9D0-4C16-8326-F4A3268CC707}
"c:\program files\avast software\avast\asww10mon.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"fontdrvhost.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.168_none_76587b40265ca57e\TiWorker.exe -Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-846040917-1358157247-1843232365-10011_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-846040917-1358157247-1843232365-10011 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 600 604 612 8192 608
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe" /taskrestart
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
"C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6811.23771.0_x64__8wekyb3d8bbwe\HubTaskHost.exe" -ServerName:Microsoft.MicrosoftOfficeHub.AppXczch7hf9576qpxqh411t8e5g6baj2p43.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x.AppX368sbpk1kx658x0p332evjk2v0y02kxp.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6568.46361.0_x64__8wekyb3d8bbwe\HxTsr.exe" -ServerName:Hx.IPC.Server
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca
"C:\Users\Veronika\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-03-29 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-03-29 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-06-12 6548112]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-01-08 3951280]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-09 551104]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"CLVirtualDrive"=C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-26 491320]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-28 91432]
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-07-09 580512]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-29 7139256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-30 06:22:36 ----D---- C:\_OTM
2016-03-29 21:17:42 ----D---- C:\AdwCleaner
2016-03-29 21:11:19 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-03-29 21:10:28 ----D---- C:\Users\Veronika\AppData\Roaming\AVAST Software
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2016-03-29 21:09:40 ----A---- C:\WINDOWS\avastSS.scr
2016-03-29 21:08:55 ----D---- C:\Program Files\AVAST Software
2016-03-29 20:46:24 ----A---- C:\WINDOWS\system32\drivers\soketawy.sys
2016-03-29 20:40:54 ----SHD---- C:\found.001
2016-03-29 20:14:31 ----D---- C:\Program Files\trend micro
2016-03-29 20:14:30 ----D---- C:\rsit
2016-03-22 10:09:27 ----D---- C:\WINDOWS\%LOCALAPPDATA%
2016-03-09 19:56:54 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-03-09 09:42:11 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 09:42:09 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 09:42:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 09:42:06 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 09:42:03 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 09:42:02 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 09:42:01 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 09:41:59 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 09:41:57 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 09:41:56 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 09:41:55 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 09:41:53 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 09:41:52 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 09:41:48 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 09:41:47 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 09:41:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-09 09:41:14 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:41:53 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 16:41:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 16:41:40 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 16:41:33 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 16:41:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 16:41:30 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 16:41:29 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 16:41:27 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 16:41:26 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 16:41:23 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 16:41:21 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 16:41:20 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 16:41:18 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 16:41:15 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 16:41:06 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 16:40:58 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 16:40:52 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 16:40:47 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 16:40:41 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 16:40:36 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 16:40:34 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 16:40:30 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
======List of files/folders modified in the last 1 month======
2016-03-30 06:27:40 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-03-30 06:27:07 ----D---- C:\WINDOWS\Temp
2016-03-30 06:26:29 ----D---- C:\WINDOWS\Prefetch
2016-03-30 06:23:59 ----D---- C:\WINDOWS\system32\sru
2016-03-30 06:22:37 ----D---- C:\WINDOWS\Tasks
2016-03-29 22:32:33 ----D---- C:\WINDOWS\System32
2016-03-29 22:32:33 ----D---- C:\WINDOWS\INF
2016-03-29 22:32:33 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-29 22:07:03 ----D---- C:\WINDOWS\system32\config
2016-03-29 22:06:02 ----D---- C:\WINDOWS\system32\NDF
2016-03-29 22:05:28 ----SHD---- C:\System Volume Information
2016-03-29 21:33:36 ----D---- C:\WINDOWS\system32\drivers
2016-03-29 21:25:26 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-29 21:14:52 ----SHD---- C:\WINDOWS\Installer
2016-03-29 21:11:40 ----D---- C:\WINDOWS\system32\Tasks
2016-03-29 21:11:18 ----D---- C:\Windows
2016-03-29 21:09:54 ----D---- C:\WINDOWS\WinSxS
2016-03-29 21:08:55 ----RD---- C:\Program Files
2016-03-29 21:08:39 ----D---- C:\ProgramData\AVAST Software
2016-03-29 20:53:40 ----D---- C:\WINDOWS\Minidump
2016-03-29 20:42:24 ----RD---- C:\Program Files (x86)
2016-03-29 20:42:24 ----D---- C:\Program Files (x86)\NortonInstaller
2016-03-29 20:20:03 ----HD---- C:\WINDOWS\ELAMBKUP
2016-03-29 20:20:02 ----D---- C:\Program Files\Common Files
2016-03-29 15:57:47 ----HD---- C:\Program Files\WindowsApps
2016-03-29 15:57:47 ----D---- C:\WINDOWS\AppReadiness
2016-03-25 14:59:58 ----D---- C:\Users\Veronika\AppData\Roaming\uTorrent
2016-03-24 10:39:02 ----D---- C:\WINDOWS\CbsTemp
2016-03-23 22:48:14 ----D---- C:\WINDOWS\system32\WDI
2016-03-20 17:42:58 ----D---- C:\WINDOWS\system32\catroot2
2016-03-18 16:40:07 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-17 11:58:19 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-14 13:21:27 ----D---- C:\WINDOWS\SysWOW64
2016-03-14 13:03:09 ----D---- C:\WINDOWS\system32\MRT
2016-03-14 12:57:02 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 12:49:19 ----D---- C:\WINDOWS\rescache
2016-03-10 04:51:59 ----RD---- C:\WINDOWS\assembly
2016-03-10 04:30:56 ----D---- C:\WINDOWS\system32\migration
2016-03-10 04:30:55 ----D---- C:\WINDOWS\AppPatch
2016-03-10 04:30:55 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Media Player
2016-03-10 04:30:54 ----D---- C:\Program Files\Internet Explorer
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\wbem
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Boot
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\appraiser
2016-03-09 10:24:50 ----RSD---- C:\WINDOWS\Media
2016-03-09 10:24:50 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-09 10:24:49 ----RSD---- C:\WINDOWS\Fonts
2016-03-09 10:24:49 ----D---- C:\WINDOWS\bcastdvr
2016-03-09 10:24:49 ----D---- C:\Program Files\Windows Journal
2016-03-08 09:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-02 16:25:05 ----D---- C:\WINDOWS\Logs
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-03-29 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-03-29 287016]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-08-01 645952]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-03-29 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-03-29 1070904]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-03-29 463744]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-03-29 37656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-03-29 107792]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-03-29 165344]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-06-20 4065296]
R3 IntcDAud;@oem17.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-20 342528]
R3 MEIx64;@oem15.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 netr28x;@oem25.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2015-06-12 2554528]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
R3 rtbth;@oem28.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2015-06-03 1219200]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2016-01-08 42664]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-02-25 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-25 117248]
S3 dg_ssudbus;@oem8.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
S3 RSP2STOR;@oem27.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-29 41272]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-03-29 237096]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-08-10 85504]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-07-09 35232]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-07-14 2451456]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 OneSyncSvc_3cee9;Hostitel synchronizace_3cee9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 PimIndexMaintenanceSvc_3cee9;Data kontaktů_3cee9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_231bec;Hostitel synchronizace_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_239b5e;Hostitel synchronizace_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_26feeb;Hostitel synchronizace_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2ebe22;Hostitel synchronizace_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3055f;Hostitel synchronizace_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_35e63;Hostitel synchronizace_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_36478;Hostitel synchronizace_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_366bf;Hostitel synchronizace_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37247;Hostitel synchronizace_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37579;Hostitel synchronizace_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37dcf;Hostitel synchronizace_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cb8;Hostitel synchronizace_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cea;Hostitel synchronizace_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_390ed;Hostitel synchronizace_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_39e37;Hostitel synchronizace_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ab4e;Hostitel synchronizace_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3abec;Hostitel synchronizace_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3b03e;Hostitel synchronizace_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3d1c1;Hostitel synchronizace_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3e36f;Hostitel synchronizace_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ec22;Hostitel synchronizace_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fd5c;Hostitel synchronizace_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_42794;Hostitel synchronizace_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4e063;Hostitel synchronizace_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_7ce80;Hostitel synchronizace_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_9a01d;Hostitel synchronizace_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_ddcbed;Hostitel synchronizace_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_231bec;Služba zasílání zpráv_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_239b5e;Služba zasílání zpráv_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_26feeb;Služba zasílání zpráv_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2ebe22;Služba zasílání zpráv_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3055f;Služba zasílání zpráv_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_35e63;Služba zasílání zpráv_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_36478;Služba zasílání zpráv_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_366bf;Služba zasílání zpráv_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37247;Služba zasílání zpráv_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37579;Služba zasílání zpráv_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37dcf;Služba zasílání zpráv_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cb8;Služba zasílání zpráv_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cea;Služba zasílání zpráv_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_390ed;Služba zasílání zpráv_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_39e37;Služba zasílání zpráv_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ab4e;Služba zasílání zpráv_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3abec;Služba zasílání zpráv_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b03e;Služba zasílání zpráv_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3cee9;Služba zasílání zpráv_3cee9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d1c1;Služba zasílání zpráv_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3e36f;Služba zasílání zpráv_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ec22;Služba zasílání zpráv_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fd5c;Služba zasílání zpráv_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_42794;Služba zasílání zpráv_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e063;Služba zasílání zpráv_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7ce80;Služba zasílání zpráv_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_9a01d;Služba zasílání zpráv_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_ddcbed;Služba zasílání zpráv_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_231bec;Data kontaktů_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_239b5e;Data kontaktů_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_26feeb;Data kontaktů_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2ebe22;Data kontaktů_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3055f;Data kontaktů_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_35e63;Data kontaktů_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_36478;Data kontaktů_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_366bf;Data kontaktů_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37247;Data kontaktů_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37579;Data kontaktů_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37dcf;Data kontaktů_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cb8;Data kontaktů_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cea;Data kontaktů_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_390ed;Data kontaktů_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_39e37;Data kontaktů_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ab4e;Data kontaktů_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3abec;Data kontaktů_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3b03e;Data kontaktů_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3d1c1;Data kontaktů_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3e36f;Data kontaktů_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ec22;Data kontaktů_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fd5c;Data kontaktů_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_42794;Data kontaktů_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4e063;Data kontaktů_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_7ce80;Data kontaktů_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_9a01d;Data kontaktů_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_ddcbed;Data kontaktů_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Veronika at 2016-03-30 06:28:10
Microsoft Windows 10 Home
System drive C: has 282 GB (61%) free of 460 GB
Total RAM: 3983 MB (69% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 6:28:14, on 30. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
c:\program files\avast software\avast\asww10mon.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\trend micro\Veronika.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL (file missing)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\skype4com.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10634 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
dashost.exe {4300ec8a-d068-4b97-bc7e419084d9d9a7}
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
sihost.exe
taskeng.exe {2FD30380-C9D0-4C16-8326-F4A3268CC707}
"c:\program files\avast software\avast\asww10mon.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"fontdrvhost.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.168_none_76587b40265ca57e\TiWorker.exe -Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-846040917-1358157247-1843232365-10011_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-846040917-1358157247-1843232365-10011 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 600 604 612 8192 608
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe" /taskrestart
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
"C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6811.23771.0_x64__8wekyb3d8bbwe\HubTaskHost.exe" -ServerName:Microsoft.MicrosoftOfficeHub.AppXczch7hf9576qpxqh411t8e5g6baj2p43.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x.AppX368sbpk1kx658x0p332evjk2v0y02kxp.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6568.46361.0_x64__8wekyb3d8bbwe\HxTsr.exe" -ServerName:Hx.IPC.Server
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca
"C:\Users\Veronika\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-03-29 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\IPS\IPSBHO.DLL []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-03-29 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-06-12 6548112]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-01-08 3951280]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-09 551104]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Veronika\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"CLVirtualDrive"=C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-26 491320]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-28 91432]
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-07-09 580512]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-29 7139256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-30 06:22:36 ----D---- C:\_OTM
2016-03-29 21:17:42 ----D---- C:\AdwCleaner
2016-03-29 21:11:19 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-03-29 21:10:28 ----D---- C:\Users\Veronika\AppData\Roaming\AVAST Software
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2016-03-29 21:10:04 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2016-03-29 21:09:40 ----A---- C:\WINDOWS\avastSS.scr
2016-03-29 21:08:55 ----D---- C:\Program Files\AVAST Software
2016-03-29 20:46:24 ----A---- C:\WINDOWS\system32\drivers\soketawy.sys
2016-03-29 20:40:54 ----SHD---- C:\found.001
2016-03-29 20:14:31 ----D---- C:\Program Files\trend micro
2016-03-29 20:14:30 ----D---- C:\rsit
2016-03-22 10:09:27 ----D---- C:\WINDOWS\%LOCALAPPDATA%
2016-03-09 19:56:54 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-03-09 09:42:11 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 09:42:09 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 09:42:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 09:42:06 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 09:42:03 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 09:42:02 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 09:42:01 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 09:41:59 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 09:41:57 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 09:41:56 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 09:41:55 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 09:41:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 09:41:53 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 09:41:52 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 09:41:50 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 09:41:49 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 09:41:48 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 09:41:47 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 09:41:46 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 09:41:45 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 09:41:44 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 09:41:44 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 09:41:43 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 09:41:42 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 09:41:41 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 09:41:40 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 09:41:39 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 09:41:38 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 09:41:38 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 09:41:37 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 09:41:36 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 09:41:35 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 09:41:34 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 09:41:33 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 09:41:32 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 09:41:30 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 09:41:28 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 09:41:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 09:41:26 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 09:41:25 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 09:41:24 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 09:41:23 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 09:41:22 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 09:41:21 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 09:41:20 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-09 09:41:19 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 09:41:18 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 09:41:17 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 09:41:16 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 09:41:15 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-09 09:41:14 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:42:01 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 16:41:53 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-02 16:41:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-02 16:41:40 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-02 16:41:33 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-02 16:41:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-02 16:41:30 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-02 16:41:29 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-02 16:41:27 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 16:41:26 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-02 16:41:24 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 16:41:23 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-02 16:41:22 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 16:41:21 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 16:41:20 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-02 16:41:19 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-02 16:41:18 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-02 16:41:17 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-02 16:41:16 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 16:41:15 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-02 16:41:14 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-02 16:41:13 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-02 16:41:12 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-02 16:41:11 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-02 16:41:10 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-02 16:41:09 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 16:41:07 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 16:41:06 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-02 16:41:05 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-02 16:41:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 16:41:03 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 16:41:02 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-02 16:41:01 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 16:41:00 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 16:40:59 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 16:40:58 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-02 16:40:57 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 16:40:56 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 16:40:55 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 16:40:54 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 16:40:53 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-02 16:40:52 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 16:40:51 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-02 16:40:50 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-02 16:40:49 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-02 16:40:48 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-02 16:40:47 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 16:40:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 16:40:46 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-02 16:40:45 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-02 16:40:44 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 16:40:43 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-02 16:40:42 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-02 16:40:41 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-02 16:40:41 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-02 16:40:40 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-02 16:40:39 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-02 16:40:38 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-02 16:40:37 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 16:40:36 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 16:40:35 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-02 16:40:34 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 16:40:34 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 16:40:33 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-02 16:40:32 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-02 16:40:31 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-02 16:40:30 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 16:40:30 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-02 16:40:29 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
======List of files/folders modified in the last 1 month======
2016-03-30 06:27:40 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-03-30 06:27:07 ----D---- C:\WINDOWS\Temp
2016-03-30 06:26:29 ----D---- C:\WINDOWS\Prefetch
2016-03-30 06:23:59 ----D---- C:\WINDOWS\system32\sru
2016-03-30 06:22:37 ----D---- C:\WINDOWS\Tasks
2016-03-29 22:32:33 ----D---- C:\WINDOWS\System32
2016-03-29 22:32:33 ----D---- C:\WINDOWS\INF
2016-03-29 22:32:33 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-29 22:07:03 ----D---- C:\WINDOWS\system32\config
2016-03-29 22:06:02 ----D---- C:\WINDOWS\system32\NDF
2016-03-29 22:05:28 ----SHD---- C:\System Volume Information
2016-03-29 21:33:36 ----D---- C:\WINDOWS\system32\drivers
2016-03-29 21:25:26 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-29 21:14:52 ----SHD---- C:\WINDOWS\Installer
2016-03-29 21:11:40 ----D---- C:\WINDOWS\system32\Tasks
2016-03-29 21:11:18 ----D---- C:\Windows
2016-03-29 21:09:54 ----D---- C:\WINDOWS\WinSxS
2016-03-29 21:08:55 ----RD---- C:\Program Files
2016-03-29 21:08:39 ----D---- C:\ProgramData\AVAST Software
2016-03-29 20:53:40 ----D---- C:\WINDOWS\Minidump
2016-03-29 20:42:24 ----RD---- C:\Program Files (x86)
2016-03-29 20:42:24 ----D---- C:\Program Files (x86)\NortonInstaller
2016-03-29 20:20:03 ----HD---- C:\WINDOWS\ELAMBKUP
2016-03-29 20:20:02 ----D---- C:\Program Files\Common Files
2016-03-29 15:57:47 ----HD---- C:\Program Files\WindowsApps
2016-03-29 15:57:47 ----D---- C:\WINDOWS\AppReadiness
2016-03-25 14:59:58 ----D---- C:\Users\Veronika\AppData\Roaming\uTorrent
2016-03-24 10:39:02 ----D---- C:\WINDOWS\CbsTemp
2016-03-23 22:48:14 ----D---- C:\WINDOWS\system32\WDI
2016-03-20 17:42:58 ----D---- C:\WINDOWS\system32\catroot2
2016-03-18 16:40:07 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-17 11:58:19 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-14 13:21:27 ----D---- C:\WINDOWS\SysWOW64
2016-03-14 13:03:09 ----D---- C:\WINDOWS\system32\MRT
2016-03-14 12:57:02 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-10 12:49:19 ----D---- C:\WINDOWS\rescache
2016-03-10 04:51:59 ----RD---- C:\WINDOWS\assembly
2016-03-10 04:30:56 ----D---- C:\WINDOWS\system32\migration
2016-03-10 04:30:55 ----D---- C:\WINDOWS\AppPatch
2016-03-10 04:30:55 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 04:30:55 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 04:30:54 ----D---- C:\Program Files\Windows Media Player
2016-03-10 04:30:54 ----D---- C:\Program Files\Internet Explorer
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-09 10:25:01 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\wbem
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Dism
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\Boot
2016-03-09 10:24:57 ----D---- C:\WINDOWS\system32\appraiser
2016-03-09 10:24:50 ----RSD---- C:\WINDOWS\Media
2016-03-09 10:24:50 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-09 10:24:49 ----RSD---- C:\WINDOWS\Fonts
2016-03-09 10:24:49 ----D---- C:\WINDOWS\bcastdvr
2016-03-09 10:24:49 ----D---- C:\Program Files\Windows Journal
2016-03-08 09:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-02 16:25:05 ----D---- C:\WINDOWS\Logs
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-03-29 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-03-29 287016]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-08-01 645952]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-03-29 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-03-29 1070904]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-03-29 463744]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-03-29 37656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-03-29 107792]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-03-29 165344]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-06-20 4065296]
R3 IntcDAud;@oem17.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-20 342528]
R3 MEIx64;@oem15.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 netr28x;@oem25.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2015-06-12 2554528]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
R3 rtbth;@oem28.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2015-06-03 1219200]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2016-01-08 42664]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-02-25 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-25 117248]
S3 dg_ssudbus;@oem8.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
S3 RSP2STOR;@oem27.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-29 41272]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-03-29 237096]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-08-10 85504]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-07-09 35232]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-07-14 2451456]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 OneSyncSvc_3cee9;Hostitel synchronizace_3cee9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 PimIndexMaintenanceSvc_3cee9;Data kontaktů_3cee9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_231bec;Hostitel synchronizace_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_239b5e;Hostitel synchronizace_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_26feeb;Hostitel synchronizace_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2ebe22;Hostitel synchronizace_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3055f;Hostitel synchronizace_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_35e63;Hostitel synchronizace_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_36478;Hostitel synchronizace_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_366bf;Hostitel synchronizace_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37247;Hostitel synchronizace_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37579;Hostitel synchronizace_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37dcf;Hostitel synchronizace_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cb8;Hostitel synchronizace_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38cea;Hostitel synchronizace_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_390ed;Hostitel synchronizace_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_39e37;Hostitel synchronizace_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ab4e;Hostitel synchronizace_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3abec;Hostitel synchronizace_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3b03e;Hostitel synchronizace_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3d1c1;Hostitel synchronizace_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3e36f;Hostitel synchronizace_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3ec22;Hostitel synchronizace_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fd5c;Hostitel synchronizace_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_42794;Hostitel synchronizace_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4e063;Hostitel synchronizace_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_7ce80;Hostitel synchronizace_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_9a01d;Hostitel synchronizace_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_ddcbed;Hostitel synchronizace_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-21 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_231bec;Služba zasílání zpráv_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_239b5e;Služba zasílání zpráv_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_26feeb;Služba zasílání zpráv_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2ebe22;Služba zasílání zpráv_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3055f;Služba zasílání zpráv_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_35e63;Služba zasílání zpráv_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_36478;Služba zasílání zpráv_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_366bf;Služba zasílání zpráv_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37247;Služba zasílání zpráv_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37579;Služba zasílání zpráv_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37dcf;Služba zasílání zpráv_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cb8;Služba zasílání zpráv_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38cea;Služba zasílání zpráv_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_390ed;Služba zasílání zpráv_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_39e37;Služba zasílání zpráv_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ab4e;Služba zasílání zpráv_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3abec;Služba zasílání zpráv_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b03e;Služba zasílání zpráv_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3cee9;Služba zasílání zpráv_3cee9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d1c1;Služba zasílání zpráv_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3e36f;Služba zasílání zpráv_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ec22;Služba zasílání zpráv_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fd5c;Služba zasílání zpráv_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_42794;Služba zasílání zpráv_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e063;Služba zasílání zpráv_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7ce80;Služba zasílání zpráv_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_9a01d;Služba zasílání zpráv_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_ddcbed;Služba zasílání zpráv_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_231bec;Data kontaktů_231bec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_239b5e;Data kontaktů_239b5e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_26feeb;Data kontaktů_26feeb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2ebe22;Data kontaktů_2ebe22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3055f;Data kontaktů_3055f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_35e63;Data kontaktů_35e63; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_36478;Data kontaktů_36478; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_366bf;Data kontaktů_366bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37247;Data kontaktů_37247; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37579;Data kontaktů_37579; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_37dcf;Data kontaktů_37dcf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cb8;Data kontaktů_38cb8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_38cea;Data kontaktů_38cea; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_390ed;Data kontaktů_390ed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_39e37;Data kontaktů_39e37; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ab4e;Data kontaktů_3ab4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3abec;Data kontaktů_3abec; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3b03e;Data kontaktů_3b03e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3d1c1;Data kontaktů_3d1c1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3e36f;Data kontaktů_3e36f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3ec22;Data kontaktů_3ec22; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fd5c;Data kontaktů_3fd5c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_42794;Data kontaktů_42794; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4e063;Data kontaktů_4e063; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_7ce80;Data kontaktů_7ce80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_9a01d;Data kontaktů_9a01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_ddcbed;Data kontaktů_ddcbed; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
-
r.o.s.t.a.c.k.a
- Návštěvník

- Příspěvky: 200
- Registrován: 12 zář 2006 09:40
- Bydliště: Teplice
- Kontaktovat uživatele:
Re: Prosím o kontrolu zasekaného notebooku
Jinak PC se mi už zdá trochu rychlejší, seká se minimálně, ale co zlobí, tak je wifi, často vypadne a nahodí se pouze restartem notebooku. Wifi jako taková funguje, ostatní zařízení na ní jedou bez potíží a stává se to u nás i u majitelky notebooku.. Nevíte, čím by mohlo být toto?
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu zasekaného notebooku
Rušení, tříštění signálu. Na dálku se toto těžko diagnostikuje. Ještě můžete zkusit defragmentovat disk.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
r.o.s.t.a.c.k.a
- Návštěvník

- Příspěvky: 200
- Registrován: 12 zář 2006 09:40
- Bydliště: Teplice
- Kontaktovat uživatele:
Re: Prosím o kontrolu zasekaného notebooku
Defragmentaci zkusím. Jinak je log již v pořádku? Nyní se mi zdá, že se zase začíná trochu kousat, zasekává se jakoby myš při surfování na netu (zkoušeno tedy jen v google chromu, zkusím jiný prohlížeč)..
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu zasekaného notebooku
Po defragmentaci uvidíme, zda se to ještě bude kousat. Dejte vědět.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
r.o.s.t.a.c.k.a
- Návštěvník

- Příspěvky: 200
- Registrován: 12 zář 2006 09:40
- Bydliště: Teplice
- Kontaktovat uživatele:
Re: Prosím o kontrolu zasekaného notebooku
Dobře, jdu ji vyzkoušet a dám vědět, děkuji
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu zasekaného notebooku
Dejte, zatím není zač.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Přispějete na provoz fóra?