Tencent (nejde mi vyřešit svépomocí)
Napsal: 19 dub 2016 08:25
Dobrý den, včera jsem si při pokusu flashnout mobil stáhl nějakou čínskou srandu, zjistil jsem že má zřejmě název Tencent, od rána se pokouším dostat ho ven z pc ale nedaří se .. Pročetl jsem pár fór kde se to řešilo ale buď mi neběží doporučované programy kvůli win 10 nebo prostě nepomahají, za případnou pomoc děkuji
Logfile of random's system information tool 1.10 (written by random/random)
Run by Matty at 2016-04-19 09:17:14
Microsoft Windows 10 Home
System drive C: has 125 GB (44%) free of 285 GB
Total RAM: 6027 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:17:15, on 19.04.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCTray.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\plugins\QMNetMon\QQPCNetFlow.exe
C:\Users\Matty\AppData\Roaming\vnlgp\vnlgp\vnlgp.exe
C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCRealTimeSpeedup.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\ismagent.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Matty.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/?tn=95972258_hao_pg
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/?tn=95972258_hao_pg
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
O4 - HKLM\..\Run: [ASUS InstantKey] C:\Program Files (x86)\ASUS\ASUS Instant Key\Ikey_start.exe
O4 - HKLM\..\Run: [Dropbox] "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
O4 - HKLM\..\Run: [apphide] C:\Program Files (x86)\badu\uc.exe
O4 - HKLM\..\Run: [pcmgr] C:\Program Files (x86)\badu\Uninst.exe
O4 - HKLM\..\Run: [ QQPCTray] "C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCTRAY.EXE" /regrun /qqrepair
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Matty\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Matty\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [C] cmd /c(@attrib -H -R -S C:\WINDOWS\system32\GroupPolicy\Machine\Registry.pol >nul)&(@copy/b/y C:\WINDOWS\system32\GroupPolicy\Machine\R C:\WINDOWS\system32\GroupPolicy\Machine\Registry.pol >nul)&(@attrib +R C:\WINDOWS\system32\GroupPolicy\Machine\Registry.pol >nul)&(@start/b gpupdate.exe /Force >L)
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [apphide] C:\Program Files (x86)\badu\uc.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1258968961-4158239584-3575725969-1001\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1258968961-4158239584-3575725969-1001\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'UpdatusUser')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files\ASUS\P4G\InsOnSrv.exe
O23 - Service: Asus WebStorage Windows Service - Unknown owner - C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: BrcmSetSecurity - Intel Corporation - C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Dropbox Update Service (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee Service Controller (mfemms) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: QQPCMgr RTP Service (QQPCRTP) - Tencent - C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCRTP.exe
O23 - Service: QQRepaircd2 - Unknown owner - C:\Program.exe (file missing)
O23 - Service: QQRepairFixSVC - Unknown owner - C:\Program.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TAOFrame - Tencent - C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\TAOFrame.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: UC??????? (UCBrowserSvc) - Unknown owner - C:\Program Files (x86)\UCBrowser\Application\UCService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12204 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\igfxCUIService.exe
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCRTP.exe" -r
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
C:\WINDOWS\System32\spoolsv.exe
"C:\windows\system32\mfevtps.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\ASUS\P4G\InsOnSrv.exe"
"C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\UCBrowser\Application\UCService.exe"
dashost.exe {b0f841f0-086d-4285-bdb385b12a735410}
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
"C:\windows\system32\mfevtps.exe" -mms
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
sihost.exe
"C:\Program Files\ASUS\P4G\InsOnWMI.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
taskeng.exe {BC528791-98F0-45AA-8972-090F9614CE0E}
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
KBFiltr.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCTray.exe" /elevated /regrun
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\System32\igfxTray.exe"
igfxEM.exe
cmd /C "C:\Users\Matty\AppData\Roaming\vnlgp\vnlgp\start.cmd"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --profile-directory="Profile 1"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Matty\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.112 --handshake-handle=0x1ac
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4728.0.964976030\997156554" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0416 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=20.19.15.4331 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledDisablePreConnect/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_61/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4728.2.721368875\694707349" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledDisablePreConnect/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_61/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4728.3.604746853\115983946" /prefetch:1
"C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\plugins\QMNetMon\QQPCNetFlow.exe" /regrun /elevated
vnlgp.exe --config vnlgp.conf
"C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\TAOFrame.exe"
"C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCRealTimeSpeedup.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledDisablePreConnect/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_61/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4728.5.1338857499\2141450795" /prefetch:1
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
C:\WINDOWS\sysWOW64\wbem\wmiprvse.exe -Embedding
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledDisablePreConnect/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_61/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4728.6.229071173\1190120192" /prefetch:1
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe"
wmiadap.exe /F /T /R
"C:\Program Files (x86)\UCBrowser\Application\5.6.11815.13\UCAgent.exe"
"C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\ismagent.exe" --domain-id e57b59e7-5862-4250-9ce0-76fb411dc0d2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/*MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledDisablePreConnect/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_61/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4728.8.1224153158\1768962218" /prefetch:1
"C:\Users\Matty\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\DropboxUpdateTaskMachineCore.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /c
C:\WINDOWS\tasks\DropboxUpdateTaskMachineUA.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\UCBrowserUpdater.job - C:\Program Files (x86)\UCBrowser\Application\update_task.exe /update
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B}]
电脑管家网页防火墙 - C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\TSWebMon64.dat [2016-04-18 413536]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-08-21 13650648]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-08-07 1321688]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-12-19 402344]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-11-17 1804432]
"vnlgp"=C:\Users\Matty\AppData\Roaming\vnlgp\vnlgp\start.cmd [2016-04-04 214]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Matty\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-31 551112]
"uTorrent"=C:\Users\Matty\AppData\Roaming\uTorrent\uTorrent.exe [2016-03-05 2094080]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-02-04 3014224]
"C"=cmd /c(@attrib -H -R -S C:\WINDOWS\system32\GroupPolicy\Machine\Registry.pol >nul)&(@copy/b/y C:\WINDOWS\system32\GroupPolicy\Machine\R C:\WINDOWS\system32\GroupPolicy\Machine\Registry.pol >nul)&(@attrib +R C:\WINDOWS\system32\GroupPolicy\Machine\Registry.pol >nul)&(@start/b gpupdate.exe /Force >L) []
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-01-15 8619224]
"apphide"=C:\Program Files (x86)\badu\uc.exe []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
"ASUSPRP"=C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2013-05-01 3187360]
"ASUS InstantKey"=C:\Program Files (x86)\ASUS\ASUS Instant Key\Ikey_start.exe [2013-08-27 13936]
"Dropbox"=C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [2016-04-08 23248560]
"apphide"=C:\Program Files (x86)\badu\uc.exe []
"pcmgr"=C:\Program Files (x86)\badu\Uninst.exe []
" QQPCTray"=C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCTRAY.EXE [2016-04-18 355296]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\QQPCRTP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-19 09:15:03 ----D---- C:\rsit
2016-04-19 09:15:03 ----D---- C:\Program Files\trend micro
2016-04-19 08:44:24 ----D---- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-04-19 08:11:44 ----A---- C:\WINDOWS\SYSWOW64\drivers\TS888x64.sys
2016-04-19 08:00:53 ----D---- C:\ProgramData\TXQMPC
2016-04-19 07:49:42 ----D---- C:\ProgramData\KingSoft
2016-04-19 07:48:00 ----A---- C:\WINDOWS\SYSWOW64\drivers\TsFltMgr.sys
2016-04-18 11:05:54 ----A---- C:\WINDOWS\system32\drivers\TAOAccelerator64.sys
2016-04-18 11:05:45 ----D---- C:\Program Files\Common Files\Tencent
2016-04-18 11:05:45 ----A---- C:\WINDOWS\system32\drivers\TAOKernel64.sys
2016-04-18 11:05:35 ----D---- C:\ProgramData\Application Data
2016-04-18 11:05:34 ----A---- C:\WINDOWS\system32\drivers\TFsFltX64.sys
2016-04-18 11:04:46 ----D---- C:\Program Files (x86)\Tencent
2016-04-18 11:04:39 ----D---- C:\Users\Matty\AppData\Roaming\Tencent
2016-04-18 11:04:36 ----D---- C:\ProgramData\Tencent
2016-04-18 10:28:21 ----A---- C:\WINDOWS\system32\drivers\ucguard.sys
2016-04-18 10:27:45 ----D---- C:\Program Files (x86)\UCBrowser
2016-04-18 10:24:38 ----D---- C:\Program Files (x86)\badu
2016-04-18 10:14:19 ----D---- C:\Program Files (x86)\Seznam.cz
2016-04-18 10:13:57 ----D---- C:\Users\Matty\AppData\Roaming\NVIDIA
2016-04-18 10:13:52 ----AD---- C:\Users\Matty\AppData\Roaming\vnlgp
2016-04-17 09:10:45 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-04-17 09:10:44 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-04-17 09:10:44 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-04-17 09:10:40 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-04-17 09:10:40 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-04-17 09:10:40 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-04-17 09:10:39 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-04-17 09:10:39 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-04-17 09:10:37 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-04-17 09:10:37 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-04-17 09:10:37 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-04-17 09:10:37 ----A---- C:\WINDOWS\system32\wininet.dll
2016-04-17 09:10:37 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-04-17 09:10:36 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-04-17 09:10:36 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-04-17 09:10:35 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-04-17 09:10:35 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-04-17 09:10:34 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-04-17 09:10:34 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-04-17 09:10:34 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-04-17 09:10:34 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-04-17 09:10:33 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-04-17 09:10:33 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-04-17 09:10:32 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-04-17 09:10:32 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-04-17 09:10:31 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-04-17 09:10:30 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-04-17 09:10:30 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-04-17 09:10:30 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-17 09:10:29 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-04-17 09:10:29 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-04-17 09:10:22 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-04-17 09:10:22 ----A---- C:\WINDOWS\system32\SRH.dll
2016-04-17 09:10:21 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-04-17 09:10:21 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-04-17 09:10:21 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-04-17 09:10:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-04-17 09:10:18 ----A---- C:\WINDOWS\system32\twinui.dll
2016-04-17 09:10:17 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-04-17 09:10:17 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-04-17 09:10:17 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-04-17 09:10:16 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-04-17 09:10:16 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-04-17 09:10:16 ----A---- C:\WINDOWS\system32\InputService.dll
2016-04-17 09:10:16 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-04-17 09:10:14 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-04-17 09:10:13 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-04-17 09:10:11 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-04-17 09:10:11 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-04-17 09:10:10 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-04-17 09:10:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-04-17 09:10:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-04-17 09:10:09 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-04-17 09:10:08 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-04-17 09:10:07 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-04-17 09:10:07 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-04-17 09:10:07 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-04-17 09:10:06 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-04-17 09:10:06 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-04-17 09:10:06 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-17 09:10:05 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-04-17 09:10:05 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-04-17 09:10:05 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-17 09:10:05 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-04-17 09:10:04 ----A---- C:\WINDOWS\system32\esent.dll
2016-04-17 09:10:03 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-04-17 09:10:03 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2016-04-17 09:10:03 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-04-17 09:10:02 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-17 09:10:02 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-17 09:10:02 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-04-17 09:10:02 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-04-17 09:10:02 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-04-17 09:10:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-04-17 09:10:01 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-04-17 09:10:01 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-04-17 09:10:00 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-04-17 09:10:00 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-17 09:09:59 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-04-17 09:09:59 ----A---- C:\WINDOWS\system32\winload.exe
2016-04-17 09:09:59 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-04-17 09:09:59 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-04-17 09:09:58 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-04-17 09:09:58 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-04-17 09:09:58 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-04-17 09:09:58 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-04-17 09:09:57 ----A---- C:\WINDOWS\system32\winresume.exe
2016-04-17 09:09:57 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-04-17 09:09:56 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-04-17 09:09:55 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-04-17 09:09:55 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-04-17 09:09:55 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-04-17 09:09:55 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-04-17 09:09:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2016-04-17 09:09:54 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-04-17 09:09:54 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-04-17 09:09:54 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-04-17 09:09:54 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-04-17 09:09:54 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-04-17 09:09:54 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-04-17 09:09:54 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-04-17 09:09:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-04-17 09:09:53 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-04-17 09:09:53 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-04-17 09:09:53 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-04-17 09:09:53 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-04-17 09:09:53 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-04-17 09:09:53 ----A---- C:\WINDOWS\system32\AccountsRt.dll
2016-04-17 09:09:52 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2016-04-17 09:09:52 ----A---- C:\WINDOWS\SYSWOW64\AccountsRt.dll
2016-04-17 09:09:52 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-04-17 09:09:52 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-04-17 09:09:52 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-04-17 09:09:52 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-04-17 09:09:51 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2016-04-17 09:09:51 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-04-17 09:09:51 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-04-17 09:09:51 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-04-17 09:09:51 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-04-17 09:09:51 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-04-17 09:09:50 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-04-17 09:09:50 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-17 09:09:50 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-04-17 09:09:50 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-04-17 09:09:50 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-17 09:09:50 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-04-17 09:09:49 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-04-17 09:09:49 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-17 09:09:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2016-04-17 09:09:48 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-04-17 09:09:47 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-17 09:09:47 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-04-17 09:09:47 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-04-17 09:09:44 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-04-17 09:09:44 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-17 09:09:44 ----A---- C:\WINDOWS\system32\bdesvc.dll
2016-04-17 09:09:43 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2016-04-17 09:09:43 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-04-17 09:09:43 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2016-04-17 09:09:43 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-04-17 09:09:43 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-04-17 09:09:42 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2016-04-17 09:09:42 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2016-04-17 09:09:42 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2016-04-17 09:09:42 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-04-17 09:09:41 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2016-04-17 09:09:41 ----A---- C:\WINDOWS\system32\msi.dll
2016-04-17 09:09:41 ----A---- C:\WINDOWS\system32\drivers\ufx01000.sys
2016-04-17 09:09:41 ----A---- C:\WINDOWS\system32\dnsapi.dll
2016-04-17 09:09:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2016-04-17 09:09:40 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll
2016-04-17 09:09:40 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-04-17 09:09:40 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-04-17 09:09:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2016-04-17 09:09:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2016-04-17 09:09:39 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2016-04-17 09:09:39 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2016-04-17 09:09:39 ----A---- C:\WINDOWS\system32\LsaIso.exe
2016-04-17 09:09:39 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2016-04-17 09:09:39 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-04-17 09:09:38 ----A---- C:\WINDOWS\SYSWOW64\msorcl32.dll
2016-04-17 09:09:38 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-04-17 09:09:38 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-04-17 09:09:38 ----A---- C:\WINDOWS\system32\profsvc.dll
2016-04-17 09:09:38 ----A---- C:\WINDOWS\system32\policymanagerprecheck.dll
2016-04-17 09:09:38 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-04-17 09:09:38 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2016-04-17 09:09:38 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2016-04-17 09:09:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2016-04-17 09:09:35 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-17 09:09:35 ----A---- C:\WINDOWS\system32\policymanager.dll
2016-04-17 09:09:35 ----A---- C:\WINDOWS\system32\ncbservice.dll
2016-04-17 09:09:35 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-04-17 09:09:35 ----A---- C:\WINDOWS\system32\fveui.dll
2016-04-17 09:09:35 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-04-17 09:09:34 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-04-17 09:09:34 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-04-17 09:09:34 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-17 09:09:34 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-04-17 09:09:34 ----A---- C:\WINDOWS\system32\omadmapi.dll
2016-04-17 09:09:34 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-04-17 09:09:34 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2016-04-17 09:09:33 ----A---- C:\WINDOWS\SYSWOW64\srvcli.dll
2016-04-17 09:09:33 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2016-04-17 09:09:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2016-04-17 09:09:32 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2016-04-17 09:09:32 ----A---- C:\WINDOWS\system32\srvcli.dll
2016-04-17 09:09:32 ----A---- C:\WINDOWS\system32\netapi32.dll
2016-04-17 09:09:31 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-04-17 09:09:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Devices.dll
2016-04-17 09:09:31 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
2016-04-17 09:09:31 ----A---- C:\WINDOWS\SYSWOW64\netapi32.dll
2016-04-17 09:09:31 ----A---- C:\WINDOWS\system32\wkscli.dll
2016-04-17 09:09:30 ----A---- C:\WINDOWS\SYSWOW64\wkscli.dll
2016-04-17 09:09:30 ----A---- C:\WINDOWS\system32\oleacc.dll
2016-04-17 09:09:30 ----A---- C:\WINDOWS\system32\iuilp.dll
2016-04-17 09:09:30 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2016-04-17 09:09:30 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-04-17 09:09:30 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2016-04-17 09:09:30 ----A---- C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-17 09:09:29 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2016-04-17 09:09:29 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.dll
2016-04-17 09:09:29 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-04-17 09:09:29 ----A---- C:\WINDOWS\system32\easinvoker.exe
2016-04-17 09:09:29 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-04-17 09:09:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2016-04-17 09:09:28 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2016-04-17 09:09:28 ----A---- C:\WINDOWS\system32\wsdchngr.dll
2016-04-17 09:09:28 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2016-04-17 09:09:28 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-04-17 09:09:28 ----A---- C:\WINDOWS\system32\DAFWSD.dll
2016-04-17 09:09:27 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2016-04-17 09:09:27 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-17 09:09:27 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-04-17 09:09:27 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2016-04-17 09:09:27 ----A---- C:\WINDOWS\system32\credprovhost.dll
2016-04-17 09:09:25 ----A---- C:\WINDOWS\system32\easwrt.dll
2016-04-17 09:09:24 ----A---- C:\WINDOWS\SYSWOW64\wsdchngr.dll
2016-04-17 09:09:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-17 09:09:24 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-04-17 09:09:24 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-04-17 09:09:24 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2016-04-17 09:09:24 ----A---- C:\WINDOWS\system32\dmcsps.dll
2016-04-17 09:09:24 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-04-17 09:09:23 ----A---- C:\WINDOWS\SYSWOW64\NotificationObjFactory.dll
2016-04-17 09:09:23 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2016-04-17 09:09:23 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll
2016-04-17 09:09:23 ----A---- C:\WINDOWS\system32\WSDApi.dll
2016-04-17 09:09:22 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2016-04-17 09:09:22 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2016-04-17 09:09:22 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-17 09:09:21 ----A---- C:\WINDOWS\SYSWOW64\browcli.dll
2016-04-17 09:09:21 ----A---- C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-04-17 09:09:21 ----A---- C:\WINDOWS\system32\fvewiz.dll
2016-04-17 09:09:21 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-04-17 09:09:21 ----A---- C:\WINDOWS\system32\browser.dll
2016-04-17 09:09:21 ----A---- C:\WINDOWS\system32\browcli.dll
2016-04-17 09:09:21 ----A---- C:\WINDOWS\system32\basesrv.dll
2016-04-17 09:09:21 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-04-17 09:09:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2016-04-17 09:09:20 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-04-17 09:09:20 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-04-17 09:09:20 ----A---- C:\WINDOWS\system32\fvecpl.dll
2016-04-17 09:09:19 ----A---- C:\WINDOWS\SYSWOW64\easwrt.dll
2016-04-17 09:09:19 ----A---- C:\WINDOWS\system32\tbauth.dll
2016-04-17 09:09:19 ----A---- C:\WINDOWS\system32\fveskybackup.dll
2016-04-17 09:09:19 ----A---- C:\WINDOWS\system32\drivers\serial.sys
2016-04-17 09:09:19 ----A---- C:\WINDOWS\system32\drivers\BthLEEnum.sys
2016-04-17 09:09:19 ----A---- C:\WINDOWS\system32\BFE.DLL
2016-04-17 09:09:18 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-04-17 09:09:17 ----A---- C:\WINDOWS\system32\wups.dll
2016-04-17 09:09:17 ----A---- C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-17 09:09:17 ----A---- C:\WINDOWS\system32\samlib.dll
2016-04-17 09:09:16 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerCookies.exe
2016-04-17 09:09:16 ----A---- C:\WINDOWS\SYSWOW64\tbauth.dll
2016-04-17 09:09:16 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2016-04-17 09:09:16 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-04-17 09:09:16 ----A---- C:\WINDOWS\system32\moshost.dll
2016-04-17 09:09:16 ----A---- C:\WINDOWS\system32\FontProvider.dll
2016-04-17 09:09:16 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2016-04-17 09:09:15 ----A---- C:\WINDOWS\system32\mos.dll
2016-04-17 09:09:15 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-04-17 09:09:15 ----A---- C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-04-17 09:09:14 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-04-17 09:09:14 ----A---- C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-04-17 09:09:14 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-04-17 09:09:14 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-04-17 09:09:13 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2016-04-17 09:09:13 ----A---- C:\WINDOWS\SYSWOW64\OnDemandConnRouteHelper.dll
2016-04-17 09:09:13 ----A---- C:\WINDOWS\SYSWOW64\mtxoci.dll
2016-04-17 09:09:13 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-04-17 09:09:13 ----A---- C:\WINDOWS\system32\mtxoci.dll
2016-04-17 09:09:13 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-04-17 09:09:13 ----A---- C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-17 09:09:12 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.V2.dll
2016-04-17 09:09:12 ----A---- C:\WINDOWS\SYSWOW64\oleacchooks.dll
2016-04-17 09:09:12 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-04-17 09:09:12 ----A---- C:\WINDOWS\system32\oleacchooks.dll
2016-04-17 09:09:11 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-04-17 09:09:11 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-04-17 09:09:11 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-04-17 09:09:11 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-04-17 09:09:11 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-04-17 09:09:10 ----A---- C:\WINDOWS\SYSWOW64\MTF.dll
2016-04-17 09:09:10 ----A---- C:\WINDOWS\system32\MTF.dll
2016-04-17 09:09:10 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-04-17 09:09:10 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
======List of files/folders modified in the last 1 month======
2016-04-19 09:17:07 ----D---- C:\WINDOWS\System32
2016-04-19 09:17:07 ----D---- C:\WINDOWS\INF
2016-04-19 09:17:07 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-19 09:16:58 ----D---- C:\WINDOWS\Prefetch
2016-04-19 09:15:03 ----RD---- C:\Program Files
2016-04-19 09:14:17 ----D---- C:\WINDOWS\Temp
2016-04-19 09:13:57 ----D---- C:\ProgramData\ASUS Smart Gesture
2016-04-19 09:13:51 ----D---- C:\Program Files (x86)\Steam
2016-04-19 09:12:32 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-04-19 09:10:35 ----RD---- C:\WINDOWS\PurchaseDialog
2016-04-19 09:10:35 ----D---- C:\WINDOWS\system32\drivers
2016-04-19 09:09:36 ----SHD---- C:\System Volume Information
2016-04-19 09:09:02 ----D---- C:\WINDOWS\system32\sru
2016-04-19 08:44:24 ----HD---- C:\ProgramData
2016-04-19 08:31:46 ----D---- C:\WINDOWS\system32\config
2016-04-19 08:29:45 ----D---- C:\WINDOWS\Microsoft.NET
2016-04-19 08:16:33 ----D---- C:\Windows
2016-04-19 08:15:59 ----D---- C:\WINDOWS\AppReadiness
2016-04-19 08:15:48 ----HD---- C:\Program Files\WindowsApps
2016-04-19 08:11:44 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-04-19 08:09:01 ----D---- C:\WINDOWS\WinSxS
2016-04-19 08:04:37 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-04-19 08:04:37 ----D---- C:\WINDOWS\SysWOW64
2016-04-19 08:04:31 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-04-19 08:04:30 ----D---- C:\WINDOWS\system32\cs-CZ
2016-04-19 08:04:30 ----D---- C:\WINDOWS\system32\Boot
2016-04-19 08:04:30 ----D---- C:\WINDOWS\system32\appraiser
2016-04-19 08:04:16 ----D---- C:\WINDOWS\PolicyDefinitions
2016-04-19 08:04:14 ----D---- C:\WINDOWS\bcastdvr
2016-04-19 08:04:14 ----D---- C:\WINDOWS\AppPatch
2016-04-19 08:04:07 ----D---- C:\WINDOWS\system32\DriverStore
2016-04-18 11:33:08 ----D---- C:\WINDOWS\CbsTemp
2016-04-18 11:28:24 ----D---- C:\WINDOWS\system32\MRT
2016-04-18 11:13:59 ----A---- C:\WINDOWS\system32\MRT.exe
2016-04-18 11:05:45 ----D---- C:\Program Files\Common Files
2016-04-18 11:05:39 ----RSD---- C:\WINDOWS\Fonts
2016-04-18 11:05:34 ----D---- C:\Program Files (x86)\Common Files
2016-04-18 11:04:46 ----RD---- C:\Program Files (x86)
2016-04-18 10:28:44 ----D---- C:\WINDOWS\Tasks
2016-04-18 10:28:44 ----D---- C:\WINDOWS\system32\Tasks
2016-04-18 10:15:38 ----D---- C:\Users\Matty\AppData\Roaming\Seznam.cz
2016-04-18 10:06:34 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-04-18 09:57:36 ----HD---- C:\WINDOWS\system32\GroupPolicy
2016-04-16 14:20:20 ----D---- C:\Program Files (x86)\Dropbox
2016-04-14 01:45:09 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-04-13 19:00:34 ----D---- C:\WINDOWS\system32\catroot2
2016-04-06 20:32:08 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-04-06 10:08:02 ----D---- C:\WINDOWS\system32\NDF
2016-04-06 09:55:46 ----D---- C:\Users\Matty\AppData\Roaming\uTorrent
2016-04-03 17:15:46 ----D---- C:\WINDOWS\Minidump
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-08-09 644968]
R0 IntelHSWPcc;IntelHSWPcc; C:\WINDOWS\System32\drivers\IntelPcc.sys [2013-08-06 74344]
R0 mfehidk;McAfee Inc. mfehidk; C:\WINDOWS\system32\drivers\mfehidk.sys [2015-09-23 841944]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\WINDOWS\system32\drivers\mfewfpk.sys [2015-09-23 244544]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2015-07-13 31560]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 QMUdisk;tencent QMUdisk; \??\C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QMUdisk64.sys [2016-03-02 184536]
R1 SRepairDrv;SRepairDrv; \??\C:\Program Files (x86)\Tencent\QQPCMGR\Plugins\SRepairDrv [2016-04-19 168568]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 plctrl;plctrl; \??\C:\Program Files\ASUS\P4G\plctrl.sys [2013-08-29 14136]
R2 QQSysMonX64;QQSysMonX64; \??\C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQSysMonX64.sys [2016-04-18 127800]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R2 TAOAccelerator;Tencent TAOAccelerator driver.; \??\C:\WINDOWS\system32\Drivers\TAOAccelerator64.sys [2016-04-18 99640]
R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2013-04-17 17152]
R3 AMPPAL;@oem19.inf,%AMPPAL.SVCDESC%;Virtuální adaptér Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-05-21 165344]
R3 ATP;@oem18.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2015-08-23 100776]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-03-29 84992]
R3 HIDSwitch;@oem34.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2015-05-13 19976]
R3 ibtusb;@oem35.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\system32\DRIVERS\ibtusb.sys [2015-07-14 263952]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-12-19 7858088]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-08-21 3591000]
R3 kbfiltr;@oem6.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992]
R3 MEIx64;@oem22.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2013-06-23 64624]
R3 mfeaack;McAfee Inc. mfeaack; C:\WINDOWS\system32\drivers\mfeaack.sys [2015-09-23 415976]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\WINDOWS\system32\drivers\mfeavfk.sys [2015-09-23 351120]
R3 mfefirek;McAfee Inc. mfefirek; C:\WINDOWS\system32\drivers\mfefirek.sys [2015-09-23 497888]
R3 NETwNb64;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\WINDOWS\System32\drivers\Netwbw02.sys [2015-10-30 3485696]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-07-13 11139216]
R3 rt640x64;@oem38.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-07-08 895256]
R3 RTSPER;@oem40.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2015-07-08 759552]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 mfeelamk;McAfee Inc. mfeelamk; C:\WINDOWS\system32\drivers\mfeelamk.sys [2015-09-23 82072]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthA2DP;@wdma_bt.inf,%BthA2DP.SvcDesc%;Bluetooth stereo; C:\WINDOWS\system32\drivers\BthA2DP.sys [2015-10-30 165376]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-03-29 112640]
S3 BthHFAud;@wdma_bt.inf,%DISPLAY_NAME%;Bluetooth handsfree; C:\WINDOWS\system32\DRIVERS\BthHfAud.sys [2015-10-30 36864]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-03-29 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-03-29 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-31 117248]
S3 cfwids;McAfee Inc. cfwids; C:\WINDOWS\system32\drivers\cfwids.sys [2015-09-23 80760]
S3 dg_ssudbus;@oem33.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 FTDIBUS;@oem32.inf,%SvcDesc%;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2016-02-01 110912]
S3 FTSER2K;@oem23.inf,%SvcDesc%;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2016-01-13 95168]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IntcDAud;@oem16.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2013-09-05 449528]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mfeapfk;McAfee Inc. mfeapfk; C:\WINDOWS\system32\drivers\mfeapfk.sys [2014-06-20 181704]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 Revoflt;Revoflt; C:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 31800]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-03-29 181248]
S3 ssudmdm;@oem36.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-09-24 81088]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-01-15 107320]
R2 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files\ASUS\P4G\InsOnSrv.exe [2013-08-29 277120]
R2 Asus WebStorage Windows Service;Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [2012-12-19 72192]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 BrcmSetSecurity;BrcmSetSecurity; C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe [2013-07-26 283296]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-12-19 373160]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-05-11 733696]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2013-06-23 131544]
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management;Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [2013-08-16 157128]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-06-23 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-06-23 366552]
R2 mfemms;McAfee Service Controller; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [2015-10-21 378848]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\windows\system32\mfevtps.exe [2015-09-21 256840]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-07-13 937616]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 OneSyncSvc_4d1f7;Hostitel synchronizace_4d1f7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 QQPCRTP;QQPCMgr RTP Service; C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCRTP.exe [2016-04-18 297608]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 PimIndexMaintenanceSvc_4d1f7;Data kontaktů_4d1f7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 TAOFrame;TAOFrame; C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\TAOFrame.exe [2016-04-18 293728]
S2 dbupdate;Dropbox Update Service (dbupdate); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-01-02 143144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-21 154440]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2d700;Hostitel synchronizace_2d700; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_341db;Hostitel synchronizace_341db; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3e2a8;Hostitel synchronizace_3e2a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3edc5;Hostitel synchronizace_3edc5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_48ca4;Hostitel synchronizace_48ca4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_50340;Hostitel synchronizace_50340; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_52840;Hostitel synchronizace_52840; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_60cbf;Hostitel synchronizace_60cbf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_66e03;Hostitel synchronizace_66e03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_68441;Hostitel synchronizace_68441; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 QQRepaircd2;QQRepaircd2; C:\Program Files (x86)\Tencent\QQPCMGR\Plugins\QQRepaircd2 [2016-04-19 136512]
S2 QQRepairFixSVC;QQRepairFixSVC; C:\Program Files (x86)\Tencent\QQPCMGR\Plugins\QQRepairFixSVC [2016-04-19 136512]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-12-19 300968]
S3 dbupdatem;Dropbox Update Service (dbupdatem); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-01-02 143144]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-21 154440]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-05-11 822232]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2d700;Služba zasílání zpráv_2d700; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_341db;Služba zasílání zpráv_341db; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3e2a8;Služba zasílání zpráv_3e2a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_48ca4;Služba zasílání zpráv_48ca4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4d1f7;Služba zasílání zpráv_4d1f7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_50340;Služba zasílání zpráv_50340; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_52840;Služba zasílání zpráv_52840; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_60cbf;Služba zasílání zpráv_60cbf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_66e03;Služba zasílání zpráv_66e03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_68441;Služba zasílání zpráv_68441; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2d700;Data kontaktů_2d700; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_341db;Data kontaktů_341db; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3e2a8;Data kontaktů_3e2a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_48ca4;Data kontaktů_48ca4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_50340;Data kontaktů_50340; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_52840;Data kontaktů_52840; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_60cbf;Data kontaktů_60cbf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_66e03;Data kontaktů_66e03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_68441;Data kontaktů_68441; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2015-09-21 233680]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Matty at 2016-04-19 09:17:14
Microsoft Windows 10 Home
System drive C: has 125 GB (44%) free of 285 GB
Total RAM: 6027 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:17:15, on 19.04.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCTray.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\plugins\QMNetMon\QQPCNetFlow.exe
C:\Users\Matty\AppData\Roaming\vnlgp\vnlgp\vnlgp.exe
C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCRealTimeSpeedup.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\ismagent.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Matty.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/?tn=95972258_hao_pg
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/?tn=95972258_hao_pg
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
O4 - HKLM\..\Run: [ASUS InstantKey] C:\Program Files (x86)\ASUS\ASUS Instant Key\Ikey_start.exe
O4 - HKLM\..\Run: [Dropbox] "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
O4 - HKLM\..\Run: [apphide] C:\Program Files (x86)\badu\uc.exe
O4 - HKLM\..\Run: [pcmgr] C:\Program Files (x86)\badu\Uninst.exe
O4 - HKLM\..\Run: [ QQPCTray] "C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCTRAY.EXE" /regrun /qqrepair
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Matty\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Matty\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [C] cmd /c(@attrib -H -R -S C:\WINDOWS\system32\GroupPolicy\Machine\Registry.pol >nul)&(@copy/b/y C:\WINDOWS\system32\GroupPolicy\Machine\R C:\WINDOWS\system32\GroupPolicy\Machine\Registry.pol >nul)&(@attrib +R C:\WINDOWS\system32\GroupPolicy\Machine\Registry.pol >nul)&(@start/b gpupdate.exe /Force >L)
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [apphide] C:\Program Files (x86)\badu\uc.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1258968961-4158239584-3575725969-1001\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1258968961-4158239584-3575725969-1001\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'UpdatusUser')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files\ASUS\P4G\InsOnSrv.exe
O23 - Service: Asus WebStorage Windows Service - Unknown owner - C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: BrcmSetSecurity - Intel Corporation - C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Dropbox Update Service (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee Service Controller (mfemms) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: QQPCMgr RTP Service (QQPCRTP) - Tencent - C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCRTP.exe
O23 - Service: QQRepaircd2 - Unknown owner - C:\Program.exe (file missing)
O23 - Service: QQRepairFixSVC - Unknown owner - C:\Program.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TAOFrame - Tencent - C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\TAOFrame.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: UC??????? (UCBrowserSvc) - Unknown owner - C:\Program Files (x86)\UCBrowser\Application\UCService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12204 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\igfxCUIService.exe
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCRTP.exe" -r
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
C:\WINDOWS\System32\spoolsv.exe
"C:\windows\system32\mfevtps.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\ASUS\P4G\InsOnSrv.exe"
"C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\UCBrowser\Application\UCService.exe"
dashost.exe {b0f841f0-086d-4285-bdb385b12a735410}
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
"C:\windows\system32\mfevtps.exe" -mms
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
sihost.exe
"C:\Program Files\ASUS\P4G\InsOnWMI.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
taskeng.exe {BC528791-98F0-45AA-8972-090F9614CE0E}
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
KBFiltr.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCTray.exe" /elevated /regrun
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\System32\igfxTray.exe"
igfxEM.exe
cmd /C "C:\Users\Matty\AppData\Roaming\vnlgp\vnlgp\start.cmd"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --profile-directory="Profile 1"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Matty\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.112 --handshake-handle=0x1ac
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4728.0.964976030\997156554" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0416 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=20.19.15.4331 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledDisablePreConnect/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_61/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4728.2.721368875\694707349" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledDisablePreConnect/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_61/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4728.3.604746853\115983946" /prefetch:1
"C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\plugins\QMNetMon\QQPCNetFlow.exe" /regrun /elevated
vnlgp.exe --config vnlgp.conf
"C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\TAOFrame.exe"
"C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCRealTimeSpeedup.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledDisablePreConnect/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_61/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4728.5.1338857499\2141450795" /prefetch:1
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
C:\WINDOWS\sysWOW64\wbem\wmiprvse.exe -Embedding
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledDisablePreConnect/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_61/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4728.6.229071173\1190120192" /prefetch:1
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe"
wmiadap.exe /F /T /R
"C:\Program Files (x86)\UCBrowser\Application\5.6.11815.13\UCAgent.exe"
"C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\ismagent.exe" --domain-id e57b59e7-5862-4250-9ce0-76fb411dc0d2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/*MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledDisablePreConnect/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_61/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4728.8.1224153158\1768962218" /prefetch:1
"C:\Users\Matty\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\DropboxUpdateTaskMachineCore.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /c
C:\WINDOWS\tasks\DropboxUpdateTaskMachineUA.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\UCBrowserUpdater.job - C:\Program Files (x86)\UCBrowser\Application\update_task.exe /update
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B}]
电脑管家网页防火墙 - C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\TSWebMon64.dat [2016-04-18 413536]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-08-21 13650648]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-08-07 1321688]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-12-19 402344]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-11-17 1804432]
"vnlgp"=C:\Users\Matty\AppData\Roaming\vnlgp\vnlgp\start.cmd [2016-04-04 214]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Matty\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-31 551112]
"uTorrent"=C:\Users\Matty\AppData\Roaming\uTorrent\uTorrent.exe [2016-03-05 2094080]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-02-04 3014224]
"C"=cmd /c(@attrib -H -R -S C:\WINDOWS\system32\GroupPolicy\Machine\Registry.pol >nul)&(@copy/b/y C:\WINDOWS\system32\GroupPolicy\Machine\R C:\WINDOWS\system32\GroupPolicy\Machine\Registry.pol >nul)&(@attrib +R C:\WINDOWS\system32\GroupPolicy\Machine\Registry.pol >nul)&(@start/b gpupdate.exe /Force >L) []
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-01-15 8619224]
"apphide"=C:\Program Files (x86)\badu\uc.exe []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
"ASUSPRP"=C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2013-05-01 3187360]
"ASUS InstantKey"=C:\Program Files (x86)\ASUS\ASUS Instant Key\Ikey_start.exe [2013-08-27 13936]
"Dropbox"=C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [2016-04-08 23248560]
"apphide"=C:\Program Files (x86)\badu\uc.exe []
"pcmgr"=C:\Program Files (x86)\badu\Uninst.exe []
" QQPCTray"=C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCTRAY.EXE [2016-04-18 355296]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\QQPCRTP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-19 09:15:03 ----D---- C:\rsit
2016-04-19 09:15:03 ----D---- C:\Program Files\trend micro
2016-04-19 08:44:24 ----D---- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-04-19 08:11:44 ----A---- C:\WINDOWS\SYSWOW64\drivers\TS888x64.sys
2016-04-19 08:00:53 ----D---- C:\ProgramData\TXQMPC
2016-04-19 07:49:42 ----D---- C:\ProgramData\KingSoft
2016-04-19 07:48:00 ----A---- C:\WINDOWS\SYSWOW64\drivers\TsFltMgr.sys
2016-04-18 11:05:54 ----A---- C:\WINDOWS\system32\drivers\TAOAccelerator64.sys
2016-04-18 11:05:45 ----D---- C:\Program Files\Common Files\Tencent
2016-04-18 11:05:45 ----A---- C:\WINDOWS\system32\drivers\TAOKernel64.sys
2016-04-18 11:05:35 ----D---- C:\ProgramData\Application Data
2016-04-18 11:05:34 ----A---- C:\WINDOWS\system32\drivers\TFsFltX64.sys
2016-04-18 11:04:46 ----D---- C:\Program Files (x86)\Tencent
2016-04-18 11:04:39 ----D---- C:\Users\Matty\AppData\Roaming\Tencent
2016-04-18 11:04:36 ----D---- C:\ProgramData\Tencent
2016-04-18 10:28:21 ----A---- C:\WINDOWS\system32\drivers\ucguard.sys
2016-04-18 10:27:45 ----D---- C:\Program Files (x86)\UCBrowser
2016-04-18 10:24:38 ----D---- C:\Program Files (x86)\badu
2016-04-18 10:14:19 ----D---- C:\Program Files (x86)\Seznam.cz
2016-04-18 10:13:57 ----D---- C:\Users\Matty\AppData\Roaming\NVIDIA
2016-04-18 10:13:52 ----AD---- C:\Users\Matty\AppData\Roaming\vnlgp
2016-04-17 09:10:45 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-04-17 09:10:44 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-04-17 09:10:44 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-04-17 09:10:40 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-04-17 09:10:40 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-04-17 09:10:40 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-04-17 09:10:39 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-04-17 09:10:39 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-04-17 09:10:37 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-04-17 09:10:37 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-04-17 09:10:37 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-04-17 09:10:37 ----A---- C:\WINDOWS\system32\wininet.dll
2016-04-17 09:10:37 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-04-17 09:10:36 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-04-17 09:10:36 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-04-17 09:10:35 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-04-17 09:10:35 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-04-17 09:10:34 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-04-17 09:10:34 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-04-17 09:10:34 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-04-17 09:10:34 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-04-17 09:10:33 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-04-17 09:10:33 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-04-17 09:10:32 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-04-17 09:10:32 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-04-17 09:10:31 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-04-17 09:10:30 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-04-17 09:10:30 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-04-17 09:10:30 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-17 09:10:29 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-04-17 09:10:29 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-04-17 09:10:22 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-04-17 09:10:22 ----A---- C:\WINDOWS\system32\SRH.dll
2016-04-17 09:10:21 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-04-17 09:10:21 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-04-17 09:10:21 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-04-17 09:10:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-04-17 09:10:18 ----A---- C:\WINDOWS\system32\twinui.dll
2016-04-17 09:10:17 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-04-17 09:10:17 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-04-17 09:10:17 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-04-17 09:10:16 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-04-17 09:10:16 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-04-17 09:10:16 ----A---- C:\WINDOWS\system32\InputService.dll
2016-04-17 09:10:16 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-04-17 09:10:14 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-04-17 09:10:13 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-04-17 09:10:11 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-04-17 09:10:11 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-04-17 09:10:10 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-04-17 09:10:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-04-17 09:10:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-04-17 09:10:09 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-04-17 09:10:08 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-04-17 09:10:07 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-04-17 09:10:07 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-04-17 09:10:07 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-04-17 09:10:06 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-04-17 09:10:06 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-04-17 09:10:06 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-17 09:10:05 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-04-17 09:10:05 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-04-17 09:10:05 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-17 09:10:05 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-04-17 09:10:04 ----A---- C:\WINDOWS\system32\esent.dll
2016-04-17 09:10:03 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-04-17 09:10:03 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2016-04-17 09:10:03 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-04-17 09:10:02 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-17 09:10:02 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-17 09:10:02 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-04-17 09:10:02 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-04-17 09:10:02 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-04-17 09:10:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-04-17 09:10:01 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-04-17 09:10:01 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-04-17 09:10:00 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-04-17 09:10:00 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-17 09:09:59 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-04-17 09:09:59 ----A---- C:\WINDOWS\system32\winload.exe
2016-04-17 09:09:59 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-04-17 09:09:59 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-04-17 09:09:58 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-04-17 09:09:58 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-04-17 09:09:58 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-04-17 09:09:58 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-04-17 09:09:57 ----A---- C:\WINDOWS\system32\winresume.exe
2016-04-17 09:09:57 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-04-17 09:09:56 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-04-17 09:09:55 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-04-17 09:09:55 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-04-17 09:09:55 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-04-17 09:09:55 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-04-17 09:09:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2016-04-17 09:09:54 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-04-17 09:09:54 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-04-17 09:09:54 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-04-17 09:09:54 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-04-17 09:09:54 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-04-17 09:09:54 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-04-17 09:09:54 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-04-17 09:09:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-04-17 09:09:53 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-04-17 09:09:53 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-04-17 09:09:53 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-04-17 09:09:53 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-04-17 09:09:53 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-04-17 09:09:53 ----A---- C:\WINDOWS\system32\AccountsRt.dll
2016-04-17 09:09:52 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2016-04-17 09:09:52 ----A---- C:\WINDOWS\SYSWOW64\AccountsRt.dll
2016-04-17 09:09:52 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-04-17 09:09:52 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-04-17 09:09:52 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-04-17 09:09:52 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-04-17 09:09:51 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2016-04-17 09:09:51 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-04-17 09:09:51 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-04-17 09:09:51 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-04-17 09:09:51 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-04-17 09:09:51 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-04-17 09:09:50 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-04-17 09:09:50 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-17 09:09:50 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-04-17 09:09:50 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-04-17 09:09:50 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-17 09:09:50 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-04-17 09:09:49 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-04-17 09:09:49 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-17 09:09:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2016-04-17 09:09:48 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-04-17 09:09:47 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-17 09:09:47 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-04-17 09:09:47 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-04-17 09:09:44 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-04-17 09:09:44 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-17 09:09:44 ----A---- C:\WINDOWS\system32\bdesvc.dll
2016-04-17 09:09:43 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2016-04-17 09:09:43 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-04-17 09:09:43 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2016-04-17 09:09:43 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-04-17 09:09:43 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-04-17 09:09:42 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2016-04-17 09:09:42 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2016-04-17 09:09:42 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2016-04-17 09:09:42 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-04-17 09:09:41 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2016-04-17 09:09:41 ----A---- C:\WINDOWS\system32\msi.dll
2016-04-17 09:09:41 ----A---- C:\WINDOWS\system32\drivers\ufx01000.sys
2016-04-17 09:09:41 ----A---- C:\WINDOWS\system32\dnsapi.dll
2016-04-17 09:09:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2016-04-17 09:09:40 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll
2016-04-17 09:09:40 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-04-17 09:09:40 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-04-17 09:09:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2016-04-17 09:09:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2016-04-17 09:09:39 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2016-04-17 09:09:39 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2016-04-17 09:09:39 ----A---- C:\WINDOWS\system32\LsaIso.exe
2016-04-17 09:09:39 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2016-04-17 09:09:39 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-04-17 09:09:38 ----A---- C:\WINDOWS\SYSWOW64\msorcl32.dll
2016-04-17 09:09:38 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-04-17 09:09:38 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-04-17 09:09:38 ----A---- C:\WINDOWS\system32\profsvc.dll
2016-04-17 09:09:38 ----A---- C:\WINDOWS\system32\policymanagerprecheck.dll
2016-04-17 09:09:38 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-04-17 09:09:38 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2016-04-17 09:09:38 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2016-04-17 09:09:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2016-04-17 09:09:35 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-17 09:09:35 ----A---- C:\WINDOWS\system32\policymanager.dll
2016-04-17 09:09:35 ----A---- C:\WINDOWS\system32\ncbservice.dll
2016-04-17 09:09:35 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-04-17 09:09:35 ----A---- C:\WINDOWS\system32\fveui.dll
2016-04-17 09:09:35 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-04-17 09:09:34 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-04-17 09:09:34 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-04-17 09:09:34 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-17 09:09:34 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-04-17 09:09:34 ----A---- C:\WINDOWS\system32\omadmapi.dll
2016-04-17 09:09:34 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-04-17 09:09:34 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2016-04-17 09:09:33 ----A---- C:\WINDOWS\SYSWOW64\srvcli.dll
2016-04-17 09:09:33 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2016-04-17 09:09:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2016-04-17 09:09:32 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2016-04-17 09:09:32 ----A---- C:\WINDOWS\system32\srvcli.dll
2016-04-17 09:09:32 ----A---- C:\WINDOWS\system32\netapi32.dll
2016-04-17 09:09:31 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-04-17 09:09:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Devices.dll
2016-04-17 09:09:31 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
2016-04-17 09:09:31 ----A---- C:\WINDOWS\SYSWOW64\netapi32.dll
2016-04-17 09:09:31 ----A---- C:\WINDOWS\system32\wkscli.dll
2016-04-17 09:09:30 ----A---- C:\WINDOWS\SYSWOW64\wkscli.dll
2016-04-17 09:09:30 ----A---- C:\WINDOWS\system32\oleacc.dll
2016-04-17 09:09:30 ----A---- C:\WINDOWS\system32\iuilp.dll
2016-04-17 09:09:30 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2016-04-17 09:09:30 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-04-17 09:09:30 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2016-04-17 09:09:30 ----A---- C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-17 09:09:29 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2016-04-17 09:09:29 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.dll
2016-04-17 09:09:29 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-04-17 09:09:29 ----A---- C:\WINDOWS\system32\easinvoker.exe
2016-04-17 09:09:29 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-04-17 09:09:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2016-04-17 09:09:28 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2016-04-17 09:09:28 ----A---- C:\WINDOWS\system32\wsdchngr.dll
2016-04-17 09:09:28 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2016-04-17 09:09:28 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-04-17 09:09:28 ----A---- C:\WINDOWS\system32\DAFWSD.dll
2016-04-17 09:09:27 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2016-04-17 09:09:27 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-17 09:09:27 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-04-17 09:09:27 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2016-04-17 09:09:27 ----A---- C:\WINDOWS\system32\credprovhost.dll
2016-04-17 09:09:25 ----A---- C:\WINDOWS\system32\easwrt.dll
2016-04-17 09:09:24 ----A---- C:\WINDOWS\SYSWOW64\wsdchngr.dll
2016-04-17 09:09:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-17 09:09:24 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-04-17 09:09:24 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-04-17 09:09:24 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2016-04-17 09:09:24 ----A---- C:\WINDOWS\system32\dmcsps.dll
2016-04-17 09:09:24 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-04-17 09:09:23 ----A---- C:\WINDOWS\SYSWOW64\NotificationObjFactory.dll
2016-04-17 09:09:23 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2016-04-17 09:09:23 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll
2016-04-17 09:09:23 ----A---- C:\WINDOWS\system32\WSDApi.dll
2016-04-17 09:09:22 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2016-04-17 09:09:22 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2016-04-17 09:09:22 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-17 09:09:21 ----A---- C:\WINDOWS\SYSWOW64\browcli.dll
2016-04-17 09:09:21 ----A---- C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-04-17 09:09:21 ----A---- C:\WINDOWS\system32\fvewiz.dll
2016-04-17 09:09:21 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-04-17 09:09:21 ----A---- C:\WINDOWS\system32\browser.dll
2016-04-17 09:09:21 ----A---- C:\WINDOWS\system32\browcli.dll
2016-04-17 09:09:21 ----A---- C:\WINDOWS\system32\basesrv.dll
2016-04-17 09:09:21 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-04-17 09:09:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2016-04-17 09:09:20 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-04-17 09:09:20 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-04-17 09:09:20 ----A---- C:\WINDOWS\system32\fvecpl.dll
2016-04-17 09:09:19 ----A---- C:\WINDOWS\SYSWOW64\easwrt.dll
2016-04-17 09:09:19 ----A---- C:\WINDOWS\system32\tbauth.dll
2016-04-17 09:09:19 ----A---- C:\WINDOWS\system32\fveskybackup.dll
2016-04-17 09:09:19 ----A---- C:\WINDOWS\system32\drivers\serial.sys
2016-04-17 09:09:19 ----A---- C:\WINDOWS\system32\drivers\BthLEEnum.sys
2016-04-17 09:09:19 ----A---- C:\WINDOWS\system32\BFE.DLL
2016-04-17 09:09:18 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-04-17 09:09:17 ----A---- C:\WINDOWS\system32\wups.dll
2016-04-17 09:09:17 ----A---- C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-17 09:09:17 ----A---- C:\WINDOWS\system32\samlib.dll
2016-04-17 09:09:16 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerCookies.exe
2016-04-17 09:09:16 ----A---- C:\WINDOWS\SYSWOW64\tbauth.dll
2016-04-17 09:09:16 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2016-04-17 09:09:16 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-04-17 09:09:16 ----A---- C:\WINDOWS\system32\moshost.dll
2016-04-17 09:09:16 ----A---- C:\WINDOWS\system32\FontProvider.dll
2016-04-17 09:09:16 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2016-04-17 09:09:15 ----A---- C:\WINDOWS\system32\mos.dll
2016-04-17 09:09:15 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-04-17 09:09:15 ----A---- C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-04-17 09:09:14 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-04-17 09:09:14 ----A---- C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-04-17 09:09:14 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-04-17 09:09:14 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-04-17 09:09:13 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2016-04-17 09:09:13 ----A---- C:\WINDOWS\SYSWOW64\OnDemandConnRouteHelper.dll
2016-04-17 09:09:13 ----A---- C:\WINDOWS\SYSWOW64\mtxoci.dll
2016-04-17 09:09:13 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-04-17 09:09:13 ----A---- C:\WINDOWS\system32\mtxoci.dll
2016-04-17 09:09:13 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-04-17 09:09:13 ----A---- C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-17 09:09:12 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.V2.dll
2016-04-17 09:09:12 ----A---- C:\WINDOWS\SYSWOW64\oleacchooks.dll
2016-04-17 09:09:12 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-04-17 09:09:12 ----A---- C:\WINDOWS\system32\oleacchooks.dll
2016-04-17 09:09:11 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-04-17 09:09:11 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-04-17 09:09:11 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-04-17 09:09:11 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-04-17 09:09:11 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-04-17 09:09:10 ----A---- C:\WINDOWS\SYSWOW64\MTF.dll
2016-04-17 09:09:10 ----A---- C:\WINDOWS\system32\MTF.dll
2016-04-17 09:09:10 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-04-17 09:09:10 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
======List of files/folders modified in the last 1 month======
2016-04-19 09:17:07 ----D---- C:\WINDOWS\System32
2016-04-19 09:17:07 ----D---- C:\WINDOWS\INF
2016-04-19 09:17:07 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-19 09:16:58 ----D---- C:\WINDOWS\Prefetch
2016-04-19 09:15:03 ----RD---- C:\Program Files
2016-04-19 09:14:17 ----D---- C:\WINDOWS\Temp
2016-04-19 09:13:57 ----D---- C:\ProgramData\ASUS Smart Gesture
2016-04-19 09:13:51 ----D---- C:\Program Files (x86)\Steam
2016-04-19 09:12:32 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-04-19 09:10:35 ----RD---- C:\WINDOWS\PurchaseDialog
2016-04-19 09:10:35 ----D---- C:\WINDOWS\system32\drivers
2016-04-19 09:09:36 ----SHD---- C:\System Volume Information
2016-04-19 09:09:02 ----D---- C:\WINDOWS\system32\sru
2016-04-19 08:44:24 ----HD---- C:\ProgramData
2016-04-19 08:31:46 ----D---- C:\WINDOWS\system32\config
2016-04-19 08:29:45 ----D---- C:\WINDOWS\Microsoft.NET
2016-04-19 08:16:33 ----D---- C:\Windows
2016-04-19 08:15:59 ----D---- C:\WINDOWS\AppReadiness
2016-04-19 08:15:48 ----HD---- C:\Program Files\WindowsApps
2016-04-19 08:11:44 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-04-19 08:09:01 ----D---- C:\WINDOWS\WinSxS
2016-04-19 08:04:37 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-04-19 08:04:37 ----D---- C:\WINDOWS\SysWOW64
2016-04-19 08:04:31 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-04-19 08:04:30 ----D---- C:\WINDOWS\system32\cs-CZ
2016-04-19 08:04:30 ----D---- C:\WINDOWS\system32\Boot
2016-04-19 08:04:30 ----D---- C:\WINDOWS\system32\appraiser
2016-04-19 08:04:16 ----D---- C:\WINDOWS\PolicyDefinitions
2016-04-19 08:04:14 ----D---- C:\WINDOWS\bcastdvr
2016-04-19 08:04:14 ----D---- C:\WINDOWS\AppPatch
2016-04-19 08:04:07 ----D---- C:\WINDOWS\system32\DriverStore
2016-04-18 11:33:08 ----D---- C:\WINDOWS\CbsTemp
2016-04-18 11:28:24 ----D---- C:\WINDOWS\system32\MRT
2016-04-18 11:13:59 ----A---- C:\WINDOWS\system32\MRT.exe
2016-04-18 11:05:45 ----D---- C:\Program Files\Common Files
2016-04-18 11:05:39 ----RSD---- C:\WINDOWS\Fonts
2016-04-18 11:05:34 ----D---- C:\Program Files (x86)\Common Files
2016-04-18 11:04:46 ----RD---- C:\Program Files (x86)
2016-04-18 10:28:44 ----D---- C:\WINDOWS\Tasks
2016-04-18 10:28:44 ----D---- C:\WINDOWS\system32\Tasks
2016-04-18 10:15:38 ----D---- C:\Users\Matty\AppData\Roaming\Seznam.cz
2016-04-18 10:06:34 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-04-18 09:57:36 ----HD---- C:\WINDOWS\system32\GroupPolicy
2016-04-16 14:20:20 ----D---- C:\Program Files (x86)\Dropbox
2016-04-14 01:45:09 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-04-13 19:00:34 ----D---- C:\WINDOWS\system32\catroot2
2016-04-06 20:32:08 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-04-06 10:08:02 ----D---- C:\WINDOWS\system32\NDF
2016-04-06 09:55:46 ----D---- C:\Users\Matty\AppData\Roaming\uTorrent
2016-04-03 17:15:46 ----D---- C:\WINDOWS\Minidump
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-08-09 644968]
R0 IntelHSWPcc;IntelHSWPcc; C:\WINDOWS\System32\drivers\IntelPcc.sys [2013-08-06 74344]
R0 mfehidk;McAfee Inc. mfehidk; C:\WINDOWS\system32\drivers\mfehidk.sys [2015-09-23 841944]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\WINDOWS\system32\drivers\mfewfpk.sys [2015-09-23 244544]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2015-07-13 31560]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 QMUdisk;tencent QMUdisk; \??\C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QMUdisk64.sys [2016-03-02 184536]
R1 SRepairDrv;SRepairDrv; \??\C:\Program Files (x86)\Tencent\QQPCMGR\Plugins\SRepairDrv [2016-04-19 168568]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 plctrl;plctrl; \??\C:\Program Files\ASUS\P4G\plctrl.sys [2013-08-29 14136]
R2 QQSysMonX64;QQSysMonX64; \??\C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQSysMonX64.sys [2016-04-18 127800]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R2 TAOAccelerator;Tencent TAOAccelerator driver.; \??\C:\WINDOWS\system32\Drivers\TAOAccelerator64.sys [2016-04-18 99640]
R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2013-04-17 17152]
R3 AMPPAL;@oem19.inf,%AMPPAL.SVCDESC%;Virtuální adaptér Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-05-21 165344]
R3 ATP;@oem18.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2015-08-23 100776]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-03-29 84992]
R3 HIDSwitch;@oem34.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2015-05-13 19976]
R3 ibtusb;@oem35.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\system32\DRIVERS\ibtusb.sys [2015-07-14 263952]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-12-19 7858088]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-08-21 3591000]
R3 kbfiltr;@oem6.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992]
R3 MEIx64;@oem22.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2013-06-23 64624]
R3 mfeaack;McAfee Inc. mfeaack; C:\WINDOWS\system32\drivers\mfeaack.sys [2015-09-23 415976]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\WINDOWS\system32\drivers\mfeavfk.sys [2015-09-23 351120]
R3 mfefirek;McAfee Inc. mfefirek; C:\WINDOWS\system32\drivers\mfefirek.sys [2015-09-23 497888]
R3 NETwNb64;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\WINDOWS\System32\drivers\Netwbw02.sys [2015-10-30 3485696]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-07-13 11139216]
R3 rt640x64;@oem38.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-07-08 895256]
R3 RTSPER;@oem40.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2015-07-08 759552]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 mfeelamk;McAfee Inc. mfeelamk; C:\WINDOWS\system32\drivers\mfeelamk.sys [2015-09-23 82072]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthA2DP;@wdma_bt.inf,%BthA2DP.SvcDesc%;Bluetooth stereo; C:\WINDOWS\system32\drivers\BthA2DP.sys [2015-10-30 165376]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-03-29 112640]
S3 BthHFAud;@wdma_bt.inf,%DISPLAY_NAME%;Bluetooth handsfree; C:\WINDOWS\system32\DRIVERS\BthHfAud.sys [2015-10-30 36864]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-03-29 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-03-29 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-31 117248]
S3 cfwids;McAfee Inc. cfwids; C:\WINDOWS\system32\drivers\cfwids.sys [2015-09-23 80760]
S3 dg_ssudbus;@oem33.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 FTDIBUS;@oem32.inf,%SvcDesc%;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2016-02-01 110912]
S3 FTSER2K;@oem23.inf,%SvcDesc%;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2016-01-13 95168]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IntcDAud;@oem16.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2013-09-05 449528]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mfeapfk;McAfee Inc. mfeapfk; C:\WINDOWS\system32\drivers\mfeapfk.sys [2014-06-20 181704]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 Revoflt;Revoflt; C:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 31800]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-03-29 181248]
S3 ssudmdm;@oem36.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-09-24 81088]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-01-15 107320]
R2 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files\ASUS\P4G\InsOnSrv.exe [2013-08-29 277120]
R2 Asus WebStorage Windows Service;Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [2012-12-19 72192]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 BrcmSetSecurity;BrcmSetSecurity; C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe [2013-07-26 283296]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-12-19 373160]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-05-11 733696]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2013-06-23 131544]
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management;Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [2013-08-16 157128]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-06-23 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-06-23 366552]
R2 mfemms;McAfee Service Controller; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [2015-10-21 378848]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\windows\system32\mfevtps.exe [2015-09-21 256840]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-07-13 937616]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 OneSyncSvc_4d1f7;Hostitel synchronizace_4d1f7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 QQPCRTP;QQPCMgr RTP Service; C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\QQPCRTP.exe [2016-04-18 297608]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 PimIndexMaintenanceSvc_4d1f7;Data kontaktů_4d1f7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 TAOFrame;TAOFrame; C:\Program Files (x86)\Tencent\QQPCMgr\10.5.15816.217\TAOFrame.exe [2016-04-18 293728]
S2 dbupdate;Dropbox Update Service (dbupdate); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-01-02 143144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-21 154440]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2d700;Hostitel synchronizace_2d700; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_341db;Hostitel synchronizace_341db; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3e2a8;Hostitel synchronizace_3e2a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3edc5;Hostitel synchronizace_3edc5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_48ca4;Hostitel synchronizace_48ca4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_50340;Hostitel synchronizace_50340; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_52840;Hostitel synchronizace_52840; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_60cbf;Hostitel synchronizace_60cbf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_66e03;Hostitel synchronizace_66e03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_68441;Hostitel synchronizace_68441; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 QQRepaircd2;QQRepaircd2; C:\Program Files (x86)\Tencent\QQPCMGR\Plugins\QQRepaircd2 [2016-04-19 136512]
S2 QQRepairFixSVC;QQRepairFixSVC; C:\Program Files (x86)\Tencent\QQPCMGR\Plugins\QQRepairFixSVC [2016-04-19 136512]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-12-19 300968]
S3 dbupdatem;Dropbox Update Service (dbupdatem); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-01-02 143144]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-21 154440]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-05-11 822232]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2d700;Služba zasílání zpráv_2d700; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_341db;Služba zasílání zpráv_341db; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3e2a8;Služba zasílání zpráv_3e2a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_48ca4;Služba zasílání zpráv_48ca4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4d1f7;Služba zasílání zpráv_4d1f7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_50340;Služba zasílání zpráv_50340; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_52840;Služba zasílání zpráv_52840; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_60cbf;Služba zasílání zpráv_60cbf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_66e03;Služba zasílání zpráv_66e03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_68441;Služba zasílání zpráv_68441; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2d700;Data kontaktů_2d700; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_341db;Data kontaktů_341db; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3e2a8;Data kontaktů_3e2a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_48ca4;Data kontaktů_48ca4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_50340;Data kontaktů_50340; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_52840;Data kontaktů_52840; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_60cbf;Data kontaktů_60cbf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_66e03;Data kontaktů_66e03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_68441;Data kontaktů_68441; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2015-09-21 233680]
-----------------EOF-----------------