Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

RSIT log (preventivní)

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
filip.r
Návštěvník
Návštěvník
Příspěvky: 2
Registrován: 25 črc 2016 18:40

RSIT log (preventivní)

#1 Příspěvek od filip.r »

Dobrý den, prosím o kontrolu logu z RSIT. Děkuji.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Filip at 2016-07-25 19:40:02
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 416 GB (44%) free of 954 GB
Total RAM: 8155 MB (55% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:40:06, on 25.7.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18377)
Boot mode: Normal

Running processes:
C:\Windows\SysWOW64\muachost.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Overwolf\Overwolf.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe
C:\Program Files (x86)\Genius\Manticore\MTHid.exe
C:\Program Files (x86)\Skillbrains\lightshot\5.3.0.0\Lightshot.exe
C:\Program Files (x86)\MSI\Fast Boot\FastBoot.exe
C:\Program Files (x86)\MSI\Live Update\Live Update.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\Common Files\Overwolf\0.96.218.0\OverwolfHelper.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Users\Filip\AppData\Roaming\Spotify\SpotifyWebHelper.exe
C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe
C:\Program Files (x86)\Opera\38.0.2220.41\opera_crashreporter.exe
C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe
C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe
C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe
C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe
C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe
C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe
C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe
C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe
C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe
C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe
C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe
C:\Program Files\trend micro\Filip.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Super Charger] C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe
O4 - HKLM\..\Run: [Fast Boot] C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe
O4 - HKLM\..\Run: [Command Center] C:\Program Files (x86)\MSI\Command Center\StartCommandCenter.exe
O4 - HKLM\..\Run: [Lightshot] C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe
O4 - HKLM\..\Run: [Manticore] C:\Program Files (x86)\Genius\Manticore\MThid.exe
O4 - HKLM\..\Run: [MSI Gaming Lan Manager] "C:\MSI\MSI Gaming Lan Manager\MSI_Gaming_Lan_Manager.exe"/mini
O4 - HKLM\..\Run: [Live Update] C:\Program Files (x86)\MSI\Live Update\Live Update.exe /REMINDER
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Filip\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Overwolf] "C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe" -overwolfsilent
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: SteelSeries Engine 3.lnk = C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.8.4
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.8.4
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.8.4
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: cFosSpeed System Service (cFosSpeedS) - cFos Software GmbH - C:\Program Files\cFosSpeed\spd.exe
O23 - Service: Služba Vzdálené plochy Chrome (chromoting) - Google Inc. - C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GalaxyClientService - GOG.com - C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe
O23 - Service: GalaxyCommunication - GOG.com - C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
O23 - Service: GamingApp_Service - Micro-Star Int'l Co., Ltd. - C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe
O23 - Service: GamingHotkey_Service - Micro-Star INT'L CO., LTD. - C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Internet Off Service (InternetOffService) - Unknown owner - C:\Program Files (x86)\InternetOff\IOffSvc.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MSI Command Center Clock Service (MSIClock_CC) - MSI - C:\Program Files (x86)\MSI\Command Center\ClockGen\MSIClockService.exe
O23 - Service: MSI Command Center Comm Service (MSICOMM_CC) - MSI - C:\Program Files (x86)\MSI\Command Center\MSICommService.exe
O23 - Service: MSI Command Center CPU Service (MSICPU_CC) - MSI - C:\Program Files (x86)\MSI\Command Center\CPU\MSICPUService.exe
O23 - Service: MSI Command Center control Service (MSICTL_CC) - MSI - C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe
O23 - Service: MSI Command Center DDR Service (MSIDDR_CC) - MSI - C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe
O23 - Service: MSI Command Center SMBus Service (MSISMB_CC) - MSI - C:\Program Files (x86)\MSI\Command Center\SMBus\MSISMBService.exe
O23 - Service: MSI Command Center SuperIO Service (MSISuperIO_CC) - MSI - C:\Program Files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe
O23 - Service: MSI_Cloud_Service - Micro-Star Int'l Co., Ltd. - C:\Program Files (x86)\MSI\MSI M-Cloud\MSI_Cloud_Service.exe
O23 - Service: MSI_FastBoot - MSI - C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe
O23 - Service: MSI Live Update Service (MSI_LiveUpdate_Service) - Micro-Star INT'L CO., LTD. - C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
O23 - Service: MSI_RAMDisk_Service - Micro-Star Int'l Co., Ltd. - C:\Program Files (x86)\MSI\MSI RAMDisk\MSI_RAMDisk_Service.exe
O23 - Service: MSI_SuperCharger - MSI - C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Overwolf Updater Windows SCM (OverwolfUpdater) - Overwolf LTD - C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) Extreme Tuning Utility Service (XTU3SERVICE) - Intel(R) Corporation - C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe

--
End of file - 15168 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files (x86)\InternetOff\IOffSvc.exe"
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\cFosSpeed\spd.exe" -service
"C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe" --type=daemon --host-config="C:\ProgramData\Google\Chrome Remote Desktop\host.json"
"C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe"
"C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe" --type=host --daemon-pipe=412
"C:\Windows\system32\Dwm.exe"
taskeng.exe {7D9D238B-948D-4DF7-B540-F6DB9E868A9C}
"taskhost.exe"
C:\Windows\SysWOW64\muachost.exe
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe"
"C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe"
"C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe"
"C:\Program Files (x86)\MSI\MSI M-Cloud\MSI_Cloud_Service.exe"
"C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe"
"C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe"
"C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
"C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe" -dataPath="C:\ProgramData\SteelSeries\SteelSeries Engine 3" -dbEnv=production -auto=true
"C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe" -overwolfsilent -silent
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
"C:\Program Files (x86)\MSI\MSI RAMDisk\MSI_RAMDisk_Service.exe"
"C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe"
"C:\Program Files (x86)\Genius\Manticore\MTHid.exe"
"C:\Program Files (x86)\Skillbrains\lightshot\5.3.0.0\Lightshot.exe"
"C:\MSI\MSI Gaming Lan Manager\MSI_Gaming_Lan_Manager.exe" /mini
"C:\Program Files (x86)\MSI\Fast Boot\FastBoot.exe"
"C:\Program Files (x86)\MSI\Live Update\Live Update.exe" /REMINDER
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe" -Embedding
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe" -s
WLIDSvcM.exe 3964
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "-474947811-595246668-917510698-19832598-656490494-141260713557081680-96576299
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Common Files\Overwolf\0.96.218.0\OverwolfHelper.exe" "path=C:\Program Files (x86)\Overwolf\0.96.218.0\OWExplorerLauncher.dll
"C:\Program Files (x86)\Common Files\Overwolf\0.96.218.0\OverwolfHelper64.exe" "path=C:\Program Files (x86)\Overwolf\0.96.218.0\x64\OWExplorerLauncher.dll
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files (x86)\Steam\Steam.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" "-cachedir=C:\Users\Filip\AppData\Local\Steam\htmlcache" "-steampid=2184" "-buildid=1468023329" "-steamid=0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --lang=en-US --lang=en-US --log-file="C:\Program Files (x86)\Steam\bin\debug.log" --product-version="Valve Steam Client" --disable-spell-checking --enable-system-flash --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="4580.0.1432849189\1365899770" --font-cache-shared-handle=1228 /prefetch:1
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Users\Filip\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
"C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe" --ran-launcher
"C:\Program Files (x86)\Opera\38.0.2220.41\opera_crashreporter.exe" --ran-launcher --crash-reporter-parent-id=7352
"C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --enable-features=DownloadResumption --primordial-pipe-token=962CA1F9BD8C52646FF2051F963324E0 --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=7752 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --disable-accelerated-video-decode --disable-webrtc-hw-encoding --disable-gpu-compositing --channel="7352.1.2043367047\2144786769" --mojo-platform-channel-handle=1576
"C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --enable-features=DownloadResumption --primordial-pipe-token=C38B7775784E3DAE6A7C40118CBDFDF7 --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=7752 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --disable-accelerated-video-decode --disable-webrtc-hw-encoding --disable-gpu-compositing --channel="7352.2.1084397032\760507572" --mojo-platform-channel-handle=1660
"C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --enable-features=DownloadResumption --primordial-pipe-token=1BE3A3983BDE791393B939EDE619A5FC --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=7752 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --disable-accelerated-video-decode --disable-webrtc-hw-encoding --disable-gpu-compositing --channel="7352.3.239546185\1080797279" --mojo-platform-channel-handle=1864

"C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe" --enable-features=DownloadResumption --type=gpu-process --channel="7352.6.1508336350\1818157405" --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=7752 --disable-direct-composition --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,12,13,25,54,69 --gpu-vendor-id=0x10de --gpu-device-id=0x1401 --gpu-driver-vendor=NVIDIA --gpu-driver-version=10.18.13.6881 --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=7752 --mojo-platform-channel-handle=4572 --ignored=" --type=renderer "
"C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --enable-features=DownloadResumption --primordial-pipe-token=8B2539E5B69EED9553D315605186F63C --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=7752 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --disable-gpu-compositing --channel="7352.12.38903697\972721597" --mojo-platform-channel-handle=3636
"C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --enable-features=DownloadResumption --primordial-pipe-token=0243BD1A34DA957CB1BB0505E65C9D29 --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=7752 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --disable-gpu-compositing --channel="7352.13.1382089230\1342373664" --mojo-platform-channel-handle=3508
"C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe" --type=utility --channel="7352.15.335044185\649302522" --lang=cs --no-sandbox --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=7752 --mojo-platform-channel-handle=3860
"C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe" --type=ppapi --channel="7352.17.388695674\1967445344" --ppapi-flash-args --lang=cs --device-scale-factor=1 --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=7752 --mojo-platform-channel-handle=5932 --ignored=" --type=renderer "
"C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --enable-features=DownloadResumption --primordial-pipe-token=9C0ABC9D40F4BADF351ED9FADB9A585B --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=7752 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --disable-gpu-compositing --channel="7352.20.1477024010\106223815" --mojo-platform-channel-handle=6564
"C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --enable-features=DownloadResumption --primordial-pipe-token=8771D431FEA669FFA6D6370B4B8F91C9 --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=7752 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --disable-gpu-compositing --channel="7352.21.1731629725\607969009" --mojo-platform-channel-handle=5288
"C:\Program Files (x86)\Opera\38.0.2220.41\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --enable-features=DownloadResumption --primordial-pipe-token=99C825182E25F8F75904F1D31F0294B2 --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-pref-default-overrides-support=on --crash-reporter-pid=7752 --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --disable-gpu-compositing --channel="7352.23.373392424\1639565089" --mojo-platform-channel-handle=6448
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe12_ Global\UsGthrCtrlFltPipeMssGthrPipe12 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
"C:\Users\Filip\AppData\Local\Temp\scoped_dir7352_13104\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\update-S-1-5-21-1253371493-4108630368-4045828884-1000.job - C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate
C:\Windows\tasks\update-sys.job - C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate

=========Mozilla firefox=========

ProfilePath - C:\Users\Filip\AppData\Roaming\Mozilla\Firefox\Profiles\i18hh0lk.default

prefs.js - "browser.startup.homepage" - "www.google.cz"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.101.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.101.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-07-20 473152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-07-20 186944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-06-14 2397120]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2016-06-14 1767944]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-04-22 8801024]
"Monitor"=C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-06-10 8810200]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2016-01-15 4177784]
"Spotify Web Helper"=C:\Users\Filip\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2016-07-25 1554032]
"Overwolf"=C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [2016-07-17 247344]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2015-06-15 296216]
"Super Charger"=C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe [2015-05-18 1031120]
"Fast Boot"=C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe [2015-04-22 759120]
"Command Center"=C:\Program Files (x86)\MSI\Command Center\StartCommandCenter.exe [2015-12-31 834512]
"Lightshot"=C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [2014-10-16 226560]
"Manticore"=C:\Program Files (x86)\Genius\Manticore\MThid.exe [2014-01-23 292864]
"MSI Gaming Lan Manager"=C:\MSI\MSI Gaming Lan Manager\MSI_Gaming_Lan_Manager.exe [2016-02-22 1957304]
"Live Update"=C:\Program Files (x86)\MSI\Live Update\Live Update.exe [2016-06-28 11340752]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-06-22 598552]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2016-07-20 5565960]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
SteelSeries Engine 3.lnk - C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\QQPCRTP]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.FPS1"=frapsv64.dll
"msacm.vorbis"=vorbis.acm
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-07-25 19:40:02 ----D---- C:\rsit
2016-07-25 19:40:02 ----D---- C:\Program Files\trend micro
2016-07-21 00:32:57 ----D---- C:\Nová složka
2016-07-20 15:33:14 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2016-07-18 22:27:45 ----A---- C:\Windows\system32\FNTCACHE.DAT
2016-07-18 00:23:08 ----D---- C:\Program Files (x86)\Overwolf
2016-07-18 00:23:01 ----D---- C:\ProgramData\Overwolf
2016-07-14 23:33:30 ----A---- C:\Windows\SYSWOW64\NvCamera32.dll
2016-07-14 23:33:30 ----A---- C:\Windows\system32\NvCamera64.dll
2016-07-14 23:33:07 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2016-07-14 23:32:54 ----A---- C:\Windows\SYSWOW64\vulkaninfo.exe
2016-07-14 23:32:54 ----A---- C:\Windows\SYSWOW64\vulkan-1.dll
2016-07-14 23:32:54 ----A---- C:\Windows\system32\vulkaninfo.exe
2016-07-14 23:32:54 ----A---- C:\Windows\system32\vulkan-1.dll
2016-07-14 23:29:39 ----A---- C:\Windows\system32\nvhdap64.dll
2016-07-14 23:29:38 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2016-07-14 23:29:37 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2016-07-14 23:29:37 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2016-07-14 23:29:37 ----A---- C:\Windows\SYSWOW64\nvptxJitCompiler.dll
2016-07-14 23:29:37 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2016-07-14 23:29:37 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2016-07-14 23:29:37 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2016-07-14 23:29:37 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2016-07-14 23:29:37 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2016-07-14 23:29:37 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2016-07-14 23:29:37 ----A---- C:\Windows\system32\nvumdshimx.dll
2016-07-14 23:29:37 ----A---- C:\Windows\system32\nvptxJitCompiler.dll
2016-07-14 23:29:37 ----A---- C:\Windows\system32\nvopencl.dll
2016-07-14 23:29:37 ----A---- C:\Windows\system32\nvoglv64.dll
2016-07-14 23:29:37 ----A---- C:\Windows\system32\nvoglshim64.dll
2016-07-14 23:29:37 ----A---- C:\Windows\system32\nvinitx.dll
2016-07-14 23:29:37 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2016-07-14 23:29:37 ----A---- C:\Windows\system32\NvIFR64.dll
2016-07-14 23:29:37 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2016-07-14 23:29:36 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2016-07-14 23:29:36 ----A---- C:\Windows\SYSWOW64\nvfatbinaryLoader.dll
2016-07-14 23:29:36 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2016-07-14 23:29:36 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2016-07-14 23:29:36 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2016-07-14 23:29:36 ----A---- C:\Windows\system32\nvfatbinaryLoader.dll
2016-07-14 23:29:36 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2016-07-14 23:29:36 ----A---- C:\Windows\system32\nvdispgenco6436881.dll
2016-07-14 23:29:36 ----A---- C:\Windows\system32\nvdispco6436881.dll
2016-07-14 23:29:36 ----A---- C:\Windows\system32\nvcuvid.dll
2016-07-14 23:29:36 ----A---- C:\Windows\system32\nvcuda.dll
2016-07-14 23:29:32 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2016-07-14 23:29:32 ----A---- C:\Windows\system32\nvcompiler.dll
2016-07-14 19:19:57 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2016-07-14 19:13:20 ----D---- C:\Program Files\Common Files\Adobe
2016-07-14 19:06:38 ----D---- C:\ProgramData\Adobe
2016-07-14 16:00:11 ----SD---- C:\Program Files (x86)\HLSW
2016-07-14 16:00:11 ----D---- C:\Users\Filip\AppData\Roaming\HLSW
2016-07-14 15:49:10 ----A---- C:\Windows\game.ini
2016-07-14 15:42:29 ----SHD---- C:\Windows\ftpcache
2016-07-13 13:53:28 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-07-13 13:53:28 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-07-13 13:53:28 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-07-13 13:53:28 ----A---- C:\Windows\system32\iernonce.dll
2016-07-13 13:53:28 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-07-13 13:53:28 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-07-13 13:53:27 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-07-13 13:53:27 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-07-13 13:53:27 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-07-13 13:53:27 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-07-13 13:53:27 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-07-13 13:53:27 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-07-13 13:53:27 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-07-13 13:53:27 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-07-13 13:53:27 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-07-13 13:53:27 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-07-13 13:53:27 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-07-13 13:53:27 ----A---- C:\Windows\system32\inseng.dll
2016-07-13 13:53:27 ----A---- C:\Windows\system32\ie4uinit.exe
2016-07-13 13:53:26 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-07-13 13:53:26 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-07-13 13:53:26 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-07-13 13:53:26 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-07-13 13:53:26 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-07-13 13:53:26 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-07-13 13:53:26 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-07-13 13:53:26 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-07-13 13:53:26 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-07-13 13:53:26 ----A---- C:\Windows\system32\urlmon.dll
2016-07-13 13:53:26 ----A---- C:\Windows\system32\occache.dll
2016-07-13 13:53:26 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-07-13 13:53:26 ----A---- C:\Windows\system32\msfeeds.dll
2016-07-13 13:53:26 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-07-13 13:53:26 ----A---- C:\Windows\system32\iedkcs32.dll
2016-07-13 13:53:26 ----A---- C:\Windows\system32\dxtrans.dll
2016-07-13 13:53:25 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-07-13 13:53:25 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-07-13 13:53:25 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-07-13 13:53:25 ----A---- C:\Windows\system32\iesetup.dll
2016-07-13 13:53:25 ----A---- C:\Windows\system32\iertutil.dll
2016-07-13 13:53:25 ----A---- C:\Windows\system32\ieapfltr.dll
2016-07-13 13:53:24 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-07-13 13:53:24 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-07-13 13:53:24 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-07-13 13:53:24 ----A---- C:\Windows\system32\vbscript.dll
2016-07-13 13:53:24 ----A---- C:\Windows\system32\ieui.dll
2016-07-13 13:53:24 ----A---- C:\Windows\system32\ieframe.dll
2016-07-13 13:53:24 ----A---- C:\Windows\system32\dxtmsft.dll
2016-07-13 13:53:23 ----A---- C:\Windows\system32\webcheck.dll
2016-07-13 13:53:23 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-07-13 13:53:23 ----A---- C:\Windows\system32\mshtmled.dll
2016-07-13 13:53:23 ----A---- C:\Windows\system32\jscript9diag.dll
2016-07-13 13:53:23 ----A---- C:\Windows\system32\jscript9.dll
2016-07-13 13:53:23 ----A---- C:\Windows\system32\jscript.dll
2016-07-13 13:53:23 ----A---- C:\Windows\system32\ieUnatt.exe
2016-07-13 13:53:22 ----A---- C:\Windows\system32\wininet.dll
2016-07-13 13:53:22 ----A---- C:\Windows\system32\msrating.dll
2016-07-13 13:53:22 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-07-13 13:53:22 ----A---- C:\Windows\system32\mshtml.dll
2016-07-13 13:53:22 ----A---- C:\Windows\system32\jsproxy.dll
2016-07-13 13:52:37 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2016-07-13 13:52:37 ----A---- C:\Windows\SYSWOW64\ntprint.exe
2016-07-13 13:52:37 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2016-07-13 13:52:37 ----A---- C:\Windows\system32\wpnpinst.exe
2016-07-13 13:52:37 ----A---- C:\Windows\system32\win32spl.dll
2016-07-13 13:52:37 ----A---- C:\Windows\system32\ntprint.exe
2016-07-13 13:52:37 ----A---- C:\Windows\system32\ntprint.dll
2016-07-13 13:52:37 ----A---- C:\Windows\system32\localspl.dll
2016-07-13 13:52:37 ----A---- C:\Windows\system32\inetppui.dll
2016-07-13 13:52:37 ----A---- C:\Windows\system32\inetpp.dll
2016-07-13 13:52:36 ----A---- C:\Windows\system32\win32k.sys
2016-07-09 15:52:59 ----D---- C:\Program Files\OpenTTD
2016-07-08 14:37:40 ----D---- C:\Users\Filip\AppData\Roaming\foobar2000
2016-07-08 11:33:56 ----D---- C:\Users\Filip\AppData\Roaming\steelseries-engine-3-client
2016-07-08 11:32:57 ----D---- C:\Windows\Cnxt
2016-07-08 11:32:56 ----D---- C:\ProgramData\Conexant
2016-07-08 11:32:55 ----D---- C:\Program Files\DIFX
2016-07-08 11:31:40 ----D---- C:\ProgramData\SteelSeries
2016-07-08 11:31:32 ----D---- C:\Program Files\SteelSeries
2016-07-07 12:57:23 ----SD---- C:\Windows\SYSWOW64\Microsoft
2016-07-06 19:45:34 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2016-07-06 19:45:32 ----A---- C:\Windows\system32\NvFBC64.dll
2016-07-06 19:45:31 ----A---- C:\Windows\system32\nvdispgenco6436869.dll
2016-07-06 19:45:31 ----A---- C:\Windows\system32\nvdispco6436869.dll
2016-07-06 12:19:02 ----D---- C:\Users\Filip\AppData\Roaming\rarunlocker
2016-07-01 20:25:08 ----D---- C:\Users\Filip\AppData\Roaming\Open Rails
2016-07-01 19:59:40 ----D---- C:\Program Files (x86)\Microsoft Games
2016-06-30 19:48:13 ----D---- C:\Users\Filip\AppData\Roaming\obs-studio
2016-06-30 19:48:03 ----D---- C:\Program Files (x86)\obs-studio
2016-06-30 11:47:55 ----D---- C:\Program Files (x86)\FreeRapid-0.9u4
2016-06-26 10:35:40 ----D---- C:\Program Files (x86)\Rockstar Games
2016-06-26 10:35:31 ----D---- C:\Program Files\Rockstar Games

======List of files/folders modified in the last 1 month======

2016-07-25 19:40:06 ----D---- C:\Windows\Prefetch
2016-07-25 19:40:03 ----D---- C:\Windows\Temp
2016-07-25 19:40:02 ----RD---- C:\Program Files
2016-07-25 19:38:33 ----RD---- C:\Program Files (x86)
2016-07-25 19:06:08 ----D---- C:\Users\Filip\AppData\Roaming\Spotify
2016-07-25 18:20:23 ----D---- C:\Program Files (x86)\Steam
2016-07-25 16:16:27 ----D---- C:\Windows\system32\config
2016-07-25 15:57:58 ----D---- C:\ProgramData\NVIDIA
2016-07-24 20:09:40 ----D---- C:\Users\Filip\AppData\Roaming\vlc
2016-07-24 19:00:14 ----SHD---- C:\System Volume Information
2016-07-24 13:22:46 ----D---- C:\Windows\inf
2016-07-23 19:23:01 ----D---- C:\Users\Filip\AppData\Roaming\uTorrent
2016-07-22 18:02:14 ----D---- C:\Program Files\Mozilla Firefox
2016-07-22 10:43:10 ----D---- C:\Windows
2016-07-22 10:43:08 ----D---- C:\Windows\TAPI
2016-07-22 10:43:08 ----D---- C:\Windows\system32\drivers
2016-07-21 20:15:15 ----D---- C:\Users\Filip\AppData\Roaming\TS3Client
2016-07-21 12:45:02 ----HD---- C:\ProgramData
2016-07-21 12:33:57 ----D---- C:\Users\Filip\AppData\Roaming\Seznam.cz
2016-07-21 12:32:58 ----D---- C:\Windows\system32\Tasks
2016-07-21 12:32:57 ----D---- C:\Windows\Tasks
2016-07-20 15:33:48 ----SHD---- C:\Windows\Installer
2016-07-20 15:33:47 ----SHD---- C:\Config.Msi
2016-07-20 00:42:16 ----D---- C:\ProgramData\Oracle
2016-07-20 00:40:00 ----D---- C:\Program Files (x86)\Java
2016-07-20 00:39:52 ----D---- C:\Windows\SysWOW64
2016-07-20 00:39:44 ----D---- C:\Program Files (x86)\Common Files
2016-07-20 00:39:03 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2016-07-19 20:11:50 ----D---- C:\Users\Filip\AppData\Roaming\Skype
2016-07-19 19:16:10 ----D---- C:\Users\Filip\AppData\Roaming\Audacity
2016-07-18 22:27:45 ----D---- C:\Windows\System32
2016-07-18 16:26:38 ----D---- C:\Users\Filip\AppData\Roaming\DAEMON Tools Lite
2016-07-18 16:26:30 ----D---- C:\Windows\Logs
2016-07-18 16:26:30 ----D---- C:\Windows\debug
2016-07-18 15:36:47 ----D---- C:\Program Files\Image-Line
2016-07-18 15:33:16 ----D---- C:\Windows\twain_32
2016-07-18 15:33:00 ----D---- C:\Program Files\Unity
2016-07-18 15:32:16 ----D---- C:\Users\Filip\AppData\Roaming\DMCache
2016-07-16 16:17:08 ----SD---- C:\Users\Filip\AppData\Roaming\Microsoft
2016-07-16 15:59:31 ----AD---- C:\Program Files (x86)\OMSI 2
2016-07-15 00:29:46 ----D---- C:\Users\Filip\AppData\Roaming\Adobe
2016-07-14 23:33:30 ----D---- C:\Program Files\NVIDIA Corporation
2016-07-14 23:33:28 ----D---- C:\ProgramData\NVIDIA Corporation
2016-07-14 23:33:06 ----D---- C:\Windows\system32\DriverStore
2016-07-14 23:21:57 ----D---- C:\Windows\rescache
2016-07-14 19:16:41 ----D---- C:\ProgramData\Package Cache
2016-07-14 19:13:20 ----D---- C:\Program Files\Common Files
2016-07-14 16:15:46 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2016-07-14 15:56:07 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-07-14 15:50:22 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2016-07-14 13:09:23 ----D---- C:\Windows\Microsoft.NET
2016-07-14 13:07:06 ----RSD---- C:\Windows\assembly
2016-07-14 12:13:26 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-07-14 12:06:44 ----D---- C:\Windows\winsxs
2016-07-14 03:21:42 ----D---- C:\Windows\SYSWOW64\en-US
2016-07-14 03:21:42 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-07-14 03:21:42 ----D---- C:\Windows\system32\cs-CZ
2016-07-14 03:21:42 ----D---- C:\Program Files\Internet Explorer
2016-07-14 03:21:41 ----D---- C:\Windows\system32\en-US
2016-07-14 03:21:41 ----D---- C:\Windows\AppPatch
2016-07-14 03:21:41 ----D---- C:\Program Files (x86)\Internet Explorer
2016-07-14 03:17:07 ----D---- C:\Windows\system32\MRT
2016-07-14 03:08:42 ----A---- C:\Windows\system32\MRT.exe
2016-07-14 03:08:19 ----D---- C:\Windows\system32\catroot2
2016-07-14 02:45:10 ----D---- C:\Users\Filip\AppData\Roaming\discord
2016-07-13 12:26:13 ----D---- C:\Program Files (x86)\Google
2016-07-11 04:13:48 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2016-07-11 04:13:48 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2016-07-11 04:13:48 ----A---- C:\Windows\system32\nvwgf2umx.dll
2016-07-11 04:13:48 ----A---- C:\Windows\system32\nvd3dumx.dll
2016-07-11 04:13:48 ----A---- C:\Windows\system32\nvapi64.dll
2016-07-11 01:17:28 ----A---- C:\Windows\system32\nvsvc64.dll
2016-07-11 01:17:28 ----A---- C:\Windows\system32\nvcpl.dll
2016-07-11 01:17:27 ----A---- C:\Windows\system32\nvvsvc.exe
2016-07-11 01:17:27 ----A---- C:\Windows\system32\nvsvcr.dll
2016-07-11 01:17:27 ----A---- C:\Windows\system32\nvshext.dll
2016-07-11 01:17:27 ----A---- C:\Windows\system32\nvmctray.dll
2016-07-11 01:17:27 ----A---- C:\Windows\system32\nv3dappshextr.dll
2016-07-11 01:17:27 ----A---- C:\Windows\system32\nv3dappshext.dll
2016-07-11 01:02:27 ----D---- C:\Users\Filip\AppData\Roaming\.minecraft
2016-07-11 00:50:06 ----D---- C:\Program Files (x86)\Minecraft
2016-07-09 01:46:34 ----D---- C:\Windows\system32\catroot
2016-07-07 13:28:26 ----D---- C:\ProgramData\AVAST Software
2016-07-07 12:49:40 ----D---- C:\Program Files (x86)\Opera
2016-07-06 19:48:15 ----D---- C:\Program Files (x86)\VulkanRT
2016-07-06 18:13:02 ----D---- C:\Users\Filip\AppData\Roaming\Mozilla
2016-07-06 11:28:38 ----D---- C:\Program Files (x86)\MSI
2016-07-06 11:28:38 ----D---- C:\MSI
2016-07-05 15:21:31 ----D---- C:\ProgramData\Skype
2016-07-03 14:12:01 ----D---- C:\Program Files\Microsoft Games
2016-07-02 10:24:20 ----RSD---- C:\Windows\Fonts
2016-07-01 17:32:10 ----D---- C:\Windows\SYSWOW64\LiveUpdate
2016-06-30 19:41:20 ----D---- C:\Users\Filip\AppData\Roaming\OBS
2016-06-28 17:06:03 ----A---- C:\Windows\SYSWOW64\ReleaseNote.txt
2016-06-28 07:20:56 ----A---- C:\Windows\system32\PerfStringBackup.INI

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2016-03-03 381608]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 cFosSpeed;cFosSpeed for faster Internet connections (NDIS 6); C:\Windows\system32\DRIVERS\cfosspeed6.sys [2015-09-28 2004904]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R2 iocbios2;iocbios2; \??\C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [2015-05-28 30224]
R2 RAMDriv;MSI RAMDrive; C:\Windows\system32\DRIVERS\ramdriv.sys [2012-12-27 81912]
R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtlitescsibus.sys [2016-02-09 30264]
R3 dtliteusbbus;DAEMON Tools Lite Virtual USB Bus; C:\Windows\system32\DRIVERS\dtliteusbbus.sys [2016-02-09 47672]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2015-11-12 34720]
R3 hidkmdf;Filter Driver Service for HID-KMDF Interface layer; C:\Windows\system32\DRIVERS\hidkmdf.sys [2016-06-15 25656]
R3 I2cHkBurn;I2cHkBurn; C:\Windows\system32\drivers\I2cHkBurn.sys [2015-07-27 41760]
R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT); C:\Windows\system32\DRIVERS\ICCWDT.sys [2015-06-01 39736]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2016-04-22 4994304]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2015-06-26 403752]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2015-06-30 814376]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2015-10-08 180480]
R3 NTIOLib_1_0_3;NTIOLib_1_0_3; \??\C:\Program Files (x86)\MSI\Super Charger\NTIOLib_X64.sys [2012-10-25 13368]
R3 NTIOLib_FastBoot;NTIOLib_FastBoot; \??\C:\Program Files (x86)\MSI\Fast Boot\NTIOLib_X64.sys [2012-10-26 13368]
R3 NTIOLib_MSIDDR_CC;NTIOLib_MSIDDR_CC; \??\C:\Program Files (x86)\MSI\Command Center\DDR\NTIOLib_X64.sys [2012-11-26 13368]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2016-07-12 214592]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-06-14 26560]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2016-04-14 56384]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2015-10-15 1026304]
R3 ssdevfactory;SteelSeries Device Factory Service; C:\Windows\system32\DRIVERS\ssdevfactory.sys [2016-06-15 40576]
R3 sshid;SteelSeries HID Service; C:\Windows\system32\DRIVERS\sshid.sys [2016-06-15 51400]
S1 QMUdisk;tencent QMUdisk; \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.3.17201.218\QMUdisk64.sys []
S1 softaal;softaal; \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.3.17201.218\softaal64.sys []
S1 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys []
S2 tsnethlpx64;TsNetHlpX64.sys; \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.3.17201.218\TsNetHlpX64.sys []
S3 NTIOLib_1_0_C;NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 pmxdrv;pmxdrv; \??\C:\Windows\system32\drivers\pmxdrv.sys [2016-02-27 31152]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2015-06-11 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TSSKX64;TSSKX64; C:\Windows\System32\drivers\tsskx64.sys [2016-04-01 45368]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 vmulti;VMulti HID; C:\Windows\system32\DRIVERS\vmulti.sys [2013-04-28 11280]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 cFosSpeedS;cFosSpeed System Service; C:\Program Files\cFosSpeed\spd.exe [2015-09-28 726952]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 GamingApp_Service;GamingApp_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe [2015-12-16 37328]
R2 GamingHotkey_Service;GamingHotkey_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe [2015-10-16 2019792]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-06-14 1163712]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [2016-07-20 2554376]
R2 chromoting;Služba Vzdálené plochy Chrome; C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe [2016-06-20 76616]
R2 InternetOffService;Internet Off Service; C:\Program Files (x86)\InternetOff\IOffSvc.exe [2016-05-25 1634072]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2015-10-16 207648]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [2016-07-20 419248]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2015-10-16 415520]
R2 MSI_Cloud_Service;MSI_Cloud_Service; C:\Program Files (x86)\MSI\MSI M-Cloud\MSI_Cloud_Service.exe [2015-06-30 97232]
R2 MSI_FastBoot;MSI_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe [2015-06-04 105296]
R2 MSI_LiveUpdate_Service;MSI Live Update Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2016-06-28 2247120]
R2 MSI_RAMDisk_Service;MSI_RAMDisk_Service; C:\Program Files (x86)\MSI\MSI RAMDisk\MSI_RAMDisk_Service.exe [2015-07-09 69072]
R2 MSI_SuperCharger;MSI_SuperCharger; C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe [2015-05-18 163280]
R2 MSICTL_CC;MSI Command Center control Service; C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe [2016-01-04 2014160]
R2 MSIDDR_CC;MSI Command Center DDR Service; C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe [2016-01-12 2311632]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-06-14 1879488]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-06-14 2521024]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2016-07-11 1364536]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2016-07-14 66872]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2016-02-27 131784]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe [2016-07-11 424384]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2016-01-15 1369464]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2015-06-03 217888]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2016-06-14 3632576]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-07-09 1450064]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-09 154440]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-05-23 324224]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-14 270016]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2016-04-07 1863688]
S3 GalaxyClientService;GalaxyClientService; C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [2016-06-07 245312]
S3 GalaxyCommunication;GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [2016-06-07 6241856]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-09 154440]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-06-10 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2015-05-22 881152]
S3 MSIClock_CC;MSI Command Center Clock Service; C:\Program Files (x86)\MSI\Command Center\ClockGen\MSIClockService.exe [2016-01-04 4172752]
S3 MSICOMM_CC;MSI Command Center Comm Service; C:\Program Files (x86)\MSI\Command Center\MSICommService.exe [2016-01-08 2203600]
S3 MSICPU_CC;MSI Command Center CPU Service; C:\Program Files (x86)\MSI\Command Center\CPU\MSICPUService.exe [2016-01-14 4162000]
S3 MSISMB_CC;MSI Command Center SMBus Service; C:\Program Files (x86)\MSI\Command Center\SMBus\MSISMBService.exe [2015-12-15 2073040]
S3 MSISuperIO_CC;MSI Command Center SuperIO Service; C:\Program Files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe [2015-12-15 596944]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2016-05-15 2120712]
S3 OverwolfUpdater;Overwolf Updater Windows SCM; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2016-07-17 1309936]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 VSStandardCollectorService140;Visual Studio Standard Collector Service; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [2016-03-22 56552]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2016-02-13 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: RSIT log (preventivní)

#2 Příspěvek od Rudy »

Zdravím!
Jak je na tom váš oper. systém s legalitou?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

filip.r
Návštěvník
Návštěvník
Příspěvky: 2
Registrován: 25 črc 2016 18:40

Re: RSIT log (preventivní)

#3 Příspěvek od filip.r »

Mno, sám to určitě víte, takže ne, není koupený.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: RSIT log (preventivní)

#4 Příspěvek od Rudy »

Pak lituji, ale pomoci vám nemůžeme. Viz pravidla: http://forum.viry.cz/viewtopic.php?f=12&t=115512 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět