Dobrý den, zde přikládám RSIT log
Logfile of random's system information tool 1.10 (written by random/random)
Run by Z50 at 2016-09-12 18:35:20
Microsoft Windows 8.1
System drive C: has 359 GB (83%) free of 434 GB
Total RAM: 7099 MB (70% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:35:25, on 12. 9. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\trend micro\Z50.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://lenovo13.msn.com/?pc=LCJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
https://www.google.cz/?gfe_rd=cr&ei=OuG ... gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: 0.0.0.1 mssplus.mcafee.com
O2 - BHO: True Key Helper - {0F4B8786-5502-4803-8EBC-F652A1153BB6} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll
O3 - Toolbar: True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Pokki] "%LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe" /LOGON
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.11.376\SSScheduler.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone:
http://help.eset.com (HKLM)
O15 - ESC Trusted Zone:
http://help.eset.com (HKLM)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) -
http://download.eset.com/special/eos/OnlineScanner.cab
O20 - AppInit_DLLs: C:\PROGRA~2\LENOVO~1\LENOVO~1\bin\SPVC32~1.DLL
O23 - Service: McAfee Application Installer Cleanup (0257061472891469) (0257061472891469mcinstcleanup) - Unknown owner - C:\windows\TEMP\025706~1.EXE (file missing)
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Amazon 1Button App Service - Amazon Inc. - C:\Program Files (x86)\Amazon\Amazon1ButtonApp\Amazon1ButtonService64.Exe
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: BTDevManager - Unknown owner - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe
O23 - Service: CCSDK - Unknown owner - C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe
O23 - Service: @C:\windows\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\windows\system32\CxAudMsg64.exe (file missing)
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\windows\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Service Installer TrueKey (InstallerService) - Unknown owner - C:\Program Files\TrueKey\Mcafee.TrueKey.InstallerService.exe (file missing)
O23 - Service: Intel(R) Biometric and Context Agent Service (IntelBCAsvc) - Intel(R) Corporation - C:\Program Files\Intel\BCA\pabeSvc64.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Lenovo EasyPlus Hotspot - Lenovo - C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe
O23 - Service: Lenovo System Agent Service - LENOVO INCORPORATED. - C:\Program Files\Lenovo\iMController\SystemAgentService.exe
O23 - Service: Lenovo WiFiHotspot Service (LenovoWiFiHotspotSvr) - Unknown owner - C:\Windows\System32\LenovoWiFiHotspotSvr.exe (file missing)
O23 - Service: LUService - Lenovo(beijing) Limited - C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe
O23 - Service: Maxthon Core Update Service (MaxthonUpdateSvc) - Maxthon - C:\Program Files (x86)\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.11.376\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NitroPDFDriverCreatorReadSpool9 (NitroDriverReadSpool9) - Nitro PDF Software - C:\Program Files\Common Files\Nitro\Pro\9.0\NitroPDFDriverService9x64.exe
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\windows\SysWOW64\NLSSRV32.EXE
O23 - Service: Lenovo PhoneCompanionPusher Service (PhoneCompanionPusher) - Lenovo - C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe
O23 - Service: Lenovo PhoneCompanionVap Service (PhoneCompanionVap) - Lenovo - C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\windows\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Intel Security True Key (TrueKey) - McAfee, Inc. - C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe
O23 - Service: Intel Security True Key Scheduler (TrueKeyScheduler) - McAfee, Inc. - C:\Program Files\TrueKey\McTkSchedulerService.exe
O23 - Service: Intel Security True Key Helper Service (TrueKeyServiceHelper) - McAfee, Inc. - C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: VeriFaceSrv - Unknown owner - C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10293 bytes
======Listing Processes======
wininit.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 759904657424
\??\C:\windows\system32\conhost.exe 0x4
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Amazon\Amazon1ButtonApp\Amazon1ButtonService64.Exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe"
C:\windows\system32\CxAudMsg64.exe
"C:\Program Files\Elantech\ETDService.exe"
dashost.exe {83cb3a66-ba04-4f11-9f8f22a1e748c3f5}
"C:\Program Files\Intel\BCA\pabeSvc64.exe"
"C:\Program Files\Lenovo\iMController\SystemAgentService.exe"
C:\Windows\System32\LenovoWiFiHotspotSvr.exe
"C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe"
"C:\Program Files (x86)\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe"
"C:\Program Files\Common Files\Nitro\Pro\9.0\NitroPDFDriverService9x64.exe"
C:\windows\SysWOW64\NLSSRV32.EXE
"C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
C:\windows\SysWOW64\SAsrv.exe
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe"
"C:\Program Files\TrueKey\McTkSchedulerService.exe"
"C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe"
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-cd50fb9b-1fae-4b6a-96dc-1648d06189b1 -SystemEventPortName:HostProcess-0db61aec-638a-417e-bca4-c8eae51874ea -IoCancelEventPortName:HostProcess-1d995cda-1710-4aee-a142-f081e57437d9 -NonStateChangingEventPortName:HostProcess-ad944471-3409-459f-b089-d780b508edd2 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:6c210d46-146f-4198-8cff-e58dfb1a04f5 -DeviceGroupId:WudfDefaultDevicePool
C:\windows\system32\SearchIndexer.exe /Embedding
C:\windows\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe"
atieclxx
taskhost.exe $(Arg0)
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide
taskhostex.exe
C:\windows\Explorer.EXE
C:\PROGRA~1\TrueKey\MCAFEE~2.EXE
"C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDIntelligent.exe"
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Program Files\CONEXANT\ForteConfig\fmapp.exe"
"C:\Windows\RTFTrack.exe"
"C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe" -start
"C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe"
"C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe"
"C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe"
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE"
"C:\Program Files\McAfee Security Scan\3.11.376\SSScheduler.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Z50\AppData\Local\Google\Chrome\User Data\Crashpad" --url=
https://clients2.google.com/cr/report --annotation=channel=-m --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=52.0.2743.116 --handshake-handle=0x124
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3992.0.1304141295\1992856104" --mojo-application-channel-token=2E61A1AECFAAD6FD8E0F04C9B734C3EC --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillEnabled/Default/AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/DisallowFetchForDocWrittenScriptsInMainFrame/Default/EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/BiMonthlyPrompt/SSLCommonNameMismatchHandling/Control/SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_55/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --disable-direct-composition --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,12,13,27,55 --gpu-vendor-id=0x1002 --gpu-device-id=0x130a --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=14.201.1003.1002 --gpu-driver-date=7-17-2014 --gpu-secondary-vendor-ids=0x1002 --gpu-secondary-device-ids=0x6665 --mojo-platform-channel-handle=1088 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi-broker --channel="3992.4.293411492\486904515" --lang=cs --device-scale-factor=1 --mojo-platform-channel-handle=4620 /prefetch:4
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/*AutofillEnabled/Default/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/*PasswordSmartBubble/3-Times/*PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/BiMonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_55/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=A9817E9035AECB94233710D11CD6F9E9 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=A9E070E1FC067F21E58F008BF797315E --mojo-application-channel-token=311709F6218C6952498AB535FEBED043 --channel="3992.10.189897866\1882987876" --mojo-platform-channel-handle=1864 /prefetch:1
"C:\Windows\System32\WWAHost.exe" -ServerName:Windows.Store
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\windows\system32\taskmgr.exe" /4
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/*AutofillEnabled/Default/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/*PasswordSmartBubble/3-Times/*PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/BiMonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_55/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=93596CCD65DBA9BB088B4B7FA6EBE22A --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=1BAD9C41108ED09331B717A7CB9BC5C1 --mojo-application-channel-token=0F4BE5823994B70E2BE5C627548FEA86 --channel="3992.20.970772178\1115944468" --mojo-platform-channel-handle=6792 /prefetch:1
"C:\Users\Z50\Downloads\RSITx64.exe"
C:\windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player PPAPI Notifier.job - C:\windows\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_209_pepper.exe -check pepperplugin
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Z50\AppData\Roaming\Mozilla\Firefox\Profiles\nzgtv19x.default
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.101.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.101.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nitropdf.com/NitroPDF]
"Description"=NitroPDF Web Browser Plugin
"Path"=C:\Program Files (x86)\Nitro\Pro 9\npnitromozilla.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.101.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.101.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_101\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@unity3d.com/UnityPlayer64,version=1.0]
"Description"=Unity Player 4.6.6f2
"Path"=C:\Program Files\Unity\WebPlayer64\loader-x64\npUnity3D64.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_101\bin\ssv.dll [2016-08-15 571456]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-08-15 234560]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0F4B8786-5502-4803-8EBC-F652A1153BB6}]
True Key Helper - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2016-08-26 996080]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-08-09 473152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-08-09 186944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - True Key - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2016-08-26 996080]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2013-09-05 907480]
"ForteConfig"=C:\Program Files\Conexant\ForteConfig\fmapp.exe [2010-10-26 49056]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2012-06-13 1647616]
"BtServer"=C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [2014-01-06 216064]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2014-06-18 3276104]
"RtsFT"=C:\windows\RTFTrack.exe [2014-01-21 6340312]
"OnekeyStudio"=C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [2012-09-15 4196432]
"PhoneCompanion"=C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe [2015-03-17 836592]
"Energy Manager"=C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [2015-03-17 16094704]
"Lenovo Utility"=C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [2015-03-17 10842096]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Pokki"=C:\Users\Z50\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe [2014-10-11 6513480]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-08-05 8894680]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-08-23 2857248]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-07-17 767200]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-06-22 598552]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.11.376\SSScheduler.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~2\LENOVO~1\LENOVO~1\bin\SPVC64~1.DLL"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcapexe]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-09-12 18:35:20 ----D---- C:\rsit
2016-09-12 18:35:20 ----D---- C:\Program Files\trend micro
2016-09-11 20:14:02 ----D---- C:\ProgramData\TrueKey
2016-09-11 17:56:05 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-09-11 15:20:50 ----D---- C:\Users\Z50\AppData\Roaming\library_dir
2016-09-07 17:17:51 ----D---- C:\Program Files\McAfee Security Scan
2016-09-06 15:28:20 ----A---- C:\windows\SYSWOW64\d3dx9_25.dll
2016-09-05 19:44:26 ----D---- C:\Program Files (x86)\Steam
2016-09-02 22:31:31 ----D---- C:\Users\Z50\AppData\Roaming\BANDISOFT
2016-09-02 22:31:11 ----D---- C:\Program Files (x86)\Bandicam
2016-09-02 22:31:10 ----D---- C:\Program Files (x86)\BandiMPEG1
2016-09-02 16:55:16 ----D---- C:\Users\Z50\AppData\Roaming\FileZilla
2016-09-02 16:54:51 ----D---- C:\Program Files\FileZilla FTP Client
2016-09-01 20:00:07 ----D---- C:\ProgramData\Unity
2016-09-01 14:46:14 ----D---- C:\Program Files (x86)\ShellDir
2016-09-01 14:44:01 ----D---- C:\Program Files (x86)\AppInsights
2016-09-01 14:43:45 ----D---- C:\Program Files (x86)\Microsoft Office365 Tools
2016-09-01 14:42:43 ----D---- C:\ProgramData\NuGet
2016-09-01 14:42:43 ----D---- C:\Program Files (x86)\NuGet
2016-09-01 14:42:39 ----D---- C:\Program Files (x86)\Microsoft WCF Data Services
2016-09-01 14:40:45 ----D---- C:\Program Files\Microsoft Visual Studio 12.0
2016-09-01 14:40:43 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 12.0
2016-09-01 14:39:40 ----D---- C:\windows\SYSWOW64\1033
2016-09-01 14:37:07 ----D---- C:\windows\symbols
2016-09-01 14:37:06 ----D---- C:\Program Files (x86)\Microsoft Help Viewer
2016-09-01 14:35:12 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2016-09-01 14:35:11 ----D---- C:\Program Files\Microsoft SQL Server
2016-09-01 14:32:53 ----D---- C:\windows\system32\1033
2016-09-01 14:30:58 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 14.0
2016-09-01 14:29:48 ----D---- C:\Program Files (x86)\Windows Kits
2016-09-01 14:29:45 ----D---- C:\Program Files (x86)\Microsoft SDKs
2016-09-01 14:28:32 ----A---- C:\windows\SYSWOW64\aspnet_counters.dll
2016-09-01 14:28:32 ----A---- C:\windows\system32\aspnet_counters.dll
2016-09-01 14:05:46 ----D---- C:\Program Files (x86)\GtkSharp
2016-09-01 12:09:06 ----D---- C:\Program Files\Common Files\Intel
2016-09-01 12:08:40 ----D---- C:\Program Files\Intel
2016-09-01 12:08:33 ----D---- C:\Program Files\Intel Security
2016-09-01 12:08:20 ----D---- C:\Program Files\Common Files\McAfee
2016-09-01 12:08:20 ----D---- C:\Program Files\Common Files\AV
2016-09-01 12:08:19 ----D---- C:\Program Files (x86)\McAfee
2016-09-01 12:04:17 ----D---- C:\ProgramData\.mono
2016-09-01 11:57:35 ----D---- C:\ProgramData\McAfee Security Scan
2016-09-01 11:57:28 ----D---- C:\Program Files\TrueKey
2016-09-01 11:40:10 ----SHD---- C:\Users\Z50\AppData\Roaming\wyUpdate AU
2016-09-01 11:40:00 ----D---- C:\Program Files (x86)\TDP5
2016-08-29 14:56:41 ----D---- C:\Program Files\OBS
2016-08-29 14:56:31 ----D---- C:\Program Files (x86)\OBS
2016-08-29 14:53:50 ----D---- C:\Users\Z50\AppData\Roaming\Sony
2016-08-29 12:49:35 ----D---- C:\Program Files (x86)\Microsoft XNA
2016-08-29 12:48:50 ----D---- C:\GOG Games
2016-08-28 19:51:33 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-08-28 19:51:33 ----A---- C:\windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-08-28 19:51:32 ----A---- C:\windows\SYSWOW64\ucrtbase.dll
2016-08-28 19:51:32 ----A---- C:\windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-08-28 19:51:32 ----A---- C:\windows\system32\ucrtbase.dll
2016-08-28 19:51:32 ----A---- C:\windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-08-28 19:42:19 ----A---- C:\windows\SYSWOW64\XAudio2_7.dll
2016-08-28 19:42:19 ----A---- C:\windows\SYSWOW64\XAPOFX1_5.dll
2016-08-28 19:42:19 ----A---- C:\windows\system32\XAudio2_7.dll
2016-08-28 19:42:19 ----A---- C:\windows\system32\XAPOFX1_5.dll
2016-08-28 19:42:18 ----A---- C:\windows\SYSWOW64\xactengine3_7.dll
2016-08-28 19:42:18 ----A---- C:\windows\SYSWOW64\D3DCompiler_43.dll
2016-08-28 19:42:18 ----A---- C:\windows\system32\xactengine3_7.dll
2016-08-28 19:42:18 ----A---- C:\windows\system32\D3DCompiler_43.dll
2016-08-28 19:42:17 ----A---- C:\windows\SYSWOW64\d3dcsx_43.dll
2016-08-28 19:42:17 ----A---- C:\windows\system32\d3dcsx_43.dll
2016-08-28 19:42:16 ----A---- C:\windows\SYSWOW64\d3dx11_43.dll
2016-08-28 19:42:16 ----A---- C:\windows\SYSWOW64\d3dx10_43.dll
2016-08-28 19:42:16 ----A---- C:\windows\system32\d3dx11_43.dll
2016-08-28 19:42:16 ----A---- C:\windows\system32\d3dx10_43.dll
2016-08-28 19:42:14 ----A---- C:\windows\SYSWOW64\D3DX9_43.dll
2016-08-28 19:42:14 ----A---- C:\windows\system32\D3DX9_43.dll
2016-08-28 19:42:13 ----A---- C:\windows\SYSWOW64\XAPOFX1_4.dll
2016-08-28 19:42:13 ----A---- C:\windows\system32\XAPOFX1_4.dll
2016-08-28 19:42:12 ----A---- C:\windows\SYSWOW64\XAudio2_6.dll
2016-08-28 19:42:12 ----A---- C:\windows\SYSWOW64\xactengine3_6.dll
2016-08-28 19:42:12 ----A---- C:\windows\system32\XAudio2_6.dll
2016-08-28 19:42:12 ----A---- C:\windows\system32\xactengine3_6.dll
2016-08-28 19:42:11 ----A---- C:\windows\SYSWOW64\X3DAudio1_7.dll
2016-08-28 19:42:11 ----A---- C:\windows\system32\X3DAudio1_7.dll
2016-08-28 19:42:09 ----A---- C:\windows\SYSWOW64\XAudio2_5.dll
2016-08-28 19:42:09 ----A---- C:\windows\system32\XAudio2_5.dll
2016-08-28 19:42:08 ----A---- C:\windows\SYSWOW64\xactengine3_5.dll
2016-08-28 19:42:08 ----A---- C:\windows\system32\xactengine3_5.dll
2016-08-28 19:42:07 ----A---- C:\windows\SYSWOW64\D3DCompiler_42.dll
2016-08-28 19:42:07 ----A---- C:\windows\system32\D3DCompiler_42.dll
2016-08-28 19:42:05 ----A---- C:\windows\SYSWOW64\d3dcsx_42.dll
2016-08-28 19:42:05 ----A---- C:\windows\system32\d3dcsx_42.dll
2016-08-28 19:42:04 ----A---- C:\windows\SYSWOW64\d3dx11_42.dll
2016-08-28 19:42:04 ----A---- C:\windows\system32\d3dx11_42.dll
2016-08-28 19:42:03 ----A---- C:\windows\SYSWOW64\d3dx10_42.dll
2016-08-28 19:42:03 ----A---- C:\windows\system32\d3dx10_42.dll
2016-08-28 19:42:02 ----A---- C:\windows\SYSWOW64\D3DX9_42.dll
2016-08-28 19:42:02 ----A---- C:\windows\system32\D3DX9_42.dll
2016-08-28 19:42:01 ----A---- C:\windows\SYSWOW64\d3dx10_41.dll
2016-08-28 19:42:01 ----A---- C:\windows\SYSWOW64\D3DCompiler_41.dll
2016-08-28 19:42:01 ----A---- C:\windows\system32\d3dx10_41.dll
2016-08-28 19:42:01 ----A---- C:\windows\system32\D3DCompiler_41.dll
2016-08-28 19:41:59 ----A---- C:\windows\SYSWOW64\D3DX9_41.dll
2016-08-28 19:41:59 ----A---- C:\windows\system32\D3DX9_41.dll
2016-08-28 19:41:57 ----A---- C:\windows\SYSWOW64\XAudio2_4.dll
2016-08-28 19:41:57 ----A---- C:\windows\SYSWOW64\XAPOFX1_3.dll
2016-08-28 19:41:57 ----A---- C:\windows\system32\XAudio2_4.dll
2016-08-28 19:41:57 ----A---- C:\windows\system32\XAPOFX1_3.dll
2016-08-28 19:41:56 ----A---- C:\windows\SYSWOW64\xactengine3_4.dll
2016-08-28 19:41:56 ----A---- C:\windows\SYSWOW64\X3DAudio1_6.dll
2016-08-28 19:41:56 ----A---- C:\windows\system32\xactengine3_4.dll
2016-08-28 19:41:56 ----A---- C:\windows\system32\X3DAudio1_6.dll
2016-08-28 19:41:55 ----A---- C:\windows\SYSWOW64\d3dx10_40.dll
2016-08-28 19:41:55 ----A---- C:\windows\SYSWOW64\D3DCompiler_40.dll
2016-08-28 19:41:55 ----A---- C:\windows\system32\d3dx10_40.dll
2016-08-28 19:41:55 ----A---- C:\windows\system32\D3DCompiler_40.dll
2016-08-28 19:41:53 ----A---- C:\windows\SYSWOW64\D3DX9_40.dll
2016-08-28 19:41:53 ----A---- C:\windows\system32\D3DX9_40.dll
2016-08-28 19:41:52 ----A---- C:\windows\SYSWOW64\XAudio2_3.dll
2016-08-28 19:41:52 ----A---- C:\windows\SYSWOW64\XAPOFX1_2.dll
2016-08-28 19:41:52 ----A---- C:\windows\system32\XAudio2_3.dll
2016-08-28 19:41:52 ----A---- C:\windows\system32\XAPOFX1_2.dll
2016-08-28 19:41:50 ----A---- C:\windows\SYSWOW64\xactengine3_3.dll
2016-08-28 19:41:50 ----A---- C:\windows\SYSWOW64\X3DAudio1_5.dll
2016-08-28 19:41:50 ----A---- C:\windows\system32\xactengine3_3.dll
2016-08-28 19:41:50 ----A---- C:\windows\system32\X3DAudio1_5.dll
2016-08-28 19:41:49 ----A---- C:\windows\SYSWOW64\XAudio2_2.dll
2016-08-28 19:41:49 ----A---- C:\windows\SYSWOW64\XAPOFX1_1.dll
2016-08-28 19:41:49 ----A---- C:\windows\system32\XAudio2_2.dll
2016-08-28 19:41:49 ----A---- C:\windows\system32\XAPOFX1_1.dll
2016-08-28 19:41:48 ----A---- C:\windows\SYSWOW64\xactengine3_2.dll
2016-08-28 19:41:48 ----A---- C:\windows\system32\xactengine3_2.dll
2016-08-28 19:41:46 ----A---- C:\windows\SYSWOW64\d3dx10_39.dll
2016-08-28 19:41:46 ----A---- C:\windows\SYSWOW64\D3DCompiler_39.dll
2016-08-28 19:41:46 ----A---- C:\windows\system32\d3dx10_39.dll
2016-08-28 19:41:46 ----A---- C:\windows\system32\D3DCompiler_39.dll
2016-08-28 19:41:44 ----A---- C:\windows\SYSWOW64\D3DX9_39.dll
2016-08-28 19:41:44 ----A---- C:\windows\system32\D3DX9_39.dll
2016-08-28 19:41:42 ----A---- C:\windows\SYSWOW64\XAudio2_1.dll
2016-08-28 19:41:42 ----A---- C:\windows\SYSWOW64\XAPOFX1_0.dll
2016-08-28 19:41:42 ----A---- C:\windows\system32\XAudio2_1.dll
2016-08-28 19:41:42 ----A---- C:\windows\system32\XAPOFX1_0.dll
2016-08-28 19:41:41 ----A---- C:\windows\SYSWOW64\xactengine3_1.dll
2016-08-28 19:41:41 ----A---- C:\windows\system32\xactengine3_1.dll
2016-08-28 19:41:40 ----A---- C:\windows\SYSWOW64\X3DAudio1_4.dll
2016-08-28 19:41:40 ----A---- C:\windows\system32\X3DAudio1_4.dll
2016-08-28 19:41:39 ----A---- C:\windows\SYSWOW64\d3dx10_38.dll
2016-08-28 19:41:39 ----A---- C:\windows\SYSWOW64\D3DCompiler_38.dll
2016-08-28 19:41:39 ----A---- C:\windows\system32\d3dx10_38.dll
2016-08-28 19:41:39 ----A---- C:\windows\system32\D3DCompiler_38.dll
2016-08-28 19:41:37 ----A---- C:\windows\SYSWOW64\D3DX9_38.dll
2016-08-28 19:41:37 ----A---- C:\windows\system32\D3DX9_38.dll
2016-08-28 19:41:35 ----A---- C:\windows\SYSWOW64\XAudio2_0.dll
2016-08-28 19:41:35 ----A---- C:\windows\system32\XAudio2_0.dll
2016-08-28 19:41:34 ----A---- C:\windows\SYSWOW64\xactengine3_0.dll
2016-08-28 19:41:34 ----A---- C:\windows\SYSWOW64\X3DAudio1_3.dll
2016-08-28 19:41:34 ----A---- C:\windows\system32\xactengine3_0.dll
2016-08-28 19:41:34 ----A---- C:\windows\system32\X3DAudio1_3.dll
2016-08-28 19:41:32 ----A---- C:\windows\SYSWOW64\d3dx10_37.dll
2016-08-28 19:41:32 ----A---- C:\windows\SYSWOW64\D3DCompiler_37.dll
2016-08-28 19:41:32 ----A---- C:\windows\system32\d3dx10_37.dll
2016-08-28 19:41:32 ----A---- C:\windows\system32\D3DCompiler_37.dll
2016-08-28 19:41:29 ----A---- C:\windows\SYSWOW64\D3DX9_37.dll
2016-08-28 19:41:29 ----A---- C:\windows\system32\D3DX9_37.dll
2016-08-28 19:41:27 ----A---- C:\windows\SYSWOW64\xactengine2_10.dll
2016-08-28 19:41:27 ----A---- C:\windows\system32\xactengine2_10.dll
2016-08-28 19:41:24 ----A---- C:\windows\SYSWOW64\d3dx10_36.dll
2016-08-28 19:41:24 ----A---- C:\windows\SYSWOW64\D3DCompiler_36.dll
2016-08-28 19:41:24 ----A---- C:\windows\system32\d3dx10_36.dll
2016-08-28 19:41:24 ----A---- C:\windows\system32\D3DCompiler_36.dll
2016-08-28 19:41:21 ----A---- C:\windows\SYSWOW64\d3dx9_36.dll
2016-08-28 19:41:21 ----A---- C:\windows\system32\d3dx9_36.dll
2016-08-28 19:41:18 ----A---- C:\windows\SYSWOW64\xactengine2_9.dll
2016-08-28 19:41:18 ----A---- C:\windows\system32\xactengine2_9.dll
2016-08-28 19:41:17 ----A---- C:\windows\SYSWOW64\d3dx10_35.dll
2016-08-28 19:41:17 ----A---- C:\windows\SYSWOW64\D3DCompiler_35.dll
2016-08-28 19:41:17 ----A---- C:\windows\system32\d3dx10_35.dll
2016-08-28 19:41:17 ----A---- C:\windows\system32\D3DCompiler_35.dll
2016-08-28 19:41:13 ----A---- C:\windows\SYSWOW64\d3dx9_35.dll
2016-08-28 19:41:13 ----A---- C:\windows\system32\d3dx9_35.dll
2016-08-28 19:41:10 ----A---- C:\windows\SYSWOW64\xactengine2_8.dll
2016-08-28 19:41:10 ----A---- C:\windows\SYSWOW64\X3DAudio1_2.dll
2016-08-28 19:41:10 ----A---- C:\windows\system32\xactengine2_8.dll
2016-08-28 19:41:10 ----A---- C:\windows\system32\X3DAudio1_2.dll
2016-08-28 19:41:09 ----A---- C:\windows\SYSWOW64\d3dx10_34.dll
2016-08-28 19:41:09 ----A---- C:\windows\system32\d3dx10_34.dll
2016-08-28 19:41:08 ----A---- C:\windows\SYSWOW64\D3DCompiler_34.dll
2016-08-28 19:41:08 ----A---- C:\windows\system32\D3DCompiler_34.dll
2016-08-28 19:41:07 ----A---- C:\windows\SYSWOW64\d3dx9_34.dll
2016-08-28 19:41:07 ----A---- C:\windows\system32\d3dx9_34.dll
2016-08-28 19:41:05 ----A---- C:\windows\SYSWOW64\xinput1_3.dll
2016-08-28 19:41:05 ----A---- C:\windows\system32\xinput1_3.dll
2016-08-28 19:41:02 ----A---- C:\windows\SYSWOW64\xactengine2_7.dll
2016-08-28 19:41:02 ----A---- C:\windows\system32\xactengine2_7.dll
2016-08-28 19:41:00 ----A---- C:\windows\SYSWOW64\d3dx10_33.dll
2016-08-28 19:41:00 ----A---- C:\windows\SYSWOW64\D3DCompiler_33.dll
2016-08-28 19:41:00 ----A---- C:\windows\system32\d3dx10_33.dll
2016-08-28 19:41:00 ----A---- C:\windows\system32\D3DCompiler_33.dll
2016-08-28 19:40:57 ----A---- C:\windows\SYSWOW64\d3dx9_33.dll
2016-08-28 19:40:57 ----A---- C:\windows\system32\d3dx9_33.dll
2016-08-28 19:40:56 ----A---- C:\windows\SYSWOW64\xactengine2_6.dll
2016-08-28 19:40:56 ----A---- C:\windows\system32\xactengine2_6.dll
2016-08-28 19:40:54 ----A---- C:\windows\SYSWOW64\xactengine2_5.dll
2016-08-28 19:40:54 ----A---- C:\windows\system32\xactengine2_5.dll
2016-08-28 19:40:53 ----A---- C:\windows\SYSWOW64\d3dx10.dll
2016-08-28 19:40:53 ----A---- C:\windows\system32\d3dx10.dll
2016-08-28 19:40:51 ----A---- C:\windows\SYSWOW64\d3dx9_32.dll
2016-08-28 19:40:51 ----A---- C:\windows\system32\d3dx9_32.dll
2016-08-28 19:40:49 ----A---- C:\windows\SYSWOW64\xactengine2_4.dll
2016-08-28 19:40:49 ----A---- C:\windows\SYSWOW64\x3daudio1_1.dll
2016-08-28 19:40:49 ----A---- C:\windows\system32\xactengine2_4.dll
2016-08-28 19:40:49 ----A---- C:\windows\system32\x3daudio1_1.dll
2016-08-28 19:40:48 ----A---- C:\windows\SYSWOW64\d3dx9_31.dll
2016-08-28 19:40:48 ----A---- C:\windows\system32\d3dx9_31.dll
2016-08-28 19:40:47 ----A---- C:\windows\SYSWOW64\xactengine2_3.dll
2016-08-28 19:40:47 ----A---- C:\windows\system32\xactengine2_3.dll
2016-08-28 19:40:46 ----A---- C:\windows\SYSWOW64\xinput1_2.dll
2016-08-28 19:40:46 ----A---- C:\windows\system32\xinput1_2.dll
2016-08-28 19:40:44 ----A---- C:\windows\SYSWOW64\xactengine2_2.dll
2016-08-28 19:40:44 ----A---- C:\windows\system32\xactengine2_2.dll
2016-08-28 19:40:43 ----A---- C:\windows\SYSWOW64\xinput1_1.dll
2016-08-28 19:40:43 ----A---- C:\windows\system32\xinput1_1.dll
2016-08-28 19:40:42 ----A---- C:\windows\SYSWOW64\xactengine2_1.dll
2016-08-28 19:40:42 ----A---- C:\windows\system32\xactengine2_1.dll
2016-08-28 19:40:29 ----A---- C:\windows\SYSWOW64\d3dx9_30.dll
2016-08-28 19:40:29 ----A---- C:\windows\system32\d3dx9_30.dll
2016-08-28 19:40:26 ----A---- C:\windows\SYSWOW64\xactengine2_0.dll
2016-08-28 19:40:26 ----A---- C:\windows\SYSWOW64\x3daudio1_0.dll
2016-08-28 19:40:26 ----A---- C:\windows\system32\xactengine2_0.dll
2016-08-28 19:40:26 ----A---- C:\windows\system32\x3daudio1_0.dll
2016-08-28 19:40:24 ----A---- C:\windows\SYSWOW64\d3dx9_29.dll
2016-08-28 19:40:24 ----A---- C:\windows\system32\d3dx9_29.dll
2016-08-28 19:40:23 ----A---- C:\windows\SYSWOW64\d3dx9_28.dll
2016-08-28 19:40:23 ----A---- C:\windows\system32\d3dx9_28.dll
2016-08-28 19:40:21 ----A---- C:\windows\SYSWOW64\d3dx9_27.dll
2016-08-28 19:40:21 ----A---- C:\windows\system32\d3dx9_27.dll
2016-08-28 19:40:16 ----A---- C:\windows\SYSWOW64\d3dx9_26.dll
2016-08-28 19:40:16 ----A---- C:\windows\system32\d3dx9_26.dll
2016-08-28 19:40:14 ----A---- C:\windows\system32\d3dx9_25.dll
2016-08-28 19:40:13 ----A---- C:\windows\SYSWOW64\d3dx9_24.dll
2016-08-28 19:40:13 ----A---- C:\windows\system32\d3dx9_24.dll
2016-08-28 17:21:16 ----A---- C:\windows\SYSWOW64\EasyAntiCheat.exe
2016-08-27 13:01:55 ----D---- C:\Users\Z50\AppData\Roaming\Opera Software
2016-08-27 13:00:19 ----D---- C:\Program Files (x86)\Opera
2016-08-25 16:01:53 ----D---- C:\ProgramData\Malwarebytes
2016-08-24 21:43:35 ----D---- C:\Program Files\CCleaner
2016-08-22 09:53:13 ----D---- C:\Users\Z50\AppData\Roaming\WinRAR
2016-08-22 09:53:03 ----D---- C:\Program Files\WinRAR
2016-08-21 22:22:51 ----D---- C:\Users\Z50\AppData\Roaming\.technic
2016-08-21 21:29:05 ----D---- C:\Users\Z50\AppData\Roaming\Unity
2016-08-21 20:48:54 ----D---- C:\Users\Z50\AppData\Roaming\.mono
2016-08-21 20:46:54 ----D---- C:\Users\Z50\AppData\Roaming\Mozilla
2016-08-21 20:46:46 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-08-21 20:46:40 ----D---- C:\Program Files (x86)\Mozilla Firefox
2016-08-21 20:42:50 ----D---- C:\Program Files\Unity
2016-08-19 18:27:01 ----D---- C:\ProgramData\PhotoMaster
2016-08-15 14:45:19 ----D---- C:\Fraps
2016-08-15 09:21:06 ----A---- C:\windows\system32\WindowsAccessBridge-64.dll
2016-08-15 09:19:12 ----D---- C:\Program Files\Java
======List of files/folders modified in the last 1 month======
2016-09-12 18:35:20 ----RD---- C:\Program Files
2016-09-12 18:33:15 ----D---- C:\windows\Temp
2016-09-12 18:29:21 ----D---- C:\windows\Prefetch
2016-09-12 18:26:59 ----D---- C:\windows\system32\catroot
2016-09-12 18:26:49 ----D---- C:\windows\system32\catroot2
2016-09-12 18:05:42 ----D---- C:\ProgramData\LU
2016-09-12 18:02:20 ----RAD---- C:\windows\System32
2016-09-12 18:02:20 ----D---- C:\windows\Inf
2016-09-12 18:02:20 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-09-12 18:02:00 ----D---- C:\windows\system32\sru
2016-09-11 20:14:11 ----D---- C:\ProgramData\McAfee
2016-09-11 20:14:02 ----HD---- C:\ProgramData
2016-09-11 20:13:46 ----D---- C:\windows\system32\config
2016-09-11 20:13:35 ----SHD---- C:\windows\Installer
2016-09-11 20:13:22 ----D---- C:\windows\system32\wbem
2016-09-11 20:13:22 ----AD---- C:\Windows
2016-09-11 20:10:39 ----D---- C:\windows\Tasks
2016-09-11 20:10:39 ----D---- C:\windows\system32\it-IT
2016-09-11 20:10:39 ----D---- C:\windows\system32\drivers\etc
2016-09-11 20:08:55 ----SD---- C:\windows\system32\GWX
2016-09-11 20:08:55 ----D---- C:\windows\SysWOW64
2016-09-11 20:08:55 ----D---- C:\windows\system32\Tasks
2016-09-11 20:08:55 ----D---- C:\windows\system32\CodeIntegrity
2016-09-11 20:08:49 ----D---- C:\Users\Z50\AppData\Roaming\.tlauncher
2016-09-11 20:08:48 ----D---- C:\ProgramData\Office2013
2016-09-11 20:08:48 ----D---- C:\ProgramData\install_clap
2016-09-11 20:06:40 ----HD---- C:\Program Files\WindowsApps
2016-09-11 19:58:01 ----D---- C:\windows\registration
2016-09-11 19:57:59 ----D---- C:\windows\WinSxS
2016-09-11 19:52:04 ----D---- C:\windows\system32\drivers
2016-09-11 19:51:42 ----D---- C:\windows\Microsoft.NET
2016-09-11 19:51:35 ----RSD---- C:\windows\assembly
2016-09-11 19:51:27 ----SD---- C:\Users\Z50\AppData\Roaming\Microsoft
2016-09-11 19:51:27 ----D---- C:\Users\Z50\AppData\Roaming\.minecraft
2016-09-11 19:51:11 ----D---- C:\ProgramData\CyberLink
2016-09-11 19:50:50 ----D---- C:\Program Files\Common Files
2016-09-11 19:50:49 ----RD---- C:\Program Files (x86)
2016-09-11 19:50:37 ----D---- C:\Program Files (x86)\Lenovo
2016-09-11 19:50:20 ----D---- C:\Program Files (x86)\Common Files
2016-09-11 19:46:59 ----SHD---- C:\System Volume Information
2016-09-11 19:46:00 ----D---- C:\windows\Logs
2016-09-11 19:41:45 ----D---- C:\windows\SoftwareDistribution
2016-09-10 11:06:27 ----D---- C:\windows\AppReadiness
2016-09-04 20:57:09 ----D---- C:\windows\rescache
2016-09-01 17:08:33 ----D---- C:\windows\SYSWOW64\en-US
2016-09-01 17:08:33 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-09-01 17:08:33 ----D---- C:\windows\system32\en-US
2016-09-01 17:08:33 ----D---- C:\windows\system32\cs-CZ
2016-09-01 17:07:48 ----D---- C:\windows\CbsTemp
2016-09-01 17:07:38 ----A---- C:\windows\SYSWOW64\dpnsvr.exe
2016-09-01 17:07:38 ----A---- C:\windows\SYSWOW64\dpnhupnp.dll
2016-09-01 17:07:38 ----A---- C:\windows\SYSWOW64\dpnhpast.dll
2016-09-01 17:07:38 ----A---- C:\windows\SYSWOW64\dpnet.dll
2016-09-01 17:07:38 ----A---- C:\windows\SYSWOW64\dpnathlp.dll
2016-09-01 17:07:38 ----A---- C:\windows\system32\dpnsvr.exe
2016-09-01 17:07:38 ----A---- C:\windows\system32\dpnhupnp.dll
2016-09-01 17:07:38 ----A---- C:\windows\system32\dpnhpast.dll
2016-09-01 17:07:38 ----A---- C:\windows\system32\dpnet.dll
2016-09-01 17:07:38 ----A---- C:\windows\system32\dpnathlp.dll
2016-09-01 17:07:34 ----A---- C:\windows\SYSWOW64\dpwsockx.dll
2016-09-01 17:07:34 ----A---- C:\windows\SYSWOW64\dpmodemx.dll
2016-09-01 17:07:34 ----A---- C:\windows\SYSWOW64\dplayx.dll
2016-09-01 17:07:34 ----A---- C:\windows\SYSWOW64\dplaysvr.exe
2016-09-01 14:46:16 ----D---- C:\ProgramData\Package Cache
2016-09-01 14:44:32 ----SD---- C:\ProgramData\Microsoft
2016-09-01 14:37:38 ----D---- C:\Program Files (x86)\MSBuild
2016-09-01 14:34:10 ----D---- C:\Program Files (x86)\Microsoft.NET
2016-09-01 14:32:54 ----D---- C:\Program Files\Common Files\microsoft shared
2016-09-01 14:32:37 ----D---- C:\windows\system32\drivers\UMDF
2016-09-01 14:32:36 ----D---- C:\windows\system32\DriverStore
2016-09-01 14:19:10 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2016-08-31 08:16:30 ----D---- C:\ProgramData\Razer
2016-08-31 08:16:26 ----D---- C:\Program Files (x86)\Razer
2016-08-31 08:10:38 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-08-31 08:10:14 ----DC---- C:\windows\system32\DRVSTORE
2016-08-29 19:53:10 ----D---- C:\Program Files\Windows Media Player
2016-08-29 19:53:10 ----D---- C:\Program Files\Windows Mail
2016-08-29 19:53:10 ----D---- C:\Program Files\Internet Explorer
2016-08-29 19:53:10 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2016-08-29 19:53:10 ----D---- C:\Program Files (x86)\Windows Media Player
2016-08-29 19:53:10 ----D---- C:\Program Files (x86)\Windows Mail
2016-08-29 19:53:10 ----D---- C:\Program Files (x86)\Windows Defender
2016-08-29 19:53:10 ----D---- C:\Program Files (x86)\Internet Explorer
2016-08-29 19:53:09 ----D---- C:\windows\WinStore
2016-08-29 19:53:09 ----D---- C:\windows\servicing
2016-08-29 19:53:09 ----D---- C:\Program Files\Windows Photo Viewer
2016-08-29 19:53:09 ----D---- C:\Program Files\Windows Journal
2016-08-29 19:53:09 ----D---- C:\Program Files\Windows Defender
2016-08-29 19:53:09 ----D---- C:\Program Files\Common Files\System
2016-08-29 19:53:02 ----D---- C:\windows\SYSWOW64\winrm
2016-08-29 19:53:02 ----D---- C:\windows\SYSWOW64\oobe
2016-08-29 19:53:02 ----D---- C:\windows\SYSWOW64\it-IT
2016-08-29 19:53:01 ----D---- C:\windows\SYSWOW64\XPSViewer
2016-08-29 19:53:01 ----D---- C:\windows\SYSWOW64\WCN
2016-08-29 19:53:01 ----D---- C:\windows\SYSWOW64\wbem
2016-08-29 19:53:01 ----D---- C:\windows\SYSWOW64\slmgr
2016-08-29 19:53:01 ----D---- C:\windows\SYSWOW64\Printing_Admin_Scripts
2016-08-29 19:53:01 ----D---- C:\windows\SYSWOW64\MUI
2016-08-29 19:53:01 ----D---- C:\windows\SYSWOW64\migration
2016-08-29 19:53:01 ----D---- C:\windows\SYSWOW64\drivers
2016-08-29 19:53:01 ----D---- C:\windows\SYSWOW64\Dism
2016-08-29 19:53:01 ----D---- C:\windows\SYSWOW64\Com
2016-08-29 19:53:01 ----D---- C:\windows\IME
2016-08-29 19:53:00 ----RD---- C:\windows\ImmersiveControlPanel
2016-08-29 19:53:00 ----D---- C:\windows\system32\winrm
2016-08-29 19:53:00 ----D---- C:\windows\system32\migwiz
2016-08-29 19:53:00 ----D---- C:\windows\PolicyDefinitions
2016-08-29 19:53:00 ----AD---- C:\windows\system32\oobe
2016-08-29 19:52:46 ----D---- C:\windows\system32\Sysprep
2016-08-29 19:52:46 ----D---- C:\windows\system32\slmgr
2016-08-29 19:52:46 ----D---- C:\windows\system32\migration
2016-08-29 19:52:46 ----D---- C:\windows\system32\Boot
2016-08-29 19:52:45 ----D---- C:\windows\system32\WCN
2016-08-29 19:52:45 ----D---- C:\windows\system32\MUI
2016-08-29 19:52:45 ----D---- C:\windows\system32\Dism
2016-08-29 19:52:38 ----D---- C:\windows\system32\Printing_Admin_Scripts
2016-08-29 19:52:36 ----SD---- C:\windows\system32\dsc
2016-08-29 19:52:36 ----D---- C:\windows\system32\SystemResetPlatform
2016-08-29 19:52:36 ----D---- C:\windows\system32\Com
2016-08-29 19:52:36 ----D---- C:\windows\apppatch
2016-08-29 19:52:36 ----AD---- C:\windows\Help
2016-08-27 13:25:52 ----D---- C:\windows\system32\Macromed
2016-08-27 13:25:42 ----D---- C:\windows\SYSWOW64\Macromed
2016-08-25 16:29:31 ----D---- C:\windows\system32\wdi
2016-08-24 21:46:59 ----D---- C:\Users\Z50\AppData\Roaming\TS3Client
2016-08-24 21:46:06 ----D---- C:\windows\Panther
2016-08-24 21:46:00 ----D---- C:\windows\debug
2016-08-21 21:47:42 ----SHD---- C:\$RECYCLE.BIN
2016-08-18 09:43:16 ----D---- C:\windows\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\windows\System32\drivers\amd_sata.sys [2014-03-21 81608]
R0 amd_xata;amd_xata; C:\windows\System32\drivers\amd_xata.sys [2014-03-21 23752]
R0 amdkmpfd;@oem1.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\windows\System32\drivers\amdkmpfd.sys [2013-12-13 36608]
R1 eamonm;eamonm; C:\windows\system32\DRIVERS\eamonm.sys [2016-08-24 263296]
R1 ehdrv;ehdrv; C:\windows\system32\DRIVERS\ehdrv.sys [2016-06-28 197288]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\windows\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 AODDriver4.3;AODDriver4.3; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-12 59616]
R2 epfwwfpr;epfwwfpr; C:\windows\system32\DRIVERS\epfwwfpr.sys [2016-06-28 181416]
R3 ACPIVPC;@oem30.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\windows\System32\drivers\AcpiVpc.sys [2015-03-17 35576]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2014-07-17 15951872]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2014-07-17 557056]
R3 AtiHDAudioService;@oem3.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\windows\system32\drivers\AtihdWB6.sys [2014-03-11 222720]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\windows\System32\drivers\BthEnum.sys [2014-10-29 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\windows\System32\drivers\bthpan.sys [2014-07-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\windows\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 CnxtHdAudService;@oem5.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2014-01-27 1474240]
R3 ETD;@oem10.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\windows\system32\DRIVERS\ETD.sys [2014-06-17 403720]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\System32\drivers\rfcomm.sys [2014-03-18 167424]
R3 RtkBtFilter;@oem6.inf,%BtFilt.SvcDesc%;Realtek Bluetooth Filter Driver; C:\windows\system32\DRIVERS\RtkBtfilter.sys [2014-01-14 558296]
R3 RTL8168;@oem11.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\windows\system32\DRIVERS\Rt630x64.sys [2013-12-18 839896]
R3 rtsuvc;@oem18.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\windows\system32\DRIVERS\rtsuvc.sys [2014-01-21 9105624]
R3 RTWlanE;@oem12.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E Network Adapter; C:\windows\system32\DRIVERS\rtwlane.sys [2014-10-07 3593432]
R3 SensorsSimulatorDriver;@oem36.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\windows\system32\DRIVERS\WUDFRd.sys [2014-10-29 226304]
R3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;USB Audio Driver (WDM); C:\windows\system32\drivers\usbaudio.sys [2014-03-18 121088]
R3 usbfilter;AMD USB Filter Driver; C:\windows\system32\DRIVERS\usbfilter.sys [2014-02-16 60640]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\windows\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S0 eelam;eelam; C:\windows\system32\DRIVERS\eelam.sys [2016-06-28 15488]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\windows\System32\Drivers\BTHport.sys [2014-10-29 1198080]
S3 DIRECTIO;DIRECTIO; \??\P:\PE_wdir\Program\new_bit\BurnInTest\DirectIo64.sys []
S3 DIRECTIO37;DIRECTIO37; \??\P:\PE_wdir\Program\new_bit\BurnInTest\DirectIo64.sys []
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\windows\system32\drivers\MBAMSwissArmy.sys []
S3 NETwNe64;@netwew02.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\windows\system32\DRIVERS\NETwew02.sys [2013-06-18 4649440]
S3 RSUSBVSTOR;@oem28.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2014-02-27 331992]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Amazon 1Button App Service;Amazon 1Button App Service; C:\Program Files (x86)\Amazon\Amazon1ButtonApp\Amazon1ButtonService64.Exe [2016-02-17 436032]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2014-07-17 239616]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2014-07-17 344064]
R2 BTDevManager;BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [2014-01-22 84992]
R2 CCSDK;CCSDK; C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe [2014-07-10 592880]
R2 CxAudMsg;@C:\windows\system32\CxAudMsg64.exe,-100; C:\windows\system32\CxAudMsg64.exe [2013-07-25 206552]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2016-08-24 2780160]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2013-10-15 101680]
R2 IntelBCAsvc;Intel(R) Biometric and Context Agent Service; C:\Program Files\Intel\BCA\pabeSvc64.exe [2016-07-28 3036312]
R2 Lenovo System Agent Service;Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [2015-12-14 584664]
R2 LenovoWiFiHotspotSvr;Lenovo WiFiHotspot Service; C:\Windows\System32\LenovoWiFiHotspotSvr.exe [2015-03-17 198192]
R2 LUService;LUService; C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe [2014-02-18 38896]
R2 MaxthonUpdateSvc;Maxthon Core Update Service; C:\Program Files (x86)\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe [2016-05-30 2451880]
R2 NitroDriverReadSpool9;NitroPDFDriverCreatorReadSpool9; C:\Program Files\Common Files\Nitro\Pro\9.0\NitroPDFDriverService9x64.exe [2013-12-13 230920]
R2 nlsX86cc;Nalpeiron Licensing Service; C:\windows\SysWOW64\NLSSRV32.EXE [2013-12-13 69640]
R2 PhoneCompanionPusher;Lenovo PhoneCompanionPusher Service; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe [2015-03-17 288240]
R2 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2012-04-24 390632]
R2 SAService;Conexant SmartAudio service; C:\windows\system32\SAsrv.exe []
R2 TrueKey;Intel Security True Key; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [2016-08-25 922152]
R2 TrueKeyScheduler;Intel Security True Key Scheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [2016-08-25 16248]
R2 VeriFaceSrv;VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe [2015-03-17 68880]
S2 0257061472891469mcinstcleanup;McAfee Application Installer Cleanup (0257061472891469); C:\windows\TEMP\025706~1.EXE -cleanup -nolog []
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-10 154440]
S2 InstallerService;Service Installer TrueKey; C:\Program Files\TrueKey\Mcafee.TrueKey.InstallerService.exe -originalversion 4.4.127.0 []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-09-01 270016]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-09-01 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\windows\System32\svchost.exe [2014-10-29 38792]
S3 EasyAntiCheat;EasyAntiCheat; C:\windows\syswow64\EasyAntiCheat.exe [2016-08-28 245544]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-10 154440]
S3 Lenovo EasyPlus Hotspot;Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [2014-09-23 561408]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.11.376\McCHSvc.exe [2016-07-19 327944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-08-17 146888]
S3 PhoneCompanionVap;Lenovo PhoneCompanionVap Service; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe [2015-03-17 308720]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-08-23 1465120]
S3 TrueKeyServiceHelper;Intel Security True Key Helper Service; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [2016-08-25 86864]
-----------------EOF-----------------