Stránka 1 z 1

Preventivka 1611 (log ve 2)

Napsal: 19 lis 2016 20:33
od Lukiz
Dobrý den, prosím o preventivní kontrolu:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Pavel at 2016-11-19 20:21:21
Microsoft Windows 10 Home
System drive C: has 79 GB (9%) free of 934 GB
Total RAM: 8122 MB (60% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:21:28, on 19.11.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Pavel\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\Pavel\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Users\Pavel\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe
C:\Program Files (x86)\DVDVideoSoft\Free Video Call Recorder for Skype\FreeVideoCallRecorder.exe
C:\Users\Pavel\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Pavel\AppData\Roaming\ICQ\bin\icq.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Pavel.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=HPNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Family Tree Builder Update] C:\Program Files (x86)\MyHeritage\Bin\FTBCheckUpdates.exe
O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Pavel\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\Pavel\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
O4 - HKCU\..\Run: [Lync] "C:\Program Files\Microsoft Office 15\root\office15\lync.exe" /fromrunkey
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Pavel\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Octoshape Streaming Services] "C:\Users\Pavel\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe" -inv:bootrun
O4 - HKCU\..\Run: [icq.desktop] "C:\Users\Pavel\AppData\Roaming\ICQ\bin\icq.exe" /startup
O4 - HKCU\..\Run: [DVSFreeVideoCallRecorder] "C:\Program Files (x86)\DVDVideoSoft\Free Video Call Recorder for Skype\FreeVideoCallRecorder.exe" /minimized
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_23_0_0_205_Plugin.exe -update plugin
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Dropbox.lnk = ?
O8 - Extra context menu item: Clip Image - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=4
O8 - Extra context menu item: Clip selection - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=3
O8 - Extra context menu item: Clip this page - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=1
O8 - Extra context menu item: Clip URL - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Nová poznámka - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\NewNote.html
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} (JuniperSetupClientControl Class) - https://rczp1.kbc-group.com/dana-cached ... Client.cab
O16 - DPF: {FA203BD0-36D6-46FF-92A0-7E90B07EF40C} (TP-LINK IPCamera Control) - http://192.168.200.100/classes/TP-LINKCamV_H264.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{f5eb2cbf-f738-4d26-957e-7a2eb9e0883b}: NameServer = 8.8.8.8
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @oem29.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Digital Wave Update Service (DigitalWave.Update.Service) - Digital Wave Ltd. - C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: @oem32.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - HP Inc. - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Technology Access Software Asset Manager (Intel(R) TA SAM) - Intel Corporation - C:\Program Files (x86)\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe
O23 - Service: Intel(R) Technology Access Legacy CS Loader (Intel(R) TechnologyAccessLegacyCSLoader) - Intel(R) Corporation - C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe
O23 - Service: Intel(R) Technology Access Service (Intel(R) TechnologyAccessService) - Intel(R) Corporation - C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Update Manager (iumsvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: HP SimplePass Service (omniserv) - Softex Inc. - C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe
O23 - Service: Open DHCP Server (OpenDHCPServer) - Unknown owner - C:\programy\OpenDHCPServer\OpenDHCPServer.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Riverbed Technology, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 17544 bytes

Re: Preventivka 1611 (log ve 2)

Napsal: 19 lis 2016 20:34
od Lukiz
======Listing Processes======

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\igfxCUIService.exe
"C:\WINDOWS\system32\nvvsvc.exe"
dashost.exe {6fc1b41e-1906-4a31-b2a0c22fb84cd15c}
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\Hpservice.exe
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPSP
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\system32\WLANExt.exe 2229431264400
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\system32\BtwRSupportService.exe

"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe"
"C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe"
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\programy\OpenDHCPServer\OpenDHCPServer.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 90149937-e33c-4e45-8719-ac6e8f15bd0f 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe"
"C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Users\Pavel\AppData\Local\SweetLabs App Platform\Engine\ServiceHostAppUpdater.exe" /LOGON
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\Explorer.EXE
\??\C:\WINDOWS\system32\conhost.exe 0x4
igfxEM.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
igfxHK.exe
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\iTunes\iTunesHelper.exe"
"C:\Users\Pavel\AppData\Local\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files\iPod\bin\iPodService.exe"
"C:\Users\Pavel\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe" /byrunkey
"C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe"
"C:\Users\Pavel\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe" -inv:bootrun
"C:\Program Files (x86)\DVDVideoSoft\Free Video Call Recorder for Skype\FreeVideoCallRecorder.exe" /minimized
"C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe"
"C:\Users\Pavel\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"fontdrvhost.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\Users\Pavel\AppData\Roaming\ICQ\bin\icq.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\AUDIODG.EXE 0x3f8
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto -critical
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\SystemSettingsBroker.exe -Embedding

"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXmtcan0h2tfbfy7k9kn8hbxb6dmzz1zh0.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
"C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe"
C:\Windows\System32\smartscreen.exe -Embedding
C:\Windows\System32\InstallAgent.exe -Embedding
C:\WINDOWS\system32\compattelrunner.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\CompatTelRunner.exe -m:appraiser.dll -f:DoScheduledTelemetryRun -cv:7CQGS7Sho0Khdu4y.1
C:\Windows\System32\InstallAgentUserBroker.exe -Embedding
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="19320.0.651268472\589529154" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" 19320 "\\.\pipe\gecko-crash-server-pipe.19320" tab
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.350_none_43278ee965418581\TiWorker.exe -Embedding
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe15_ Global\UsGthrCtrlFltPipeMssGthrPipe15 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 652 656 664 8192 660
"C:\Users\Pavel\Downloads\RSITx64.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{AA65DD7C-83AC-48C0-A6FD-9B61FEBF8800}

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-317155663-971383056-1206341253-1001Core1d2374626033ae1.job - C:\Users\Pavel\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-317155663-971383056-1206341253-1001UA1d2374626a1e496.job - C:\Users\Pavel\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-317155663-971383056-1206341253-1001Core.job - C:\Users\Pavel\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-317155663-971383056-1206341253-1001UA.job - C:\Users\Pavel\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\HPCeeScheduleForPavel.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForPavel (null)

=========Mozilla firefox=========

ProfilePath - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\au1qgwt5.default

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.205 Plugin
"Path"=C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_23_0_0_205.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.205 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_205.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.91.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.91.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_91\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll


C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\au1qgwt5.default\extensions\
cs@dictionaries.addons.mozilla.org
en-gb@flyingtophat.co.uk
inspector@mozilla.org
{2d3fbcf7-be69-4433-8858-c621a8d0e58d}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-10-11 229064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll [2016-04-28 553024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-09-27 2351920]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-04-28 214080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-07-21 440712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2016-07-26 163528]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}]
Evernote extension - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-03-04 583520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-09-27 1743664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-21 416320]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-04-22 7573208]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-03-28 2198872]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2014-03-28 1225920]
"SimplePass"=C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe [2014-03-28 3962936]
"OPBHOBroker"=C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [2014-03-28 415288]
"OPBHOBrokerDesktop"=C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [2014-03-28 415288]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2016-03-19 176952]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Pavel\AppData\Local\Google\Update\GoogleUpdate.exe [2015-02-07 107848]
"Dropbox Update"=C:\Users\Pavel\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-05 143144]
"Lync"=C:\Program Files\Microsoft Office 15\root\office15\lync.exe [2016-10-18 24100040]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-10-17 27011712]
"OneDrive"=C:\Users\Pavel\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-09-13 633024]
"Octoshape Streaming Services"=C:\Users\Pavel\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe [2014-08-01 500016]
"icq.desktop"=C:\Users\Pavel\AppData\Roaming\ICQ\bin\icq.exe [2016-11-16 26344584]
"DVSFreeVideoCallRecorder"=C:\Program Files (x86)\DVDVideoSoft\Free Video Call Recorder for Skype\FreeVideoCallRecorder.exe [2016-08-31 1077736]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-08-26 8912088]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_23_0_0_205_Plugin.exe [2016-10-29 1224896]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AccelerometerSysTrayApplet"=C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [2014-02-13 126240]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-10-28 9099440]
"Family Tree Builder Update"=C:\Program Files (x86)\MyHeritage\Bin\FTBCheckUpdates.exe [2016-03-22 14174928]
"HPMessageService"=C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [2015-06-29 653576]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-04-01 596504]

C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Pavel\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\WINDOWS\Jaksta\AC\x64\jaudcap.dll"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
"NoFolderOptions"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
"vidc.XVID"=xvidvfw.dll
"vidc.tscc"=C:\Windows\SysWOW64\tsccvid64.dll
"vidc.tsc2"=C:\Windows\SysWOW64\tsc2_codec64.dll
"vidc.x264"=x264vfw64.dll
"msacm.ac3acm"=AC3ACM.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-11-19 20:21:21 ----D---- C:\rsit
2016-11-19 20:21:21 ----D---- C:\Program Files\trend micro
2016-11-17 23:56:27 ----D---- C:\Program Files (x86)\Mozilla Firefox
2016-11-17 21:33:14 ----HD---- C:\OneDriveTemp
2016-11-08 21:40:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-11-08 21:39:59 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2016-11-08 21:39:59 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-11-08 21:39:58 ----A---- C:\WINDOWS\SYSWOW64\zipfldr.dll
2016-11-08 21:39:58 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-11-08 21:39:58 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2016-11-08 21:39:58 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-11-08 21:39:58 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-11-08 21:39:58 ----A---- C:\WINDOWS\system32\oleaut32.dll
2016-11-08 21:39:58 ----A---- C:\WINDOWS\system32\ole32.dll
2016-11-08 21:39:58 ----A---- C:\WINDOWS\system32\ActionCenterCPL.dll
2016-11-08 21:39:57 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-11-08 21:39:57 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-11-08 21:39:57 ----A---- C:\WINDOWS\SYSWOW64\chartv.dll
2016-11-08 21:39:56 ----A---- C:\WINDOWS\SYSWOW64\weretw.dll
2016-11-08 21:39:56 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-11-08 21:39:56 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-11-08 21:39:56 ----A---- C:\WINDOWS\system32\wer.dll
2016-11-08 21:39:55 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2016-11-08 21:39:55 ----A---- C:\WINDOWS\system32\WpcRefreshTask.dll
2016-11-08 21:39:55 ----A---- C:\WINDOWS\system32\weretw.dll
2016-11-08 21:39:55 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-11-08 21:39:54 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-11-08 21:39:54 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-11-08 21:39:54 ----A---- C:\WINDOWS\system32\ubpm.dll
2016-11-08 21:39:54 ----A---- C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2016-11-08 21:39:54 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2016-11-08 21:39:54 ----A---- C:\WINDOWS\system32\drivers\bowser.sys
2016-11-08 21:39:53 ----A---- C:\WINDOWS\system32\WpcTok.exe
2016-11-08 21:39:53 ----A---- C:\WINDOWS\system32\ddraw.dll
2016-11-08 21:39:52 ----A---- C:\WINDOWS\SYSWOW64\NPSM.dll
2016-11-08 21:39:52 ----A---- C:\WINDOWS\system32\dab.dll
2016-11-08 21:39:51 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-11-08 21:39:51 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-11-08 21:39:51 ----A---- C:\WINDOWS\system32\TSpkg.dll
2016-11-08 21:39:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-11-08 21:39:50 ----A---- C:\WINDOWS\system32\netplwiz.dll
2016-11-08 21:39:50 ----A---- C:\WINDOWS\system32\ActionCenter.dll
2016-11-08 21:39:49 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-11-08 21:39:47 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-11-08 21:39:46 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-11-08 21:39:46 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-11-08 21:39:46 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-11-08 21:39:46 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2016-11-08 21:39:46 ----A---- C:\WINDOWS\system32\chartv.dll
2016-11-08 21:39:45 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2016-11-08 21:39:45 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-11-08 21:39:45 ----A---- C:\WINDOWS\system32\wmp.dll
2016-11-08 21:39:44 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-11-08 21:39:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-11-08 21:39:43 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2016-11-08 21:39:43 ----A---- C:\WINDOWS\SYSWOW64\fontext.dll
2016-11-08 21:39:43 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-11-08 21:39:43 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-11-08 21:39:43 ----A---- C:\WINDOWS\system32\twinapi.dll
2016-11-08 21:39:43 ----A---- C:\WINDOWS\system32\authui.dll
2016-11-08 21:39:42 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-11-08 21:39:42 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2016-11-08 21:39:42 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2016-11-08 21:39:40 ----A---- C:\WINDOWS\SYSWOW64\sud.dll
2016-11-08 21:39:40 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2016-11-08 21:39:40 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2016-11-08 21:39:40 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-11-08 21:39:39 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-11-08 21:39:39 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-11-08 21:39:39 ----A---- C:\WINDOWS\system32\ListSvc.dll
2016-11-08 21:39:38 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2016-11-08 21:39:38 ----A---- C:\WINDOWS\system32\efsext.dll
2016-11-08 21:39:38 ----A---- C:\WINDOWS\system32\comdlg32.dll
2016-11-08 21:39:37 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2016-11-08 21:39:37 ----A---- C:\WINDOWS\system32\rdpcore.dll
2016-11-08 21:39:36 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2016-11-08 21:39:36 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-11-08 21:39:36 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2016-11-08 21:39:35 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-11-08 21:39:35 ----A---- C:\WINDOWS\SYSWOW64\AuthExt.dll
2016-11-08 21:39:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-11-08 21:39:26 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-11-08 21:39:26 ----A---- C:\WINDOWS\system32\stobject.dll
2016-11-08 21:39:26 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-11-08 21:39:26 ----A---- C:\WINDOWS\system32\AudioEng.dll
2016-11-08 21:39:25 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-11-08 21:39:25 ----A---- C:\WINDOWS\system32\zipfldr.dll
2016-11-08 21:39:25 ----A---- C:\WINDOWS\system32\themecpl.dll
2016-11-08 21:39:25 ----A---- C:\WINDOWS\system32\sud.dll
2016-11-08 21:39:25 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-11-08 21:39:25 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-11-08 21:39:24 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2016-11-08 21:39:24 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-11-08 21:39:24 ----A---- C:\WINDOWS\system32\hgcpl.dll
2016-11-08 21:39:24 ----A---- C:\WINDOWS\system32\gameux.dll
2016-11-08 21:39:24 ----A---- C:\WINDOWS\system32\fontext.dll
2016-11-08 21:39:24 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-11-08 21:39:24 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-11-08 21:39:23 ----A---- C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-11-08 21:39:23 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-11-08 21:39:23 ----A---- C:\WINDOWS\explorer.exe
2016-11-08 21:39:22 ----A---- C:\WINDOWS\system32\twinui.dll
2016-11-08 21:39:22 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-11-08 21:39:18 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2016-11-08 21:39:18 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-11-08 21:39:17 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2016-11-08 21:39:17 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-11-08 21:39:16 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-11-08 21:39:16 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2016-11-08 21:39:16 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-11-08 21:39:15 ----A---- C:\WINDOWS\system32\winload.exe
2016-11-08 21:39:15 ----A---- C:\WINDOWS\system32\NetworkDesktopSettings.dll
2016-11-08 21:39:14 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2016-11-08 21:39:14 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-11-08 21:39:14 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-11-08 21:39:13 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-11-08 21:39:13 ----A---- C:\WINDOWS\system32\NPSM.dll
2016-11-08 21:39:13 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-11-08 21:39:13 ----A---- C:\WINDOWS\system32\DeviceCenter.dll
2016-11-08 21:39:11 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-11-08 21:39:10 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2016-11-08 21:39:10 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2016-11-08 21:39:10 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-11-08 21:39:09 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2016-11-08 21:39:09 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-11-08 21:39:08 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2016-11-08 21:39:07 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2016-11-08 21:39:07 ----A---- C:\WINDOWS\SYSWOW64\ActionCenterCPL.dll
2016-11-08 21:39:07 ----A---- C:\WINDOWS\system32\mfsensorgroup.dll
2016-11-08 21:39:06 ----A---- C:\WINDOWS\system32\ntshrui.dll
2016-11-08 21:39:06 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2016-11-08 21:39:06 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2016-11-08 21:39:05 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-11-08 21:39:04 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-11-08 21:39:04 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2016-11-08 21:39:03 ----A---- C:\WINDOWS\system32\shell32.dll
2016-11-08 21:39:02 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-11-08 21:39:01 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-11-08 21:39:01 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-11-08 21:39:01 ----A---- C:\WINDOWS\system32\shdocvw.dll
2016-11-08 21:39:01 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-11-08 21:39:00 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-11-08 21:39:00 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-11-08 21:39:00 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-11-08 21:38:59 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-11-08 21:38:58 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-11-08 21:38:58 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2016-11-08 21:38:58 ----A---- C:\WINDOWS\system32\mshtmled.dll
2016-11-08 21:38:58 ----A---- C:\WINDOWS\system32\FSClient.dll
2016-11-08 21:38:57 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-11-08 21:38:57 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-11-08 21:38:56 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-11-08 21:38:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2016-11-08 21:38:55 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2016-11-08 21:38:54 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-11-08 21:38:54 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-11-08 21:38:54 ----A---- C:\WINDOWS\system32\FrameServer.dll
2016-11-08 21:38:54 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-11-08 21:38:53 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-11-08 21:38:53 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2016-11-08 21:38:52 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-11-08 21:38:51 ----A---- C:\WINDOWS\system32\wininet.dll
2016-11-08 21:38:51 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2016-11-08 21:38:51 ----A---- C:\WINDOWS\system32\inetcomm.dll
2016-11-08 21:38:51 ----A---- C:\WINDOWS\system32\cdp.dll
2016-11-08 21:38:51 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-11-08 21:38:50 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-11-08 21:38:46 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-11-08 21:38:46 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-11-08 21:38:45 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-11-08 21:38:44 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2016-11-08 21:38:44 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2016-11-08 21:38:44 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-11-08 21:38:44 ----A---- C:\WINDOWS\system32\ErrorDetails.dll
2016-11-08 21:38:43 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-11-08 21:38:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2016-11-08 21:38:41 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-11-08 21:38:41 ----A---- C:\WINDOWS\system32\mstsc.exe
2016-11-08 21:38:40 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2016-11-08 21:38:40 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-11-08 21:38:39 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2016-11-08 21:38:39 ----A---- C:\WINDOWS\SYSWOW64\input.dll
2016-11-08 21:38:39 ----A---- C:\WINDOWS\system32\wifitask.exe
2016-11-08 21:38:39 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-11-08 21:38:38 ----A---- C:\WINDOWS\SYSWOW64\UIAnimation.dll
2016-11-08 21:38:36 ----A---- C:\WINDOWS\SYSWOW64\TSpkg.dll
2016-11-08 21:38:36 ----A---- C:\WINDOWS\system32\ErrorDetailsUpdate.dll
2016-11-08 21:38:35 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2016-11-08 21:38:35 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetailsUpdate.dll
2016-11-08 21:38:35 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetails.dll
2016-11-08 21:38:35 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-11-08 21:38:35 ----A---- C:\WINDOWS\system32\iepeers.dll
2016-11-08 21:38:35 ----A---- C:\WINDOWS\system32\GlobCollationHost.dll
2016-11-08 21:38:35 ----A---- C:\WINDOWS\system32\dxtrans.dll
2016-11-08 21:38:35 ----A---- C:\WINDOWS\system32\BcastDVRHelper.dll
2016-11-08 21:38:34 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-11-08 21:38:34 ----A---- C:\WINDOWS\SYSWOW64\GlobCollationHost.dll
2016-11-08 21:38:34 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-11-08 21:38:34 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-11-08 21:38:32 ----A---- C:\WINDOWS\system32\winresume.exe
2016-11-08 21:38:32 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-11-08 21:38:31 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-11-08 21:38:31 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2016-11-08 21:38:31 ----A---- C:\WINDOWS\SYSWOW64\msinfo32.exe
2016-11-08 21:38:31 ----A---- C:\WINDOWS\SYSWOW64\mfsensorgroup.dll
2016-11-08 21:38:31 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-11-08 21:38:31 ----A---- C:\WINDOWS\system32\msinfo32.exe
2016-11-08 21:38:30 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-11-08 21:38:30 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2016-11-08 21:38:30 ----A---- C:\WINDOWS\SYSWOW64\FSClient.dll
2016-11-08 21:38:30 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2016-11-08 21:38:30 ----A---- C:\WINDOWS\system32\msctf.dll
2016-11-08 21:38:29 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-11-08 21:38:28 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-11-08 21:38:28 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-11-08 21:38:28 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-11-08 21:38:28 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-11-08 21:38:28 ----A---- C:\WINDOWS\system32\d3d9.dll
2016-11-08 21:38:27 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-11-08 21:38:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-11-08 21:38:26 ----A---- C:\WINDOWS\system32\gdi32full.dll
2016-11-08 21:38:25 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-11-08 21:38:25 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-11-08 21:38:25 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-11-08 21:38:25 ----A---- C:\WINDOWS\system32\FlightSettings.dll
2016-11-08 21:38:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2016-11-08 21:38:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2016-11-08 21:38:24 ----A---- C:\WINDOWS\SYSWOW64\efsext.dll
2016-11-08 21:38:24 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-11-08 21:38:24 ----A---- C:\WINDOWS\system32\NetworkUXBroker.dll
2016-11-08 21:38:24 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2016-11-08 21:38:23 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2016-11-08 21:38:23 ----A---- C:\WINDOWS\system32\UIAnimation.dll
2016-11-08 21:38:23 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-11-08 21:38:23 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-11-08 21:38:23 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-11-08 21:38:23 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-11-08 21:38:23 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-11-08 21:38:22 ----A---- C:\WINDOWS\system32\win32k.sys
2016-11-08 21:38:22 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-11-08 21:38:22 ----A---- C:\WINDOWS\system32\drivers\iorate.sys
2016-11-08 21:38:21 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-11-08 21:38:21 ----A---- C:\WINDOWS\system32\input.dll
2016-11-08 21:38:20 ----A---- C:\WINDOWS\SYSWOW64\ddraw.dll
2016-11-08 21:38:20 ----A---- C:\WINDOWS\SYSWOW64\d3d8.dll
2016-11-08 21:38:20 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-11-08 21:38:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2016-11-08 21:38:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2016-11-08 21:38:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2016-11-08 21:38:15 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2016-11-08 21:38:15 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-11-01 23:06:06 ----A---- C:\WINDOWS\system32\igdumdim64.dll
2016-11-01 23:06:02 ----A---- C:\WINDOWS\SYSWOW64\iglhsip32.dll
2016-11-01 23:06:02 ----A---- C:\WINDOWS\SYSWOW64\iglhcp32.dll
2016-11-01 23:06:02 ----A---- C:\WINDOWS\SYSWOW64\igfxcmrt32.dll
2016-11-01 23:06:02 ----A---- C:\WINDOWS\SYSWOW64\igfx11cmrt32.dll
2016-11-01 23:06:02 ----A---- C:\WINDOWS\SYSWOW64\igd11dxva32.dll
2016-11-01 23:06:02 ----A---- C:\WINDOWS\system32\iglhsip64.dll
2016-11-01 23:06:02 ----A---- C:\WINDOWS\system32\iglhcp64.dll
2016-11-01 23:06:02 ----A---- C:\WINDOWS\system32\igfxexps.dll
2016-11-01 23:06:02 ----A---- C:\WINDOWS\system32\igfxcmrt64.dll
2016-11-01 23:06:02 ----A---- C:\WINDOWS\system32\igfx11cmrt64.dll
2016-11-01 23:06:02 ----A---- C:\WINDOWS\system32\igd11dxva64.dll
2016-11-01 23:06:00 ----A---- C:\WINDOWS\system32\igdmd64.dll
2016-11-01 23:05:58 ----A---- C:\WINDOWS\SYSWOW64\igdmd32.dll
2016-11-01 23:05:58 ----A---- C:\WINDOWS\SYSWOW64\igdde32.dll
2016-11-01 23:05:58 ----A---- C:\WINDOWS\SYSWOW64\igc32.dll
2016-11-01 23:05:58 ----A---- C:\WINDOWS\system32\igdde64.dll
2016-11-01 23:05:58 ----A---- C:\WINDOWS\system32\igd12umd64.dll
2016-11-01 23:05:58 ----A---- C:\WINDOWS\system32\igc64.dll
2016-11-01 23:05:56 ----A---- C:\WINDOWS\SYSWOW64\igd12umd32.dll
2016-11-01 23:05:56 ----A---- C:\WINDOWS\SYSWOW64\igd10idpp32.dll
2016-11-01 23:05:56 ----A---- C:\WINDOWS\system32\igd10idpp64.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\SYSWOW64\IntelOpenCL32.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\SYSWOW64\IntelCpHeciSvc.exe
2016-11-01 23:05:26 ----A---- C:\WINDOWS\SYSWOW64\Intel_OpenCL_ICD32.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\SYSWOW64\igfxexps32.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\SYSWOW64\igfxcmjit32.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\SYSWOW64\igdrcl32.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\SYSWOW64\igdmcl32.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\IntelWiDiUMS64.exe
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\IntelWiDiMCComp64.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\IntelOpenCL64.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\IntelCpHDCPSvc.exe
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxTray.exe
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxSDKLibv2_0.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxSDKLib.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxSDK.exe
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxOSP.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxLHMLib.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxext.exe
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxEMLibv2_0.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxEMLib.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxDTCM.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxDILibv2_0.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxDILib.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxDHLibv2_0.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxDHLib.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxCUIServicePS.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxCoIn_v4531.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxcmjit64.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igdrcl64.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igdmcl64.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\common_clang64.dll
2016-11-01 23:05:24 ----A---- C:\WINDOWS\SYSWOW64\igdfcl32.dll
2016-11-01 23:05:24 ----A---- C:\WINDOWS\SYSWOW64\igdbcl32.dll
2016-11-01 23:05:24 ----A---- C:\WINDOWS\SYSWOW64\igdail32.dll
2016-11-01 23:05:24 ----A---- C:\WINDOWS\SYSWOW64\ig75icd32.dll
2016-11-01 23:05:24 ----A---- C:\WINDOWS\SYSWOW64\common_clang32.dll
2016-11-01 23:05:24 ----A---- C:\WINDOWS\system32\igdfcl64.dll
2016-11-01 23:05:24 ----A---- C:\WINDOWS\system32\igdbcl64.dll
2016-11-01 23:05:24 ----A---- C:\WINDOWS\system32\igdail64.dll
2016-11-01 23:05:24 ----A---- C:\WINDOWS\system32\ig75icd64.dll
2016-11-01 23:05:24 ----A---- C:\WINDOWS\system32\Gfxv4_0.exe
2016-11-01 23:05:24 ----A---- C:\WINDOWS\system32\Gfxv2_0.exe
2016-11-01 23:05:24 ----A---- C:\WINDOWS\system32\GfxUIEx.exe
2016-11-01 23:05:24 ----A---- C:\WINDOWS\system32\GfxResources.dll
2016-11-01 23:05:24 ----A---- C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2016-11-01 23:05:24 ----A---- C:\WINDOWS\system32\DPTopologyApp.exe
2016-11-01 23:05:24 ----A---- C:\WINDOWS\system32\difx64.exe
2016-10-28 19:40:13 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-10-28 19:40:13 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2016-10-28 19:40:12 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2016-10-28 19:40:12 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-10-28 19:40:09 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-10-28 19:40:08 ----A---- C:\WINDOWS\system32\mfps.dll
2016-10-28 19:40:07 ----A---- C:\WINDOWS\system32\winsrv.dll
2016-10-28 19:40:01 ----A---- C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-10-28 19:39:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.MediaPlayer.dll
2016-10-28 19:39:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-10-28 19:39:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2016-10-28 19:39:58 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2016-10-28 19:39:56 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll
2016-10-28 19:39:56 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-10-28 19:39:56 ----A---- C:\WINDOWS\system32\energy.dll
2016-10-28 19:39:56 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-10-28 19:39:55 ----A---- C:\WINDOWS\system32\usocore.dll
2016-10-28 19:39:55 ----A---- C:\WINDOWS\system32\user32.dll
2016-10-28 19:39:55 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-10-28 19:39:55 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2016-10-28 19:39:54 ----A---- C:\WINDOWS\SYSWOW64\drvstore.dll
2016-10-28 19:39:54 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2016-10-28 19:39:54 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-10-28 19:39:53 ----A---- C:\WINDOWS\SYSWOW64\iscsiwmi.dll
2016-10-28 19:39:52 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-10-28 19:39:52 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-10-28 19:39:48 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-10-28 19:39:48 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-10-28 19:39:48 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-10-28 19:39:47 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-10-28 19:39:37 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2016-10-28 19:39:37 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2016-10-28 19:39:37 ----A---- C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2016-10-28 19:39:37 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-10-28 19:39:36 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-10-28 19:39:36 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-10-28 19:39:36 ----A---- C:\WINDOWS\system32\wpnprv.dll
2016-10-28 19:39:36 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2016-10-28 19:39:35 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2016-10-28 19:39:35 ----A---- C:\WINDOWS\SYSWOW64\DolbyDecMFT.dll
2016-10-28 19:39:35 ----A---- C:\WINDOWS\SYSWOW64\cmifw.dll
2016-10-28 19:39:35 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-10-28 19:39:35 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2016-10-28 19:39:35 ----A---- C:\WINDOWS\system32\drivers\capimg.sys
2016-10-28 19:39:34 ----A---- C:\WINDOWS\system32\taskbarcpl.dll
2016-10-28 19:39:34 ----A---- C:\WINDOWS\system32\powercfg.exe
2016-10-28 19:39:34 ----A---- C:\WINDOWS\system32\fhcpl.dll
2016-10-28 19:39:34 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-10-28 19:39:34 ----A---- C:\WINDOWS\system32\Display.dll
2016-10-28 19:39:34 ----A---- C:\WINDOWS\system32\DevicePairingFolder.dll
2016-10-28 19:39:34 ----A---- C:\WINDOWS\system32\autoplay.dll
2016-10-28 19:39:33 ----A---- C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-10-28 19:39:32 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2016-10-28 19:39:32 ----A---- C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-10-28 19:39:32 ----A---- C:\WINDOWS\system32\qmgr.dll
2016-10-28 19:39:32 ----A---- C:\WINDOWS\system32\mfksproxy.dll
2016-10-28 19:39:31 ----A---- C:\WINDOWS\SYSWOW64\mfksproxy.dll
2016-10-28 19:39:30 ----A---- C:\WINDOWS\SYSWOW64\Geolocation.dll
2016-10-28 19:39:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2016-10-28 19:39:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-10-28 19:39:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2016-10-28 19:39:27 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-10-28 19:39:24 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2016-10-28 19:39:23 ----A---- C:\WINDOWS\system32\mispace.dll
2016-10-28 19:39:23 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-10-28 19:39:23 ----A---- C:\WINDOWS\system32\devinv.dll
2016-10-28 19:39:23 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-10-28 19:39:22 ----A---- C:\WINDOWS\system32\wsp_health.dll
2016-10-28 19:39:22 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2016-10-28 19:39:22 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-10-28 19:39:22 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-10-28 19:39:22 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-10-28 19:39:22 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-10-28 19:39:22 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-10-28 19:39:22 ----A---- C:\WINDOWS\splwow64.exe
2016-10-28 19:39:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2016-10-28 19:39:20 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2016-10-28 19:39:20 ----A---- C:\WINDOWS\system32\wintrust.dll
2016-10-28 19:39:20 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2016-10-28 19:39:20 ----A---- C:\WINDOWS\system32\esent.dll
2016-10-28 19:39:19 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-10-28 19:39:19 ----A---- C:\WINDOWS\system32\invagent.dll
2016-10-28 19:39:19 ----A---- C:\WINDOWS\system32\aepic.dll
2016-10-28 19:39:17 ----A---- C:\WINDOWS\SYSWOW64\wmpeffects.dll
2016-10-28 19:39:17 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-10-28 19:39:17 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-10-28 19:39:17 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-10-28 19:39:17 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-10-28 19:39:17 ----A---- C:\WINDOWS\system32\wmpeffects.dll
2016-10-28 19:39:17 ----A---- C:\WINDOWS\system32\pcasvc.dll
2016-10-28 19:39:17 ----A---- C:\WINDOWS\system32\drvstore.dll
2016-10-28 19:39:17 ----A---- C:\WINDOWS\system32\drivers\crashdmp.sys
2016-10-28 19:39:16 ----A---- C:\WINDOWS\SYSWOW64\wmpdxm.dll
2016-10-28 19:39:16 ----A---- C:\WINDOWS\system32\wmpshell.dll
2016-10-28 19:39:16 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2016-10-28 19:39:16 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2016-10-28 19:39:16 ----A---- C:\WINDOWS\system32\iscsiwmi.dll
2016-10-28 19:39:16 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2016-10-28 19:39:16 ----A---- C:\WINDOWS\system32\cmifw.dll
2016-10-28 19:39:14 ----A---- C:\WINDOWS\SYSWOW64\wmpshell.dll
2016-10-28 19:39:14 ----A---- C:\WINDOWS\SYSWOW64\esentutl.exe
2016-10-28 19:39:14 ----A---- C:\WINDOWS\system32\wups.dll
2016-10-28 19:39:14 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-10-28 19:39:14 ----A---- C:\WINDOWS\system32\esentutl.exe
2016-10-28 19:39:12 ----A---- C:\WINDOWS\system32\ClipUp.exe
2016-10-28 19:39:11 ----A---- C:\WINDOWS\system32\wpncore.dll
2016-10-28 19:39:11 ----A---- C:\WINDOWS\system32\sppsvc.exe
2016-10-28 19:39:11 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-10-28 19:39:10 ----A---- C:\WINDOWS\system32\sppwinob.dll
2016-10-28 19:39:10 ----A---- C:\WINDOWS\system32\SndVolSSO.dll
2016-10-28 19:39:10 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-10-28 19:39:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-10-28 19:39:08 ----A---- C:\WINDOWS\system32\FntCache.dll
2016-10-28 19:39:07 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-10-28 19:39:07 ----A---- C:\WINDOWS\system32\mos.dll
2016-10-28 19:39:07 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2016-10-28 19:39:06 ----A---- C:\WINDOWS\SYSWOW64\WSManHTTPConfig.exe
2016-10-28 19:39:05 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2016-10-28 19:39:05 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-10-28 19:39:03 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-10-28 19:39:02 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-10-28 19:39:02 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-10-28 19:39:02 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2016-10-28 19:39:02 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-10-28 19:39:02 ----A---- C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-10-28 19:39:02 ----A---- C:\WINDOWS\system32\CPFilters.dll
2016-10-28 19:39:01 ----A---- C:\WINDOWS\system32\wc_storage.dll
2016-10-28 19:39:01 ----A---- C:\WINDOWS\system32\daxexec.dll
2016-10-28 19:39:01 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2016-10-28 19:39:01 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2016-10-28 19:39:01 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-10-28 19:39:00 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2016-10-28 19:39:00 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-10-28 19:39:00 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-10-28 19:38:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2016-10-28 19:38:59 ----A---- C:\WINDOWS\system32\winhttp.dll
2016-10-28 19:38:59 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2016-10-28 19:38:59 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-10-28 19:38:59 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-10-28 19:38:59 ----A---- C:\WINDOWS\system32\D3D12.dll
2016-10-28 19:38:59 ----A---- C:\WINDOWS\system32\crypt32.dll
2016-10-28 19:38:59 ----A---- C:\WINDOWS\system32\combase.dll
2016-10-28 19:38:59 ----A---- C:\WINDOWS\system32\BthRadioMedia.dll
2016-10-28 19:38:58 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-10-28 19:38:58 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-10-28 19:38:58 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2016-10-28 19:38:57 ----A---- C:\WINDOWS\SYSWOW64\dtdump.exe
2016-10-28 19:38:57 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-10-28 19:38:57 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-10-28 19:38:57 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-10-28 19:38:53 ----A---- C:\WINDOWS\SYSWOW64\systemcpl.dll
2016-10-28 19:38:53 ----A---- C:\WINDOWS\SYSWOW64\autoplay.dll
2016-10-28 19:38:53 ----A---- C:\WINDOWS\system32\EncDec.dll
2016-10-28 19:38:53 ----A---- C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-10-28 19:38:53 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2016-10-28 19:38:50 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-10-28 19:38:49 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2016-10-28 19:38:49 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-10-28 19:38:49 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-10-28 19:38:48 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-10-28 19:38:47 ----A---- C:\WINDOWS\system32\Geolocation.dll
2016-10-28 19:38:46 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-10-28 19:38:45 ----A---- C:\WINDOWS\system32\winmde.dll
2016-10-28 19:38:45 ----A---- C:\WINDOWS\system32\NotificationController.dll
2016-10-28 19:38:45 ----A---- C:\WINDOWS\system32\DWrite.dll
2016-10-28 19:38:45 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-10-28 19:38:44 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2016-10-28 19:38:43 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2016-10-28 19:38:42 ----A---- C:\WINDOWS\SYSWOW64\SndVolSSO.dll
2016-10-28 19:38:42 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-10-28 19:38:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-10-28 19:38:41 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2016-10-28 19:38:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2016-10-28 19:38:38 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2016-10-28 19:38:36 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-10-28 19:38:35 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2016-10-28 19:38:35 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll
2016-10-28 19:38:35 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-10-28 19:38:35 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-10-28 19:38:35 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2016-10-28 19:38:35 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2016-10-28 19:38:34 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-10-28 19:38:34 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2016-10-28 19:38:34 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-10-28 19:38:33 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2016-10-28 19:38:33 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-10-28 19:38:33 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-10-28 19:38:33 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-10-28 19:38:33 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2016-10-28 19:38:33 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2016-10-28 19:38:33 ----A---- C:\WINDOWS\system32\cdd.dll
2016-10-28 19:38:32 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2016-10-28 19:38:32 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2016-10-28 19:38:30 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2016-10-28 19:38:30 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2016-10-28 19:38:30 ----A---- C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2016-10-28 19:38:29 ----A---- C:\WINDOWS\SYSWOW64\powercfg.exe

======List of files/folders modified in the last 1 month======

2016-11-19 20:21:21 ----RD---- C:\Program Files
2016-11-19 20:21:07 ----D---- C:\WINDOWS\Prefetch
2016-11-19 20:21:05 ----D---- C:\WINDOWS\Temp
2016-11-19 20:19:26 ----D---- C:\WINDOWS\system32\sru
2016-11-19 20:18:25 ----D---- C:\WINDOWS\SoftwareDistribution
2016-11-19 20:18:24 ----D---- C:\Windows
2016-11-19 20:18:22 ----D---- C:\Users\Pavel\AppData\Roaming\Skype
2016-11-19 20:17:21 ----D---- C:\Users\Pavel\AppData\Roaming\TeamViewer
2016-11-19 20:17:14 ----D---- C:\WINDOWS\INF
2016-11-19 20:17:14 ----D---- C:\WINDOWS\debug
2016-11-18 17:06:18 ----D---- C:\WINDOWS\system32\SleepStudy
2016-11-18 16:51:36 ----HD---- C:\Program Files\WindowsApps
2016-11-18 16:50:52 ----D---- C:\WINDOWS\AppReadiness
2016-11-18 08:28:14 ----D---- C:\WINDOWS\System32
2016-11-18 08:28:14 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-11-18 08:25:22 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-11-18 08:25:21 ----RD---- C:\Program Files (x86)
2016-11-17 21:51:06 ----SHDC---- C:\WINDOWS\Installer
2016-11-17 21:51:01 ----RD---- C:\WINDOWS\Microsoft.NET
2016-11-17 21:50:55 ----RD---- C:\WINDOWS\assembly
2016-11-17 21:50:52 ----AD---- C:\ProgramData\regid.1991-06.com.microsoft
2016-11-17 21:50:04 ----AD---- C:\Program Files\Microsoft Office 15
2016-11-17 21:33:33 ----D---- C:\Users\Pavel\AppData\Roaming\ICQ
2016-11-17 21:32:22 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-11-17 17:56:31 ----D---- C:\WINDOWS\system32\config
2016-11-17 17:53:15 ----D---- C:\WINDOWS\WinSxS
2016-11-17 17:47:36 ----D---- C:\WINDOWS\system32\drivers
2016-11-17 17:47:17 ----D---- C:\WINDOWS\system32\DriverStore
2016-11-17 17:46:11 ----D---- C:\WINDOWS\SysWOW64
2016-11-17 17:43:05 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-11-17 17:43:03 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-11-17 17:42:56 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-11-17 17:42:56 ----D---- C:\WINDOWS\system32\oobe
2016-11-17 17:42:56 ----D---- C:\WINDOWS\system32\migwiz
2016-11-17 17:42:56 ----D---- C:\WINDOWS\system32\migration
2016-11-17 17:42:54 ----D---- C:\WINDOWS\system32\cs-CZ
2016-11-17 17:42:54 ----D---- C:\WINDOWS\system32\Boot
2016-11-17 17:42:52 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-11-17 17:42:52 ----D---- C:\WINDOWS\ShellExperiences
2016-11-17 17:42:52 ----D---- C:\WINDOWS\bcastdvr
2016-11-17 17:42:51 ----D---- C:\WINDOWS\AppPatch
2016-11-17 12:26:16 ----D---- C:\Users\Pavel\AppData\Roaming\vlc
2016-11-17 02:11:55 ----D---- C:\WINDOWS\system32\catroot2
2016-11-17 02:11:54 ----SHD---- C:\System Volume Information
2016-11-15 00:11:32 ----D---- C:\Users\Pavel\AppData\Roaming\uTorrent
2016-11-14 20:21:23 ----D---- C:\Users\Pavel\AppData\Roaming\HandBrake
2016-11-14 20:14:52 ----HD---- C:\ProgramData
2016-11-14 19:40:36 ----D---- C:\WINDOWS\Tasks
2016-11-14 19:40:36 ----D---- C:\WINDOWS\system32\Tasks
2016-11-14 19:18:36 ----D---- C:\Users\Pavel\AppData\Roaming\Dropbox
2016-11-10 08:29:59 ----D---- C:\WINDOWS\CbsTemp
2016-11-10 08:24:05 ----D---- C:\WINDOWS\system32\MRT
2016-11-10 08:18:23 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-11-04 21:25:27 ----D---- C:\programy
2016-11-02 08:20:53 ----D---- C:\WINDOWS\system32\CatRoot
2016-11-02 08:20:34 ----A---- C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2016-11-01 23:06:06 ----A---- C:\WINDOWS\SYSWOW64\igdumdim32.dll
2016-11-01 23:06:02 ----A---- C:\WINDOWS\SYSWOW64\igdusc32.dll
2016-11-01 23:06:02 ----A---- C:\WINDOWS\system32\igdusc64.dll
2016-11-01 23:06:00 ----A---- C:\WINDOWS\SYSWOW64\igd10iumd32.dll
2016-11-01 23:05:58 ----A---- C:\WINDOWS\system32\igd10iumd64.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxLHM.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxHK.exe
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxEM.exe
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxDI.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxDH.dll
2016-11-01 23:05:26 ----A---- C:\WINDOWS\system32\igfxCUIService.exe
2016-11-01 21:01:10 ----D---- C:\WINDOWS\rescache
2016-10-30 11:01:46 ----D---- C:\Users\Pavel\AppData\Roaming\MultiBit
2016-10-30 04:12:48 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-10-30 04:12:42 ----D---- C:\WINDOWS\system32\wbem
2016-10-30 04:12:40 ----D---- C:\WINDOWS\system32\en-US
2016-10-30 04:12:39 ----D---- C:\WINDOWS\system32\appraiser
2016-10-30 04:12:34 ----RSD---- C:\WINDOWS\Fonts
2016-10-30 04:12:34 ----D---- C:\Program Files\Windows Media Player
2016-10-30 04:12:34 ----D---- C:\Program Files (x86)\Windows Media Player
2016-10-29 22:12:12 ----D---- C:\Users\Pavel\AppData\Roaming\MultiBitHD
2016-10-29 21:45:44 ----AD---- C:\Program Files\MultiBit HD
2016-10-29 01:42:07 ----D---- C:\WINDOWS\system32\Macromed
2016-10-29 01:42:05 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2016-10-29 00:56:11 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-10-25 22:12:19 ----AD---- C:\Program Files (x86)\TeamViewer
2016-10-21 18:00:47 ----D---- C:\ProgramData\Skype

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-09-09 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-10-13 293352]
R0 hpdskflt;@oem32.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2013-07-23 30520]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-11-08 632168]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2016-09-09 37144]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-09-09 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-09-13 969184]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-09-28 513632]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2013-11-12 91912]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-07-16 88576]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2016-07-16 8192]
R1 ndisrd;@oem24.inf,%ndisrfl_Desc%;Intel(R) Technology Access Filter Driver; C:\WINDOWS\system32\DRIVERS\ndisrfl.sys [2015-07-28 50448]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-09-09 108816]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-09-09 163416]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2016-07-16 48128]
R2 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2013-03-01 36600]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2016-07-16 78336]
R3 Accelerometer;@oem32.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2013-07-23 43320]
R3 bcbtums;@oem29.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2015-10-01 208176]
R3 BCM43XX;@oem27.inf,%BCM43XX_Service_DispName%;Ovladač síťového adaptéru Broadcom 802.11; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [2014-08-07 7532760]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-09-13 114176]
R3 BthLEEnum;@BthLEEnum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-09-15 249856]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-10-05 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-09-13 84992]
R3 clwvd;@oem22.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2014-01-28 41704]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2016-11-01 7966192]
R3 ikbevent;Intel Upper keyboard Class Filter Driver; C:\WINDOWS\system32\DRIVERS\ikbevent.sys [2013-08-13 21408]
R3 imsevent;Intel Upper Mouse Class Filter Driver; C:\WINDOWS\system32\DRIVERS\imsevent.sys [2013-08-13 21920]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2014-04-23 3943384]
R3 IntcDAud;@oem37.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2016-05-12 481768]
R3 ISCT;@oem19.inf,%ISCT.DeviceDesc%;Intel(R) Smart Connect Technology Device Driver; C:\WINDOWS\System32\drivers\ISCTD64.sys [2013-08-13 46568]
R3 jakstaVA;@oem23.inf,%DeviceName%;Digital Video Recorder; C:\WINDOWS\system32\DRIVERS\jaksta_va.sys [2014-12-09 103816]
R3 MEIx64;@oem28.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2013-12-10 100312]
R3 NetTap630;@oem0.inf,%NetTap.Service.DispName%;Intel(R) Technology Access TAP Driver (NDIS 6.30); C:\WINDOWS\system32\DRIVERS\nettap630.sys [2015-07-29 76560]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-07-23 11142984]
R3 nvvad_WaveExtensible;@oem20.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2014-03-28 40392]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-07-16 183808]
R3 RTL8168;@oem49.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\System32\drivers\Rt630x64.sys [2015-02-16 871640]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2016-09-02 71264]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2016-07-16 105824]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2016-07-16 101216]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2016-07-16 58720]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2016-07-16 61792]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-09-09 37656]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2016-07-16 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-10-15 967168]
S3 btwampfl;@oem29.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2015-10-01 223024]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2016-07-16 38912]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-09-10 118272]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2016-07-16 20480]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2016-07-16 50016]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-08-06 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2016-07-16 81408]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2016-07-16 176384]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2016-07-16 526176]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2014-03-01 38296]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2016-07-16 842584]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2016-07-16 108896]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2016-07-16 928608]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2014-01-03 271064]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2014-01-03 331992]
S3 RTL2832U_IRHID;HID Infrared Remote Receiver; C:\WINDOWS\System32\drivers\RTL2832U_IRHID.sys [2009-07-13 42912]
S3 RTL2832UBDA;REALTEK 2832U BDA Driver; C:\WINDOWS\system32\drivers\RTL2832UBDA.sys [2009-03-04 94240]
S3 RTL2832UUSB;REALTEK 2832U USB Driver; C:\WINDOWS\System32\Drivers\RTL2832UUSB.sys [2009-03-04 38432]
S3 RTSPER;@oem40.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2014-01-14 466136]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2014-03-13 30448]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-10-21 82128]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2016-03-02 83768]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-09-09 197128]
R2 BcmBtRSupport;@oem29.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2015-10-01 2286848]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2015-08-12 462096]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 ClickToRunSvc;Služba Microsoft Office ClickToRun; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2016-10-04 3040496]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R2 DigitalWave.Update.Service;Digital Wave Update Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [2016-08-31 392168]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 hpsrv;@oem32.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2013-07-23 43320]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2016-08-15 29728]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [2015-06-29 602888]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-11-08 15720]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2016-11-01 373744]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2013-12-10 131544]
R2 Intel(R) TechnologyAccessLegacyCSLoader;Intel(R) Technology Access Legacy CS Loader; C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe [2016-04-26 153296]
R2 Intel(R) TechnologyAccessService;Intel(R) Technology Access Service; C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe [2016-04-26 478416]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-12-10 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-12-10 390616]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-03-28 1615192]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-03-28 20539168]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-07-23 937800]
R2 omniserv; HP SimplePass Service; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [2014-03-28 88064]
R2 OneSyncSvc_2e7592;Hostitel synchronizace_2e7592; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 OpenDHCPServer;Open DHCP Server; C:\programy\OpenDHCPServer\OpenDHCPServer.exe [2016-03-03 239233]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2014-01-08 290520]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2016-11-01 301552]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2015-04-28 1102472]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2016-03-19 651576]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 PimIndexMaintenanceSvc_2e7592;Data kontaktů_2e7592; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 CDPUserSvc_2e7592;CDPUserSvc_2e7592; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-18 107848]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-09-20 324224]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-29 270016]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-07-16 52920]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2016-07-16 93184]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-18 107848]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 Intel(R) TA SAM;Intel(R) Technology Access Software Asset Manager; C:\Program Files (x86)\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2016-08-12 18152]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 iumsvc;Intel(R) Update Manager; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2016-08-12 177376]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MessagingService_2e7592;Služba zasílání zpráv_2e7592; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-11-17 172488]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 150600]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2013-03-01 118520]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2016-09-07 1312768]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]

-----------------EOF-----------------

Re: Preventivka 1611 (log ve 2)

Napsal: 21 lis 2016 17:52
od Roli
Zdravím, jen trochu uklidíme.

Stáhni a spusť AdwCleaner,

ukonči všechny programy včetně prohlížeče a dvojklikem jej spusť,

objeví se okno kde vlevo nahoře klikni na Scan.

Po dokončení skenu klikni na Clean,

proběhne restart PC kdy dojde ke smazání nepořádku.

Po té mi sem zkopíruj Report.

Re: Preventivka 1611 (log ve 2)

Napsal: 30 lis 2016 19:49
od Lukiz
# AdwCleaner v6.030 - Log soubor vytvořen 30/11/2016 na 19:43:41
# Aktualizováno dne 19/10/2016 z Malwarebytes
# Databáze : 2016-11-29.1 [Server]
# Operační systém : Windows 10 Home (X64)
# Uživatelské jméno : Pavel - LNBZ
# Beží od : C:\Users\Pavel\Downloads\adwcleaner_6.030.exe
# Mod: Čištění
# Podpora : hxxps://www.malwarebytes.com/support



***** [ Služby ] *****



***** [ Adresáře ] *****

[-] Adresář smazán:C:\Users\Pavel\AppData\Local\SweetLabs App Platform
[-] Adresář smazán:C:\Users\Default User\AppData\Local\Pokki
[#] Adresář nelze smazat:C:\Users\Default\AppData\Local\Pokki


***** [ Soubory ] *****

[-] Soubor smazán:C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
[-] Soubor smazán:C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk


***** [ DLL ] *****



***** [ WMI ] *****



***** [ Zástupce ] *****



***** [ Plánovač úloh ] *****



***** [ Registry ] *****

[-] Klíč smazán:HKU\S-1-5-21-317155663-971383056-1206341253-1001\Software\Classes\pokki
[#] Klíč smazán po restartování:HKCU\Software\Classes\pokki
[#] Klíč smazán po restartování:[x64] HKCU\Software\Classes\pokki
[-] Klíč smazán:HKU\S-1-5-21-317155663-971383056-1206341253-1001\Software\distromatic
[-] Klíč smazán:HKU\S-1-5-21-317155663-971383056-1206341253-1001\Software\Softonic
[-] Klíč smazán:HKU\S-1-5-21-317155663-971383056-1206341253-1001\Software\SweetLabs App Platform
[-] Klíč smazán:HKU\S-1-5-21-317155663-971383056-1206341253-1001\Software\Mail.Ru
[-] Klíč smazán:HKU\S-1-5-21-317155663-971383056-1206341253-1001\Software\AppDataLow\Software\Mail.Ru
[-] Klíč smazán:HKU\S-1-5-21-317155663-971383056-1206341253-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_AP
[-] Klíč smazán:HKU\S-1-5-21-317155663-971383056-1206341253-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_Start_Menu
[#] Klíč smazán po restartování:HKCU\Software\distromatic
[#] Klíč smazán po restartování:HKCU\Software\Softonic
[#] Klíč smazán po restartování:HKCU\Software\SweetLabs App Platform
[#] Klíč smazán po restartování:HKCU\Software\Mail.Ru
[#] Klíč smazán po restartování:HKCU\Software\AppDataLow\Software\Mail.Ru
[#] Klíč smazán po restartování:HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_AP
[#] Klíč smazán po restartování:HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_Start_Menu
[#] Klíč smazán po restartování:[x64] HKCU\Software\distromatic
[#] Klíč smazán po restartování:[x64] HKCU\Software\Softonic
[#] Klíč smazán po restartování:[x64] HKCU\Software\SweetLabs App Platform
[#] Klíč smazán po restartování:[x64] HKCU\Software\Mail.Ru
[#] Klíč smazán po restartování:[x64] HKCU\Software\AppDataLow\Software\Mail.Ru
[#] Klíč smazán po restartování:[x64] HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_AP
[#] Klíč smazán po restartování:[x64] HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_Start_Menu
[-] Klíč smazán:HKCU\Software\Classes\AllFileSystemObjects\shell\pokki
[-] Klíč smazán:HKCU\Software\Classes\Directory\shell\pokki
[-] Klíč smazán:HKCU\Software\Classes\Drive\shell\pokki
[-] Klíč smazán:HKCU\Software\Classes\lnkfile\shell\pokki


***** [ Prohlížeče ] *****

[-] [C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Smazání:slunecnice.cz


*************************

:: "Tracing" klíč smazán
:: Winsock nastavení vyčištěno

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [3692 Bajtů] - [30/11/2016 19:43:41]
C:\AdwCleaner\AdwCleaner[S1].txt - [2228 Bajtů] - [23/01/2016 13:43:46]
C:\AdwCleaner\AdwCleaner[S2].txt - [3771 Bajtů] - [30/11/2016 19:39:08]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [3914 Bajtů] ##########

Re: Preventivka 1611 (log ve 2)

Napsal: 01 pro 2016 17:02
od Roli
Bezva uklizeno, pokud s PC není nějaký problém je to z mé strany vše.

Re: Preventivka 1611 (log ve 2)

Napsal: 01 pro 2016 20:01
od Lukiz
Děkuji. :thumbsup:

Re: Preventivka 1611 (log ve 2)

Napsal: 02 pro 2016 17:50
od Roli
Lukiz píše:Děkuji. :thumbsup:
Není zač a :closed: