prosím o preventivní kontrolu RSIT logu
Napsal: 07 led 2017 11:55
Mám dva roky notebook. Zatím jsem neměl žádné problémy. Pouze minulý týden se mi 2x při vypínání objevilo nějaké upozornění. Bylo to jen na okamžik, takže se to nestačilo ani přečíst.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Admin at 2017-01-07 11:44:11
Microsoft Windows 10 Home
System drive C: has 430 GB (90%) free of 476 GB
Total RAM: 3985 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:44:23, on 7. 1. 2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Admin.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O4 - HKLM\..\Run: [RadioController] "C:\Program Files (x86)\RadioController\RfBtnHelper.exe" Start_Run
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) - Dritek System INC. - C:\Windows\RfBtnSvc64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Remote Procedure Call (RPC) Net (rpcnet) - Absolute Software Corp. - C:\Windows\SysWOW64\rpcnet.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7348 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
dashost.exe {4aaa1b5b-03d0-4930-ad07ddda94437be1}
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
"C:\Program Files\Elantech\ETDService.exe"
C:\Windows\RfBtnSvc64.exe
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
igfxEM.exe
C:\WINDOWS\Explorer.EXE
igfxHK.exe
igfxTray.exe
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files (x86)\RadioController\RfBtnHelper.exe" HigherRFButtonHelper
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
"fontdrvhost.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{49F6E667-6658-4BD1-9DE9-6AF87F9FAF85}
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe11_ Global\UsGthrCtrlFltPipeMssGthrPipe11 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 644 648 656 8192 652
C:\Windows\System32\smartscreen.exe -Embedding
C:\WINDOWS\system32\AUDIODG.EXE 0x2ec
"C:\Users\Admin\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player PPAPI Notifier.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_162_pepper.exe -check pepperplugin
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\wxplo9hb.default
prefs.js - "browser.startup.homepage" - "www.seznam.cz/"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"jid1-r1tDuNiNb4SEww@jetpack"=C:\Program Files\AVAST Software\Avast\pam\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 24.0.0.186 Plugin
"Path"=C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_186.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 24.0.0.186 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_24_0_0_186.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.101.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.101.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_101\bin\plugin2\npjp2.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-06-24 13885696]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2015-10-10 3242696]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-09-19 7818040]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-12-06 9288408]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"RadioController"=C:\Program Files (x86)\RadioController\RfBtnHelper.exe [2014-08-27 111216]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-12-06 9080768]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2017-01-07 11:44:11 ----D---- C:\rsit
2017-01-07 11:44:11 ----D---- C:\Program Files\trend micro
2016-12-29 20:32:22 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-12-29 20:06:39 ----D---- C:\Users\Admin\AppData\Roaming\Seznam.cz
2016-12-17 20:07:38 ----D---- C:\WINDOWS\LastGood.Tmp
2016-12-17 15:47:56 ----D---- C:\%LOCALAPPDATA%
2016-12-17 15:47:44 ----D---- C:\Program Files (x86)\Seznam.cz
2016-12-17 15:46:52 ----D---- C:\Users\Admin\AppData\Roaming\LizardSystems
2016-12-17 15:46:52 ----D---- C:\Program Files (x86)\LizardSystems
2016-12-16 18:29:31 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-12-14 20:16:33 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-12-14 20:16:31 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-12-14 20:16:31 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-12-14 20:16:31 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-12-14 20:16:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-12-14 20:16:30 ----A---- C:\WINDOWS\system32\msdtctm.dll
2016-12-14 20:16:29 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-12-14 20:16:29 ----A---- C:\WINDOWS\system32\ole32.dll
2016-12-14 20:16:28 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2016-12-14 20:16:28 ----A---- C:\WINDOWS\system32\msi.dll
2016-12-14 20:16:27 ----A---- C:\WINDOWS\system32\hvix64.exe
2016-12-14 20:16:27 ----A---- C:\WINDOWS\system32\hvax64.exe
2016-12-14 20:16:27 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-12-14 20:16:26 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-12-14 20:16:24 ----A---- C:\WINDOWS\system32\hvloader.exe
2016-12-14 20:16:23 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-12-14 20:16:23 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-12-14 20:16:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-12-14 20:16:22 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-12-14 20:16:21 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2016-12-14 20:16:21 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2016-12-14 20:16:20 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-12-14 20:16:20 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-12-14 20:16:19 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-12-14 20:16:19 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-12-14 20:16:19 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-12-14 20:16:18 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-12-14 20:16:17 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-14 20:16:17 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-12-14 20:16:17 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-12-14 20:16:17 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-12-14 20:16:15 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-12-14 20:16:15 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-12-14 20:16:15 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2016-12-14 20:16:08 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-12-14 20:16:08 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-12-14 20:16:05 ----A---- C:\WINDOWS\system32\InputService.dll
2016-12-14 20:16:03 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2016-12-14 20:16:02 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2016-12-14 20:16:02 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-12-14 20:16:02 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-12-14 20:16:02 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-12-14 20:16:02 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2016-12-14 20:16:01 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2016-12-14 20:16:01 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2016-12-14 20:16:01 ----A---- C:\WINDOWS\system32\win32k.sys
2016-12-14 20:16:01 ----A---- C:\WINDOWS\system32\ShareHost.dll
2016-12-14 20:16:00 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-12-14 20:15:59 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-12-14 20:15:59 ----A---- C:\WINDOWS\system32\user32.dll
2016-12-14 20:15:57 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-12-14 20:15:56 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-12-14 20:15:53 ----A---- C:\WINDOWS\system32\cdp.dll
2016-12-14 20:15:46 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-12-14 20:15:46 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-12-14 20:15:45 ----A---- C:\WINDOWS\system32\securekernel.exe
2016-12-14 20:15:45 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2016-12-14 20:15:44 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2016-12-14 20:15:44 ----A---- C:\WINDOWS\system32\gdi32full.dll
2016-12-14 20:15:40 ----A---- C:\WINDOWS\system32\winresume.exe
2016-12-14 20:15:40 ----A---- C:\WINDOWS\system32\winload.exe
2016-12-14 20:15:39 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-12-14 20:15:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-14 20:15:36 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-12-14 20:15:36 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-12-14 20:15:36 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-12-14 20:15:36 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-12-14 20:15:36 ----A---- C:\WINDOWS\system32\combase.dll
2016-12-14 20:15:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-12-14 20:15:35 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-12-14 20:15:35 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-12-14 20:15:35 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-12-14 20:15:35 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2016-12-14 20:15:35 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-12-14 20:15:35 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-12-14 20:15:35 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-12-14 20:15:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-14 20:15:34 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2016-12-14 20:15:34 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2016-12-14 20:15:34 ----A---- C:\WINDOWS\system32\wincorlib.dll
2016-12-14 20:15:34 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-12-14 20:15:33 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2016-12-14 20:15:33 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll
2016-12-14 20:15:33 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-12-14 20:15:33 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-12-14 20:15:33 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2016-12-14 20:15:33 ----A---- C:\WINDOWS\system32\bcrypt.dll
2016-12-14 20:15:32 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-12-14 20:15:31 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-12-14 20:15:31 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2016-12-14 20:15:31 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-12-14 20:15:30 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-12-14 20:15:30 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-12-14 20:15:30 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-12-14 20:15:29 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-12-14 20:15:29 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-12-14 20:15:29 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-12-14 20:15:28 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-12-14 20:15:28 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2016-12-14 20:15:27 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-12-14 20:15:27 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-12-14 20:15:26 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-12-14 20:15:26 ----A---- C:\WINDOWS\system32\cdd.dll
2016-12-14 20:15:25 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-12-14 20:15:24 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-12-14 20:15:24 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-12-14 20:15:23 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2016-12-14 20:15:22 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-12-14 20:15:22 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-12-14 20:15:20 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2016-12-14 20:15:19 ----A---- C:\WINDOWS\system32\sspicli.dll
2016-12-14 20:15:19 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2016-12-14 20:15:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2016-12-10 17:39:24 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-12-10 17:39:24 ----A---- C:\WINDOWS\SYSWOW64\ReAgentc.exe
2016-12-10 17:39:23 ----A---- C:\WINDOWS\SYSWOW64\wsecedit.dll
2016-12-10 17:39:23 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2016-12-10 17:39:23 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2016-12-10 17:39:23 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-12-10 17:39:20 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2016-12-10 17:39:18 ----A---- C:\WINDOWS\SYSWOW64\migisol.dll
2016-12-10 17:39:16 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-12-10 17:39:16 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2016-12-10 17:39:14 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-12-10 17:39:14 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2016-12-10 17:39:14 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-12-10 17:39:12 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2016-12-10 17:39:11 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2016-12-10 17:39:11 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2016-12-10 17:39:11 ----A---- C:\WINDOWS\SYSWOW64\CloudStorageWizard.exe
2016-12-10 17:39:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2016-12-10 17:39:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2016-12-10 17:39:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2016-12-10 17:39:07 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2016-12-10 17:39:05 ----A---- C:\WINDOWS\SYSWOW64\zipfldr.dll
2016-12-10 17:39:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-12-10 17:39:02 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2016-12-10 17:39:02 ----A---- C:\WINDOWS\SYSWOW64\WSManHTTPConfig.exe
2016-12-10 17:39:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-12-10 17:39:02 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-12-10 17:39:02 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-12-10 17:39:02 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2016-12-10 17:39:02 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-12-10 17:39:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-10 17:39:01 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-12-10 17:39:01 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-12-10 17:39:00 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2016-12-10 17:39:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-10 17:39:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-12-10 17:39:00 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-12-10 17:39:00 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2016-12-10 17:38:59 ----A---- C:\WINDOWS\SYSWOW64\wscinterop.dll
2016-12-10 17:38:59 ----A---- C:\WINDOWS\SYSWOW64\RTWorkQ.dll
2016-12-10 17:38:59 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2016-12-10 17:38:59 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2016-12-10 17:38:59 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2016-12-10 17:38:57 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2016-12-10 17:38:57 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2016-12-10 17:38:57 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-12-10 17:38:55 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-12-10 17:38:55 ----A---- C:\WINDOWS\SYSWOW64\NetCfgNotifyObjectHost.exe
2016-12-10 17:38:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-10 17:38:53 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2016-12-10 17:38:53 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2016-12-10 17:38:53 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2016-12-10 17:38:53 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-12-10 17:38:53 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-12-10 17:38:53 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-12-10 17:38:53 ----A---- C:\WINDOWS\SYSWOW64\mfaudiocnv.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-12-10 17:38:51 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-12-10 17:38:51 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-12-10 17:38:51 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-12-10 17:38:43 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2016-12-10 17:38:43 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-12-10 17:38:43 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-12-10 17:38:43 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2016-12-10 17:38:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2016-12-10 17:38:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-12-10 17:38:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2016-12-10 17:38:42 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-12-10 17:38:42 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-12-10 17:38:42 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-12-10 17:38:41 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2016-12-10 17:38:41 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2016-12-10 17:38:41 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-12-10 17:38:41 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
2016-12-10 17:38:40 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2016-12-10 17:38:40 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2016-12-10 17:38:39 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2016-12-10 17:38:39 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2016-12-10 17:38:39 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2016-12-10 17:38:39 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2016-12-10 17:38:39 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-12-10 17:38:39 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2016-12-10 17:38:38 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2016-12-10 17:38:38 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-12-10 17:38:38 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2016-12-10 17:32:57 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-12-10 17:32:57 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-12-10 17:32:57 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-12-10 17:32:57 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-12-10 17:32:57 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2016-12-10 17:32:56 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2016-12-10 17:32:38 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2016-12-10 17:32:26 ----A---- C:\WINDOWS\system32\zipfldr.dll
2016-12-10 17:32:25 ----A---- C:\WINDOWS\system32\wkssvc.dll
2016-12-10 17:32:24 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-12-10 17:32:24 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-12-10 17:32:24 ----A---- C:\WINDOWS\system32\ReAgentc.exe
2016-12-10 17:32:23 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-12-10 17:32:21 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-12-10 17:32:21 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2016-12-10 17:32:21 ----A---- C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-12-10 17:32:20 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-12-10 17:32:20 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-12-10 17:32:20 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-12-10 17:32:20 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-12-10 17:32:20 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-12-10 17:32:20 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-12-10 17:32:19 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-12-10 17:32:19 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-12-10 17:32:18 ----A---- C:\WINDOWS\system32\umpoext.dll
2016-12-10 17:32:18 ----A---- C:\WINDOWS\system32\drivers\modem.sys
2016-12-10 17:32:16 ----A---- C:\WINDOWS\system32\twinui.dll
2016-12-10 17:32:16 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-12-10 17:32:15 ----A---- C:\WINDOWS\system32\msctf.dll
2016-12-10 17:32:15 ----A---- C:\WINDOWS\system32\lsm.dll
2016-12-10 17:32:14 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-10 17:32:14 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-12-10 17:32:14 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-12-10 17:32:14 ----A---- C:\WINDOWS\system32\stobject.dll
2016-12-10 17:32:14 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-12-10 17:32:14 ----A---- C:\WINDOWS\system32\SRH.dll
2016-12-10 17:32:13 ----A---- C:\WINDOWS\system32\shell32.dll
2016-12-10 17:32:13 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-12-10 17:32:13 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-12-10 17:32:13 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\wscapi.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\sendmail.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\DeviceReactivation.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\cryptngc.dll
2016-12-10 17:32:10 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-12-10 17:32:10 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2016-12-10 17:32:09 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-12-10 17:32:09 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-12-10 17:32:04 ----A---- C:\WINDOWS\system32\wsecedit.dll
2016-12-10 17:32:04 ----A---- C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-12-10 17:32:03 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-10 17:32:03 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-12-10 17:32:03 ----A---- C:\WINDOWS\system32\efswrt.dll
2016-12-10 17:32:00 ----A---- C:\WINDOWS\system32\wscinterop.dll
2016-12-10 17:31:59 ----A---- C:\WINDOWS\system32\services.exe
2016-12-10 17:31:58 ----A---- C:\WINDOWS\system32\sppwinob.dll
2016-12-10 17:31:58 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-12-10 17:31:57 ----A---- C:\WINDOWS\system32\RTWorkQ.dll
2016-12-10 17:31:57 ----A---- C:\WINDOWS\system32\RjvMDMConfig.dll
2016-12-10 17:31:56 ----A---- C:\WINDOWS\system32\rasmans.dll
2016-12-10 17:31:56 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2016-12-10 17:31:55 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-12-10 17:31:55 ----A---- C:\WINDOWS\system32\rascustom.dll
2016-12-10 17:31:54 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-12-10 17:31:54 ----A---- C:\WINDOWS\system32\ProvSysprep.dll
2016-12-10 17:31:53 ----A---- C:\WINDOWS\system32\sppnp.dll
2016-12-10 17:31:53 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2016-12-10 17:31:53 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2016-12-10 17:31:51 ----A---- C:\WINDOWS\system32\wpnprv.dll
2016-12-10 17:31:51 ----A---- C:\WINDOWS\system32\wpncore.dll
2016-12-10 17:31:48 ----A---- C:\WINDOWS\system32\ntshrui.dll
2016-12-10 17:31:48 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-12-10 17:31:46 ----A---- C:\WINDOWS\system32\netshell.dll
2016-12-10 17:31:46 ----A---- C:\WINDOWS\system32\netplwiz.dll
2016-12-10 17:31:45 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-12-10 17:31:45 ----A---- C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-12-10 17:31:44 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-10 17:31:42 ----A---- C:\WINDOWS\system32\mspaint.exe
2016-12-10 17:31:42 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2016-12-10 17:31:40 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2016-12-10 17:31:40 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-12-10 17:31:39 ----A---- C:\WINDOWS\system32\MFPlay.dll
2016-12-10 17:31:39 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-12-10 17:31:39 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-12-10 17:31:39 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-12-10 17:31:38 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-12-10 17:31:38 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-12-10 17:31:38 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-12-10 17:31:38 ----A---- C:\WINDOWS\system32\moshost.dll
2016-12-10 17:31:38 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-12-10 17:31:38 ----A---- C:\WINDOWS\system32\mfaudiocnv.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\mos.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\MapRouter.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-12-10 17:31:36 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-12-10 17:31:34 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-12-10 17:31:34 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-12-10 17:31:34 ----A---- C:\WINDOWS\system32\migisol.dll
2016-12-10 17:31:32 ----A---- C:\WINDOWS\system32\lpremove.exe
2016-12-10 17:31:30 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-12-10 17:31:28 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-12-10 17:31:24 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-12-10 17:31:23 ----A---- C:\WINDOWS\system32\wininet.dll
2016-12-10 17:31:23 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-12-10 17:31:15 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-12-10 17:31:14 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2016-12-10 17:31:14 ----A---- C:\WINDOWS\system32\EAMProgressHandler.dll
2016-12-10 17:31:12 ----A---- C:\WINDOWS\system32\gameux.dll
2016-12-10 17:31:12 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys
2016-12-10 17:31:05 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-12-10 17:31:05 ----A---- C:\WINDOWS\explorer.exe
2016-12-10 17:31:04 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-12-10 17:31:03 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-12-10 17:31:03 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-12-10 17:31:03 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-12-10 17:31:03 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2016-12-10 17:31:03 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-12-10 17:31:02 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-12-10 17:31:02 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-12-10 17:31:02 ----A---- C:\WINDOWS\system32\dialserver.dll
2016-12-10 17:31:02 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-12-10 17:31:01 ----A---- C:\WINDOWS\system32\setupugc.exe
2016-12-10 17:31:01 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-12-10 17:31:01 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-12-10 17:31:01 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-12-10 17:31:01 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-12-10 17:31:00 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-12-10 17:30:58 ----A---- C:\WINDOWS\system32\ReportingCSP.dll
2016-12-10 17:30:58 ----A---- C:\WINDOWS\system32\policymanager.dll
2016-12-10 17:30:57 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2016-12-10 17:30:56 ----A---- C:\WINDOWS\system32\comdlg32.dll
2016-12-10 17:30:55 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2016-12-10 17:30:55 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2016-12-10 17:30:54 ----A---- C:\WINDOWS\system32\CloudStorageWizard.exe
2016-12-10 17:30:54 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2016-12-10 17:30:54 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2016-12-10 17:30:53 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2016-12-10 17:30:53 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-12-10 17:30:51 ----A---- C:\WINDOWS\system32\CbtBackgroundManagerPolicy.dll
2016-12-10 17:30:45 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\AudioEng.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\apprepsync.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\apprepapi.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-12-10 17:30:38 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-12-10 17:30:38 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2016-12-10 17:30:35 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-12-10 17:30:35 ----A---- C:\WINDOWS\system32\aitstatic.exe
2016-12-10 17:30:32 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2016-12-10 17:30:31 ----A---- C:\WINDOWS\system32\EDPCleanup.exe
2016-12-10 17:30:31 ----A---- C:\WINDOWS\system32\BcastDVRHelper.dll
2016-12-10 17:30:31 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-12-10 17:30:31 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-12-10 17:30:09 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-12-10 17:30:09 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2016-12-10 17:30:08 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-12-10 17:30:08 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
======List of files/folders modified in the last 1 month======
2017-01-07 11:44:11 ----RD---- C:\Program Files
2017-01-07 11:31:31 ----D---- C:\WINDOWS\Temp
2017-01-07 11:23:34 ----D---- C:\WINDOWS\Prefetch
2017-01-07 11:08:00 ----D---- C:\WINDOWS\system32\sru
2017-01-07 10:07:16 ----D---- C:\WINDOWS\LiveKernelReports
2017-01-07 10:05:29 ----D---- C:\WINDOWS\System32
2017-01-06 20:27:10 ----A---- C:\WINDOWS\system32\rpcnetp.exe
2017-01-06 20:27:07 ----A---- C:\WINDOWS\SYSWOW64\rpcnetp.dll
2017-01-06 20:27:07 ----A---- C:\WINDOWS\SYSWOW64\rpcnet.dll
2017-01-06 20:27:04 ----D---- C:\Windows
2017-01-06 20:27:04 ----A---- C:\WINDOWS\SYSWOW64\rpcnetp.exe
2017-01-06 20:26:58 ----A---- C:\WINDOWS\system32\wpbbin.exe
2017-01-06 19:49:42 ----D---- C:\WINDOWS\system32\drivers
2017-01-06 19:12:07 ----HD---- C:\ProgramData
2017-01-06 18:36:55 ----D---- C:\WINDOWS\system32\SleepStudy
2017-01-05 21:57:52 ----RD---- C:\WINDOWS\Microsoft.NET
2017-01-05 19:54:25 ----HD---- C:\Program Files\WindowsApps
2017-01-05 19:54:25 ----D---- C:\WINDOWS\AppReadiness
2017-01-03 17:51:49 ----D---- C:\WINDOWS\debug
2017-01-02 17:59:05 ----D---- C:\WINDOWS\INF
2016-12-30 13:14:43 ----D---- C:\WINDOWS\system32\NDF
2016-12-30 12:51:02 ----SHD---- C:\System Volume Information
2016-12-29 20:39:39 ----D---- C:\WINDOWS\system32\Tasks
2016-12-27 10:46:44 ----D---- C:\WINDOWS\system32\config
2016-12-20 21:49:56 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-12-19 17:19:32 ----D---- C:\WINDOWS\system32\catroot2
2016-12-19 10:36:28 ----D---- C:\WINDOWS\rescache
2016-12-18 11:19:57 ----SHD---- C:\WINDOWS\Installer
2016-12-18 11:15:03 ----RD---- C:\Program Files (x86)
2016-12-18 11:14:55 ----D---- C:\WINDOWS\Tasks
2016-12-17 20:07:42 ----D---- C:\Intel
2016-12-17 20:07:36 ----D---- C:\WINDOWS\system32\CatRoot
2016-12-17 20:07:32 ----D---- C:\WINDOWS\system32\DriverStore
2016-12-17 19:23:39 ----D---- C:\WINDOWS\WinSxS
2016-12-17 13:32:15 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-12-16 19:28:22 ----D---- C:\WINDOWS\system32\Macromed
2016-12-16 19:28:19 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2016-12-16 18:40:04 ----RD---- C:\WINDOWS\assembly
2016-12-14 21:50:47 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-12-14 21:50:47 ----D---- C:\WINDOWS\SysWOW64
2016-12-14 21:50:45 ----D---- C:\WINDOWS\system32\en-US
2016-12-14 21:50:44 ----D---- C:\WINDOWS\ShellExperiences
2016-12-14 21:50:44 ----D---- C:\WINDOWS\AppPatch
2016-12-14 21:50:43 ----D---- C:\WINDOWS\system32\Boot
2016-12-14 20:55:19 ----D---- C:\WINDOWS\CbsTemp
2016-12-14 20:49:34 ----D---- C:\WINDOWS\system32\MRT
2016-12-14 20:46:20 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-12-14 18:26:36 ----D---- C:\WINDOWS\system32\LogFiles
2016-12-12 00:56:25 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-12-10 18:58:20 ----D---- C:\WINDOWS\SYSWOW64\oobe
2016-12-10 18:58:20 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-12-10 18:58:17 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-12-10 18:58:17 ----D---- C:\WINDOWS\system32\wbem
2016-12-10 18:58:17 ----D---- C:\WINDOWS\system32\Sysprep
2016-12-10 18:58:17 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2016-12-10 18:58:15 ----D---- C:\WINDOWS\system32\oobe
2016-12-10 18:58:14 ----D---- C:\WINDOWS\system32\Dism
2016-12-10 18:58:10 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-12-10 18:58:10 ----D---- C:\WINDOWS\servicing
2016-12-10 18:58:10 ----D---- C:\WINDOWS\bcastdvr
2016-12-10 18:58:10 ----D---- C:\Program Files\Internet Explorer
2016-12-10 18:58:10 ----D---- C:\Program Files (x86)\Internet Explorer
2016-12-10 17:02:14 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-12-06 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-12-06 293352]
R0 iaStor;@oem13.inf,%*PNP0600.DeviceDesc%;Intel AHCI Controller; C:\WINDOWS\System32\drivers\iaStor.sys [2011-11-29 568600]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2016-12-06 37144]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-12-06 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-12-06 969184]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-12-06 513632]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-07-16 88576]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2016-07-16 8192]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-12-06 108816]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-12-06 163416]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2016-07-16 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2016-07-16 78336]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-10-03 114176]
R3 BthLEEnum;@BthLEEnum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-09-15 249856]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-10-05 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-10-03 84992]
R3 ETD;@oem17.inf,%PS2.DeviceDesc%;ELAN Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2015-10-10 525512]
R3 ibtfltcoex;@oem16.inf,%PROVIDER_NAME%;Intel Corporation; C:\WINDOWS\system32\DRIVERS\ibtfltcoex.sys [2015-11-17 79632]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2016-05-03 3811288]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-06-24 4504320]
R3 IntcDAud;@oem9.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iwdbus;@oem24.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-12-01 38896]
R3 k57nd60a;@netk57a.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\WINDOWS\System32\drivers\k57nd60a.sys [2016-07-16 446464]
R3 MEIx64;@oem23.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-17 62784]
R3 NETwNe64;@oem21.inf,%NIC_Service_DispName_WIN8_64%;Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 8 64 Bit; C:\WINDOWS\System32\drivers\NETwew01.sys [2015-07-28 3363112]
R3 Ps2Kb2Hid;@oem10.inf,%Ps2Kb2Hid.SVCDESC%;PS/2 Keyboard to HID Driver; C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys [2014-08-27 26736]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-07-16 183808]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2016-07-16 105824]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2016-07-16 101216]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2016-07-16 58720]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2016-07-16 61792]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2016-07-16 32096]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-12-06 37656]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2016-07-16 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-11-11 967168]
S3 btmaux;Intel Bluetooth Auxiliary Service; C:\WINDOWS\system32\DRIVERS\btmaux.sys [2013-07-22 140600]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2016-07-16 38912]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-09-10 118272]
S3 dg_ssudbus;@oem20.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2016-09-05 131712]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2016-07-16 20480]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2016-07-16 50016]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-10-03 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2016-07-16 81408]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2016-07-16 176384]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2016-07-16 526176]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 intaud_WaveExtensible;@oem14.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-12-01 50160]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2016-07-16 842584]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2016-07-16 108896]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2016-07-16 928608]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 ssudmdm;@oem8.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2016-09-05 165504]
S3 ssudserd;@oem4.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudserd.sys [2016-09-05 165504]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2016-07-16 95744]
S3 UcmTcpciCx0101;UCM-TCPCI KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmTcpciCx.sys [2016-07-16 108544]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2016-07-16 50688]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2016-07-16 45568]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2016-07-16 263008]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2016-07-16 96608]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2016-07-16 137056]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-10-21 82128]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-12-06 197128]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-08-26 1137016]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-08-26 1157496]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 CDPUserSvc_216fad;CDPUserSvc_216fad; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2015-10-10 144072]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2016-05-03 337888]
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management;Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [2013-09-18 157128]
R2 OneSyncSvc_216fad;Hostitel synchronizace_216fad; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 RfButtonDriverService;Dritek RF Button Command Service; C:\Windows\RfBtnSvc64.exe [2014-08-27 96880]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 PimIndexMaintenanceSvc_216fad;Data kontaktů_216fad; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 TimeBrokerSvc;@%windir%\system32\TimeBrokerServer.dll,-1001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 rpcnet;Remote Procedure Call (RPC) Net; C:\Windows\SysWOW64\rpcnet.exe [2014-08-27 69792]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-12-16 270936]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2016-05-03 299488]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2016-07-16 93184]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MessagingService_216fad;Služba zasílání zpráv_216fad; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-12-16 172488]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2016-10-03 1312768]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2016-07-16 287744]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S4 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-09-20 324224]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Admin at 2017-01-07 11:44:11
Microsoft Windows 10 Home
System drive C: has 430 GB (90%) free of 476 GB
Total RAM: 3985 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:44:23, on 7. 1. 2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Admin.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O4 - HKLM\..\Run: [RadioController] "C:\Program Files (x86)\RadioController\RfBtnHelper.exe" Start_Run
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) - Dritek System INC. - C:\Windows\RfBtnSvc64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Remote Procedure Call (RPC) Net (rpcnet) - Absolute Software Corp. - C:\Windows\SysWOW64\rpcnet.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7348 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
dashost.exe {4aaa1b5b-03d0-4930-ad07ddda94437be1}
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
"C:\Program Files\Elantech\ETDService.exe"
C:\Windows\RfBtnSvc64.exe
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
igfxEM.exe
C:\WINDOWS\Explorer.EXE
igfxHK.exe
igfxTray.exe
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files (x86)\RadioController\RfBtnHelper.exe" HigherRFButtonHelper
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
"fontdrvhost.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{49F6E667-6658-4BD1-9DE9-6AF87F9FAF85}
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe11_ Global\UsGthrCtrlFltPipeMssGthrPipe11 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 644 648 656 8192 652
C:\Windows\System32\smartscreen.exe -Embedding
C:\WINDOWS\system32\AUDIODG.EXE 0x2ec
"C:\Users\Admin\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player PPAPI Notifier.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_162_pepper.exe -check pepperplugin
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\wxplo9hb.default
prefs.js - "browser.startup.homepage" - "www.seznam.cz/"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"jid1-r1tDuNiNb4SEww@jetpack"=C:\Program Files\AVAST Software\Avast\pam\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 24.0.0.186 Plugin
"Path"=C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_186.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 24.0.0.186 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_24_0_0_186.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.101.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.101.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_101\bin\plugin2\npjp2.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-06-24 13885696]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2015-10-10 3242696]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-09-19 7818040]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-12-06 9288408]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"RadioController"=C:\Program Files (x86)\RadioController\RfBtnHelper.exe [2014-08-27 111216]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-12-06 9080768]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2017-01-07 11:44:11 ----D---- C:\rsit
2017-01-07 11:44:11 ----D---- C:\Program Files\trend micro
2016-12-29 20:32:22 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-12-29 20:06:39 ----D---- C:\Users\Admin\AppData\Roaming\Seznam.cz
2016-12-17 20:07:38 ----D---- C:\WINDOWS\LastGood.Tmp
2016-12-17 15:47:56 ----D---- C:\%LOCALAPPDATA%
2016-12-17 15:47:44 ----D---- C:\Program Files (x86)\Seznam.cz
2016-12-17 15:46:52 ----D---- C:\Users\Admin\AppData\Roaming\LizardSystems
2016-12-17 15:46:52 ----D---- C:\Program Files (x86)\LizardSystems
2016-12-16 18:29:31 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-12-14 20:16:33 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-12-14 20:16:31 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-12-14 20:16:31 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-12-14 20:16:31 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-12-14 20:16:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-12-14 20:16:30 ----A---- C:\WINDOWS\system32\msdtctm.dll
2016-12-14 20:16:29 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-12-14 20:16:29 ----A---- C:\WINDOWS\system32\ole32.dll
2016-12-14 20:16:28 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2016-12-14 20:16:28 ----A---- C:\WINDOWS\system32\msi.dll
2016-12-14 20:16:27 ----A---- C:\WINDOWS\system32\hvix64.exe
2016-12-14 20:16:27 ----A---- C:\WINDOWS\system32\hvax64.exe
2016-12-14 20:16:27 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-12-14 20:16:26 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-12-14 20:16:24 ----A---- C:\WINDOWS\system32\hvloader.exe
2016-12-14 20:16:23 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-12-14 20:16:23 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-12-14 20:16:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-12-14 20:16:22 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-12-14 20:16:21 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2016-12-14 20:16:21 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2016-12-14 20:16:20 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-12-14 20:16:20 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-12-14 20:16:19 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-12-14 20:16:19 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-12-14 20:16:19 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-12-14 20:16:18 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-12-14 20:16:17 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-14 20:16:17 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-12-14 20:16:17 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-12-14 20:16:17 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-12-14 20:16:15 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-12-14 20:16:15 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-12-14 20:16:15 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2016-12-14 20:16:08 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-12-14 20:16:08 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-12-14 20:16:05 ----A---- C:\WINDOWS\system32\InputService.dll
2016-12-14 20:16:03 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2016-12-14 20:16:02 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2016-12-14 20:16:02 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-12-14 20:16:02 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-12-14 20:16:02 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-12-14 20:16:02 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2016-12-14 20:16:01 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2016-12-14 20:16:01 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2016-12-14 20:16:01 ----A---- C:\WINDOWS\system32\win32k.sys
2016-12-14 20:16:01 ----A---- C:\WINDOWS\system32\ShareHost.dll
2016-12-14 20:16:00 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-12-14 20:15:59 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-12-14 20:15:59 ----A---- C:\WINDOWS\system32\user32.dll
2016-12-14 20:15:57 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-12-14 20:15:56 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-12-14 20:15:53 ----A---- C:\WINDOWS\system32\cdp.dll
2016-12-14 20:15:46 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-12-14 20:15:46 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-12-14 20:15:45 ----A---- C:\WINDOWS\system32\securekernel.exe
2016-12-14 20:15:45 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2016-12-14 20:15:44 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2016-12-14 20:15:44 ----A---- C:\WINDOWS\system32\gdi32full.dll
2016-12-14 20:15:40 ----A---- C:\WINDOWS\system32\winresume.exe
2016-12-14 20:15:40 ----A---- C:\WINDOWS\system32\winload.exe
2016-12-14 20:15:39 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-12-14 20:15:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-14 20:15:36 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-12-14 20:15:36 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-12-14 20:15:36 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-12-14 20:15:36 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-12-14 20:15:36 ----A---- C:\WINDOWS\system32\combase.dll
2016-12-14 20:15:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-12-14 20:15:35 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-12-14 20:15:35 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-12-14 20:15:35 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-12-14 20:15:35 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2016-12-14 20:15:35 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-12-14 20:15:35 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-12-14 20:15:35 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-12-14 20:15:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-14 20:15:34 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2016-12-14 20:15:34 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2016-12-14 20:15:34 ----A---- C:\WINDOWS\system32\wincorlib.dll
2016-12-14 20:15:34 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-12-14 20:15:33 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2016-12-14 20:15:33 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll
2016-12-14 20:15:33 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-12-14 20:15:33 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-12-14 20:15:33 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2016-12-14 20:15:33 ----A---- C:\WINDOWS\system32\bcrypt.dll
2016-12-14 20:15:32 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-12-14 20:15:31 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-12-14 20:15:31 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2016-12-14 20:15:31 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-12-14 20:15:30 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-12-14 20:15:30 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-12-14 20:15:30 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-12-14 20:15:29 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-12-14 20:15:29 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-12-14 20:15:29 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-12-14 20:15:28 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-12-14 20:15:28 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2016-12-14 20:15:27 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-12-14 20:15:27 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-12-14 20:15:26 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-12-14 20:15:26 ----A---- C:\WINDOWS\system32\cdd.dll
2016-12-14 20:15:25 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-12-14 20:15:24 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-12-14 20:15:24 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-12-14 20:15:23 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2016-12-14 20:15:22 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-12-14 20:15:22 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-12-14 20:15:20 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2016-12-14 20:15:19 ----A---- C:\WINDOWS\system32\sspicli.dll
2016-12-14 20:15:19 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2016-12-14 20:15:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2016-12-10 17:39:24 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-12-10 17:39:24 ----A---- C:\WINDOWS\SYSWOW64\ReAgentc.exe
2016-12-10 17:39:23 ----A---- C:\WINDOWS\SYSWOW64\wsecedit.dll
2016-12-10 17:39:23 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2016-12-10 17:39:23 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2016-12-10 17:39:23 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-12-10 17:39:20 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2016-12-10 17:39:18 ----A---- C:\WINDOWS\SYSWOW64\migisol.dll
2016-12-10 17:39:16 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-12-10 17:39:16 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2016-12-10 17:39:14 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-12-10 17:39:14 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2016-12-10 17:39:14 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-12-10 17:39:12 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2016-12-10 17:39:11 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2016-12-10 17:39:11 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2016-12-10 17:39:11 ----A---- C:\WINDOWS\SYSWOW64\CloudStorageWizard.exe
2016-12-10 17:39:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2016-12-10 17:39:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2016-12-10 17:39:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2016-12-10 17:39:07 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2016-12-10 17:39:05 ----A---- C:\WINDOWS\SYSWOW64\zipfldr.dll
2016-12-10 17:39:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-12-10 17:39:02 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2016-12-10 17:39:02 ----A---- C:\WINDOWS\SYSWOW64\WSManHTTPConfig.exe
2016-12-10 17:39:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-12-10 17:39:02 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-12-10 17:39:02 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-12-10 17:39:02 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2016-12-10 17:39:02 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-12-10 17:39:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-10 17:39:01 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-12-10 17:39:01 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-12-10 17:39:00 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2016-12-10 17:39:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-10 17:39:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-12-10 17:39:00 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-12-10 17:39:00 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2016-12-10 17:38:59 ----A---- C:\WINDOWS\SYSWOW64\wscinterop.dll
2016-12-10 17:38:59 ----A---- C:\WINDOWS\SYSWOW64\RTWorkQ.dll
2016-12-10 17:38:59 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2016-12-10 17:38:59 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2016-12-10 17:38:59 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2016-12-10 17:38:57 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2016-12-10 17:38:57 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2016-12-10 17:38:57 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-12-10 17:38:55 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-12-10 17:38:55 ----A---- C:\WINDOWS\SYSWOW64\NetCfgNotifyObjectHost.exe
2016-12-10 17:38:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-10 17:38:53 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2016-12-10 17:38:53 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2016-12-10 17:38:53 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2016-12-10 17:38:53 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-12-10 17:38:53 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-12-10 17:38:53 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-12-10 17:38:53 ----A---- C:\WINDOWS\SYSWOW64\mfaudiocnv.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-12-10 17:38:52 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-12-10 17:38:51 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-12-10 17:38:51 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-12-10 17:38:51 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-12-10 17:38:43 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2016-12-10 17:38:43 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-12-10 17:38:43 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-12-10 17:38:43 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2016-12-10 17:38:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2016-12-10 17:38:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-12-10 17:38:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2016-12-10 17:38:42 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-12-10 17:38:42 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-12-10 17:38:42 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-12-10 17:38:41 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2016-12-10 17:38:41 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2016-12-10 17:38:41 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-12-10 17:38:41 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
2016-12-10 17:38:40 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2016-12-10 17:38:40 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2016-12-10 17:38:39 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2016-12-10 17:38:39 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2016-12-10 17:38:39 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2016-12-10 17:38:39 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2016-12-10 17:38:39 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-12-10 17:38:39 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2016-12-10 17:38:38 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2016-12-10 17:38:38 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-12-10 17:38:38 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2016-12-10 17:32:57 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-12-10 17:32:57 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-12-10 17:32:57 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-12-10 17:32:57 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-12-10 17:32:57 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2016-12-10 17:32:56 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2016-12-10 17:32:38 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2016-12-10 17:32:26 ----A---- C:\WINDOWS\system32\zipfldr.dll
2016-12-10 17:32:25 ----A---- C:\WINDOWS\system32\wkssvc.dll
2016-12-10 17:32:24 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-12-10 17:32:24 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-12-10 17:32:24 ----A---- C:\WINDOWS\system32\ReAgentc.exe
2016-12-10 17:32:23 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-12-10 17:32:21 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-12-10 17:32:21 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2016-12-10 17:32:21 ----A---- C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-12-10 17:32:20 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-12-10 17:32:20 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-12-10 17:32:20 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-12-10 17:32:20 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-12-10 17:32:20 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-12-10 17:32:20 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-12-10 17:32:19 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-12-10 17:32:19 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-12-10 17:32:18 ----A---- C:\WINDOWS\system32\umpoext.dll
2016-12-10 17:32:18 ----A---- C:\WINDOWS\system32\drivers\modem.sys
2016-12-10 17:32:16 ----A---- C:\WINDOWS\system32\twinui.dll
2016-12-10 17:32:16 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-12-10 17:32:15 ----A---- C:\WINDOWS\system32\msctf.dll
2016-12-10 17:32:15 ----A---- C:\WINDOWS\system32\lsm.dll
2016-12-10 17:32:14 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-10 17:32:14 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-12-10 17:32:14 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-12-10 17:32:14 ----A---- C:\WINDOWS\system32\stobject.dll
2016-12-10 17:32:14 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-12-10 17:32:14 ----A---- C:\WINDOWS\system32\SRH.dll
2016-12-10 17:32:13 ----A---- C:\WINDOWS\system32\shell32.dll
2016-12-10 17:32:13 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-12-10 17:32:13 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-12-10 17:32:13 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\wscapi.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\sendmail.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\DeviceReactivation.dll
2016-12-10 17:32:11 ----A---- C:\WINDOWS\system32\cryptngc.dll
2016-12-10 17:32:10 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-12-10 17:32:10 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2016-12-10 17:32:09 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-12-10 17:32:09 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-12-10 17:32:04 ----A---- C:\WINDOWS\system32\wsecedit.dll
2016-12-10 17:32:04 ----A---- C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-12-10 17:32:03 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-10 17:32:03 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-12-10 17:32:03 ----A---- C:\WINDOWS\system32\efswrt.dll
2016-12-10 17:32:00 ----A---- C:\WINDOWS\system32\wscinterop.dll
2016-12-10 17:31:59 ----A---- C:\WINDOWS\system32\services.exe
2016-12-10 17:31:58 ----A---- C:\WINDOWS\system32\sppwinob.dll
2016-12-10 17:31:58 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-12-10 17:31:57 ----A---- C:\WINDOWS\system32\RTWorkQ.dll
2016-12-10 17:31:57 ----A---- C:\WINDOWS\system32\RjvMDMConfig.dll
2016-12-10 17:31:56 ----A---- C:\WINDOWS\system32\rasmans.dll
2016-12-10 17:31:56 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2016-12-10 17:31:55 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-12-10 17:31:55 ----A---- C:\WINDOWS\system32\rascustom.dll
2016-12-10 17:31:54 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-12-10 17:31:54 ----A---- C:\WINDOWS\system32\ProvSysprep.dll
2016-12-10 17:31:53 ----A---- C:\WINDOWS\system32\sppnp.dll
2016-12-10 17:31:53 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2016-12-10 17:31:53 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2016-12-10 17:31:51 ----A---- C:\WINDOWS\system32\wpnprv.dll
2016-12-10 17:31:51 ----A---- C:\WINDOWS\system32\wpncore.dll
2016-12-10 17:31:48 ----A---- C:\WINDOWS\system32\ntshrui.dll
2016-12-10 17:31:48 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-12-10 17:31:46 ----A---- C:\WINDOWS\system32\netshell.dll
2016-12-10 17:31:46 ----A---- C:\WINDOWS\system32\netplwiz.dll
2016-12-10 17:31:45 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-12-10 17:31:45 ----A---- C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-12-10 17:31:44 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-10 17:31:42 ----A---- C:\WINDOWS\system32\mspaint.exe
2016-12-10 17:31:42 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2016-12-10 17:31:40 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2016-12-10 17:31:40 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-12-10 17:31:39 ----A---- C:\WINDOWS\system32\MFPlay.dll
2016-12-10 17:31:39 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-12-10 17:31:39 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-12-10 17:31:39 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-12-10 17:31:38 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-12-10 17:31:38 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-12-10 17:31:38 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-12-10 17:31:38 ----A---- C:\WINDOWS\system32\moshost.dll
2016-12-10 17:31:38 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-12-10 17:31:38 ----A---- C:\WINDOWS\system32\mfaudiocnv.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\mos.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\MapRouter.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-12-10 17:31:37 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-12-10 17:31:36 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-12-10 17:31:34 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-12-10 17:31:34 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-12-10 17:31:34 ----A---- C:\WINDOWS\system32\migisol.dll
2016-12-10 17:31:32 ----A---- C:\WINDOWS\system32\lpremove.exe
2016-12-10 17:31:30 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-12-10 17:31:28 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-12-10 17:31:24 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-12-10 17:31:23 ----A---- C:\WINDOWS\system32\wininet.dll
2016-12-10 17:31:23 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-12-10 17:31:15 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-12-10 17:31:14 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2016-12-10 17:31:14 ----A---- C:\WINDOWS\system32\EAMProgressHandler.dll
2016-12-10 17:31:12 ----A---- C:\WINDOWS\system32\gameux.dll
2016-12-10 17:31:12 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys
2016-12-10 17:31:05 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-12-10 17:31:05 ----A---- C:\WINDOWS\explorer.exe
2016-12-10 17:31:04 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-12-10 17:31:03 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-12-10 17:31:03 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-12-10 17:31:03 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-12-10 17:31:03 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2016-12-10 17:31:03 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-12-10 17:31:02 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-12-10 17:31:02 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-12-10 17:31:02 ----A---- C:\WINDOWS\system32\dialserver.dll
2016-12-10 17:31:02 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-12-10 17:31:01 ----A---- C:\WINDOWS\system32\setupugc.exe
2016-12-10 17:31:01 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-12-10 17:31:01 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-12-10 17:31:01 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-12-10 17:31:01 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-12-10 17:31:00 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-12-10 17:30:58 ----A---- C:\WINDOWS\system32\ReportingCSP.dll
2016-12-10 17:30:58 ----A---- C:\WINDOWS\system32\policymanager.dll
2016-12-10 17:30:57 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2016-12-10 17:30:56 ----A---- C:\WINDOWS\system32\comdlg32.dll
2016-12-10 17:30:55 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2016-12-10 17:30:55 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2016-12-10 17:30:54 ----A---- C:\WINDOWS\system32\CloudStorageWizard.exe
2016-12-10 17:30:54 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2016-12-10 17:30:54 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2016-12-10 17:30:53 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2016-12-10 17:30:53 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-12-10 17:30:51 ----A---- C:\WINDOWS\system32\CbtBackgroundManagerPolicy.dll
2016-12-10 17:30:45 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\AudioEng.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\apprepsync.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\apprepapi.dll
2016-12-10 17:30:39 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-12-10 17:30:38 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-12-10 17:30:38 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2016-12-10 17:30:35 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-12-10 17:30:35 ----A---- C:\WINDOWS\system32\aitstatic.exe
2016-12-10 17:30:32 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2016-12-10 17:30:31 ----A---- C:\WINDOWS\system32\EDPCleanup.exe
2016-12-10 17:30:31 ----A---- C:\WINDOWS\system32\BcastDVRHelper.dll
2016-12-10 17:30:31 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-12-10 17:30:31 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-12-10 17:30:09 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-12-10 17:30:09 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2016-12-10 17:30:08 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-12-10 17:30:08 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
======List of files/folders modified in the last 1 month======
2017-01-07 11:44:11 ----RD---- C:\Program Files
2017-01-07 11:31:31 ----D---- C:\WINDOWS\Temp
2017-01-07 11:23:34 ----D---- C:\WINDOWS\Prefetch
2017-01-07 11:08:00 ----D---- C:\WINDOWS\system32\sru
2017-01-07 10:07:16 ----D---- C:\WINDOWS\LiveKernelReports
2017-01-07 10:05:29 ----D---- C:\WINDOWS\System32
2017-01-06 20:27:10 ----A---- C:\WINDOWS\system32\rpcnetp.exe
2017-01-06 20:27:07 ----A---- C:\WINDOWS\SYSWOW64\rpcnetp.dll
2017-01-06 20:27:07 ----A---- C:\WINDOWS\SYSWOW64\rpcnet.dll
2017-01-06 20:27:04 ----D---- C:\Windows
2017-01-06 20:27:04 ----A---- C:\WINDOWS\SYSWOW64\rpcnetp.exe
2017-01-06 20:26:58 ----A---- C:\WINDOWS\system32\wpbbin.exe
2017-01-06 19:49:42 ----D---- C:\WINDOWS\system32\drivers
2017-01-06 19:12:07 ----HD---- C:\ProgramData
2017-01-06 18:36:55 ----D---- C:\WINDOWS\system32\SleepStudy
2017-01-05 21:57:52 ----RD---- C:\WINDOWS\Microsoft.NET
2017-01-05 19:54:25 ----HD---- C:\Program Files\WindowsApps
2017-01-05 19:54:25 ----D---- C:\WINDOWS\AppReadiness
2017-01-03 17:51:49 ----D---- C:\WINDOWS\debug
2017-01-02 17:59:05 ----D---- C:\WINDOWS\INF
2016-12-30 13:14:43 ----D---- C:\WINDOWS\system32\NDF
2016-12-30 12:51:02 ----SHD---- C:\System Volume Information
2016-12-29 20:39:39 ----D---- C:\WINDOWS\system32\Tasks
2016-12-27 10:46:44 ----D---- C:\WINDOWS\system32\config
2016-12-20 21:49:56 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-12-19 17:19:32 ----D---- C:\WINDOWS\system32\catroot2
2016-12-19 10:36:28 ----D---- C:\WINDOWS\rescache
2016-12-18 11:19:57 ----SHD---- C:\WINDOWS\Installer
2016-12-18 11:15:03 ----RD---- C:\Program Files (x86)
2016-12-18 11:14:55 ----D---- C:\WINDOWS\Tasks
2016-12-17 20:07:42 ----D---- C:\Intel
2016-12-17 20:07:36 ----D---- C:\WINDOWS\system32\CatRoot
2016-12-17 20:07:32 ----D---- C:\WINDOWS\system32\DriverStore
2016-12-17 19:23:39 ----D---- C:\WINDOWS\WinSxS
2016-12-17 13:32:15 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-12-16 19:28:22 ----D---- C:\WINDOWS\system32\Macromed
2016-12-16 19:28:19 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2016-12-16 18:40:04 ----RD---- C:\WINDOWS\assembly
2016-12-14 21:50:47 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-12-14 21:50:47 ----D---- C:\WINDOWS\SysWOW64
2016-12-14 21:50:45 ----D---- C:\WINDOWS\system32\en-US
2016-12-14 21:50:44 ----D---- C:\WINDOWS\ShellExperiences
2016-12-14 21:50:44 ----D---- C:\WINDOWS\AppPatch
2016-12-14 21:50:43 ----D---- C:\WINDOWS\system32\Boot
2016-12-14 20:55:19 ----D---- C:\WINDOWS\CbsTemp
2016-12-14 20:49:34 ----D---- C:\WINDOWS\system32\MRT
2016-12-14 20:46:20 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-12-14 18:26:36 ----D---- C:\WINDOWS\system32\LogFiles
2016-12-12 00:56:25 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-12-10 18:58:20 ----D---- C:\WINDOWS\SYSWOW64\oobe
2016-12-10 18:58:20 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-12-10 18:58:17 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-12-10 18:58:17 ----D---- C:\WINDOWS\system32\wbem
2016-12-10 18:58:17 ----D---- C:\WINDOWS\system32\Sysprep
2016-12-10 18:58:17 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2016-12-10 18:58:15 ----D---- C:\WINDOWS\system32\oobe
2016-12-10 18:58:14 ----D---- C:\WINDOWS\system32\Dism
2016-12-10 18:58:10 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-12-10 18:58:10 ----D---- C:\WINDOWS\servicing
2016-12-10 18:58:10 ----D---- C:\WINDOWS\bcastdvr
2016-12-10 18:58:10 ----D---- C:\Program Files\Internet Explorer
2016-12-10 18:58:10 ----D---- C:\Program Files (x86)\Internet Explorer
2016-12-10 17:02:14 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-12-06 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-12-06 293352]
R0 iaStor;@oem13.inf,%*PNP0600.DeviceDesc%;Intel AHCI Controller; C:\WINDOWS\System32\drivers\iaStor.sys [2011-11-29 568600]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2016-12-06 37144]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-12-06 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-12-06 969184]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-12-06 513632]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-07-16 88576]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2016-07-16 8192]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-12-06 108816]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-12-06 163416]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2016-07-16 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2016-07-16 78336]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-10-03 114176]
R3 BthLEEnum;@BthLEEnum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-09-15 249856]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-10-05 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-10-03 84992]
R3 ETD;@oem17.inf,%PS2.DeviceDesc%;ELAN Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2015-10-10 525512]
R3 ibtfltcoex;@oem16.inf,%PROVIDER_NAME%;Intel Corporation; C:\WINDOWS\system32\DRIVERS\ibtfltcoex.sys [2015-11-17 79632]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2016-05-03 3811288]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-06-24 4504320]
R3 IntcDAud;@oem9.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iwdbus;@oem24.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-12-01 38896]
R3 k57nd60a;@netk57a.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\WINDOWS\System32\drivers\k57nd60a.sys [2016-07-16 446464]
R3 MEIx64;@oem23.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-17 62784]
R3 NETwNe64;@oem21.inf,%NIC_Service_DispName_WIN8_64%;Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 8 64 Bit; C:\WINDOWS\System32\drivers\NETwew01.sys [2015-07-28 3363112]
R3 Ps2Kb2Hid;@oem10.inf,%Ps2Kb2Hid.SVCDESC%;PS/2 Keyboard to HID Driver; C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys [2014-08-27 26736]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-07-16 183808]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2016-07-16 105824]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2016-07-16 101216]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2016-07-16 58720]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2016-07-16 61792]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2016-07-16 32096]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-12-06 37656]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2016-07-16 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-11-11 967168]
S3 btmaux;Intel Bluetooth Auxiliary Service; C:\WINDOWS\system32\DRIVERS\btmaux.sys [2013-07-22 140600]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2016-07-16 38912]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-09-10 118272]
S3 dg_ssudbus;@oem20.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2016-09-05 131712]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2016-07-16 20480]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2016-07-16 50016]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-10-03 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2016-07-16 81408]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2016-07-16 176384]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2016-07-16 526176]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 intaud_WaveExtensible;@oem14.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-12-01 50160]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2016-07-16 842584]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2016-07-16 108896]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2016-07-16 928608]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 ssudmdm;@oem8.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2016-09-05 165504]
S3 ssudserd;@oem4.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudserd.sys [2016-09-05 165504]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2016-07-16 95744]
S3 UcmTcpciCx0101;UCM-TCPCI KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmTcpciCx.sys [2016-07-16 108544]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2016-07-16 50688]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2016-07-16 45568]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2016-07-16 263008]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2016-07-16 96608]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2016-07-16 137056]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-10-21 82128]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-12-06 197128]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-08-26 1137016]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-08-26 1157496]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 CDPUserSvc_216fad;CDPUserSvc_216fad; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2015-10-10 144072]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2016-05-03 337888]
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management;Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [2013-09-18 157128]
R2 OneSyncSvc_216fad;Hostitel synchronizace_216fad; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R2 RfButtonDriverService;Dritek RF Button Command Service; C:\Windows\RfBtnSvc64.exe [2014-08-27 96880]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 PimIndexMaintenanceSvc_216fad;Data kontaktů_216fad; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
R3 TimeBrokerSvc;@%windir%\system32\TimeBrokerServer.dll,-1001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S2 rpcnet;Remote Procedure Call (RPC) Net; C:\Windows\SysWOW64\rpcnet.exe [2014-08-27 69792]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-12-16 270936]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2016-05-03 299488]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2016-07-16 93184]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MessagingService_216fad;Služba zasílání zpráv_216fad; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-12-16 172488]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2016-10-03 1312768]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2016-07-16 287744]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; C:\WINDOWS\System32\svchost.exe [2016-07-16 44496]
S4 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-09-20 324224]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2016-07-16 44496]
-----------------EOF-----------------