Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pri uloženi zamrzne MS Word 2013

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
jajko
Návštěvník
Návštěvník
Příspěvky: 88
Registrován: 10 črc 2009 19:47

Pri uloženi zamrzne MS Word 2013

#1 Příspěvek od jajko »

AKONAHLE DAM "uložiť" alebo "uložiť ako" word prestane reagovať.....zostava len ukončiť program!
Neviem či mam virus - mozete sa niekto na to mrknuť?
Tu je RSIT log:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Tomjak at 2017-04-08 14:57:09
Microsoft Windows 8.1
System drive C: has 385 GB (55%) free of 695 GB
Total RAM: 3911 MB (47% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:57:14, on 8.4.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe
C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe
C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\WINDOWS\syswow64\wwahost.exe
C:\Program Files\trend micro\Tomjak.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://acer13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Dolby PCEE4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [AdobeCEPServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Dropbox] "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
O4 - HKLM\..\Run: [Adobe Creative Cloud] "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Lync] "C:\Program Files\Microsoft Office\Office15\lync.exe" /fromrunkey
O4 - Global Startup: Acer Backup Manager Tray.lnk = C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
O4 - Global Startup: Neodelight Joystick Plugin.lnk = E:\Program Files (x86)\Neodelight Joystick Plugin\JoyToKey.exe
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync Volanie kliknutím - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Volanie kliknutím - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AdobeUpdateService - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AllShare Framework DMS - Samsung - C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkManagerDMS.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Broadcom Card Reader Service (BrcmCardReader) - Broadcom Corp. - C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe
O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
O23 - Service: Služba Vzdialená plocha Chrome (chromoting) - Spoločnosť Google Inc. - C:\Program Files (x86)\Google\Chrome Remote Desktop\57.0.2987.37\remoting_host.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Dropbox Update Service (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: DbxSvc - Unknown owner - C:\WINDOWS\system32\DbxSvc.exe (file missing)
O23 - Service: Device Fast-lane Service (DeviceFastLaneService) - Acer Incorporated - C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HTCMonitorService - Nero AG - C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NTI IScheduleSvc - NTI Corporation - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) - arvato digital services llc - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Razer Game Scanner (Razer Game Scanner Service) - Unknown owner - C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) - Dritek System INC. - C:\Windows\RfBtnSvc64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Samsung Link Service - Copyright 2013 SAMSUNG - C:\Program Files\Samsung\Samsung Link\Samsung Link.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14567 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\Explorer.EXE
taskhostex.exe
"\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe"
taskeng.exe {8AF34EE3-28E6-4C84-90AD-79F8B11F975D}
"C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkManagerDMS.exe"
"C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe" /c
"C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe"
"C:\Program Files (x86)\Google\Chrome Remote Desktop\57.0.2987.37\remoting_host.exe" --type=daemon --host-config="C:\ProgramData\Google\Chrome Remote Desktop\host.json"
"C:\Program Files (x86)\Google\Chrome Remote Desktop\57.0.2987.37\remoting_host.exe" --type=host --mojo-pipe-token=F57A49C7C7270FD3F6E5E8018662680D --mojo-platform-channel-handle=572
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
dashost.exe {aef33daf-62c5-4eee-a3a2c5232623879b}
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
"C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window --enable-setforeground-window --enable-kbhook-window
"C:\Program Files (x86)\Launch Manager\LManager.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
adb fork-server server
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe"
"c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
C:\Windows\RfBtnSvc64.exe
"C:\Program Files\Samsung\Samsung Link\Samsung Link.exe"
"C:\Program Files\Samsung\Samsung Link\Samsung Link.exe" "Samsung Link Service" __i4j_restart
"C:\Program Files\Acer\Acer Power Management\ePowerTray.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe"
C:\WINDOWS\system32\igfxext.exe -Embedding
taskeng.exe {DECE54B0-012E-4C3F-BD84-C829090685E2}
"C:\Program Files\Microsoft Office\Office15\MsoSync.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe"
"C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 "--database=C:\Users\Tomjak\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\Tomjak\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=57.0.2987.133 --initial-client-data=0x124,0x128,0x12c,0x120,0x130,0x6f3e7dc8,0x6f3e7dbc,0x6f3e7dd4
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=4168 --on-initialized-event-handle=444 --parent-handle=460 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=1252 --disable-direct-composition --supports-dual-gpus=false --gpu-driver-bug-workarounds=7,10,18,19,20,23,41,61,74 --disable-gl-extensions="GL_KHR_blend_equation_advanced GL_KHR_blend_equation_advanced_coherent" --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.4276 --gpu-driver-date=8-17-2015 --gpu-secondary-vendor-ids=0x10de --gpu-secondary-device-ids=0x1140 --service-request-channel-token=B8C1B5007662055D14B5731537AF748F --mojo-platform-channel-handle=1268 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1252 --primordial-pipe-token=DEBAF6A384C028F08B646D91E85014B2 --lang=sk --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=DEBAF6A384C028F08B646D91E85014B2 --renderer-client-id=4 --mojo-platform-channel-handle=2564 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1252 --primordial-pipe-token=803C3FF07F113B3AE59597173566587B --lang=sk --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=803C3FF07F113B3AE59597173566587B --renderer-client-id=8 --mojo-platform-channel-handle=4328 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1252 --primordial-pipe-token=58757B70561504189CD701C1D1ECB2D7 --lang=sk --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=58757B70561504189CD701C1D1ECB2D7 --renderer-client-id=11 --mojo-platform-channel-handle=5956 /prefetch:1
C:\WINDOWS\system32\DbxSvc.exe
C:\WINDOWS\system32\CompatTelRunner.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4

C:\WINDOWS\system32\CompatTelRunner.exe -m:appraiser.dll -f:DoScheduledTelemetryRun -cv:2R3KG/IlOU+H9Vys.1
C:\WINDOWS\System32\svchost.exe -k smphost
"C:\Program Files\EgisTec IPS\PMMUpdate.exe"
"C:\Program Files\EgisTec IPS\EgisUpdate.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1252 --primordial-pipe-token=8BEE7B0C444AFFF313FD57EDE071A652 --lang=sk --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=8BEE7B0C444AFFF313FD57EDE071A652 --renderer-client-id=16 --mojo-platform-channel-handle=3620 /prefetch:1
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
"C:\WINDOWS\syswow64\wwahost.exe" -ServerName:App.wwa
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 568 572 580 65536 576

"C:\Users\Tomjak\Downloads\RSITx64.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\WINDOWS\tasks\DropboxUpdateTaskMachineCore1d23ffdbf68b81d.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /c
C:\WINDOWS\tasks\DropboxUpdateTaskMachineUA.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-3072883419-3792539118-3593252812-1004Core.job - C:\Users\Shadowseen\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-3072883419-3792539118-3593252812-1004UA.job - C:\Users\Shadowseen\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-02-10 218776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2012-08-11 64640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2015-01-21 2334928]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-02-10 153248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-28 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2015-01-21 1729744]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-28 172968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-06-11 12503184]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-06-07 1212048]
"BtPreLoad"=C:\Program Files (x86)\Bluetooth Suite\BtPreLoad.exe [2012-08-11 64640]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-09-13 2917176]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-03-22 508128]
"Samsung Link"=C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe [2015-03-18 607584]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-06-03 2398776]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2016-06-03 1767944]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2016-11-22 4035152]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2017-03-03 9364696]
"Lync"=C:\Program Files\Microsoft Office\Office15\lync.exe [2015-02-10 22769304]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"LManager"= []
"Dolby Home Theater v4"=C:\Dolby PCEE4\pcee4.exe [2012-04-23 508256]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5.5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [2011-01-12 1523360]
"AdobeCEPServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe [2013-05-16 1039240]
"Dropbox"=C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [2017-04-06 28329912]
"Adobe Creative Cloud"=C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2016-04-07 2313408]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer Backup Manager Tray.lnk - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
Neodelight Joystick Plugin.lnk - E:\Program Files (x86)\Neodelight Joystick Plugin\JoyToKey.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" ,C:\WINDOWS\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\WINDOWS\System32\DreamScene.dll [2014-10-07 275360]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37Crusader]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37CrusaderBoot]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HitmanPro37Crusader]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HitmanPro37CrusaderBoot]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FPS1"=frapsv64.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"midi1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2017-04-07 20:29:58 ----D---- C:\WINDOWS\AutoKMS
2017-04-06 21:10:36 ----D---- C:\Program Files\Windows Live
2017-04-06 18:57:14 ----A---- C:\WINDOWS\system32\DbxSvc.exe
2017-04-03 22:06:03 ----RD---- C:\IZOPLAST
2017-04-03 20:46:54 ----D---- C:\Program Files (x86)\Windows Live
2017-04-03 20:45:36 ----D---- C:\ProgramData\Microsoft OneDrive
2017-03-26 20:16:48 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2017-03-26 17:44:01 ----D---- C:\Program Files\Microsoft.NET
2017-03-26 17:22:34 ----A---- C:\WINDOWS\SYSWOW64\aspnet_counters.dll
2017-03-26 17:22:34 ----A---- C:\WINDOWS\system32\aspnet_counters.dll
2017-03-26 17:22:23 ----A---- C:\WINDOWS\SYSWOW64\msvcp120_clr0400.dll
2017-03-26 17:22:23 ----A---- C:\WINDOWS\system32\msvcp120_clr0400.dll
2017-03-26 17:22:18 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2017-03-26 17:22:18 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2017-03-26 16:43:22 ----A---- C:\WINDOWS\system32\vpnike.dll
2017-03-26 16:43:20 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2017-03-26 16:43:20 ----A---- C:\WINDOWS\system32\rasapi32.dll
2017-03-26 16:43:19 ----A---- C:\WINDOWS\system32\mprdim.dll
2017-03-26 16:43:19 ----A---- C:\WINDOWS\system32\mprddm.dll
2017-03-26 16:43:19 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2017-03-26 16:43:18 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2017-03-26 16:43:18 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2017-03-26 16:43:18 ----A---- C:\WINDOWS\system32\rasmans.dll
2017-03-26 16:43:18 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2017-03-26 16:43:17 ----A---- C:\WINDOWS\SYSWOW64\dssenh.dll
2017-03-26 16:43:17 ----A---- C:\WINDOWS\system32\wpdbusenum.dll
2017-03-26 16:43:17 ----A---- C:\WINDOWS\system32\rasppp.dll
2017-03-26 16:43:17 ----A---- C:\WINDOWS\system32\dssenh.dll
2017-03-26 16:43:15 ----A---- C:\WINDOWS\system32\rasman.dll
2017-03-26 16:43:14 ----A---- C:\WINDOWS\system32\rdpudd.dll
2017-03-26 16:43:14 ----A---- C:\WINDOWS\system32\rdpclip.exe
2017-03-26 16:43:14 ----A---- C:\WINDOWS\system32\rascustom.dll
2017-03-26 16:43:13 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2017-03-26 16:43:13 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2017-03-26 16:43:12 ----A---- C:\WINDOWS\SYSWOW64\rasppp.dll
2017-03-26 16:43:12 ----A---- C:\WINDOWS\SYSWOW64\rasman.dll
2017-03-26 16:43:11 ----A---- C:\WINDOWS\system32\nshwfp.dll
2017-03-26 16:43:11 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2017-03-26 16:37:16 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2017-03-26 16:37:16 ----A---- C:\WINDOWS\system32\schannel.dll
2017-03-26 16:36:37 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2017-03-26 16:36:37 ----A---- C:\WINDOWS\system32\oleaut32.dll
2017-03-22 21:58:57 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2017-03-22 21:58:57 ----A---- C:\WINDOWS\system32\aepic.dll
2017-03-22 21:58:57 ----A---- C:\WINDOWS\system32\aeinv.dll
2017-03-22 21:58:57 ----A---- C:\WINDOWS\system32\acmigration.dll
2017-03-22 21:58:56 ----A---- C:\WINDOWS\system32\invagent.dll
2017-03-22 21:58:56 ----A---- C:\WINDOWS\system32\appraiser.dll
2017-03-22 21:58:55 ----A---- C:\WINDOWS\system32\generaltel.dll
2017-03-22 21:58:55 ----A---- C:\WINDOWS\system32\devinv.dll
2017-03-22 21:58:55 ----A---- C:\WINDOWS\system32\centel.dll
2017-03-22 21:52:05 ----A---- C:\WINDOWS\system32\ntdll.dll
2017-03-22 21:52:05 ----A---- C:\WINDOWS\system32\csrsrv.dll
2017-03-22 21:51:48 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2017-03-22 21:51:48 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2017-03-22 21:51:47 ----A---- C:\WINDOWS\system32\sspicli.dll
2017-03-22 21:51:47 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2017-03-22 21:51:47 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2017-03-22 21:51:46 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2017-03-22 21:51:46 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2017-03-22 21:51:15 ----A---- C:\WINDOWS\system32\pnidui.dll
2017-03-22 21:51:14 ----A---- C:\WINDOWS\system32\wwanmm.dll
2017-03-22 21:51:14 ----A---- C:\WINDOWS\system32\wwanconn.dll
2017-03-22 21:50:44 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-03-22 21:50:43 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2017-03-22 21:50:43 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-03-22 21:50:41 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2017-03-22 21:50:41 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-03-22 21:50:41 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2017-03-22 21:50:41 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2017-03-22 21:50:41 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2017-03-22 21:50:39 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-03-22 21:50:38 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2017-03-22 21:50:37 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2017-03-22 21:50:37 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2017-03-22 21:50:37 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-03-22 21:50:36 ----A---- C:\WINDOWS\SYSWOW64\glcndFilter.dll
2017-03-22 21:50:36 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2017-03-22 21:50:36 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-03-22 21:50:35 ----A---- C:\WINDOWS\system32\msfeeds.dll
2017-03-22 21:50:34 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-03-22 21:50:33 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2017-03-22 21:50:32 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-03-22 21:50:32 ----A---- C:\WINDOWS\system32\gdi32.dll
2017-03-22 21:50:31 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2017-03-22 21:50:31 ----A---- C:\WINDOWS\system32\FntCache.dll
2017-03-22 21:50:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2017-03-22 21:50:29 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2017-03-22 21:50:29 ----A---- C:\WINDOWS\system32\glcndFilter.dll
2017-03-22 21:50:28 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2017-03-22 21:50:28 ----A---- C:\WINDOWS\system32\jscript.dll
2017-03-22 21:50:28 ----A---- C:\WINDOWS\system32\dxtrans.dll
2017-03-22 21:50:28 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2017-03-22 21:50:26 ----A---- C:\WINDOWS\system32\mshtmled.dll
2017-03-22 21:50:26 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-03-22 21:50:25 ----A---- C:\WINDOWS\system32\webcheck.dll
2017-03-22 21:50:24 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-03-22 21:50:23 ----A---- C:\WINDOWS\system32\win32k.sys
2017-03-22 21:50:23 ----A---- C:\WINDOWS\system32\ieui.dll
2017-03-22 21:50:22 ----A---- C:\WINDOWS\system32\DWrite.dll
2017-03-22 21:50:21 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-03-22 21:50:21 ----A---- C:\WINDOWS\system32\inetcomm.dll
2017-03-22 21:50:20 ----A---- C:\WINDOWS\system32\wininet.dll
2017-03-22 21:50:19 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-03-22 21:50:17 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-03-22 21:50:14 ----A---- C:\WINDOWS\system32\drivers\cmimcext.sys
2017-03-22 21:50:13 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2017-03-22 21:50:13 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2017-03-22 21:50:13 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2017-03-22 21:50:13 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2017-03-22 21:50:12 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2017-03-22 21:50:12 ----A---- C:\WINDOWS\system32\msv1_0.dll
2017-03-22 21:50:11 ----A---- C:\WINDOWS\system32\lsasrv.dll
2017-03-22 21:50:11 ----A---- C:\WINDOWS\system32\dnsapi.dll
2017-03-22 21:50:09 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2017-03-22 21:50:09 ----A---- C:\WINDOWS\system32\wmp.dll
2017-03-22 21:50:09 ----A---- C:\WINDOWS\system32\iepeers.dll
2017-03-22 21:50:08 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2017-03-22 21:49:59 ----A---- C:\WINDOWS\system32\wow64.dll
2017-03-22 21:49:57 ----A---- C:\WINDOWS\system32\diagtrack.dll
2017-03-22 21:49:56 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2017-03-22 21:49:55 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2017-03-22 21:49:55 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2017-03-22 21:49:54 ----A---- C:\WINDOWS\system32\esent.dll
2017-03-22 21:49:53 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2017-03-22 21:49:50 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2017-03-22 21:49:49 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2017-03-22 21:49:47 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2017-03-22 21:49:45 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2017-03-22 21:49:45 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2017-03-22 21:49:44 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2017-03-22 21:49:44 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2017-03-22 21:49:43 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2017-03-22 21:49:43 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2017-03-22 21:49:42 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2017-03-22 21:49:41 ----A---- C:\WINDOWS\system32\msi.dll
2017-03-22 21:49:40 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll
2017-03-22 21:49:40 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2017-03-22 21:49:40 ----A---- C:\WINDOWS\system32\bcrypt.dll
2017-03-22 21:49:38 ----A---- C:\WINDOWS\system32\d3d11.dll
2017-03-22 21:49:38 ----A---- C:\WINDOWS\system32\authui.dll
2017-03-22 21:49:37 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2017-03-22 21:49:37 ----A---- C:\WINDOWS\system32\crypt32.dll
2017-03-22 21:49:36 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2017-03-22 21:49:36 ----A---- C:\WINDOWS\system32\certcli.dll
2017-03-22 21:49:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2017-03-22 21:49:35 ----A---- C:\WINDOWS\system32\ole32.dll
2017-03-22 21:49:34 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2017-03-22 21:49:34 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2017-03-22 21:49:32 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2017-03-22 21:49:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2017-03-22 21:49:31 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2017-03-22 21:49:31 ----A---- C:\WINDOWS\system32\msctf.dll
2017-03-22 21:49:29 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2017-03-22 21:49:29 ----A---- C:\WINDOWS\system32\drivers\http.sys
2017-03-22 21:49:28 ----A---- C:\WINDOWS\system32\user32.dll
2017-03-22 21:49:28 ----A---- C:\WINDOWS\system32\msxml3.dll
2017-03-22 21:49:28 ----A---- C:\WINDOWS\system32\drivers\refs.sys
2017-03-22 21:49:27 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2017-03-22 21:49:27 ----A---- C:\WINDOWS\system32\mfsvr.dll
2017-03-22 21:49:26 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2017-03-22 21:49:26 ----A---- C:\WINDOWS\system32\winresume.exe
2017-03-22 21:49:26 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2017-03-22 21:49:25 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2017-03-22 21:49:25 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2017-03-22 21:49:24 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2017-03-22 21:49:24 ----A---- C:\WINDOWS\system32\SessEnv.dll
2017-03-22 21:49:24 ----A---- C:\WINDOWS\system32\ntshrui.dll
2017-03-22 21:49:24 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2017-03-22 21:49:23 ----A---- C:\WINDOWS\SYSWOW64\SessEnv.dll
2017-03-22 21:49:23 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2017-03-22 21:49:23 ----A---- C:\WINDOWS\system32\win32spl.dll
2017-03-22 21:49:23 ----A---- C:\WINDOWS\system32\UIAnimation.dll
2017-03-22 21:49:22 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2017-03-22 21:49:22 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2017-03-22 21:49:22 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2017-03-22 21:49:21 ----A---- C:\WINDOWS\SYSWOW64\UIAnimation.dll
2017-03-22 21:49:21 ----A---- C:\WINDOWS\system32\wintrust.dll
2017-03-22 21:49:21 ----A---- C:\WINDOWS\system32\netlogon.dll
2017-03-22 21:49:19 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2017-03-22 21:49:19 ----A---- C:\WINDOWS\system32\drivers\msiscsi.sys
2017-03-22 21:49:19 ----A---- C:\WINDOWS\system32\drivers\bowser.sys
2017-03-22 21:49:18 ----A---- C:\WINDOWS\system32\pdh.dll
2017-03-22 21:49:17 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2017-03-22 21:49:17 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2017-03-22 21:49:17 ----A---- C:\WINDOWS\system32\winload.exe
2017-03-22 21:49:17 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2017-03-22 21:49:17 ----A---- C:\WINDOWS\system32\d3d10level9.dll
2017-03-22 21:49:17 ----A---- C:\WINDOWS\system32\atmfd.dll
2017-03-22 21:49:16 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2017-03-22 21:49:16 ----A---- C:\WINDOWS\SYSWOW64\pdh.dll
2017-03-22 21:49:16 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2017-03-22 21:49:16 ----A---- C:\WINDOWS\system32\wbengine.exe
2017-03-22 21:49:16 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2017-03-22 21:49:15 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2017-03-22 21:49:15 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2017-03-22 21:49:15 ----A---- C:\WINDOWS\system32\drivers\parport.sys
2017-03-22 21:49:15 ----A---- C:\WINDOWS\system32\DafPrintProvider.dll
2017-03-22 21:49:14 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2017-03-22 21:49:14 ----A---- C:\WINDOWS\system32\wmploc.DLL
2017-03-22 21:49:14 ----A---- C:\WINDOWS\system32\adtschema.dll
2017-03-22 21:49:13 ----A---- C:\WINDOWS\SYSWOW64\wmploc.DLL
2017-03-22 21:49:13 ----A---- C:\WINDOWS\SYSWOW64\DafPrintProvider.dll
2017-03-22 21:49:12 ----A---- C:\WINDOWS\SYSWOW64\adsmsext.dll
2017-03-22 21:49:12 ----A---- C:\WINDOWS\system32\quartz.dll
2017-03-22 21:49:12 ----A---- C:\WINDOWS\system32\input.dll
2017-03-22 21:49:12 ----A---- C:\WINDOWS\system32\adsmsext.dll
2017-03-22 21:49:11 ----A---- C:\WINDOWS\SYSWOW64\shsetup.dll
2017-03-22 21:49:11 ----A---- C:\WINDOWS\SYSWOW64\d3d10level9.dll
2017-03-22 21:49:11 ----A---- C:\WINDOWS\system32\shsetup.dll
2017-03-22 21:49:11 ----A---- C:\WINDOWS\system32\iscsiexe.dll
2017-03-22 21:49:11 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2017-03-22 21:49:11 ----A---- C:\WINDOWS\system32\ActionQueue.dll
2017-03-22 21:49:11 ----A---- C:\WINDOWS\HelpPane.exe
2017-03-22 21:49:10 ----A---- C:\WINDOWS\SYSWOW64\rastapi.dll
2017-03-22 21:49:10 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2017-03-22 21:49:10 ----A---- C:\WINDOWS\system32\GlobCollationHost.dll
2017-03-22 21:49:09 ----A---- C:\WINDOWS\system32\localspl.dll
2017-03-22 21:49:09 ----A---- C:\WINDOWS\system32\drivers\tm.sys
2017-03-22 21:49:08 ----A---- C:\WINDOWS\system32\wininit.exe
2017-03-22 21:49:05 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2017-03-22 21:49:05 ----A---- C:\WINDOWS\SYSWOW64\input.dll
2017-03-22 21:49:05 ----A---- C:\WINDOWS\system32\iscsiwmi.dll
2017-03-22 21:49:04 ----A---- C:\WINDOWS\SYSWOW64\iscsiwmi.dll
2017-03-22 21:49:04 ----A---- C:\WINDOWS\system32\rastapi.dll
2017-03-22 21:49:04 ----A---- C:\WINDOWS\system32\apisetschema.dll
2017-03-22 21:49:01 ----A---- C:\WINDOWS\system32\mscms.dll
2017-03-22 21:49:00 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2017-03-22 21:49:00 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2017-03-22 21:49:00 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2017-03-22 21:49:00 ----A---- C:\WINDOWS\system32\asycfilt.dll
2017-03-22 21:48:59 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2017-03-22 21:48:59 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll
2017-03-22 21:48:59 ----A---- C:\WINDOWS\system32\offreg.dll
2017-03-22 21:48:59 ----A---- C:\WINDOWS\system32\drivers\serial.sys
2017-03-22 21:48:58 ----A---- C:\WINDOWS\SYSWOW64\mscms.dll
2017-03-22 21:48:58 ----A---- C:\WINDOWS\SYSWOW64\iscsidsc.dll
2017-03-22 21:48:58 ----A---- C:\WINDOWS\system32\xolehlp.dll
2017-03-22 21:48:58 ----A---- C:\WINDOWS\system32\iscsidsc.dll
2017-03-22 21:48:58 ----A---- C:\WINDOWS\system32\dab.dll
2017-03-22 21:48:57 ----A---- C:\WINDOWS\SYSWOW64\icm32.dll
2017-03-22 21:48:57 ----A---- C:\WINDOWS\system32\icm32.dll
2017-03-22 21:48:56 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2017-03-22 21:48:56 ----A---- C:\WINDOWS\system32\drivers\vwifibus.sys
2017-03-22 21:48:55 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2017-03-22 21:48:55 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2017-03-22 21:48:55 ----A---- C:\WINDOWS\system32\drivers\serenum.sys
2017-03-22 21:48:54 ----A---- C:\WINDOWS\SYSWOW64\msobjs.dll
2017-03-22 21:48:54 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2017-03-22 21:48:54 ----A---- C:\WINDOWS\system32\msobjs.dll
2017-03-22 21:48:54 ----A---- C:\WINDOWS\system32\atmlib.dll
2017-03-22 19:47:10 ----A---- C:\WINDOWS\system32\drivers\dbx-stable.sys
2017-03-22 19:47:10 ----A---- C:\WINDOWS\system32\drivers\dbx-dev.sys
2017-03-22 19:47:10 ----A---- C:\WINDOWS\system32\drivers\dbx-canary.sys

======List of files/folders modified in the last 1 month======

2017-04-08 14:57:12 ----D---- C:\Program Files\trend micro
2017-04-08 14:57:00 ----D---- C:\WINDOWS\Temp
2017-04-08 14:50:14 ----D---- C:\Program Files (x86)\Dropbox
2017-04-08 14:49:46 ----D---- C:\WINDOWS\Prefetch
2017-04-08 14:49:31 ----RD---- C:\WINDOWS\System32
2017-04-08 14:49:31 ----D---- C:\WINDOWS\system32\drivers
2017-04-08 14:44:58 ----D---- C:\WINDOWS\AppReadiness
2017-04-08 14:44:44 ----D---- C:\WINDOWS\system32\Tasks
2017-04-08 14:44:05 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2017-04-07 20:34:52 ----D---- C:\WINDOWS\SoftwareDistribution
2017-04-07 20:34:44 ----D---- C:\Windows
2017-04-07 20:27:01 ----SHD---- C:\WINDOWS\Installer
2017-04-07 20:27:01 ----SHD---- C:\Config.Msi
2017-04-07 20:26:00 ----D---- C:\WINDOWS\Inf
2017-04-07 20:26:00 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-04-07 20:25:06 ----D---- C:\ProgramData\Microsoft Help
2017-04-07 20:00:02 ----D---- C:\WINDOWS\system32\sru
2017-04-07 19:28:39 ----D---- C:\Program Files\CCleaner
2017-04-07 19:28:10 ----D---- C:\WINDOWS\Logs
2017-04-07 19:28:10 ----D---- C:\WINDOWS\debug
2017-04-06 21:10:36 ----RD---- C:\Program Files
2017-04-06 21:03:55 ----SHD---- C:\System Volume Information
2017-04-06 20:59:39 ----D---- C:\WINDOWS\system32\config
2017-04-06 20:57:50 ----D---- C:\WINDOWS\SysWOW64
2017-04-06 19:24:47 ----D---- C:\AdwCleaner
2017-04-04 18:14:56 ----D---- C:\WINDOWS\Microsoft.NET
2017-04-03 20:46:54 ----RD---- C:\Program Files (x86)
2017-04-03 20:45:36 ----HD---- C:\ProgramData
2017-04-02 20:57:54 ----RSD---- C:\WINDOWS\assembly
2017-04-02 20:45:55 ----D---- C:\WINDOWS\system32\catroot2
2017-04-02 20:43:15 ----D---- C:\WINDOWS\system32\DriverStore
2017-03-30 22:13:11 ----D---- C:\WINDOWS\rescache
2017-03-26 20:17:03 ----D---- C:\WINDOWS\WinSxS
2017-03-26 18:13:59 ----RD---- C:\WINDOWS\ToastData
2017-03-26 18:13:56 ----D---- C:\Program Files\Internet Explorer
2017-03-26 18:13:56 ----D---- C:\Program Files (x86)\Internet Explorer
2017-03-26 18:13:55 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2017-03-26 18:13:55 ----D---- C:\WINDOWS\SYSWOW64\migration
2017-03-26 18:13:54 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-03-26 18:13:46 ----D---- C:\WINDOWS\system32\wbem
2017-03-26 18:13:46 ----D---- C:\WINDOWS\system32\sk-SK
2017-03-26 18:13:46 ----D---- C:\WINDOWS\system32\migration
2017-03-26 18:13:46 ----D---- C:\WINDOWS\system32\Boot
2017-03-26 18:13:45 ----D---- C:\WINDOWS\system32\oobe
2017-03-26 18:13:45 ----D---- C:\WINDOWS\system32\en-US
2017-03-26 18:13:40 ----D---- C:\WINDOWS\apppatch
2017-03-26 18:13:38 ----SD---- C:\WINDOWS\system32\CompatTel
2017-03-26 18:13:38 ----D---- C:\WINDOWS\system32\appraiser
2017-03-26 18:13:32 ----D---- C:\WINDOWS\SYSWOW64\setup
2017-03-26 18:13:32 ----D---- C:\WINDOWS\system32\setup
2017-03-26 18:13:19 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2017-03-26 17:56:41 ----D---- C:\WINDOWS\CbsTemp
2017-03-26 17:44:01 ----D---- C:\Program Files (x86)\Microsoft.NET
2017-03-26 17:43:58 ----D---- C:\Program Files\Common Files\microsoft shared
2017-03-26 17:30:53 ----A---- C:\WINDOWS\win.ini
2017-03-26 17:19:59 ----D---- C:\WINDOWS\ShellNew
2017-03-26 17:19:59 ----D---- C:\Program Files\Windows Journal
2017-03-24 23:42:52 ----D---- C:\Program Files\Microsoft Silverlight
2017-03-24 23:42:51 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2017-03-24 23:42:00 ----D---- C:\WINDOWS\system32\MRT
2017-03-24 23:35:53 ----AC---- C:\WINDOWS\system32\MRT.exe
2017-03-24 23:10:25 ----D---- C:\WINDOWS\Minidump
2017-03-22 22:01:55 ----HD---- C:\Program Files\WindowsApps
2017-03-16 21:17:29 ----D---- C:\WINDOWS\Tasks
2017-03-16 21:17:19 ----D---- C:\WINDOWS\system32\Macromed
2017-03-16 21:17:13 ----D---- C:\WINDOWS\SYSWOW64\Macromed

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2011-08-04 62496]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-07-09 645952]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2016-06-03 39992]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2011-08-04 146432]
R1 EpfwLWF;@oem33.inf,%EpfwLWF_Desc%;Epfw NDIS LightWeight Filter; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2011-08-04 38288]
R1 mwlPSDFilter;mwlPSDFilter; C:\WINDOWS\system32\DRIVERS\mwlPSDFilter.sys [2012-11-02 22648]
R1 mwlPSDNServ;mwlPSDNServ; C:\WINDOWS\system32\DRIVERS\mwlPSDNServ.sys [2012-11-02 20520]
R1 mwlPSDVDisk;mwlPSDVDisk; C:\WINDOWS\system32\DRIVERS\mwlPSDVDisk.sys [2012-11-02 62776]
R2 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2011-08-09 202576]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2011-08-04 187632]
R2 rzpmgrk;rzpmgrk; \??\C:\WINDOWS\system32\drivers\rzpmgrk.sys [2014-11-01 37184]
R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-18 3680256]
R3 b57xdbd;@oem22.inf,%bcmxd_16bf_svcd%;Broadcom xD Picture Bus Driver Service; C:\WINDOWS\System32\drivers\b57xdbd.sys [2012-08-13 72280]
R3 b57xdmp;@oem22.inf,%BXD_SVCDESC%;Broadcom xD Picture vstorp client drv; C:\WINDOWS\System32\drivers\b57xdmp.sys [2012-08-13 21080]
R3 bScsiMSa;bScsiMSa; C:\WINDOWS\System32\drivers\bScsiMSa.sys [2012-06-19 55384]
R3 bScsiSDa;bScsiSDa; C:\WINDOWS\System32\drivers\bScsiSDa.sys [2012-08-14 70744]
R3 BTATH_HCRP;@oem14.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2012-08-11 178840]
R3 BTATH_RCP;@oem16.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys [2012-08-11 135832]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2015-04-29 600088]
R3 BthA2DP;@wdma_bt.inf,%BthA2DP.SvcDesc%;Bluetooth Stereo; C:\WINDOWS\system32\drivers\BthA2DP.sys [2015-01-30 132608]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-06-10 53248]
R3 BthHFAud;@wdma_bt.inf,%DISPLAY_NAME%;Bluetooth Hands-Free; C:\WINDOWS\System32\drivers\BthHfAud.sys [2014-10-08 32768]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-07-10 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2015-06-10 81920]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-08-27 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-06-12 4060560]
R3 IntcDAud;@oem49.inf,%IntcDAud.SvcDesc%;Intel(R) Zvuk pre obrazovky; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iwdbus;@oem27.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 k57nd60a;@netk57a.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\WINDOWS\system32\DRIVERS\k57nd60a.sys [2013-06-18 425984]
R3 MEIx64;@oem23.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2010-04-20 18432]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2016-06-03 13460536]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-06-03 28216]
R3 nvvad_WaveExtensible;@oem44.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2016-06-03 56384]
R3 Ps2Kb2Hid;@oem3.inf,%Ps2Kb2Hid.SVCDESC%;PS/2 Keyboard to HID Driver; C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys [2012-12-12 26736]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-01-30 167424]
R3 ROCKEYNT;@oem37.inf,%Rockey.SVCDESC%;Feitian ROCKEY4 Device Service; C:\WINDOWS\system32\DRIVERS\Rockey4.sys [2016-04-13 36904]
R3 SynTP;@oem5.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2012-09-13 448312]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2010-07-09 17408]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 AthBTPort;@oem11.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2012-08-11 88728]
S3 BTATH_A2DP;@oem10.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys [2012-08-11 344216]
S3 btath_avdt;@oem10.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys [2012-08-11 114840]
S3 BTATH_LWFLT;@oem15.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2012-08-11 76952]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2015-06-10 1201664]
S3 dbx;dbx; C:\WINDOWS\system32\DRIVERS\dbx.sys []
S3 dg_ssudbus;@oem19.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 dtlitescsibus;@oem43.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-05-11 30352]
S3 Hamachi;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2016-04-05 45680]
S3 hitmanpro37;HitmanPro 3.7 Support Driver; \??\C:\WINDOWS\system32\drivers\hitmanpro37.sys [2015-02-23 43664]
S3 htcnprot;@oem51.inf,%NDISPROT_Desc%;HTC NDIS Protocol Driver; C:\WINDOWS\system32\DRIVERS\htcnprot.sys [2013-10-17 36928]
S3 HtcVCom32;@oem54.inf,%OEMSerialPortName00%;HTC Diagnostic Port; C:\WINDOWS\system32\DRIVERS\HtcVComV64.sys [2010-03-09 121800]
S3 intaud_WaveExtensible;@oem26.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2015-02-23 129752]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2012-09-13 43832]
S3 ssudmdm;@oem60.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-12-08 214832]
S3 ssudserd;@oem59.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudserd.sys [2015-12-08 214832]
S3 usb_rndisx;@netrndis.inf,%usb_rndis.Service.DispName%;USB RNDIS Adapter; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2015-04-25 20992]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp.sys [2014-05-16 141600]
S3 VBoxNetFlt;@oem47.inf,%VBoxNetFltService_Desc%;VirtualBox Bridged Networking Service; C:\WINDOWS\system32\drivers\VBoxNetFlt.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-12-19 82640]
R2 AdobeUpdateService;AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [2016-04-07 694464]
R2 AllShare Framework DMS;AllShare Framework DMS; C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkManagerDMS.exe [2013-12-21 404360]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-08-11 211584]
R2 BrcmCardReader;Broadcom Card Reader Service; C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [2012-08-21 176640]
R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2012-08-24 2435728]
R2 DbxSvc;DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [2017-04-06 46408]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-10-29 38792]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2012-08-28 348784]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2011-09-22 974944]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-06-03 1165368]
R2 HTCMonitorService;HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [2014-06-27 87368]
R2 chromoting;Služba Vzdialená plocha Chrome; C:\Program Files (x86)\Google\Chrome Remote Desktop\57.0.2987.37\remoting_host.exe [2017-02-07 72024]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-08-27 330136]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-21 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2012-08-23 259136]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-06-03 1881144]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-06-03 2522680]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2016-06-03 1351104]
R2 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2013-10-17 166912]
R2 PSI_SVC_2_x64;Corel License Validation Service V2 x64, Powered by arvato; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2013-09-13 337776]
R2 RfButtonDriverService;Dritek RF Button Command Service; C:\Windows\RfBtnSvc64.exe [2012-12-12 93296]
R2 Samsung Link Service;Samsung Link Service; C:\Program Files\Samsung\Samsung Link\Samsung Link.exe [2015-03-18 616288]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 364416]
R3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\system32\svchost.exe [2014-10-29 38792]
R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2012-08-23 658576]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2016-06-03 3634232]
S2 dbupdate;Dropbox Update Service (dbupdate); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-06 143144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 Razer Game Scanner Service;Razer Game Scanner; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [2014-11-01 183488]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-03-16 271960]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-08-27 291744]
S3 dbupdatem;Dropbox Update Service (dbupdatem); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-06 143144]
S3 DeviceFastLaneService;Device Fast-lane Service; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [2012-08-23 468624]
S3 EgisTec Ticket Service;EgisTec Ticket Service; C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2012-07-12 174160]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2012-12-12 655624]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-30 147624]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2013-01-25 178760]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-06-23 1450064]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119670
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pri uloženi zamrzne MS Word 2013

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jajko
Návštěvník
Návštěvník
Příspěvky: 88
Registrován: 10 črc 2009 19:47

Re: Pri uloženi zamrzne MS Word 2013

#3 Příspěvek od jajko »

Zdravim RUDY!
Tu je log:
# AdwCleaner v6.045 - Log vytvořen 08/04/2017 v 18:54:45
# Aktualizováno dne 28/03/2017 z Malwarebytes
# Databáze : 2017-04-06.1 [Místní]
# Operační systém : Windows 8.1 (X64)
# Uživatelské jméno : Tomjak - NOTEBOK
# Spuštěno z : C:\Users\Tomjak\Downloads\adwcleaner_6.045.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support



***** [ Služby ] *****



***** [ Složky ] *****



***** [ Soubory ] *****



***** [ DLL ] *****



***** [ WMI ] *****



***** [ Zástupci ] *****



***** [ Naplánované úlohy ] *****



***** [ Registry ] *****



***** [ Prohlížeče ] *****



*************************

:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [10244 Bajty] - [19/01/2016 13:59:09]
C:\AdwCleaner\AdwCleaner[C2].txt - [3443 Bajty] - [24/10/2016 15:04:02]
C:\AdwCleaner\AdwCleaner[C3].txt - [2010 Bajty] - [31/10/2016 10:27:08]
C:\AdwCleaner\AdwCleaner[C4].txt - [1941 Bajty] - [30/11/2016 11:27:45]
C:\AdwCleaner\AdwCleaner[C5].txt - [2685 Bajty] - [24/03/2017 23:06:43]
C:\AdwCleaner\AdwCleaner[C6].txt - [1995 Bajty] - [06/04/2017 19:24:47]
C:\AdwCleaner\AdwCleaner[C7].txt - [1232 Bajty] - [08/04/2017 18:54:45]
C:\AdwCleaner\AdwCleaner[S1].txt - [9569 Bajty] - [19/01/2016 13:56:35]
C:\AdwCleaner\AdwCleaner[S2].txt - [3452 Bajty] - [24/10/2016 15:02:58]
C:\AdwCleaner\AdwCleaner[S3].txt - [1962 Bajty] - [31/10/2016 10:26:30]
C:\AdwCleaner\AdwCleaner[S4].txt - [2003 Bajty] - [30/11/2016 11:27:27]
C:\AdwCleaner\AdwCleaner[S5].txt - [3021 Bajty] - [24/03/2017 23:03:52]
C:\AdwCleaner\AdwCleaner[S6].txt - [2271 Bajty] - [06/04/2017 19:24:37]
C:\AdwCleaner\AdwCleaner[S7].txt - [2239 Bajty] - [08/04/2017 15:20:42]
C:\AdwCleaner\AdwCleaner[S8].txt - [2314 Bajty] - [08/04/2017 18:52:30]

########## EOF - C:\AdwCleaner\AdwCleaner[C7].txt - [1889 Bajty] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119670
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pri uloženi zamrzne MS Word 2013

#4 Příspěvek od Rudy »

Toto je OK. Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-3072883419-3792539118-3593252812-1004Core.job
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-3072883419-3792539118-3593252812-1004UA.job

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jajko
Návštěvník
Návštěvník
Příspěvky: 88
Registrován: 10 črc 2009 19:47

Re: Pri uloženi zamrzne MS Word 2013

#5 Příspěvek od jajko »

All processes killed
========== FILES ==========
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-3072883419-3792539118-3593252812-1004Core.job moved successfully.
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-3072883419-3792539118-3593252812-1004UA.job moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 57311 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default.migrated

User: Jakub_von_Swetlo
->Temp folder emptied: 80200191 bytes
->Temporary Internet Files folder emptied: 128 bytes
->Java cache emptied: 6701 bytes
->Google Chrome cache emptied: 495084744 bytes
->Flash cache emptied: 58686 bytes

User: Public

User: Shadowseen
->Temp folder emptied: 33202054 bytes
->Temporary Internet Files folder emptied: 3258606 bytes
->Java cache emptied: 266649 bytes
->FireFox cache emptied: 6452381 bytes
->Google Chrome cache emptied: 383922888 bytes
->Flash cache emptied: 58193 bytes

User: Tomjak
->Temp folder emptied: 53710929 bytes
->Temporary Internet Files folder emptied: 135741 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 6538791 bytes
->Flash cache emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1205294 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 1 015,00 mb


[EMPTYFLASH]

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: Default.migrated

User: Jakub_von_Swetlo
->Flash cache emptied: 0 bytes

User: Public

User: Shadowseen
->Flash cache emptied: 0 bytes

User: Tomjak
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


OTM by OldTimer - Version 3.1.21.0 log created on 04082017_203317

Files moved on Reboot...
C:\Users\Tomjak\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.
File move failed. C:\WINDOWS\temp\lm\Tomjak\aipflib.log scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\lm\Tomjak\LMutilps32.log scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\lm\dsiwmis.log scheduled to be moved on reboot.
File C:\WINDOWS\temp\hsperfdata_NOTEBOK$\3292 not found!
File move failed. C:\WINDOWS\temp\CreativeCloud\ACC\ACC.log scheduled to be moved on reboot.
C:\WINDOWS\temp\sqlite-3.7.151-amd64-sqlitejdbc.dll moved successfully.

Registry entries deleted on Reboot...

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119670
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pri uloženi zamrzne MS Word 2013

#6 Příspěvek od Rudy »

OK. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jajko
Návštěvník
Návštěvník
Příspěvky: 88
Registrován: 10 črc 2009 19:47

Re: Pri uloženi zamrzne MS Word 2013

#7 Příspěvek od jajko »

OK!
PC aj word sa zrychlili, nič nemrzne ! ....teda zatial ....
keby niečo ozvem sa !

DIIIIKY Rudy si jednička :thumbsup:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119670
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pri uloženi zamrzne MS Word 2013

#8 Příspěvek od Rudy »

OK. Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět