Prevence
Napsal: 24 zář 2017 16:50
Prosím o kontrolu.
Moc Děkuji.
Logfile of random's system information tool 1.16 (written by random/random)
Run by Daniel at 2017-09-24 17:48:59
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 73 GB (32%) free of 229 GB
Total RAM: 16318 MB (43% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:49:00, on 24.9.2017
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18792)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
D:\Torent\utorrent.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
C:\Program Files (x86)\ASUSRAMCACHE\RamCache.exe
D:\Program Files (x86)\Standard Mouse Driver\Monitor.EXE
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe
C:\Program Files\trend micro\Daniel_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [ASUS AiChargerPlus Execute] C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
O4 - HKLM\..\Run: [ASUSRAMCACHE] "C:\Program Files (x86)\ASUSRAMCACHE\RamCache.exe"
O4 - HKLM\..\Run: [Standard Mouse Driver] "D:\Program Files (x86)\Standard Mouse Driver\Monitor.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [uTorrent] "D:\Torent\utorrent.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: SolidWorks 2014 Rychlé spuštění.lnk = ?
O4 - Global Startup: SolidWorks Nástroj pro stahování na pozadí.lnk = ?
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.28\AsusFanControlService.exe
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: SW Distributed TS Coordinator Service (CoordinatorServiceHost) - Dassault Systemes SolidWorks Corp. - C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Sentinel Local License Manager (hasplms) - Unknown owner - C:\Windows\system32\hasplms.exe (file missing)
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: Origin Client Service - Electronic Arts - D:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Origin Web Helper Service - Electronic Arts - D:\Program Files (x86)\Origin\OriginWebHelperService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: SolidWorks Licensing Service - SolidWorks - C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) Extreme Tuning Utility Service (XTU3SERVICE) - Intel(R) Corporation - C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe
--
End of file - 12080 bytes
====== Enumerating Processes ======
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe"
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.28\AsusFanControlService.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\hasplms.exe -run
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
"C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugin"
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -f "C:\ProgramData\NVIDIA\DisplaySessionContainer%d.log" -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\Session" -r -l 3 -p 30000 -c
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe"
C:\Windows\system32\taskhost.exe
"C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -c
C:\Windows\system32\taskeng.exe
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe" -onlytray
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe" -schedule
"C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
C:\Program Files\AVAST Software\Avast\AvastUI.exe
"D:\Torent\utorrent.exe"
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files\SolidWorks Corp\SolidWorks\sldworks_fs.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe"
"C:\Program Files (x86)\ASUSRAMCACHE\RamCache.exe"
"D:\Program Files (x86)\Standard Mouse Driver\Monitor.EXE"
"C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe" "-lang=cs_CZ" "-cachedir=C:\Users\Daniel\AppData\Local\Steam\htmlcache" "-steampid=3972" "-buildid=1504757234" "-steamid=0" "-clientui=C:\Program Files (x86)\Steam\clientui" --disable-spell-checking --disable-out-of-process-pac --enable-blink-features=ResizeObserver --disable-smooth-scrolling --disable-gpu-compositing --disable-gpu --enable-direct-write "--log-file=C:\Program Files (x86)\Steam\logs\cef_log.txt"
"C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe" --type=crashpad-handler /prefetch:7 --max-uploads=5 --max-db-size=20 --max-db-age=5 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Daniel\AppData\Local\CEF\User Data\Crashpad" "--metrics-dir=C:\Users\Daniel\AppData\Local\CEF\User Data" --url=http://crash.steampowered.com/submit --annotation=platform=win32 --annotation=product=cefwebhelper --annotation=version=1.0 --initial-client-data=0x180,0x184,0x188,0x17c,0x18c,0x6a3e81e4,0x6a3e81f4,0x6a3e8204
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe" -Embedding
"C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe" ヒ譕菬ᓬ譓ౝ譖ࡳ㔳ቀ瓙譗옆e윀
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --disable-gpu-compositing --no-sandbox --primordial-pipe-token=A30DCB66145E436B17EBB49B990AF71C --lang=en-US --lang=en-US --log-file="C:\Users\Daniel\AppData\Local\NVIDIA Corporation\NVIDIA Share\CefCache\debug.log" --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553 --disable-accelerated-video-decode --disable-webrtc-hw-vp8-encoding --disable-gpu-compositing --service-request-channel-token=A30DCB66145E436B17EBB49B990AF71C --renderer-client-id=2 --mojo-platform-channel-handle=1404 /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\Windows\system32\conhost.exe "-18325170746075778902072072719-1953909719-1836013891-1519345971-1630692928624350877
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerNetworkService -f "C:\ProgramData\NVIDIA\NvContainerNetworkService.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\NetworkService" -r -p 30000
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\NVIDIA Corporation\nvstreamsrv\NvStreamUserAgent.exe
\??\C:\Windows\system32\conhost.exe "-150803165510403839841117267062083050967-58334265711503626411071383787-1931314520
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\rundll32.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
====== Scheduled tasks folder ======
C:\Windows\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\system32\tasks\Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
C:\Windows\system32\tasks\CCleanerSkipUAC - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
C:\Windows\system32\tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe"
C:\Windows\system32\tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe --launcher=TaskScheduler
C:\Windows\system32\tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe
C:\Windows\system32\tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe
C:\Windows\system32\tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe
C:\Windows\system32\tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe --logon
C:\Windows\system32\tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe
C:\Windows\system32\tasks\WPD\SqmUpload_S-1-5-21-572477823-4113617530-2797498021-1000 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\Windows\system32\tasks\Microsoft\Windows Defender\MpIdleTask - c:\program files\windows defender\MpCmdRun.exe -IdleTask -TaskName MpIdleTask
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\ConfigNotification - %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
C:\Windows\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\Windows\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -queuereporting
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask - %SystemRoot%\system32\Wat\WatAdminSvc.exe /run
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline - %SystemRoot%\system32\schtasks.exe /run /I /TN "\Microsoft\Windows\Windows Activation Technologies\ValidationTask"
C:\Windows\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\Windows\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
C:\Windows\system32\tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask - sc.exe start sppsvc
C:\Windows\system32\tasks\Microsoft\Windows\Setup\EOSNotify - %windir%\system32\EOSNotify.exe
C:\Windows\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\Windows\system32\tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem - %SystemRoot%\System32\powercfg.exe -energy -auto
C:\Windows\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\Windows\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\StartRecording - %SystemRoot%\ehome\ehrec /StartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotifications.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\Windows\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c
C:\Windows\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\Windows\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\AitAgent - aitagent
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\Windows\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\Windows\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\Windows\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs
C:\Windows\system32\tasks\ASUS\ASUS AISuiteIII - C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe -schedule
C:\Windows\system32\tasks\ASUS\ASUS DIPAwayMode - C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
C:\Windows\system32\tasks\ASUS\ASUS Product Register Service - C:\Program Files (x86)\ASUS\APRP\aprp.exe
C:\Windows\system32\tasks\ASUS\Ez Update - C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe -onlytray
C:\Windows\system32\tasks\ASUS\GpuFanHelper - C:\Program Files (x86)\ASUS\AI Suite III\DIP4\GpuFanHelper.exe
C:\Windows\system32\tasks\ASUS\Push Notice Server Execute - C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
C:\Windows\system32\tasks\ASUS\USB 3.0 Boost Service - C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr.exe
=========Google Chrome=========
C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension efaidnbmnnnibpcajpcglclefindmkaj 1 Adobe Acrobat 15.1.0.6
Extension eofcbnmajmjmplflapaojjnihcjkigck 2 Avast SafePrice 12.0.155
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension fiombgjlkfpdpkbhfioofeeinbehmajg 1 Word Online 2.0
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension gomekmidlodglbbmalcneegieacbdmki 1 Avast Online Security 12.0.263
Extension iinglghmhcgdgjjlafobajghjamdchik 2 Bitmotion - New Tab 1.0.6
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mfffpogegjflfpflabcdkioaeobkgjik 1 GaiaAuthExtension 0.0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.4
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.3
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 6017.605.1.4
Homepage: http://www.seznam.cz/
default_search_provider.search_url:
C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Preferences
Homepage:
default_search_provider.search_url:
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj]
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck]
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki]
"Path"=
======Registry dump ======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_131\bin\ssv.dll [2017-04-26 571456]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-04-26 234560]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-11-09 9068040]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2017-06-21 1903224]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-09-01 239856]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"uTorrent"=D:\Torent\utorrent.exe [2015-02-22 416168]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2017-01-23 27418080]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2017-09-07 3071776]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WebStorage]
C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSPanel.exe [2014-12-04 5247272]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2015-06-15 296216]
"ASUS AiChargerPlus Execute"=C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [2013-01-28 550272]
"ASUSRAMCACHE"=C:\Program Files (x86)\ASUSRAMCACHE\RamCache.exe [2016-12-07 4325520]
"Standard Mouse Driver"=D:\Program Files (x86)\Standard Mouse Driver\Monitor.exe [2014-09-01 249856]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
SolidWorks 2014 Rychlé spuštění.lnk - C:\Windows\Installer\{4FFA60C4-9A8B-4C9E-8265-2241B266304C}\NewShortcut2_87EDF6C81D0A4B7B84F42FE0C6A9D608.exe
SolidWorks Nástroj pro stahování na pozadí.lnk - C:\Program Files (x86)\Common Files\Manažer instalací SolidWorks\BackgroundDownloading\sldBgDwld.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
"StubPath" = "C:\Program Files (x86)\Google\Chrome\Application\60.0.3112.113\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux3"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux4"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux5"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
====== File associations ======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
====== List of files/folders created in the last 1 month ======
2017-09-24 17:48:59 ----D---- C:\rsit
2017-09-24 17:26:53 ----D---- C:\Program Files (x86)\Microsoft Works
2017-09-24 17:26:49 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2017-09-24 17:26:43 ----D---- C:\Windows\PCHEALTH
2017-09-24 17:24:55 ----D---- C:\Program Files\Microsoft Office
2017-09-24 17:24:43 ----D---- C:\Windows\SHELLNEW
2017-09-24 17:24:29 ----RHD---- C:\MSOCache
2017-09-24 17:24:12 ----D---- C:\ProgramData\SWCUTemp
2017-09-12 22:30:53 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2017-09-12 22:30:53 ----A---- C:\Windows\system32\mshtml.dll
2017-09-12 22:30:52 ----A---- C:\Windows\SYSWOW64\wininet.dll
2017-09-12 22:30:52 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2017-09-12 22:30:52 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2017-09-12 22:30:52 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2017-09-12 22:30:52 ----A---- C:\Windows\system32\wininet.dll
2017-09-12 22:30:52 ----A---- C:\Windows\system32\jscript9.dll
2017-09-12 22:30:52 ----A---- C:\Windows\system32\iertutil.dll
2017-09-12 22:30:52 ----A---- C:\Windows\system32\ieframe.dll
2017-09-12 22:30:51 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2017-09-12 22:30:51 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2017-09-12 22:30:51 ----A---- C:\Windows\SYSWOW64\shell32.dll
2017-09-12 22:30:51 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2017-09-12 22:30:51 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2017-09-12 22:30:51 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2017-09-12 22:30:51 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2017-09-12 22:30:51 ----A---- C:\Windows\system32\win32k.sys
2017-09-12 22:30:51 ----A---- C:\Windows\system32\urlmon.dll
2017-09-12 22:30:51 ----A---- C:\Windows\system32\shell32.dll
2017-09-12 22:30:51 ----A---- C:\Windows\system32\ntoskrnl.exe
2017-09-12 22:30:51 ----A---- C:\Windows\system32\msfeeds.dll
2017-09-12 22:30:51 ----A---- C:\Windows\system32\mmcndmgr.dll
2017-09-12 22:30:51 ----A---- C:\Windows\system32\mmc.exe
2017-09-12 22:30:51 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\winnsi.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\usp10.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\occache.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\nsi.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\msrating.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\mmcshext.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\mmcbase.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\mmc.exe
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\inseng.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\ieui.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\cic.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\certcli.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\Wldap32.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\winnsi.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\win32spl.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\webcheck.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\usp10.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\shdocvw.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\occache.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\ntprint.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\ntdll.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\nsisvc.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\nsi.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2017-09-12 22:30:50 ----A---- C:\Windows\system32\msrating.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\mshtmlmedia.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\mshtmled.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\mmcshext.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\mmcbase.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\localspl.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\jsproxy.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\jscript9diag.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\inseng.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\ieUnatt.exe
2017-09-12 22:30:50 ----A---- C:\Windows\system32\ieui.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\iesetup.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\iernonce.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\iedkcs32.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\ie4uinit.exe
2017-09-12 22:30:50 ----A---- C:\Windows\system32\dxtrans.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\dxtmsft.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\drivers\srvnet.sys
2017-09-12 22:30:50 ----A---- C:\Windows\system32\drivers\nsiproxy.sys
2017-09-12 22:30:50 ----A---- C:\Windows\system32\drivers\netbt.sys
2017-09-12 22:30:50 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2017-09-12 22:30:50 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2017-09-12 22:30:50 ----A---- C:\Windows\system32\cic.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\certcli.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\wow32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\user.exe
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\srclient.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\schannel.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\setup16.exe
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\secur32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\ole32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\ntprint.exe
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\jscript.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\instnm.exe
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\credssp.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\comcat.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\wpnpinst.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\wow64win.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\wow64cpu.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\wow64.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\winsrv.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\wdigest.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\vbscript.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\TSpkg.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\sspisrv.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\sspicli.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\srcore.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\srclient.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\smss.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\schannel.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\setbcdlocale.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\secur32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\rstrui.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\rpchttp.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\rpcss.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\rpcrt4.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\PrintBrmUi.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ole32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ntvdm64.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ntprint.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\netbtugc.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ncrypt.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\msv1_0.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\MshtmlDac.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\lsass.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\lsasrv.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\KernelBase.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\kernel32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\kerberos.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\jscript.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\inetppui.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\inetpp.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ieetwproxystub.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ieetwcollector.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ieapfltr.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ExplorerFrame.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\drivers\srv2.sys
2017-09-12 22:30:49 ----A---- C:\Windows\system32\drivers\srv.sys
2017-09-12 22:30:49 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2017-09-12 22:30:49 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2017-09-12 22:30:49 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2017-09-12 22:30:49 ----A---- C:\Windows\system32\drivers\appid.sys
2017-09-12 22:30:49 ----A---- C:\Windows\system32\csrsrv.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\cryptbase.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\credssp.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\conhost.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\comcat.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\bcrypt.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\auditpol.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\appidsvc.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\appidapi.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\apisetschema.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\advapi32.dll
2017-09-12 22:30:48 ----A---- C:\Windows\SYSWOW64\oleres.dll
2017-09-12 22:30:48 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2017-09-12 22:30:48 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2017-09-12 22:30:48 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2017-09-12 22:30:48 ----A---- C:\Windows\system32\oleres.dll
2017-09-12 22:30:48 ----A---- C:\Windows\system32\msobjs.dll
2017-09-12 22:30:48 ----A---- C:\Windows\system32\msaudite.dll
2017-09-12 22:30:48 ----A---- C:\Windows\system32\adtschema.dll
2017-09-01 17:12:53 ----A---- C:\Windows\system32\aswBoot.exe
====== List of files/folders modified in the last 1 month ======
2017-09-24 17:49:00 ----D---- C:\Program Files\trend micro
2017-09-24 17:47:20 ----D---- C:\Windows\Temp
2017-09-24 17:38:30 ----D---- C:\Windows\system32\config
2017-09-24 17:27:36 ----SHD---- C:\Windows\Installer
2017-09-24 17:27:35 ----D---- C:\ProgramData\Microsoft Help
2017-09-24 17:27:34 ----RSD---- C:\Windows\assembly
2017-09-24 17:27:33 ----D---- C:\Windows\winsxs
2017-09-24 17:26:53 ----RD---- C:\Program Files (x86)
2017-09-24 17:26:53 ----D---- C:\Windows\SysWOW64
2017-09-24 17:26:51 ----D---- C:\Program Files (x86)\MSBuild
2017-09-24 17:26:50 ----D---- C:\Program Files (x86)\Microsoft Office
2017-09-24 17:26:44 ----RSD---- C:\Windows\Fonts
2017-09-24 17:26:43 ----SD---- C:\ProgramData\Microsoft
2017-09-24 17:26:43 ----D---- C:\Windows
2017-09-24 17:26:18 ----D---- C:\Program Files\Common Files\Microsoft Shared
2017-09-24 17:24:55 ----RD---- C:\Program Files
2017-09-24 17:24:47 ----A---- C:\Windows\win.ini
2017-09-24 17:24:28 ----SHD---- C:\System Volume Information
2017-09-24 17:24:12 ----HD---- C:\ProgramData
2017-09-24 17:18:42 ----D---- C:\Users\Daniel\AppData\Roaming\vlc
2017-09-24 12:36:52 ----D---- C:\ProgramData\NVIDIA
2017-09-24 12:33:12 ----D---- C:\Windows\System32
2017-09-24 12:33:12 ----D---- C:\Windows\inf
2017-09-24 12:33:12 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-09-24 12:28:22 ----D---- C:\Windows\system32\drivers
2017-09-24 12:28:10 ----D---- C:\Program Files (x86)\Steam
2017-09-13 22:39:47 ----D---- C:\AdwCleaner
2017-09-13 22:27:04 ----D---- C:\Users\Daniel\AppData\Roaming\DAEMON Tools Lite
2017-09-13 22:27:01 ----D---- C:\Windows\Logs
2017-09-13 22:27:01 ----D---- C:\Windows\debug
2017-09-13 10:32:35 ----D---- C:\Windows\rescache
2017-09-13 09:54:35 ----D---- C:\Windows\Microsoft.NET
2017-09-13 01:00:54 ----D---- C:\Windows\SYSWOW64\en-US
2017-09-13 01:00:54 ----D---- C:\Windows\SYSWOW64\cs-CZ
2017-09-13 01:00:54 ----D---- C:\Windows\system32\en-US
2017-09-13 01:00:54 ----D---- C:\Windows\system32\cs-CZ
2017-09-13 01:00:54 ----D---- C:\Windows\system32\Boot
2017-09-13 01:00:54 ----D---- C:\Windows\AppPatch
2017-09-13 01:00:54 ----D---- C:\Program Files\Internet Explorer
2017-09-13 01:00:54 ----D---- C:\Program Files (x86)\Internet Explorer
2017-09-12 22:35:00 ----D---- C:\Windows\system32\MRT
2017-09-12 22:33:44 ----AC---- C:\Windows\system32\MRT.exe
2017-09-12 22:31:48 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2017-09-12 22:30:08 ----D---- C:\Windows\system32\catroot2
2017-09-04 13:14:51 ----D---- C:\Windows\system32\NDF
2017-09-02 14:11:59 ----D---- C:\Program Files\Common Files\AV
2017-09-01 17:12:55 ----D---- C:\Windows\system32\Tasks
File C:\Windows\system32\winlogon.exe is digitally signed
File C:\Windows\system32\wininit.exe is digitally signed
File C:\Windows\explorer.exe is digitally signed
File C:\Windows\SysWOW64\explorer.exe is digitally signed
File C:\Windows\system32\svchost.exe is digitally signed
File C:\Windows\SysWOW64\svchost.exe is digitally signed
File C:\Windows\system32\services.exe is digitally signed
File C:\Windows\system32\User32.dll is digitally signed
File C:\Windows\SysWOW64\User32.dll is digitally signed
File C:\Windows\system32\userinit.exe is digitally signed
File C:\Windows\SysWOW64\userinit.exe is digitally signed
File C:\Windows\system32\rpcss.dll is digitally signed
File C:\Windows\system32\Drivers\volsnap.sys is digitally signed
====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2017-09-01 198976]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2017-09-01 343296]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2017-09-01 57736]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2017-09-01 84416]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2017-09-01 361336]
R0 FNETHYRAMAS;FNETHYRAMAS; C:\Windows\System32\drivers\FNETHYRAMAS.SYS [2016-12-07 45688]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2015-07-29 1462720]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2015-07-29 31144]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 AsIO;AsIO; SysWow64\drivers\AsIO.sys []
R1 AsUpIO;AsUpIO; SysWow64\drivers\AsUpIO.sys []
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2017-09-01 320528]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2017-09-01 110376]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2017-09-01 1016384]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2017-09-01 590880]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2016-12-08 254528]
R1 FNETURPX;FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [2016-12-07 16648]
R2 aksdf;aksdf; \??\C:\Windows\system32\drivers\aksdf.sys [2013-01-14 90056]
R2 aksfridge;aksfridge; \??\C:\Windows\system32\drivers\aksfridge.sys [2013-02-19 141064]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2017-09-01 147784]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2017-09-18 199312]
R2 hardlock;hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [2013-03-11 331144]
R2 iocbios2;iocbios2; \??\C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [2015-09-21 30224]
R3 AiChargerPlus;AiChargerPlus; SysWow64\drivers\AiChargerPlus.sys []
R3 asmthub3;ASMedia USB3 Hub Service; C:\Windows\system32\DRIVERS\asmthub3.sys [2015-02-12 139992]
R3 asmtxhci;ASMEDIA XHCI Service; C:\Windows\system32\DRIVERS\asmtxhci.sys [2015-02-12 431832]
R3 ASUSFILTER;ASUSFILTER; SysWow64\drivers\ASUSFILTER.sys []
R3 e1dexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver D; C:\Windows\system32\DRIVERS\e1d62x64.sys [2015-05-19 471496]
R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT); C:\Windows\system32\DRIVERS\ICCWDT.sys [2015-09-21 39736]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2016-11-09 5437960]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2015-06-26 403752]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2015-06-30 814376]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2015-07-28 178976]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2017-06-08 218712]
R3 NvStreamKms;NVIDIA KMS; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2017-06-21 30328]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2017-06-21 48248]
R3 nvvhci;NVVHCI Enumerator Service; C:\Windows\system32\DRIVERS\nvvhci.sys [2017-05-03 57976]
R4 IOMap;IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [2015-08-20 24824]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2017-09-01 47016]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2017-07-19 83032]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2014-07-23 936728]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [2015-05-08 954648]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [2014-07-23 1360016]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.28\AsusFanControlService.exe [2015-08-20 398648]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-09-01 275208]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\cscsvc.dll
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; %SystemRoot%\System32\svchost.exe -k utcsvc;"ServiceDll" = %SystemRoot%\system32\diagtrack.dll
R2 gupdate;Služba Aktualizace Google (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-07 153752]
R2 hasplms;Sentinel Local License Manager; C:\Windows\system32\hasplms.exe [2013-01-11 4466120]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2015-05-07 271632]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2015-08-07 207648]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2015-08-07 415520]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-06-21 495224]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2017-06-27 462968]
R2 NvTelemetryContainer;NVIDIA Telemetry Container; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [2017-06-21 450168]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-09-01 7452288]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2015-06-03 217888]
R3 NvContainerNetworkService;NVIDIA NetworkService Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-06-21 495224]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2017-09-07 1610016]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-04-21 107656]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2017-04-21 128648]
S2 Origin Web Helper Service;Origin Web Helper Service; D:\Program Files (x86)\Origin\OriginWebHelperService.exe [2016-12-27 2180624]
S3 AppMgmt;@appmgmts.dll,-3250; %SystemRoot%\system32\svchost.exe -k netsvcs;"ServiceDll" = %SystemRoot%\System32\appmgmts.dll
S3 CoordinatorServiceHost;SW Distributed TS Coordinator Service; C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe [2014-01-11 76328]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2017-01-15 1431888]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2017-01-15 1044816]
S3 gupdatem;Služba Aktualizace Google (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-07 153752]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2017-08-13 116224]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2015-05-22 881152]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 Origin Client Service;Origin Client Service; D:\Program Files (x86)\Origin\OriginClientService.exe [2016-12-27 2119688]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; %SystemRoot%\System32\svchost.exe -k PeerDist;"ServiceDll" = %SystemRoot%\system32\peerdistsvc.dll
S3 SolidWorks Licensing Service;SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [2017-01-15 79360]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\system32\storsvc.dll
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\umrdp.dll
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2016-12-09 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-04-21 52856]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-04-21 136312]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-04-21 136312]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-04-21 136312]
-----------------EOF-----------------
Moc Děkuji.
Logfile of random's system information tool 1.16 (written by random/random)
Run by Daniel at 2017-09-24 17:48:59
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 73 GB (32%) free of 229 GB
Total RAM: 16318 MB (43% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:49:00, on 24.9.2017
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18792)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
D:\Torent\utorrent.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
C:\Program Files (x86)\ASUSRAMCACHE\RamCache.exe
D:\Program Files (x86)\Standard Mouse Driver\Monitor.EXE
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe
C:\Program Files\trend micro\Daniel_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [ASUS AiChargerPlus Execute] C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
O4 - HKLM\..\Run: [ASUSRAMCACHE] "C:\Program Files (x86)\ASUSRAMCACHE\RamCache.exe"
O4 - HKLM\..\Run: [Standard Mouse Driver] "D:\Program Files (x86)\Standard Mouse Driver\Monitor.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [uTorrent] "D:\Torent\utorrent.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: SolidWorks 2014 Rychlé spuštění.lnk = ?
O4 - Global Startup: SolidWorks Nástroj pro stahování na pozadí.lnk = ?
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.28\AsusFanControlService.exe
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: SW Distributed TS Coordinator Service (CoordinatorServiceHost) - Dassault Systemes SolidWorks Corp. - C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Sentinel Local License Manager (hasplms) - Unknown owner - C:\Windows\system32\hasplms.exe (file missing)
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: Origin Client Service - Electronic Arts - D:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Origin Web Helper Service - Electronic Arts - D:\Program Files (x86)\Origin\OriginWebHelperService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: SolidWorks Licensing Service - SolidWorks - C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) Extreme Tuning Utility Service (XTU3SERVICE) - Intel(R) Corporation - C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe
--
End of file - 12080 bytes
====== Enumerating Processes ======
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe"
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.28\AsusFanControlService.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\hasplms.exe -run
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
"C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugin"
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -f "C:\ProgramData\NVIDIA\DisplaySessionContainer%d.log" -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\Session" -r -l 3 -p 30000 -c
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe"
C:\Windows\system32\taskhost.exe
"C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -c
C:\Windows\system32\taskeng.exe
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe" -onlytray
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe" -schedule
"C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
C:\Program Files\AVAST Software\Avast\AvastUI.exe
"D:\Torent\utorrent.exe"
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files\SolidWorks Corp\SolidWorks\sldworks_fs.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe"
"C:\Program Files (x86)\ASUSRAMCACHE\RamCache.exe"
"D:\Program Files (x86)\Standard Mouse Driver\Monitor.EXE"
"C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe" "-lang=cs_CZ" "-cachedir=C:\Users\Daniel\AppData\Local\Steam\htmlcache" "-steampid=3972" "-buildid=1504757234" "-steamid=0" "-clientui=C:\Program Files (x86)\Steam\clientui" --disable-spell-checking --disable-out-of-process-pac --enable-blink-features=ResizeObserver --disable-smooth-scrolling --disable-gpu-compositing --disable-gpu --enable-direct-write "--log-file=C:\Program Files (x86)\Steam\logs\cef_log.txt"
"C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe" --type=crashpad-handler /prefetch:7 --max-uploads=5 --max-db-size=20 --max-db-age=5 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Daniel\AppData\Local\CEF\User Data\Crashpad" "--metrics-dir=C:\Users\Daniel\AppData\Local\CEF\User Data" --url=http://crash.steampowered.com/submit --annotation=platform=win32 --annotation=product=cefwebhelper --annotation=version=1.0 --initial-client-data=0x180,0x184,0x188,0x17c,0x18c,0x6a3e81e4,0x6a3e81f4,0x6a3e8204
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe" -Embedding
"C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe" ヒ譕菬ᓬ譓ౝ譖ࡳ㔳ቀ瓙譗옆e윀
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --disable-gpu-compositing --no-sandbox --primordial-pipe-token=A30DCB66145E436B17EBB49B990AF71C --lang=en-US --lang=en-US --log-file="C:\Users\Daniel\AppData\Local\NVIDIA Corporation\NVIDIA Share\CefCache\debug.log" --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553 --disable-accelerated-video-decode --disable-webrtc-hw-vp8-encoding --disable-gpu-compositing --service-request-channel-token=A30DCB66145E436B17EBB49B990AF71C --renderer-client-id=2 --mojo-platform-channel-handle=1404 /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\Windows\system32\conhost.exe "-18325170746075778902072072719-1953909719-1836013891-1519345971-1630692928624350877
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerNetworkService -f "C:\ProgramData\NVIDIA\NvContainerNetworkService.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\NetworkService" -r -p 30000
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\NVIDIA Corporation\nvstreamsrv\NvStreamUserAgent.exe
\??\C:\Windows\system32\conhost.exe "-150803165510403839841117267062083050967-58334265711503626411071383787-1931314520
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\rundll32.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe"
"C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
====== Scheduled tasks folder ======
C:\Windows\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\system32\tasks\Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
C:\Windows\system32\tasks\CCleanerSkipUAC - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
C:\Windows\system32\tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe"
C:\Windows\system32\tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe --launcher=TaskScheduler
C:\Windows\system32\tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe
C:\Windows\system32\tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe
C:\Windows\system32\tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe
C:\Windows\system32\tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe --logon
C:\Windows\system32\tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe
C:\Windows\system32\tasks\WPD\SqmUpload_S-1-5-21-572477823-4113617530-2797498021-1000 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\Windows\system32\tasks\Microsoft\Windows Defender\MpIdleTask - c:\program files\windows defender\MpCmdRun.exe -IdleTask -TaskName MpIdleTask
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\ConfigNotification - %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
C:\Windows\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\Windows\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -queuereporting
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask - %SystemRoot%\system32\Wat\WatAdminSvc.exe /run
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline - %SystemRoot%\system32\schtasks.exe /run /I /TN "\Microsoft\Windows\Windows Activation Technologies\ValidationTask"
C:\Windows\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\Windows\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
C:\Windows\system32\tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask - sc.exe start sppsvc
C:\Windows\system32\tasks\Microsoft\Windows\Setup\EOSNotify - %windir%\system32\EOSNotify.exe
C:\Windows\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\Windows\system32\tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem - %SystemRoot%\System32\powercfg.exe -energy -auto
C:\Windows\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\Windows\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\StartRecording - %SystemRoot%\ehome\ehrec /StartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotifications.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\Windows\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c
C:\Windows\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\Windows\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\AitAgent - aitagent
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\Windows\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\Windows\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\Windows\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs
C:\Windows\system32\tasks\ASUS\ASUS AISuiteIII - C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe -schedule
C:\Windows\system32\tasks\ASUS\ASUS DIPAwayMode - C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
C:\Windows\system32\tasks\ASUS\ASUS Product Register Service - C:\Program Files (x86)\ASUS\APRP\aprp.exe
C:\Windows\system32\tasks\ASUS\Ez Update - C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe -onlytray
C:\Windows\system32\tasks\ASUS\GpuFanHelper - C:\Program Files (x86)\ASUS\AI Suite III\DIP4\GpuFanHelper.exe
C:\Windows\system32\tasks\ASUS\Push Notice Server Execute - C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
C:\Windows\system32\tasks\ASUS\USB 3.0 Boost Service - C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr.exe
=========Google Chrome=========
C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension efaidnbmnnnibpcajpcglclefindmkaj 1 Adobe Acrobat 15.1.0.6
Extension eofcbnmajmjmplflapaojjnihcjkigck 2 Avast SafePrice 12.0.155
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension fiombgjlkfpdpkbhfioofeeinbehmajg 1 Word Online 2.0
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension gomekmidlodglbbmalcneegieacbdmki 1 Avast Online Security 12.0.263
Extension iinglghmhcgdgjjlafobajghjamdchik 2 Bitmotion - New Tab 1.0.6
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mfffpogegjflfpflabcdkioaeobkgjik 1 GaiaAuthExtension 0.0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.4
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.3
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 6017.605.1.4
Homepage: http://www.seznam.cz/
default_search_provider.search_url:
C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Preferences
Homepage:
default_search_provider.search_url:
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj]
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck]
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki]
"Path"=
======Registry dump ======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_131\bin\ssv.dll [2017-04-26 571456]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-04-26 234560]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-11-09 9068040]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2017-06-21 1903224]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-09-01 239856]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"uTorrent"=D:\Torent\utorrent.exe [2015-02-22 416168]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2017-01-23 27418080]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2017-09-07 3071776]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WebStorage]
C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSPanel.exe [2014-12-04 5247272]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2015-06-15 296216]
"ASUS AiChargerPlus Execute"=C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [2013-01-28 550272]
"ASUSRAMCACHE"=C:\Program Files (x86)\ASUSRAMCACHE\RamCache.exe [2016-12-07 4325520]
"Standard Mouse Driver"=D:\Program Files (x86)\Standard Mouse Driver\Monitor.exe [2014-09-01 249856]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
SolidWorks 2014 Rychlé spuštění.lnk - C:\Windows\Installer\{4FFA60C4-9A8B-4C9E-8265-2241B266304C}\NewShortcut2_87EDF6C81D0A4B7B84F42FE0C6A9D608.exe
SolidWorks Nástroj pro stahování na pozadí.lnk - C:\Program Files (x86)\Common Files\Manažer instalací SolidWorks\BackgroundDownloading\sldBgDwld.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
"StubPath" = "C:\Program Files (x86)\Google\Chrome\Application\60.0.3112.113\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux3"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux4"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux5"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
====== File associations ======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
====== List of files/folders created in the last 1 month ======
2017-09-24 17:48:59 ----D---- C:\rsit
2017-09-24 17:26:53 ----D---- C:\Program Files (x86)\Microsoft Works
2017-09-24 17:26:49 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2017-09-24 17:26:43 ----D---- C:\Windows\PCHEALTH
2017-09-24 17:24:55 ----D---- C:\Program Files\Microsoft Office
2017-09-24 17:24:43 ----D---- C:\Windows\SHELLNEW
2017-09-24 17:24:29 ----RHD---- C:\MSOCache
2017-09-24 17:24:12 ----D---- C:\ProgramData\SWCUTemp
2017-09-12 22:30:53 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2017-09-12 22:30:53 ----A---- C:\Windows\system32\mshtml.dll
2017-09-12 22:30:52 ----A---- C:\Windows\SYSWOW64\wininet.dll
2017-09-12 22:30:52 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2017-09-12 22:30:52 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2017-09-12 22:30:52 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2017-09-12 22:30:52 ----A---- C:\Windows\system32\wininet.dll
2017-09-12 22:30:52 ----A---- C:\Windows\system32\jscript9.dll
2017-09-12 22:30:52 ----A---- C:\Windows\system32\iertutil.dll
2017-09-12 22:30:52 ----A---- C:\Windows\system32\ieframe.dll
2017-09-12 22:30:51 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2017-09-12 22:30:51 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2017-09-12 22:30:51 ----A---- C:\Windows\SYSWOW64\shell32.dll
2017-09-12 22:30:51 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2017-09-12 22:30:51 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2017-09-12 22:30:51 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2017-09-12 22:30:51 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2017-09-12 22:30:51 ----A---- C:\Windows\system32\win32k.sys
2017-09-12 22:30:51 ----A---- C:\Windows\system32\urlmon.dll
2017-09-12 22:30:51 ----A---- C:\Windows\system32\shell32.dll
2017-09-12 22:30:51 ----A---- C:\Windows\system32\ntoskrnl.exe
2017-09-12 22:30:51 ----A---- C:\Windows\system32\msfeeds.dll
2017-09-12 22:30:51 ----A---- C:\Windows\system32\mmcndmgr.dll
2017-09-12 22:30:51 ----A---- C:\Windows\system32\mmc.exe
2017-09-12 22:30:51 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\winnsi.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\usp10.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\occache.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\nsi.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\msrating.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\mmcshext.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\mmcbase.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\mmc.exe
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\inseng.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\ieui.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\cic.dll
2017-09-12 22:30:50 ----A---- C:\Windows\SYSWOW64\certcli.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\Wldap32.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\winnsi.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\win32spl.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\webcheck.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\usp10.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\shdocvw.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\occache.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\ntprint.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\ntdll.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\nsisvc.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\nsi.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2017-09-12 22:30:50 ----A---- C:\Windows\system32\msrating.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\mshtmlmedia.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\mshtmled.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\mmcshext.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\mmcbase.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\localspl.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\jsproxy.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\jscript9diag.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\inseng.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\ieUnatt.exe
2017-09-12 22:30:50 ----A---- C:\Windows\system32\ieui.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\iesetup.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\iernonce.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\iedkcs32.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\ie4uinit.exe
2017-09-12 22:30:50 ----A---- C:\Windows\system32\dxtrans.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\dxtmsft.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\drivers\srvnet.sys
2017-09-12 22:30:50 ----A---- C:\Windows\system32\drivers\nsiproxy.sys
2017-09-12 22:30:50 ----A---- C:\Windows\system32\drivers\netbt.sys
2017-09-12 22:30:50 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2017-09-12 22:30:50 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2017-09-12 22:30:50 ----A---- C:\Windows\system32\cic.dll
2017-09-12 22:30:50 ----A---- C:\Windows\system32\certcli.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-09-12 22:30:49 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\wow32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\user.exe
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\srclient.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\schannel.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\setup16.exe
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\secur32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\ole32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\ntprint.exe
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\jscript.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\instnm.exe
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\credssp.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\comcat.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2017-09-12 22:30:49 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\wpnpinst.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\wow64win.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\wow64cpu.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\wow64.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\winsrv.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\wdigest.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\vbscript.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\TSpkg.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\sspisrv.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\sspicli.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\srcore.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\srclient.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\smss.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\schannel.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\setbcdlocale.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\secur32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\rstrui.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\rpchttp.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\rpcss.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\rpcrt4.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\PrintBrmUi.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ole32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ntvdm64.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ntprint.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\netbtugc.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ncrypt.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\msv1_0.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\MshtmlDac.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\lsass.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\lsasrv.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\KernelBase.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\kernel32.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\kerberos.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\jscript.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\inetppui.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\inetpp.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ieetwproxystub.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ieetwcollector.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ieapfltr.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\ExplorerFrame.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\drivers\srv2.sys
2017-09-12 22:30:49 ----A---- C:\Windows\system32\drivers\srv.sys
2017-09-12 22:30:49 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2017-09-12 22:30:49 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2017-09-12 22:30:49 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2017-09-12 22:30:49 ----A---- C:\Windows\system32\drivers\appid.sys
2017-09-12 22:30:49 ----A---- C:\Windows\system32\csrsrv.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\cryptbase.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\credssp.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\conhost.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\comcat.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\bcrypt.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\auditpol.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\appidsvc.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2017-09-12 22:30:49 ----A---- C:\Windows\system32\appidapi.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\apisetschema.dll
2017-09-12 22:30:49 ----A---- C:\Windows\system32\advapi32.dll
2017-09-12 22:30:48 ----A---- C:\Windows\SYSWOW64\oleres.dll
2017-09-12 22:30:48 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2017-09-12 22:30:48 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2017-09-12 22:30:48 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2017-09-12 22:30:48 ----A---- C:\Windows\system32\oleres.dll
2017-09-12 22:30:48 ----A---- C:\Windows\system32\msobjs.dll
2017-09-12 22:30:48 ----A---- C:\Windows\system32\msaudite.dll
2017-09-12 22:30:48 ----A---- C:\Windows\system32\adtschema.dll
2017-09-01 17:12:53 ----A---- C:\Windows\system32\aswBoot.exe
====== List of files/folders modified in the last 1 month ======
2017-09-24 17:49:00 ----D---- C:\Program Files\trend micro
2017-09-24 17:47:20 ----D---- C:\Windows\Temp
2017-09-24 17:38:30 ----D---- C:\Windows\system32\config
2017-09-24 17:27:36 ----SHD---- C:\Windows\Installer
2017-09-24 17:27:35 ----D---- C:\ProgramData\Microsoft Help
2017-09-24 17:27:34 ----RSD---- C:\Windows\assembly
2017-09-24 17:27:33 ----D---- C:\Windows\winsxs
2017-09-24 17:26:53 ----RD---- C:\Program Files (x86)
2017-09-24 17:26:53 ----D---- C:\Windows\SysWOW64
2017-09-24 17:26:51 ----D---- C:\Program Files (x86)\MSBuild
2017-09-24 17:26:50 ----D---- C:\Program Files (x86)\Microsoft Office
2017-09-24 17:26:44 ----RSD---- C:\Windows\Fonts
2017-09-24 17:26:43 ----SD---- C:\ProgramData\Microsoft
2017-09-24 17:26:43 ----D---- C:\Windows
2017-09-24 17:26:18 ----D---- C:\Program Files\Common Files\Microsoft Shared
2017-09-24 17:24:55 ----RD---- C:\Program Files
2017-09-24 17:24:47 ----A---- C:\Windows\win.ini
2017-09-24 17:24:28 ----SHD---- C:\System Volume Information
2017-09-24 17:24:12 ----HD---- C:\ProgramData
2017-09-24 17:18:42 ----D---- C:\Users\Daniel\AppData\Roaming\vlc
2017-09-24 12:36:52 ----D---- C:\ProgramData\NVIDIA
2017-09-24 12:33:12 ----D---- C:\Windows\System32
2017-09-24 12:33:12 ----D---- C:\Windows\inf
2017-09-24 12:33:12 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-09-24 12:28:22 ----D---- C:\Windows\system32\drivers
2017-09-24 12:28:10 ----D---- C:\Program Files (x86)\Steam
2017-09-13 22:39:47 ----D---- C:\AdwCleaner
2017-09-13 22:27:04 ----D---- C:\Users\Daniel\AppData\Roaming\DAEMON Tools Lite
2017-09-13 22:27:01 ----D---- C:\Windows\Logs
2017-09-13 22:27:01 ----D---- C:\Windows\debug
2017-09-13 10:32:35 ----D---- C:\Windows\rescache
2017-09-13 09:54:35 ----D---- C:\Windows\Microsoft.NET
2017-09-13 01:00:54 ----D---- C:\Windows\SYSWOW64\en-US
2017-09-13 01:00:54 ----D---- C:\Windows\SYSWOW64\cs-CZ
2017-09-13 01:00:54 ----D---- C:\Windows\system32\en-US
2017-09-13 01:00:54 ----D---- C:\Windows\system32\cs-CZ
2017-09-13 01:00:54 ----D---- C:\Windows\system32\Boot
2017-09-13 01:00:54 ----D---- C:\Windows\AppPatch
2017-09-13 01:00:54 ----D---- C:\Program Files\Internet Explorer
2017-09-13 01:00:54 ----D---- C:\Program Files (x86)\Internet Explorer
2017-09-12 22:35:00 ----D---- C:\Windows\system32\MRT
2017-09-12 22:33:44 ----AC---- C:\Windows\system32\MRT.exe
2017-09-12 22:31:48 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2017-09-12 22:30:08 ----D---- C:\Windows\system32\catroot2
2017-09-04 13:14:51 ----D---- C:\Windows\system32\NDF
2017-09-02 14:11:59 ----D---- C:\Program Files\Common Files\AV
2017-09-01 17:12:55 ----D---- C:\Windows\system32\Tasks
File C:\Windows\system32\winlogon.exe is digitally signed
File C:\Windows\system32\wininit.exe is digitally signed
File C:\Windows\explorer.exe is digitally signed
File C:\Windows\SysWOW64\explorer.exe is digitally signed
File C:\Windows\system32\svchost.exe is digitally signed
File C:\Windows\SysWOW64\svchost.exe is digitally signed
File C:\Windows\system32\services.exe is digitally signed
File C:\Windows\system32\User32.dll is digitally signed
File C:\Windows\SysWOW64\User32.dll is digitally signed
File C:\Windows\system32\userinit.exe is digitally signed
File C:\Windows\SysWOW64\userinit.exe is digitally signed
File C:\Windows\system32\rpcss.dll is digitally signed
File C:\Windows\system32\Drivers\volsnap.sys is digitally signed
====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2017-09-01 198976]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2017-09-01 343296]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2017-09-01 57736]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2017-09-01 84416]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2017-09-01 361336]
R0 FNETHYRAMAS;FNETHYRAMAS; C:\Windows\System32\drivers\FNETHYRAMAS.SYS [2016-12-07 45688]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2015-07-29 1462720]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2015-07-29 31144]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 AsIO;AsIO; SysWow64\drivers\AsIO.sys []
R1 AsUpIO;AsUpIO; SysWow64\drivers\AsUpIO.sys []
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2017-09-01 320528]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2017-09-01 110376]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2017-09-01 1016384]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2017-09-01 590880]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2016-12-08 254528]
R1 FNETURPX;FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [2016-12-07 16648]
R2 aksdf;aksdf; \??\C:\Windows\system32\drivers\aksdf.sys [2013-01-14 90056]
R2 aksfridge;aksfridge; \??\C:\Windows\system32\drivers\aksfridge.sys [2013-02-19 141064]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2017-09-01 147784]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2017-09-18 199312]
R2 hardlock;hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [2013-03-11 331144]
R2 iocbios2;iocbios2; \??\C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [2015-09-21 30224]
R3 AiChargerPlus;AiChargerPlus; SysWow64\drivers\AiChargerPlus.sys []
R3 asmthub3;ASMedia USB3 Hub Service; C:\Windows\system32\DRIVERS\asmthub3.sys [2015-02-12 139992]
R3 asmtxhci;ASMEDIA XHCI Service; C:\Windows\system32\DRIVERS\asmtxhci.sys [2015-02-12 431832]
R3 ASUSFILTER;ASUSFILTER; SysWow64\drivers\ASUSFILTER.sys []
R3 e1dexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver D; C:\Windows\system32\DRIVERS\e1d62x64.sys [2015-05-19 471496]
R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT); C:\Windows\system32\DRIVERS\ICCWDT.sys [2015-09-21 39736]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2016-11-09 5437960]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2015-06-26 403752]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2015-06-30 814376]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2015-07-28 178976]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2017-06-08 218712]
R3 NvStreamKms;NVIDIA KMS; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2017-06-21 30328]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2017-06-21 48248]
R3 nvvhci;NVVHCI Enumerator Service; C:\Windows\system32\DRIVERS\nvvhci.sys [2017-05-03 57976]
R4 IOMap;IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [2015-08-20 24824]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2017-09-01 47016]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2017-07-19 83032]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2014-07-23 936728]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [2015-05-08 954648]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [2014-07-23 1360016]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.28\AsusFanControlService.exe [2015-08-20 398648]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-09-01 275208]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\cscsvc.dll
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; %SystemRoot%\System32\svchost.exe -k utcsvc;"ServiceDll" = %SystemRoot%\system32\diagtrack.dll
R2 gupdate;Služba Aktualizace Google (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-07 153752]
R2 hasplms;Sentinel Local License Manager; C:\Windows\system32\hasplms.exe [2013-01-11 4466120]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2015-05-07 271632]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2015-08-07 207648]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2015-08-07 415520]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-06-21 495224]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2017-06-27 462968]
R2 NvTelemetryContainer;NVIDIA Telemetry Container; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [2017-06-21 450168]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-09-01 7452288]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2015-06-03 217888]
R3 NvContainerNetworkService;NVIDIA NetworkService Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-06-21 495224]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2017-09-07 1610016]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-04-21 107656]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2017-04-21 128648]
S2 Origin Web Helper Service;Origin Web Helper Service; D:\Program Files (x86)\Origin\OriginWebHelperService.exe [2016-12-27 2180624]
S3 AppMgmt;@appmgmts.dll,-3250; %SystemRoot%\system32\svchost.exe -k netsvcs;"ServiceDll" = %SystemRoot%\System32\appmgmts.dll
S3 CoordinatorServiceHost;SW Distributed TS Coordinator Service; C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe [2014-01-11 76328]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2017-01-15 1431888]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2017-01-15 1044816]
S3 gupdatem;Služba Aktualizace Google (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-07 153752]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2017-08-13 116224]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2015-05-22 881152]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 Origin Client Service;Origin Client Service; D:\Program Files (x86)\Origin\OriginClientService.exe [2016-12-27 2119688]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; %SystemRoot%\System32\svchost.exe -k PeerDist;"ServiceDll" = %SystemRoot%\system32\peerdistsvc.dll
S3 SolidWorks Licensing Service;SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [2017-01-15 79360]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\system32\storsvc.dll
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\umrdp.dll
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2016-12-09 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-04-21 52856]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-04-21 136312]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-04-21 136312]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-04-21 136312]
-----------------EOF-----------------