pravdepodobne chrom virus
Napsal: 25 bře 2018 16:09
zdravim
dnes jsem jako obvikle zapl pc a na jednou se vse seklo, po blizsim proskoumani jsem zjistil zatizeni procesoru na 100 proc. dela to googel chrom, ve spravci jsem dal ukoncit pouze ten jeden soubor co se tvari jako googel chrom, chrom funguje nadale v poradku a i zatizeni kleslo na mich standartnich 3proc. kdyz googel znovu restartuji skoci tam znovu 100 proc zatizeni.
Zde log
Logfile of random's system information tool 1.10 (written by random/random)
Run by lukas_000 at 2018-03-25 17:04:24
Microsoft Windows 10 Home
System drive C: has 166 GB (74%) free of 226 GB
Total RAM: 32710 MB (81% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:04:27, on 25.03.2018
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.16299.0015)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\ASUS Manager\Ai Charger II\Ai_ChargerII_TrayIcon(ASUS_Manager).exe
C:\Program Files (x86)\ASUS\System Level Up Driver\SysLevelUp.exe
C:\Program Files (x86)\ASUS\ASUS Manager\Lighting\ASUS_Manager_Lighting.exe
C:\Program Files (x86)\ASUS\ASUS Manager\PC Cleanup\SecureDeleteBackground.exe
C:\Program Files (x86)\ASUS\ASUS Manager\Power Manager\Power Manager_background.exe
C:\Program Files (x86)\InstallShield Installation Information\{9AF45D7C-34F1-4BA0-B799-825C8C04494C}\AiChargerDT.exe
C:\Program Files (x86)\ASUS\ASUS Manager\AsHKService.exe
C:\Program Files (x86)\ASUS\AEGIS\AsSysLevelUpSrc.exe
C:\Program Files (x86)\ASUS\AEGIS\AEGIS_AlertService.exe
C:\Program Files (x86)\ASUS\AEGIS\AEGIS_SysMode.exe
C:\Program Files (x86)\Avast Driver Updater\Avast Driver Updater.exe
C:\Program Files (x86)\ASUS\AEGIS\AsToastHelper.exe
E:\avast\AvastUI.exe
E:\steam\Steam.exe
E:\steam\bin\cef\cef.win7\steamwebhelper.exe
E:\gog galaxy\GalaxyClient\GalaxyClient.exe
E:\steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe
C:\ProgramData\Razer\SwitchBlade\Apps\Razer\65BFE244-2354-4E41-ADC9-CCF6BE3B5F75\RzFPS\RzFPS.exe
C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\ProgramData\Razer\SwitchBlade\Apps\Razer\DF495DFD-79F6-34DF-BB1E-E58DB5BDCF2C\RzMiMo.exe
C:\Program Files (x86)\Razer\SwitchBlade\RzSBHelper.exe
C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe
E:\gog galaxy\GalaxyClient\GalaxyClient Helper.exe
E:\steam\bin\cef\cef.win7\steamwebhelper.exe
E:\gog galaxy\GalaxyClient\GalaxyClient Helper.exe
E:\gog galaxy\GalaxyClient\GalaxyClient Helper.exe
E:\gog galaxy\GalaxyClient\GOG Galaxy Notifications Renderer.exe
C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe
C:\Program Files (x86)\Razer\InGameEngine\32bit\RazerIngameEngine.exe
C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe
C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe
C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe
C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe
C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\RzCefRenderProcess.exe
C:\ProgramData\Razer\SwitchBlade\DeathStalker\Razer\1068AAE3-6299-4086-A7F6-0600F5F1D1E5\RzHome.exe
C:\Program Files (x86)\Razer\SwitchBlade\RzAppManager.exe
C:\Program Files\trend micro\lukas_000.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?pc=ASJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com/?pc=ASJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
O4 - HKLM\..\Run: [WebStorage] C:\Program Files (x86)\ASUS\WebStorage\2.1.1.265\ASUSWSLoader.exe
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKLM\..\Run: [RzSBHelper] C:\Program Files (x86)\Razer\SwitchBlade\RzSBHelper.exe
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [KiesTrayAgent] E:\kies\Kies\KiesTrayAgent.exe
O4 - HKLM\..\Run: [Kraken71ChromaHelper] C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe /start
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKCU\..\Run: [Steam] "E:\steam\steam.exe" -silent
O4 - HKCU\..\Run: [GalaxyClient] E:\gog galaxy\GalaxyClient\GalaxyClient.exe /launchViaAutoStart
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "E:\deamon lite\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILFE.EXE /EPT "EPLTarget\P0000000000000000" /M "XP-312 313 315 Series"
O4 - HKCU\..\Run: [TSMApplication] "E:\tsm wow\TradeSkillMaster Application\app\TSMApplication.exe"
O4 - HKCU\..\Run: [Discord] C:\Users\lukas_000\AppData\Local\Discord\app-0.0.300\Discord.exe
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_822640D12963A0CFAF5BB81B94632257] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Twitch.lnk = E:\curse_twitch\Twitch\Bin\Twitch.exe
O4 - Global Startup: Avast Cleanup Premium.lnk = C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe
O4 - Global Startup: RazerFPSStartup.lnk = C:\ProgramData\Razer\SwitchBlade\Apps\Razer\65BFE244-2354-4E41-ADC9-CCF6BE3B5F75\RzFPS\RzFPS.exe
O4 - Global Startup: RzMiMoAppService.lnk = C:\ProgramData\Razer\SwitchBlade\Apps\Razer\DF495DFD-79F6-34DF-BB1E-E58DB5BDCF2C\RzMiMo.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe
O23 - Service: Asus WebStorage Windows Service - ASUS Cloud Corporation - C:\Program Files (x86)\ASUS\WebStorage\2.1.1.265\AsusWSWinService.exe
O23 - Service: aswbIDSAgent - AVAST Software - E:\avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - E:\avast\AvastSvc.exe
O23 - Service: @oem47.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: Avast Cleanup Premium (CleanupPSvc) - AVAST Software - C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\WINDOWS\system32\EscSvc64.exe (file missing)
O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) - MAGIX AG - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe
O23 - Service: GalaxyClientService - GOG.com - E:\gog galaxy\GalaxyClient\GalaxyClientService.exe
O23 - Service: GalaxyCommunication - GOG.com - C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\SysWOW64\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Razer Chroma SDK Server - Razer Inc. - C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe
O23 - Service: Razer Chroma SDK Service - Razer Inc. - C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe
O23 - Service: Razer Game Scanner (Razer Game Scanner Service) - Unknown owner - C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Razer Overlay Subsystem Emergency Service (RzOvlMon) - Razer, Inc. - C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - E:\smart switch\USB Drivers\27_ssconn\conn\ss_conn_service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: @%systemroot%\system32\xbgmsvc.exe,-100 (xbgm) - Unknown owner - C:\WINDOWS\system32\xbgmsvc.exe (file missing)
--
End of file - 16081 bytes
======Listing Processes======
c:\windows\system32\svchost.exe -k dcomlaunch -p -s PlugPlay
winlogon.exe
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
"fontdrvhost.exe"
c:\windows\system32\svchost.exe -k rpcss -p
c:\windows\system32\svchost.exe -k dcomlaunch -p -s LSM
"dwm.exe"
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s NcbService
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s TimeBrokerSvc
c:\windows\system32\svchost.exe -k localservice -p -s bthserv
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s EventLog
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s hidserv
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s NgcSvc
c:\windows\system32\svchost.exe -k netsvcs -p -s Schedule
c:\windows\system32\svchost.exe -k netsvcs -p -s ProfSvc
c:\windows\system32\svchost.exe -k localservice -p -s nsi
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s BthHFSrv
c:\windows\system32\svchost.exe -k netsvcs -p -s UserManager
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s Dhcp
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s DeviceAssociationService
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-fe39c5dc-0bd0-4eed-8aca-407737dddb1a -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-8d6a56c4-5769-481f-9fac-64b2075e24f8 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-5288e336-5af6-4366-9c33-62b772c59b97 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-a077efd5-66bf-4c7d-a360-b38b6f469f85 -LifetimeId:19933bfb-9123-428d-917f-59adb7e0718e -DeviceGroupId:WpdFsGroup
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
c:\windows\system32\svchost.exe -k netsvcs -p -s Themes
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s SysMain
c:\windows\system32\svchost.exe -k localservice -p -s EventSystem
c:\windows\system32\svchost.exe -k networkservice -p -s NlaSvc
c:\windows\system32\svchost.exe -k netsvcs -p -s SENS
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s AudioEndpointBuilder
c:\windows\system32\svchost.exe -k localservice -p -s FontCache
c:\windows\system32\svchost.exe -k localservice -p -s netprofm
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -f "C:\ProgramData\NVIDIA\DisplaySessionContainer%d.log" -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\Session" -r -l 3 -p 30000 -c
dashost.exe {a6de4949-eef0-4f71-9c20f83e672375e4}
c:\windows\system32\svchost.exe -k networkservice -p -s Dnscache
c:\windows\system32\svchost.exe -k localservice -p -s fdPHost
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p -s FDResPub
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
c:\windows\system32\svchost.exe -k netsvcs -p -s Winmgmt
c:\windows\system32\svchost.exe -k appmodel -p -s StateRepository
c:\windows\system32\svchost.exe -k netsvcs -p -s ShellHWDetection
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s HomeGroupProvider
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p -s SSDPSRV
C:\WINDOWS\System32\spoolsv.exe
c:\windows\system32\svchost.exe -k networkservice -p -s LanmanWorkstation
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe"
C:\WINDOWS\system32\EscSvc64.exe
c:\windows\system32\svchost.exe -k networkservice -s TermService
c:\windows\system32\svchost.exe -k localservicenonetwork -p -s DPS
C:\WINDOWS\system32\svchost.exe -k imgsvc
c:\windows\system32\svchost.exe -k netsvcs -p -s IKEEXT
c:\windows\system32\svchost.exe -k netsvcs -p -s WpnService
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
c:\windows\system32\svchost.exe -k networkservice -p -s CryptSvc
C:\WINDOWS\system32\BtwRSupportService.exe
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s TrkWks
C:\WINDOWS\SysWOW64\IoctlSvc.exe
c:\windows\system32\svchost.exe -k localservice -p -s SstpSvc
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
c:\windows\system32\svchost.exe -k netsvcs -p -s iphlpsvc
"C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe"
C:\Windows\system32\IProsetMonitor.exe
C:\WINDOWS\SysWOW64\PnkBstrA.exe
"C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe"
"C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
"C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files (x86)\ASUS\WebStorage\2.1.1.265\AsusWSWinService.exe"
c:\windows\system32\svchost.exe -k netsvcs -p -s LanmanServer
"E:\smart switch\USB Drivers\27_ssconn\conn\ss_conn_service.exe"
c:\windows\system32\svchost.exe -k localservice -p -s WdiServiceHost
"C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe"
c:\windows\system32\svchost.exe -k netsvcs
"C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe"
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s NgcCtnrSvc
c:\windows\system32\svchost.exe -k netsvcs -p -s Browser
c:\windows\system32\svchost.exe -k networkservicenetworkrestricted -p -s PolicyAgent
c:\windows\system32\svchost.exe -k localservice -p -s CDPSvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s wscsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s Netman
c:\windows\system32\svchost.exe -k netsvcs -p -s BITS
"C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe" /DisableUI
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
sihost.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup -s CDPUserSvc
c:\windows\system32\svchost.exe -k unistacksvcgroup -s WpnUserService
"C:\Program Files (x86)\ASUS\ASUS Manager\Ai Charger II\Ai_ChargerII_TrayIcon(ASUS_Manager).exe"
"C:\Program Files (x86)\ASUS\System Level Up Driver\SysLevelUp.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files (x86)\ASUS\ASUS Manager\Lighting\ASUS_Manager_Lighting.exe"
c:\windows\system32\svchost.exe -k netsvcs -p -s TokenBroker
"C:\Program Files (x86)\ASUS\ASUS Manager\PC Cleanup\SecureDeleteBackground.exe"
"C:\Program Files (x86)\ASUS\ASUS Manager\Power Manager\Power Manager_background.exe"
"C:\Program Files (x86)\InstallShield Installation Information\{9AF45D7C-34F1-4BA0-B799-825C8C04494C}\AiChargerDT.exe"
"C:\Program Files (x86)\ASUS\ASUS Manager\AsHKService.exe"
"C:\Program Files (x86)\ASUS\AEGIS\AsSysLevelUpSrc.exe"
"C:\Program Files (x86)\ASUS\AEGIS\AEGIS_AlertService.exe"
"C:\Program Files (x86)\ASUS\AEGIS\AEGIS_SysMode.exe"
"C:\Program Files (x86)\Avast Driver Updater\Avast Driver Updater.exe" -boot
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s TabletInputService
"C:\Program Files (x86)\ASUS\AEGIS\AsToastHelper.exe"
"ctfmon.exe"
c:\windows\system32\svchost.exe -k netsvcs -p -s Appinfo
C:\WINDOWS\Explorer.EXE
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s PcaSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s WdiSystemHost
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
c:\windows\system32\svchost.exe -k localservice -p -s LicenseManager
c:\windows\system32\svchost.exe -k unistacksvcgroup
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Windows Defender\MSASCuiL.exe"
AvastUI.exe /nogui
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX4
"E:\steam\Steam.exe" -silent
"C:\Windows\System32\spool\drivers\x64\3\E_IATILFE.EXE" /EPT "EPLTarget\P0000000000000000" /M "XP-312 313 315 Series"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
E:\steam\bin\cef\cef.win7\steamwebhelper.exe "-lang=cs_CZ" "-cachedir=C:\Users\lukas_000\AppData\Local\Steam\htmlcache" "-steampid=10724" "-buildid=1521764535" "-steamid=0" "-clientui=E:\steam\clientui" --disable-spell-checking --disable-out-of-process-pac --enable-blink-features=ResizeObserver --disable-smooth-scrolling --disable-gpu-compositing --disable-gpu --enable-direct-write "--log-file=E:\steam\logs\cef_log.txt"
"E:\gog galaxy\GalaxyClient\GalaxyClient.exe" /runWithoutUpdating
E:\steam\bin\cef\cef.win7\steamwebhelper.exe --type=crashpad-handler /prefetch:7 --max-uploads=5 --max-db-size=20 --max-db-age=5 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\lukas_000\AppData\Local\CEF\User Data\Crashpad" "--metrics-dir=C:\Users\lukas_000\AppData\Local\CEF\User Data" --url=http://crash.steampowered.com/submit --annotation=platform=win32 --annotation=product=cefwebhelper --annotation=version=1.0 --initial-client-data=0x30c,0x310,0x314,0x2f8,0x318,0x5ef581a4,0x5ef581b4,0x5ef581c4
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe" /nogui
"C:\ProgramData\Razer\SwitchBlade\Apps\Razer\65BFE244-2354-4E41-ADC9-CCF6BE3B5F75\RzFPS\RzFPS.exe"
"C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe"
"C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
"C:\ProgramData\Razer\SwitchBlade\Apps\Razer\DF495DFD-79F6-34DF-BB1E-E58DB5BDCF2C\RzMiMo.exe"
"C:\Program Files (x86)\Razer\SwitchBlade\RzSBHelper.exe"
"C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe" /start
"E:\gog galaxy\GalaxyClient\GalaxyClient Helper.exe" --type=gpu-process --no-sandbox --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --gpu-vendor-id=0x10de --gpu-device-id=0x13c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=23.21.13.9101 --gpu-driver-date=2-23-2018 --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --service-request-channel-token=17CF1732D39F6E836896DA549BC2BAF0 --mojo-platform-channel-handle=2504 /prefetch:2
"E:\steam\bin\cef\cef.win7\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --disable-smooth-scrolling --enable-pinch --service-pipe-token=C251A3961BB578B10F2FAAF1422F8495 --enable-blink-features=ResizeObserver --lang=en-US --lang=cs-CZ --log-file="E:\steam\logs\cef_log.txt" --product-version="Valve Steam Client" --webview-urls=http://localhost/*,http://steamloopback ... localhost/* --disable-spell-checking --buildid=1521764535 --steamid=0 --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553 --disable-accelerated-video-decode --disable-gpu-compositing --enable-gpu-async-worker-context --service-request-channel-token=C251A3961BB578B10F2FAAF1422F8495 --renderer-client-id=2 --mojo-platform-channel-handle=1888 /prefetch:1
"E:\gog galaxy\GalaxyClient\GalaxyClient Helper.exe" --type=renderer --enable-smooth-scrolling --js-flags=--expose-gc --no-sandbox --service-pipe-token=95D5B0C3649499287621CA7DCEF89677 --lang=en-US --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --disable-spell-checking --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553 --enable-gpu-async-worker-context --service-request-channel-token=95D5B0C3649499287621CA7DCEF89677 --renderer-client-id=3 --mojo-platform-channel-handle=2960 /prefetch:1
"E:\gog galaxy\GalaxyClient\GalaxyClient Helper.exe" --type=renderer --enable-smooth-scrolling --js-flags=--expose-gc --no-sandbox --service-pipe-token=21FCF6271F14938614AA585FAB240F4E --lang=en-US --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --disable-spell-checking --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553 --enable-gpu-async-worker-context --service-request-channel-token=21FCF6271F14938614AA585FAB240F4E --renderer-client-id=4 --mojo-platform-channel-handle=3144 /prefetch:1
"E:\gog galaxy\GalaxyClient\GOG Galaxy Notifications Renderer.exe"
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe" -sync_complete
"C:\Program Files (x86)\Razer\InGameEngine\32bit\RazerIngameEngine.exe"
"C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe" --type=gpu-process --channel="13428.0.1997658841\1950591060" --no-sandbox --lang=en-US --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,20,45,55 --gpu-vendor-id=0x10de --gpu-device-id=0x13c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=23.21.13.9101 --lang=en-US /prefetch:822062411
"C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe" --type=renderer --no-sandbox --disable-databases --lang=en-US --lang=en-US --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="13428.1.2088923806\2038577515" /prefetch:673131151
"C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe" --type=renderer --no-sandbox --disable-databases --lang=en-US --lang=en-US --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="13428.2.1459970886\1425445673" /prefetch:673131151
"C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe" --type=renderer --no-sandbox --disable-databases --lang=en-US --lang=en-US --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="13428.3.1172534406\194955852" /prefetch:673131151
"C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\RzCefRenderProcess.exe" --type=gpu-process --channel="11900.0.1406988197\1326981887" --no-sandbox --lang=en-US --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,20,45,55 --gpu-vendor-id=0x10de --gpu-device-id=0x13c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=23.21.13.9101 --lang=en-US /prefetch:822062411
C:\Windows\System32\RuntimeBroker.exe -Embedding
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s StorSvc
C:\WINDOWS\sysWOW64\wbem\wmiprvse.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s SEMgrSvc
/S
c:\windows\system32\svchost.exe -k netsvcs -p -s lfsvc
C:\WINDOWS\system32\svchost.exe -k SDRSVC
"C:\ProgramData\Razer\SwitchBlade\DeathStalker\Razer\1068AAE3-6299-4086-A7F6-0600F5F1D1E5\RzHome.exe" -online
"C:\Program Files (x86)\Razer\SwitchBlade\RzAppManager.exe" -Embedding
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
LiveUpdateChecker.exe -auto
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s DsSvc
"C:\Program Files\WindowsApps\Microsoft.WindowsStore_11802.1001.11.0_x64__8wekyb3d8bbwe\WinStore.App.exe" -ServerName:App.AppXc75wvwned5vhz4xyxxecvgdjhdkgsdza.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s SensorService
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc
"C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe"
"C:\WINDOWS\system32\taskmgr.exe" /4
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s NcdAutoSetup
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.16299.251_none_16dd4c82321e5ccc\TiWorker.exe -Embedding
"C:\WINDOWS\system32\SystemSettingsAdminFlows.exe" OptionalFeaturesAdminHelper
"C:\Windows\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\lukas_000\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\lukas_000\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\lukas_000\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=65.0.3325.181 --initial-client-data=0x1d8,0x1dc,0x1e0,0x1d4,0x1e4,0x7ff866a1f1e8,0x7ff866a1f1f8,0x7ff866a1f208
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=9328 --on-initialized-event-handle=700 --parent-handle=712 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --gpu-preferences=KAAAAAAAAAAABwAAAQAAAAAAAAAAAGAAAQAAAAAAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAKAAAAEAAAAAAAAAAAAAAACwAAABAAAAAAAAAAAQAAAAoAAAAQAAAAAAAAAAEAAAALAAAA --gpu-vendor-id=0x10de --gpu-device-id=0x13c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=23.21.13.9101 --gpu-driver-date=2-23-2018 --service-request-channel-token=4ACC9A582903089E49A04647E69D8A9B --mojo-platform-channel-handle=1588 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=37BD5325D1B5723CFC86A147B125D545 --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=37BD5325D1B5723CFC86A147B125D545 --renderer-client-id=8 --mojo-platform-channel-handle=2672 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=AE060FA149C06501210DC6B1EE7B12E2 --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=AE060FA149C06501210DC6B1EE7B12E2 --renderer-client-id=3 --mojo-platform-channel-handle=3188 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=831E9ABB59508E2C63573217E547AF33 --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=831E9ABB59508E2C63573217E547AF33 --renderer-client-id=4 --mojo-platform-channel-handle=3500 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=A3F5F21667FE0E228C9220505F9B6D5A --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=A3F5F21667FE0E228C9220505F9B6D5A --renderer-client-id=5 --mojo-platform-channel-handle=3804 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=F4E7A71792A1E78A5BDC4E475C7B3EE1 --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=F4E7A71792A1E78A5BDC4E475C7B3EE1 --renderer-client-id=6 --mojo-platform-channel-handle=4012 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=F3370A354A6747CCEAC14A06FFD07556 --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=F3370A354A6747CCEAC14A06FFD07556 --renderer-client-id=7 --mojo-platform-channel-handle=4216 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=A327EC69FED07ED9D631EB1316E4657A --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=A327EC69FED07ED9D631EB1316E4657A --renderer-client-id=9 --mojo-platform-channel-handle=4416 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=B0436408602D8E54C71C31A9469281D3 --lang=cs --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=B0436408602D8E54C71C31A9469281D3 --renderer-client-id=40 --mojo-platform-channel-handle=9904 /prefetch:1
C:\Windows\System32\smartscreen.exe -Embedding
C:\WINDOWS\system32\AUDIODG.EXE 0xf4
C:\WINDOWS\System32\svchost.exe -k swprv
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe22_ Global\UsGthrCtrlFltPipeMssGthrPipe22 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 724 728 736 8192 732
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s tiledatamodelsvc
"C:\Users\lukas_000\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Avast Driver Updater Startup.job - C:\Program Files (x86)\Avast Driver Updater\Avast Driver Updater.exe -boot
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Invitation {43695F24-84D7-454F-9D8F-5BE870520CD7}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{43695F24-84D7-454F-9D8F-5BE870520CD7}" /F:"Invitation"
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Invitation {88D49723-902A-4BBD-B9EE-E3D271FD9C2F}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{88D49723-902A-4BBD-B9EE-E3D271FD9C2F}" /F:"Invitation"
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Invitation {AFB05FD3-6932-4FDE-8BC9-E535FC17820C}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{AFB05FD3-6932-4FDE-8BC9-E535FC17820C}" /F:"Invitation"
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Invitation {FFB85F48-54C4-4A85-8D28-9B64ECF0BC71}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{FFB85F48-54C4-4A85-8D28-9B64ECF0BC71}" /F:"Invitation"
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Update {43695F24-84D7-454F-9D8F-5BE870520CD7}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{43695F24-84D7-454F-9D8F-5BE870520CD7}" /F:"Update"
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Update {88D49723-902A-4BBD-B9EE-E3D271FD9C2F}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{88D49723-902A-4BBD-B9EE-E3D271FD9C2F}" /F:"Update"
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Update {AFB05FD3-6932-4FDE-8BC9-E535FC17820C}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{AFB05FD3-6932-4FDE-8BC9-E535FC17820C}" /F:"Update"
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Update {FFB85F48-54C4-4A85-8D28-9B64ECF0BC71}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{FFB85F48-54C4-4A85-8D28-9B64ECF0BC71}" /F:"Update"
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2017-12-12 229040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2017-12-12 2353944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\Program Files\Windows Defender\MSASCuiL.exe [2017-09-29 630168]
"AvastUI.exe"=E:\avast\AvLaunch.exe [2018-03-03 245608]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-06-29 3936936]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2000-01-01 9235936]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2000-01-01 1492960]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=E:\steam\steam.exe [2018-03-23 3198752]
"GalaxyClient"=E:\gog galaxy\GalaxyClient\GalaxyClient.exe [2018-03-13 6325320]
"DAEMON Tools Lite Automount"=E:\deamon lite\DAEMON Tools Lite\DTAgent.exe [2016-06-08 4295360]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2018-03-06 17074688]
"EPLTarget\P0000000000000000"=C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILFE.EXE [2013-01-24 297024]
"TSMApplication"=E:\tsm wow\TradeSkillMaster Application\app\TSMApplication.exe [2017-12-03 1623040]
"Discord"=C:\Users\lukas_000\AppData\Local\Discord\app-0.0.300\Discord.exe [2018-01-08 57821176]
"GoogleChromeAutoLaunch_822640D12963A0CFAF5BB81B94632257"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2018-03-20 1589592]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ASUSPRP"=C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2014-10-06 3216032]
"WebStorage"=C:\Program Files (x86)\ASUS\WebStorage\2.1.1.265\ASUSWSLoader.exe [2014-01-15 63296]
"Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2017-08-30 596664]
"RzSBHelper"=C:\Program Files (x86)\Razer\SwitchBlade\RzSBHelper.exe [2015-09-23 84992]
"amd_dc_opt"=C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [2008-07-22 77824]
"EEventManager"=C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2016-01-20 1087184]
"KiesTrayAgent"=E:\kies\Kies\KiesTrayAgent.exe [2016-08-25 318128]
"Kraken71ChromaHelper"=C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe [2017-02-14 1600096]
"BlueStacks Agent"=C:\Program Files (x86)\BlueStacks\HD-Agent.exe []
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Avast Cleanup Premium.lnk - C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe
RazerFPSStartup.lnk - C:\ProgramData\Razer\SwitchBlade\Apps\Razer\65BFE244-2354-4E41-ADC9-CCF6BE3B5F75\RzFPS\RzFPS.exe
RzMiMoAppService.lnk - C:\ProgramData\Razer\SwitchBlade\Apps\Razer\DF495DFD-79F6-34DF-BB1E-E58DB5BDCF2C\RzMiMo.exe
C:\Users\lukas_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Twitch.lnk - E:\curse_twitch\Twitch\Bin\Twitch.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
"C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"VIDC.FPS1"=frapsv64.dll
"VIDC.RTV1"=rtvcvfw64.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2018-03-25 16:16:54 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2018-03-25 14:37:58 ----D---- C:\ProgramData\acer
2018-03-25 14:13:47 ----A---- C:\WINDOWS\system32\drivers\RtsUer.sys
2018-03-25 14:13:46 ----A---- C:\WINDOWS\SYSWOW64\RsCRIcon.dll
2018-03-25 14:13:46 ----A---- C:\WINDOWS\system32\RtCRX64.dll
2018-03-25 14:08:34 ----D---- C:\ProgramData\updater2
2018-03-25 14:08:34 ----D---- C:\oem
2018-03-25 14:04:54 ----D---- C:\Program Files\Realtek
2018-03-25 14:03:35 ----A---- C:\WINDOWS\SYSWOW64\SFCOM.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\tosade.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\tepeqapo64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\tadefxapo264.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\tadefxapo.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SRSWOW64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SRSTSX64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SRSTSH64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SRSHP64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SFSS_APO.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SFNHK64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SFCOM64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SFAPO64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RtkCoLDR64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RTEEP64A.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RTEEL64A.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RTEEG64A.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RTEED64A.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RtDataProc64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RP3DHT64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RP3DAA64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RltkAPO64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\drivers\RTKVHD64.sys
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2018-03-25 14:03:33 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2018-03-25 14:03:33 ----A---- C:\WINDOWS\system32\RCoInstII64.dll
2018-03-25 14:03:33 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2018-03-25 14:03:33 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2018-03-25 14:03:33 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2018-03-25 14:03:33 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2018-03-25 14:03:33 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DDPA64.dll
2018-03-25 14:03:31 ----A---- C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2018-03-25 13:32:17 ----A---- C:\WINDOWS\RtlExUpd.dll
2018-03-25 13:31:54 ----D---- C:\WINDOWS\oem
2018-03-25 13:28:26 ----D---- C:\WINDOWS\LastGood.Tmp
2018-03-25 13:28:17 ----D---- C:\Program Files\Broadcom
2018-03-25 13:27:12 ----D---- C:\SWSetup
2018-03-25 13:26:17 ----D---- C:\ProgramData\DriverSetupUtility
2018-03-25 13:26:09 ----D---- C:\Program Files\DriverSetupUtility
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\IndexedDbLegacy.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\AcSpecfc.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2018-03-17 13:03:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2018-03-17 13:03:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2018-03-17 13:03:37 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2018-03-17 13:03:37 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2018-03-17 13:03:36 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2018-03-17 13:03:36 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2018-03-17 13:03:36 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2018-03-17 13:03:36 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2018-03-17 13:03:36 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2018-03-17 13:03:36 ----A---- C:\WINDOWS\system32\drivers\hidparse.sys
2018-03-17 13:03:36 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2018-03-17 13:03:36 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\rdpudd.dll
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\wcifs.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\volmgr.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\storufs.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\storahci.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\BasicRender.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2018-03-17 13:03:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2018-03-17 13:03:34 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2018-03-17 13:03:34 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2018-03-17 13:03:34 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2018-03-17 13:03:34 ----A---- C:\WINDOWS\system32\vbscript.dll
2018-03-17 13:03:34 ----A---- C:\WINDOWS\system32\samsrv.dll
2018-03-17 13:03:34 ----A---- C:\WINDOWS\system32\jscript9.dll
2018-03-17 13:03:34 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2018-03-17 13:03:34 ----A---- C:\WINDOWS\system32\DbgModel.dll
2018-03-17 13:03:33 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2018-03-17 13:03:33 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2018-03-17 13:03:33 ----A---- C:\WINDOWS\system32\win32kfull.sys
2018-03-17 13:03:33 ----A---- C:\WINDOWS\system32\win32kbase.sys
2018-03-17 13:03:33 ----A---- C:\WINDOWS\system32\StorSvc.dll
2018-03-17 13:03:33 ----A---- C:\WINDOWS\system32\iertutil.dll
2018-03-17 13:03:33 ----A---- C:\WINDOWS\system32\edgeIso.dll
2018-03-17 13:03:33 ----A---- C:\WINDOWS\system32\drivers\UcmUcsi.sys
2018-03-17 13:03:33 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\jscript.dll
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\ieframe.dll
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\Chakra.dll
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\hvloader.dll
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\hvax64.exe
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\drivers\vmbus.sys
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\drivers\netvsc.sys
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\drivers\msiscsi.sys
2018-03-17 13:03:31 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2018-03-17 13:03:31 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2018-03-17 13:03:31 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2018-03-17 13:03:31 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2018-03-17 13:03:31 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2018-03-17 13:03:31 ----A---- C:\WINDOWS\system32\lsasrv.dll
2018-03-17 13:03:31 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2018-03-17 13:03:31 ----A---- C:\WINDOWS\system32\dbgeng.dll
2018-03-17 13:03:31 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\wininet.dll
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\msIso.dll
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\KernelBase.dll
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\AcSpecfc.dll
2018-03-17 13:03:29 ----A---- C:\WINDOWS\system32\winmde.dll
2018-03-17 13:03:29 ----A---- C:\WINDOWS\system32\msvproc.dll
2018-03-17 13:03:29 ----A---- C:\WINDOWS\system32\mshtml.dll
2018-03-17 13:03:29 ----A---- C:\WINDOWS\system32\mfplat.dll
2018-03-17 13:03:29 ----A---- C:\WINDOWS\system32\hvix64.exe
2018-03-17 13:03:29 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2018-03-17 13:03:28 ----A---- C:\WINDOWS\SYSWOW64\zipfldr.dll
2018-03-17 13:03:28 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2018-03-17 13:03:28 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2018-03-17 13:03:28 ----A---- C:\WINDOWS\system32\wintrust.dll
2018-03-17 13:03:28 ----A---- C:\WINDOWS\system32\windows.storage.dll
2018-03-17 13:03:28 ----A---- C:\WINDOWS\system32\pcalua.exe
2018-03-17 13:03:28 ----A---- C:\WINDOWS\system32\edgehtml.dll
2018-03-17 13:03:27 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2018-03-17 13:03:27 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2018-03-17 13:03:27 ----A---- C:\WINDOWS\system32\zipfldr.dll
2018-03-17 13:03:27 ----A---- C:\WINDOWS\system32\winsrv.dll
2018-03-17 13:03:27 ----A---- C:\WINDOWS\system32\shell32.dll
2018-03-17 13:03:27 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2018-03-17 13:03:27 ----A---- C:\WINDOWS\system32\aitstatic.exe
2018-03-17 13:03:26 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2018-03-17 13:03:26 ----A---- C:\WINDOWS\system32\HologramCompositor.dll
2018-03-17 13:03:25 ----A---- C:\WINDOWS\system32\usocore.dll
2018-03-17 13:03:25 ----A---- C:\WINDOWS\system32\usoapi.dll
2018-03-17 13:03:25 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2018-03-17 13:03:25 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2018-03-17 13:03:25 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2018-03-17 13:03:25 ----A---- C:\WINDOWS\system32\MusNotification.exe
2018-03-17 13:03:25 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\winresume.exe
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\winload.exe
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\win32appinventorycsp.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\Spectrum.exe
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\pcasvc.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\invagent.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\generaltel.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\devinv.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\dcntel.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\appraiser.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\aepic.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\aeinv.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\acmigration.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Payments.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\SYSWOW64\cldapi.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\Windows.Payments.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\SecurityHealthService.exe
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\SecurityHealthAgent.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\MusNotifyIcon.exe
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\HolographicExtensions.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\drivers\sdstor.sys
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\daxexec.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\cldapi.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\cdp.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\TSpkg.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\offlinesam.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\MSVPXENC.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\MSVideoDSP.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountWAMExtension.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\HoloShellRuntime.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\credssp.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\AuthFWSnapin.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\Windows.Internal.Feedback.Analog.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\UsoClient.exe
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\updatecsp.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\TSpkg.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\svf.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\SpectrumSyncClient.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\racpldlg.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\offlinesam.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\MSVPXENC.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\MSVideoDSP.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\msra.exe
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\msi.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\IndexedDbLegacy.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\HoloShellRuntime.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\HeadTrackerStorage.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\wcnfs.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\RfxVmt.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\msrpc.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\isapnp.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\HdAudio.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\ataport.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\AuthFWSnapin.dll
2018-03-17 13:03:16 ----A---- C:\WINDOWS\SYSWOW64\msisip.dll
2018-03-17 13:03:16 ----A---- C:\WINDOWS\system32\msisip.dll
2018-03-17 13:03:16 ----A---- C:\WINDOWS\system32\credssp.dll
2018-03-13 21:12:22 ----D---- C:\Users\lukas_000\AppData\Roaming\BluestacksCN
2018-03-13 20:10:27 ----AD---- C:\Program Files (x86)\BlueStacks
2018-03-04 00:33:00 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2018-03-04 00:32:56 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo.exe
2018-03-04 00:32:56 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1.dll
2018-03-04 00:32:56 ----A---- C:\WINDOWS\system32\vulkaninfo.exe
2018-03-04 00:32:56 ----A---- C:\WINDOWS\system32\vulkan-1.dll
2018-03-04 00:32:55 ----D---- C:\Program Files (x86)\VulkanRT
2018-03-04 00:32:45 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2018-03-04 00:32:45 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2018-03-04 00:32:45 ----A---- C:\WINDOWS\system32\nvshext.dll
2018-03-04 00:32:45 ----A---- C:\WINDOWS\system32\nvmctray.dll
2018-03-04 00:32:45 ----A---- C:\WINDOWS\system32\nvcpl.dll
2018-03-04 00:32:45 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2018-03-04 00:32:45 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2018-03-04 00:32:34 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2018-03-04 00:32:34 ----A---- C:\WINDOWS\system32\OpenCL.dll
2018-03-04 00:32:30 ----D---- C:\WINDOWS\system32\drivers\NVIDIA Corporation
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvptxJitCompiler.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvfatbinaryLoader.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvEncMFThevc.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvEncMFTH264.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvDecMFTMjpeg.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvptxJitCompiler.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvopencl.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvmcumd.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvhdap64.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvhdagenco6420103.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvfatbinaryLoader.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvEncMFThevc.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvEncMFTH264.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvdispgenco6439101.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvdispco6439101.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvcuda.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvapi64.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\drivers\nvhda64v.sys
2018-03-03 23:41:59 ----A---- C:\WINDOWS\system32\aswBoot.exe
2018-03-01 19:01:52 ----D---- C:\Users\lukas_000\AppData\Roaming\discord
======List of files/folders modified in the last 1 month======
dnes jsem jako obvikle zapl pc a na jednou se vse seklo, po blizsim proskoumani jsem zjistil zatizeni procesoru na 100 proc. dela to googel chrom, ve spravci jsem dal ukoncit pouze ten jeden soubor co se tvari jako googel chrom, chrom funguje nadale v poradku a i zatizeni kleslo na mich standartnich 3proc. kdyz googel znovu restartuji skoci tam znovu 100 proc zatizeni.
Zde log
Logfile of random's system information tool 1.10 (written by random/random)
Run by lukas_000 at 2018-03-25 17:04:24
Microsoft Windows 10 Home
System drive C: has 166 GB (74%) free of 226 GB
Total RAM: 32710 MB (81% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:04:27, on 25.03.2018
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.16299.0015)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\ASUS Manager\Ai Charger II\Ai_ChargerII_TrayIcon(ASUS_Manager).exe
C:\Program Files (x86)\ASUS\System Level Up Driver\SysLevelUp.exe
C:\Program Files (x86)\ASUS\ASUS Manager\Lighting\ASUS_Manager_Lighting.exe
C:\Program Files (x86)\ASUS\ASUS Manager\PC Cleanup\SecureDeleteBackground.exe
C:\Program Files (x86)\ASUS\ASUS Manager\Power Manager\Power Manager_background.exe
C:\Program Files (x86)\InstallShield Installation Information\{9AF45D7C-34F1-4BA0-B799-825C8C04494C}\AiChargerDT.exe
C:\Program Files (x86)\ASUS\ASUS Manager\AsHKService.exe
C:\Program Files (x86)\ASUS\AEGIS\AsSysLevelUpSrc.exe
C:\Program Files (x86)\ASUS\AEGIS\AEGIS_AlertService.exe
C:\Program Files (x86)\ASUS\AEGIS\AEGIS_SysMode.exe
C:\Program Files (x86)\Avast Driver Updater\Avast Driver Updater.exe
C:\Program Files (x86)\ASUS\AEGIS\AsToastHelper.exe
E:\avast\AvastUI.exe
E:\steam\Steam.exe
E:\steam\bin\cef\cef.win7\steamwebhelper.exe
E:\gog galaxy\GalaxyClient\GalaxyClient.exe
E:\steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe
C:\ProgramData\Razer\SwitchBlade\Apps\Razer\65BFE244-2354-4E41-ADC9-CCF6BE3B5F75\RzFPS\RzFPS.exe
C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\ProgramData\Razer\SwitchBlade\Apps\Razer\DF495DFD-79F6-34DF-BB1E-E58DB5BDCF2C\RzMiMo.exe
C:\Program Files (x86)\Razer\SwitchBlade\RzSBHelper.exe
C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe
E:\gog galaxy\GalaxyClient\GalaxyClient Helper.exe
E:\steam\bin\cef\cef.win7\steamwebhelper.exe
E:\gog galaxy\GalaxyClient\GalaxyClient Helper.exe
E:\gog galaxy\GalaxyClient\GalaxyClient Helper.exe
E:\gog galaxy\GalaxyClient\GOG Galaxy Notifications Renderer.exe
C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe
C:\Program Files (x86)\Razer\InGameEngine\32bit\RazerIngameEngine.exe
C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe
C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe
C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe
C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe
C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\RzCefRenderProcess.exe
C:\ProgramData\Razer\SwitchBlade\DeathStalker\Razer\1068AAE3-6299-4086-A7F6-0600F5F1D1E5\RzHome.exe
C:\Program Files (x86)\Razer\SwitchBlade\RzAppManager.exe
C:\Program Files\trend micro\lukas_000.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?pc=ASJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com/?pc=ASJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
O4 - HKLM\..\Run: [WebStorage] C:\Program Files (x86)\ASUS\WebStorage\2.1.1.265\ASUSWSLoader.exe
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKLM\..\Run: [RzSBHelper] C:\Program Files (x86)\Razer\SwitchBlade\RzSBHelper.exe
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [KiesTrayAgent] E:\kies\Kies\KiesTrayAgent.exe
O4 - HKLM\..\Run: [Kraken71ChromaHelper] C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe /start
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKCU\..\Run: [Steam] "E:\steam\steam.exe" -silent
O4 - HKCU\..\Run: [GalaxyClient] E:\gog galaxy\GalaxyClient\GalaxyClient.exe /launchViaAutoStart
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "E:\deamon lite\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILFE.EXE /EPT "EPLTarget\P0000000000000000" /M "XP-312 313 315 Series"
O4 - HKCU\..\Run: [TSMApplication] "E:\tsm wow\TradeSkillMaster Application\app\TSMApplication.exe"
O4 - HKCU\..\Run: [Discord] C:\Users\lukas_000\AppData\Local\Discord\app-0.0.300\Discord.exe
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_822640D12963A0CFAF5BB81B94632257] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Twitch.lnk = E:\curse_twitch\Twitch\Bin\Twitch.exe
O4 - Global Startup: Avast Cleanup Premium.lnk = C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe
O4 - Global Startup: RazerFPSStartup.lnk = C:\ProgramData\Razer\SwitchBlade\Apps\Razer\65BFE244-2354-4E41-ADC9-CCF6BE3B5F75\RzFPS\RzFPS.exe
O4 - Global Startup: RzMiMoAppService.lnk = C:\ProgramData\Razer\SwitchBlade\Apps\Razer\DF495DFD-79F6-34DF-BB1E-E58DB5BDCF2C\RzMiMo.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe
O23 - Service: Asus WebStorage Windows Service - ASUS Cloud Corporation - C:\Program Files (x86)\ASUS\WebStorage\2.1.1.265\AsusWSWinService.exe
O23 - Service: aswbIDSAgent - AVAST Software - E:\avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - E:\avast\AvastSvc.exe
O23 - Service: @oem47.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: Avast Cleanup Premium (CleanupPSvc) - AVAST Software - C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\WINDOWS\system32\EscSvc64.exe (file missing)
O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) - MAGIX AG - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe
O23 - Service: GalaxyClientService - GOG.com - E:\gog galaxy\GalaxyClient\GalaxyClientService.exe
O23 - Service: GalaxyCommunication - GOG.com - C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\SysWOW64\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Razer Chroma SDK Server - Razer Inc. - C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe
O23 - Service: Razer Chroma SDK Service - Razer Inc. - C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe
O23 - Service: Razer Game Scanner (Razer Game Scanner Service) - Unknown owner - C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Razer Overlay Subsystem Emergency Service (RzOvlMon) - Razer, Inc. - C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - E:\smart switch\USB Drivers\27_ssconn\conn\ss_conn_service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: @%systemroot%\system32\xbgmsvc.exe,-100 (xbgm) - Unknown owner - C:\WINDOWS\system32\xbgmsvc.exe (file missing)
--
End of file - 16081 bytes
======Listing Processes======
c:\windows\system32\svchost.exe -k dcomlaunch -p -s PlugPlay
winlogon.exe
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
"fontdrvhost.exe"
c:\windows\system32\svchost.exe -k rpcss -p
c:\windows\system32\svchost.exe -k dcomlaunch -p -s LSM
"dwm.exe"
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s NcbService
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s TimeBrokerSvc
c:\windows\system32\svchost.exe -k localservice -p -s bthserv
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s EventLog
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s hidserv
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s NgcSvc
c:\windows\system32\svchost.exe -k netsvcs -p -s Schedule
c:\windows\system32\svchost.exe -k netsvcs -p -s ProfSvc
c:\windows\system32\svchost.exe -k localservice -p -s nsi
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s BthHFSrv
c:\windows\system32\svchost.exe -k netsvcs -p -s UserManager
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s Dhcp
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s DeviceAssociationService
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-fe39c5dc-0bd0-4eed-8aca-407737dddb1a -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-8d6a56c4-5769-481f-9fac-64b2075e24f8 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-5288e336-5af6-4366-9c33-62b772c59b97 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-a077efd5-66bf-4c7d-a360-b38b6f469f85 -LifetimeId:19933bfb-9123-428d-917f-59adb7e0718e -DeviceGroupId:WpdFsGroup
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
c:\windows\system32\svchost.exe -k netsvcs -p -s Themes
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s SysMain
c:\windows\system32\svchost.exe -k localservice -p -s EventSystem
c:\windows\system32\svchost.exe -k networkservice -p -s NlaSvc
c:\windows\system32\svchost.exe -k netsvcs -p -s SENS
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s AudioEndpointBuilder
c:\windows\system32\svchost.exe -k localservice -p -s FontCache
c:\windows\system32\svchost.exe -k localservice -p -s netprofm
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -f "C:\ProgramData\NVIDIA\DisplaySessionContainer%d.log" -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\Session" -r -l 3 -p 30000 -c
dashost.exe {a6de4949-eef0-4f71-9c20f83e672375e4}
c:\windows\system32\svchost.exe -k networkservice -p -s Dnscache
c:\windows\system32\svchost.exe -k localservice -p -s fdPHost
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p -s FDResPub
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
c:\windows\system32\svchost.exe -k netsvcs -p -s Winmgmt
c:\windows\system32\svchost.exe -k appmodel -p -s StateRepository
c:\windows\system32\svchost.exe -k netsvcs -p -s ShellHWDetection
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s HomeGroupProvider
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p -s SSDPSRV
C:\WINDOWS\System32\spoolsv.exe
c:\windows\system32\svchost.exe -k networkservice -p -s LanmanWorkstation
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe"
C:\WINDOWS\system32\EscSvc64.exe
c:\windows\system32\svchost.exe -k networkservice -s TermService
c:\windows\system32\svchost.exe -k localservicenonetwork -p -s DPS
C:\WINDOWS\system32\svchost.exe -k imgsvc
c:\windows\system32\svchost.exe -k netsvcs -p -s IKEEXT
c:\windows\system32\svchost.exe -k netsvcs -p -s WpnService
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
c:\windows\system32\svchost.exe -k networkservice -p -s CryptSvc
C:\WINDOWS\system32\BtwRSupportService.exe
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s TrkWks
C:\WINDOWS\SysWOW64\IoctlSvc.exe
c:\windows\system32\svchost.exe -k localservice -p -s SstpSvc
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
c:\windows\system32\svchost.exe -k netsvcs -p -s iphlpsvc
"C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe"
C:\Windows\system32\IProsetMonitor.exe
C:\WINDOWS\SysWOW64\PnkBstrA.exe
"C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe"
"C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
"C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files (x86)\ASUS\WebStorage\2.1.1.265\AsusWSWinService.exe"
c:\windows\system32\svchost.exe -k netsvcs -p -s LanmanServer
"E:\smart switch\USB Drivers\27_ssconn\conn\ss_conn_service.exe"
c:\windows\system32\svchost.exe -k localservice -p -s WdiServiceHost
"C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe"
c:\windows\system32\svchost.exe -k netsvcs
"C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe"
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s NgcCtnrSvc
c:\windows\system32\svchost.exe -k netsvcs -p -s Browser
c:\windows\system32\svchost.exe -k networkservicenetworkrestricted -p -s PolicyAgent
c:\windows\system32\svchost.exe -k localservice -p -s CDPSvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s wscsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s Netman
c:\windows\system32\svchost.exe -k netsvcs -p -s BITS
"C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe" /DisableUI
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
sihost.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup -s CDPUserSvc
c:\windows\system32\svchost.exe -k unistacksvcgroup -s WpnUserService
"C:\Program Files (x86)\ASUS\ASUS Manager\Ai Charger II\Ai_ChargerII_TrayIcon(ASUS_Manager).exe"
"C:\Program Files (x86)\ASUS\System Level Up Driver\SysLevelUp.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files (x86)\ASUS\ASUS Manager\Lighting\ASUS_Manager_Lighting.exe"
c:\windows\system32\svchost.exe -k netsvcs -p -s TokenBroker
"C:\Program Files (x86)\ASUS\ASUS Manager\PC Cleanup\SecureDeleteBackground.exe"
"C:\Program Files (x86)\ASUS\ASUS Manager\Power Manager\Power Manager_background.exe"
"C:\Program Files (x86)\InstallShield Installation Information\{9AF45D7C-34F1-4BA0-B799-825C8C04494C}\AiChargerDT.exe"
"C:\Program Files (x86)\ASUS\ASUS Manager\AsHKService.exe"
"C:\Program Files (x86)\ASUS\AEGIS\AsSysLevelUpSrc.exe"
"C:\Program Files (x86)\ASUS\AEGIS\AEGIS_AlertService.exe"
"C:\Program Files (x86)\ASUS\AEGIS\AEGIS_SysMode.exe"
"C:\Program Files (x86)\Avast Driver Updater\Avast Driver Updater.exe" -boot
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s TabletInputService
"C:\Program Files (x86)\ASUS\AEGIS\AsToastHelper.exe"
"ctfmon.exe"
c:\windows\system32\svchost.exe -k netsvcs -p -s Appinfo
C:\WINDOWS\Explorer.EXE
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s PcaSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s WdiSystemHost
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
c:\windows\system32\svchost.exe -k localservice -p -s LicenseManager
c:\windows\system32\svchost.exe -k unistacksvcgroup
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Windows Defender\MSASCuiL.exe"
AvastUI.exe /nogui
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX4
"E:\steam\Steam.exe" -silent
"C:\Windows\System32\spool\drivers\x64\3\E_IATILFE.EXE" /EPT "EPLTarget\P0000000000000000" /M "XP-312 313 315 Series"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
E:\steam\bin\cef\cef.win7\steamwebhelper.exe "-lang=cs_CZ" "-cachedir=C:\Users\lukas_000\AppData\Local\Steam\htmlcache" "-steampid=10724" "-buildid=1521764535" "-steamid=0" "-clientui=E:\steam\clientui" --disable-spell-checking --disable-out-of-process-pac --enable-blink-features=ResizeObserver --disable-smooth-scrolling --disable-gpu-compositing --disable-gpu --enable-direct-write "--log-file=E:\steam\logs\cef_log.txt"
"E:\gog galaxy\GalaxyClient\GalaxyClient.exe" /runWithoutUpdating
E:\steam\bin\cef\cef.win7\steamwebhelper.exe --type=crashpad-handler /prefetch:7 --max-uploads=5 --max-db-size=20 --max-db-age=5 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\lukas_000\AppData\Local\CEF\User Data\Crashpad" "--metrics-dir=C:\Users\lukas_000\AppData\Local\CEF\User Data" --url=http://crash.steampowered.com/submit --annotation=platform=win32 --annotation=product=cefwebhelper --annotation=version=1.0 --initial-client-data=0x30c,0x310,0x314,0x2f8,0x318,0x5ef581a4,0x5ef581b4,0x5ef581c4
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe" /nogui
"C:\ProgramData\Razer\SwitchBlade\Apps\Razer\65BFE244-2354-4E41-ADC9-CCF6BE3B5F75\RzFPS\RzFPS.exe"
"C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe"
"C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
"C:\ProgramData\Razer\SwitchBlade\Apps\Razer\DF495DFD-79F6-34DF-BB1E-E58DB5BDCF2C\RzMiMo.exe"
"C:\Program Files (x86)\Razer\SwitchBlade\RzSBHelper.exe"
"C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe" /start
"E:\gog galaxy\GalaxyClient\GalaxyClient Helper.exe" --type=gpu-process --no-sandbox --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --gpu-vendor-id=0x10de --gpu-device-id=0x13c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=23.21.13.9101 --gpu-driver-date=2-23-2018 --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --service-request-channel-token=17CF1732D39F6E836896DA549BC2BAF0 --mojo-platform-channel-handle=2504 /prefetch:2
"E:\steam\bin\cef\cef.win7\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --disable-smooth-scrolling --enable-pinch --service-pipe-token=C251A3961BB578B10F2FAAF1422F8495 --enable-blink-features=ResizeObserver --lang=en-US --lang=cs-CZ --log-file="E:\steam\logs\cef_log.txt" --product-version="Valve Steam Client" --webview-urls=http://localhost/*,http://steamloopback ... localhost/* --disable-spell-checking --buildid=1521764535 --steamid=0 --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553 --disable-accelerated-video-decode --disable-gpu-compositing --enable-gpu-async-worker-context --service-request-channel-token=C251A3961BB578B10F2FAAF1422F8495 --renderer-client-id=2 --mojo-platform-channel-handle=1888 /prefetch:1
"E:\gog galaxy\GalaxyClient\GalaxyClient Helper.exe" --type=renderer --enable-smooth-scrolling --js-flags=--expose-gc --no-sandbox --service-pipe-token=95D5B0C3649499287621CA7DCEF89677 --lang=en-US --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --disable-spell-checking --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553 --enable-gpu-async-worker-context --service-request-channel-token=95D5B0C3649499287621CA7DCEF89677 --renderer-client-id=3 --mojo-platform-channel-handle=2960 /prefetch:1
"E:\gog galaxy\GalaxyClient\GalaxyClient Helper.exe" --type=renderer --enable-smooth-scrolling --js-flags=--expose-gc --no-sandbox --service-pipe-token=21FCF6271F14938614AA585FAB240F4E --lang=en-US --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --disable-spell-checking --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553 --enable-gpu-async-worker-context --service-request-channel-token=21FCF6271F14938614AA585FAB240F4E --renderer-client-id=4 --mojo-platform-channel-handle=3144 /prefetch:1
"E:\gog galaxy\GalaxyClient\GOG Galaxy Notifications Renderer.exe"
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe" -sync_complete
"C:\Program Files (x86)\Razer\InGameEngine\32bit\RazerIngameEngine.exe"
"C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe" --type=gpu-process --channel="13428.0.1997658841\1950591060" --no-sandbox --lang=en-US --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,20,45,55 --gpu-vendor-id=0x10de --gpu-device-id=0x13c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=23.21.13.9101 --lang=en-US /prefetch:822062411
"C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe" --type=renderer --no-sandbox --disable-databases --lang=en-US --lang=en-US --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="13428.1.2088923806\2038577515" /prefetch:673131151
"C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe" --type=renderer --no-sandbox --disable-databases --lang=en-US --lang=en-US --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="13428.2.1459970886\1425445673" /prefetch:673131151
"C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe" --type=renderer --no-sandbox --disable-databases --lang=en-US --lang=en-US --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="13428.3.1172534406\194955852" /prefetch:673131151
"C:\Users\lukas_000\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\RzCefRenderProcess.exe" --type=gpu-process --channel="11900.0.1406988197\1326981887" --no-sandbox --lang=en-US --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,20,45,55 --gpu-vendor-id=0x10de --gpu-device-id=0x13c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=23.21.13.9101 --lang=en-US /prefetch:822062411
C:\Windows\System32\RuntimeBroker.exe -Embedding
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s StorSvc
C:\WINDOWS\sysWOW64\wbem\wmiprvse.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s SEMgrSvc
/S
c:\windows\system32\svchost.exe -k netsvcs -p -s lfsvc
C:\WINDOWS\system32\svchost.exe -k SDRSVC
"C:\ProgramData\Razer\SwitchBlade\DeathStalker\Razer\1068AAE3-6299-4086-A7F6-0600F5F1D1E5\RzHome.exe" -online
"C:\Program Files (x86)\Razer\SwitchBlade\RzAppManager.exe" -Embedding
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
LiveUpdateChecker.exe -auto
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s DsSvc
"C:\Program Files\WindowsApps\Microsoft.WindowsStore_11802.1001.11.0_x64__8wekyb3d8bbwe\WinStore.App.exe" -ServerName:App.AppXc75wvwned5vhz4xyxxecvgdjhdkgsdza.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s SensorService
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc
"C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe"
"C:\WINDOWS\system32\taskmgr.exe" /4
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s NcdAutoSetup
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.16299.251_none_16dd4c82321e5ccc\TiWorker.exe -Embedding
"C:\WINDOWS\system32\SystemSettingsAdminFlows.exe" OptionalFeaturesAdminHelper
"C:\Windows\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\lukas_000\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\lukas_000\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\lukas_000\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=65.0.3325.181 --initial-client-data=0x1d8,0x1dc,0x1e0,0x1d4,0x1e4,0x7ff866a1f1e8,0x7ff866a1f1f8,0x7ff866a1f208
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=9328 --on-initialized-event-handle=700 --parent-handle=712 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --gpu-preferences=KAAAAAAAAAAABwAAAQAAAAAAAAAAAGAAAQAAAAAAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAKAAAAEAAAAAAAAAAAAAAACwAAABAAAAAAAAAAAQAAAAoAAAAQAAAAAAAAAAEAAAALAAAA --gpu-vendor-id=0x10de --gpu-device-id=0x13c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=23.21.13.9101 --gpu-driver-date=2-23-2018 --service-request-channel-token=4ACC9A582903089E49A04647E69D8A9B --mojo-platform-channel-handle=1588 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=37BD5325D1B5723CFC86A147B125D545 --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=37BD5325D1B5723CFC86A147B125D545 --renderer-client-id=8 --mojo-platform-channel-handle=2672 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=AE060FA149C06501210DC6B1EE7B12E2 --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=AE060FA149C06501210DC6B1EE7B12E2 --renderer-client-id=3 --mojo-platform-channel-handle=3188 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=831E9ABB59508E2C63573217E547AF33 --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=831E9ABB59508E2C63573217E547AF33 --renderer-client-id=4 --mojo-platform-channel-handle=3500 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=A3F5F21667FE0E228C9220505F9B6D5A --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=A3F5F21667FE0E228C9220505F9B6D5A --renderer-client-id=5 --mojo-platform-channel-handle=3804 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=F4E7A71792A1E78A5BDC4E475C7B3EE1 --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=F4E7A71792A1E78A5BDC4E475C7B3EE1 --renderer-client-id=6 --mojo-platform-channel-handle=4012 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=F3370A354A6747CCEAC14A06FFD07556 --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=F3370A354A6747CCEAC14A06FFD07556 --renderer-client-id=7 --mojo-platform-channel-handle=4216 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=A327EC69FED07ED9D631EB1316E4657A --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=A327EC69FED07ED9D631EB1316E4657A --renderer-client-id=9 --mojo-platform-channel-handle=4416 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1564,14791396715006917858,6558096618242606341,131072 --service-pipe-token=B0436408602D8E54C71C31A9469281D3 --lang=cs --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --enable-compositor-image-animations --service-request-channel-token=B0436408602D8E54C71C31A9469281D3 --renderer-client-id=40 --mojo-platform-channel-handle=9904 /prefetch:1
C:\Windows\System32\smartscreen.exe -Embedding
C:\WINDOWS\system32\AUDIODG.EXE 0xf4
C:\WINDOWS\System32\svchost.exe -k swprv
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe22_ Global\UsGthrCtrlFltPipeMssGthrPipe22 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 724 728 736 8192 732
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s tiledatamodelsvc
"C:\Users\lukas_000\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Avast Driver Updater Startup.job - C:\Program Files (x86)\Avast Driver Updater\Avast Driver Updater.exe -boot
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Invitation {43695F24-84D7-454F-9D8F-5BE870520CD7}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{43695F24-84D7-454F-9D8F-5BE870520CD7}" /F:"Invitation"
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Invitation {88D49723-902A-4BBD-B9EE-E3D271FD9C2F}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{88D49723-902A-4BBD-B9EE-E3D271FD9C2F}" /F:"Invitation"
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Invitation {AFB05FD3-6932-4FDE-8BC9-E535FC17820C}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{AFB05FD3-6932-4FDE-8BC9-E535FC17820C}" /F:"Invitation"
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Invitation {FFB85F48-54C4-4A85-8D28-9B64ECF0BC71}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{FFB85F48-54C4-4A85-8D28-9B64ECF0BC71}" /F:"Invitation"
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Update {43695F24-84D7-454F-9D8F-5BE870520CD7}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{43695F24-84D7-454F-9D8F-5BE870520CD7}" /F:"Update"
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Update {88D49723-902A-4BBD-B9EE-E3D271FD9C2F}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{88D49723-902A-4BBD-B9EE-E3D271FD9C2F}" /F:"Update"
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Update {AFB05FD3-6932-4FDE-8BC9-E535FC17820C}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{AFB05FD3-6932-4FDE-8BC9-E535FC17820C}" /F:"Update"
C:\WINDOWS\tasks\EPSON XP-312 313 315 Series Update {FFB85F48-54C4-4A85-8D28-9B64ECF0BC71}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE /EXE:"{FFB85F48-54C4-4A85-8D28-9B64ECF0BC71}" /F:"Update"
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2017-12-12 229040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2017-12-12 2353944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\Program Files\Windows Defender\MSASCuiL.exe [2017-09-29 630168]
"AvastUI.exe"=E:\avast\AvLaunch.exe [2018-03-03 245608]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-06-29 3936936]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2000-01-01 9235936]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2000-01-01 1492960]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=E:\steam\steam.exe [2018-03-23 3198752]
"GalaxyClient"=E:\gog galaxy\GalaxyClient\GalaxyClient.exe [2018-03-13 6325320]
"DAEMON Tools Lite Automount"=E:\deamon lite\DAEMON Tools Lite\DTAgent.exe [2016-06-08 4295360]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2018-03-06 17074688]
"EPLTarget\P0000000000000000"=C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILFE.EXE [2013-01-24 297024]
"TSMApplication"=E:\tsm wow\TradeSkillMaster Application\app\TSMApplication.exe [2017-12-03 1623040]
"Discord"=C:\Users\lukas_000\AppData\Local\Discord\app-0.0.300\Discord.exe [2018-01-08 57821176]
"GoogleChromeAutoLaunch_822640D12963A0CFAF5BB81B94632257"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2018-03-20 1589592]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ASUSPRP"=C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2014-10-06 3216032]
"WebStorage"=C:\Program Files (x86)\ASUS\WebStorage\2.1.1.265\ASUSWSLoader.exe [2014-01-15 63296]
"Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2017-08-30 596664]
"RzSBHelper"=C:\Program Files (x86)\Razer\SwitchBlade\RzSBHelper.exe [2015-09-23 84992]
"amd_dc_opt"=C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [2008-07-22 77824]
"EEventManager"=C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2016-01-20 1087184]
"KiesTrayAgent"=E:\kies\Kies\KiesTrayAgent.exe [2016-08-25 318128]
"Kraken71ChromaHelper"=C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe [2017-02-14 1600096]
"BlueStacks Agent"=C:\Program Files (x86)\BlueStacks\HD-Agent.exe []
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Avast Cleanup Premium.lnk - C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe
RazerFPSStartup.lnk - C:\ProgramData\Razer\SwitchBlade\Apps\Razer\65BFE244-2354-4E41-ADC9-CCF6BE3B5F75\RzFPS\RzFPS.exe
RzMiMoAppService.lnk - C:\ProgramData\Razer\SwitchBlade\Apps\Razer\DF495DFD-79F6-34DF-BB1E-E58DB5BDCF2C\RzMiMo.exe
C:\Users\lukas_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Twitch.lnk - E:\curse_twitch\Twitch\Bin\Twitch.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
"C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"VIDC.FPS1"=frapsv64.dll
"VIDC.RTV1"=rtvcvfw64.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2018-03-25 16:16:54 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2018-03-25 14:37:58 ----D---- C:\ProgramData\acer
2018-03-25 14:13:47 ----A---- C:\WINDOWS\system32\drivers\RtsUer.sys
2018-03-25 14:13:46 ----A---- C:\WINDOWS\SYSWOW64\RsCRIcon.dll
2018-03-25 14:13:46 ----A---- C:\WINDOWS\system32\RtCRX64.dll
2018-03-25 14:08:34 ----D---- C:\ProgramData\updater2
2018-03-25 14:08:34 ----D---- C:\oem
2018-03-25 14:04:54 ----D---- C:\Program Files\Realtek
2018-03-25 14:03:35 ----A---- C:\WINDOWS\SYSWOW64\SFCOM.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\tosade.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\tepeqapo64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\tadefxapo264.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\tadefxapo.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SRSWOW64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SRSTSX64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SRSTSH64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SRSHP64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SFSS_APO.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SFNHK64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SFCOM64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\SFAPO64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2018-03-25 14:03:35 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RtkCoLDR64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RTEEP64A.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RTEEL64A.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RTEEG64A.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RTEED64A.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RtDataProc64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RP3DHT64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RP3DAA64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\RltkAPO64.dll
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\drivers\RTKVHD64.sys
2018-03-25 14:03:34 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2018-03-25 14:03:33 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2018-03-25 14:03:33 ----A---- C:\WINDOWS\system32\RCoInstII64.dll
2018-03-25 14:03:33 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2018-03-25 14:03:33 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2018-03-25 14:03:33 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2018-03-25 14:03:33 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2018-03-25 14:03:33 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2018-03-25 14:03:32 ----A---- C:\WINDOWS\system32\DDPA64.dll
2018-03-25 14:03:31 ----A---- C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2018-03-25 13:32:17 ----A---- C:\WINDOWS\RtlExUpd.dll
2018-03-25 13:31:54 ----D---- C:\WINDOWS\oem
2018-03-25 13:28:26 ----D---- C:\WINDOWS\LastGood.Tmp
2018-03-25 13:28:17 ----D---- C:\Program Files\Broadcom
2018-03-25 13:27:12 ----D---- C:\SWSetup
2018-03-25 13:26:17 ----D---- C:\ProgramData\DriverSetupUtility
2018-03-25 13:26:09 ----D---- C:\Program Files\DriverSetupUtility
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\IndexedDbLegacy.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\SYSWOW64\AcSpecfc.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-03-17 13:03:38 ----A---- C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2018-03-17 13:03:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2018-03-17 13:03:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2018-03-17 13:03:37 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2018-03-17 13:03:37 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2018-03-17 13:03:36 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2018-03-17 13:03:36 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2018-03-17 13:03:36 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2018-03-17 13:03:36 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2018-03-17 13:03:36 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2018-03-17 13:03:36 ----A---- C:\WINDOWS\system32\drivers\hidparse.sys
2018-03-17 13:03:36 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2018-03-17 13:03:36 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\rdpudd.dll
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\wcifs.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\volmgr.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\storufs.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\storahci.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\BasicRender.sys
2018-03-17 13:03:35 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2018-03-17 13:03:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2018-03-17 13:03:34 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2018-03-17 13:03:34 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2018-03-17 13:03:34 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2018-03-17 13:03:34 ----A---- C:\WINDOWS\system32\vbscript.dll
2018-03-17 13:03:34 ----A---- C:\WINDOWS\system32\samsrv.dll
2018-03-17 13:03:34 ----A---- C:\WINDOWS\system32\jscript9.dll
2018-03-17 13:03:34 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2018-03-17 13:03:34 ----A---- C:\WINDOWS\system32\DbgModel.dll
2018-03-17 13:03:33 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2018-03-17 13:03:33 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2018-03-17 13:03:33 ----A---- C:\WINDOWS\system32\win32kfull.sys
2018-03-17 13:03:33 ----A---- C:\WINDOWS\system32\win32kbase.sys
2018-03-17 13:03:33 ----A---- C:\WINDOWS\system32\StorSvc.dll
2018-03-17 13:03:33 ----A---- C:\WINDOWS\system32\iertutil.dll
2018-03-17 13:03:33 ----A---- C:\WINDOWS\system32\edgeIso.dll
2018-03-17 13:03:33 ----A---- C:\WINDOWS\system32\drivers\UcmUcsi.sys
2018-03-17 13:03:33 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\jscript.dll
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\ieframe.dll
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\Chakra.dll
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\hvloader.dll
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\hvax64.exe
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\drivers\vmbus.sys
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\drivers\netvsc.sys
2018-03-17 13:03:32 ----A---- C:\WINDOWS\system32\drivers\msiscsi.sys
2018-03-17 13:03:31 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2018-03-17 13:03:31 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2018-03-17 13:03:31 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2018-03-17 13:03:31 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2018-03-17 13:03:31 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2018-03-17 13:03:31 ----A---- C:\WINDOWS\system32\lsasrv.dll
2018-03-17 13:03:31 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2018-03-17 13:03:31 ----A---- C:\WINDOWS\system32\dbgeng.dll
2018-03-17 13:03:31 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\wininet.dll
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\msIso.dll
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\KernelBase.dll
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2018-03-17 13:03:30 ----A---- C:\WINDOWS\system32\AcSpecfc.dll
2018-03-17 13:03:29 ----A---- C:\WINDOWS\system32\winmde.dll
2018-03-17 13:03:29 ----A---- C:\WINDOWS\system32\msvproc.dll
2018-03-17 13:03:29 ----A---- C:\WINDOWS\system32\mshtml.dll
2018-03-17 13:03:29 ----A---- C:\WINDOWS\system32\mfplat.dll
2018-03-17 13:03:29 ----A---- C:\WINDOWS\system32\hvix64.exe
2018-03-17 13:03:29 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2018-03-17 13:03:28 ----A---- C:\WINDOWS\SYSWOW64\zipfldr.dll
2018-03-17 13:03:28 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2018-03-17 13:03:28 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2018-03-17 13:03:28 ----A---- C:\WINDOWS\system32\wintrust.dll
2018-03-17 13:03:28 ----A---- C:\WINDOWS\system32\windows.storage.dll
2018-03-17 13:03:28 ----A---- C:\WINDOWS\system32\pcalua.exe
2018-03-17 13:03:28 ----A---- C:\WINDOWS\system32\edgehtml.dll
2018-03-17 13:03:27 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2018-03-17 13:03:27 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2018-03-17 13:03:27 ----A---- C:\WINDOWS\system32\zipfldr.dll
2018-03-17 13:03:27 ----A---- C:\WINDOWS\system32\winsrv.dll
2018-03-17 13:03:27 ----A---- C:\WINDOWS\system32\shell32.dll
2018-03-17 13:03:27 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2018-03-17 13:03:27 ----A---- C:\WINDOWS\system32\aitstatic.exe
2018-03-17 13:03:26 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2018-03-17 13:03:26 ----A---- C:\WINDOWS\system32\HologramCompositor.dll
2018-03-17 13:03:25 ----A---- C:\WINDOWS\system32\usocore.dll
2018-03-17 13:03:25 ----A---- C:\WINDOWS\system32\usoapi.dll
2018-03-17 13:03:25 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2018-03-17 13:03:25 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2018-03-17 13:03:25 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2018-03-17 13:03:25 ----A---- C:\WINDOWS\system32\MusNotification.exe
2018-03-17 13:03:25 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\winresume.exe
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\winload.exe
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\win32appinventorycsp.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\Spectrum.exe
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\pcasvc.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\invagent.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\generaltel.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\devinv.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\dcntel.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\appraiser.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\aepic.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\aeinv.dll
2018-03-17 13:03:19 ----A---- C:\WINDOWS\system32\acmigration.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Payments.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\SYSWOW64\cldapi.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\Windows.Payments.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\SecurityHealthService.exe
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\SecurityHealthAgent.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\MusNotifyIcon.exe
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\HolographicExtensions.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\drivers\sdstor.sys
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\daxexec.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\cldapi.dll
2018-03-17 13:03:18 ----A---- C:\WINDOWS\system32\cdp.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\TSpkg.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\offlinesam.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\MSVPXENC.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\MSVideoDSP.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountWAMExtension.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\HoloShellRuntime.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\credssp.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\AuthFWSnapin.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\Windows.Internal.Feedback.Analog.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\UsoClient.exe
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\updatecsp.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\TSpkg.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\svf.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\SpectrumSyncClient.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\racpldlg.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\offlinesam.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\MSVPXENC.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\MSVideoDSP.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\msra.exe
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\msi.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\IndexedDbLegacy.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\HoloShellRuntime.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\HeadTrackerStorage.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\wcnfs.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\RfxVmt.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\msrpc.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\isapnp.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\HdAudio.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\drivers\ataport.sys
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2018-03-17 13:03:17 ----A---- C:\WINDOWS\system32\AuthFWSnapin.dll
2018-03-17 13:03:16 ----A---- C:\WINDOWS\SYSWOW64\msisip.dll
2018-03-17 13:03:16 ----A---- C:\WINDOWS\system32\msisip.dll
2018-03-17 13:03:16 ----A---- C:\WINDOWS\system32\credssp.dll
2018-03-13 21:12:22 ----D---- C:\Users\lukas_000\AppData\Roaming\BluestacksCN
2018-03-13 20:10:27 ----AD---- C:\Program Files (x86)\BlueStacks
2018-03-04 00:33:00 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2018-03-04 00:32:56 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo.exe
2018-03-04 00:32:56 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1.dll
2018-03-04 00:32:56 ----A---- C:\WINDOWS\system32\vulkaninfo.exe
2018-03-04 00:32:56 ----A---- C:\WINDOWS\system32\vulkan-1.dll
2018-03-04 00:32:55 ----D---- C:\Program Files (x86)\VulkanRT
2018-03-04 00:32:45 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2018-03-04 00:32:45 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2018-03-04 00:32:45 ----A---- C:\WINDOWS\system32\nvshext.dll
2018-03-04 00:32:45 ----A---- C:\WINDOWS\system32\nvmctray.dll
2018-03-04 00:32:45 ----A---- C:\WINDOWS\system32\nvcpl.dll
2018-03-04 00:32:45 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2018-03-04 00:32:45 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2018-03-04 00:32:34 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2018-03-04 00:32:34 ----A---- C:\WINDOWS\system32\OpenCL.dll
2018-03-04 00:32:30 ----D---- C:\WINDOWS\system32\drivers\NVIDIA Corporation
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvptxJitCompiler.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvfatbinaryLoader.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvEncMFThevc.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvEncMFTH264.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvDecMFTMjpeg.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvptxJitCompiler.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvopencl.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvmcumd.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvhdap64.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvhdagenco6420103.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvfatbinaryLoader.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvEncMFThevc.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvEncMFTH264.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvdispgenco6439101.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvdispco6439101.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvcuda.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\nvapi64.dll
2018-03-04 00:30:47 ----A---- C:\WINDOWS\system32\drivers\nvhda64v.sys
2018-03-03 23:41:59 ----A---- C:\WINDOWS\system32\aswBoot.exe
2018-03-01 19:01:52 ----D---- C:\Users\lukas_000\AppData\Roaming\discord
======List of files/folders modified in the last 1 month======