Prosím o kontrolu. Moc děkuji!
Napsal: 24 led 2022 12:03
Logfile of random's system information tool 1.10 (written by random/random)
Run by DetialStav at 2022-01-24 12:01:50
Microsoft Windows 10 Home
System drive C: has 106 GB (47%) free of 227 GB
Total RAM: 3472 MB (11% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:01:57, on 24.01.2022
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.19041.1202)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe
C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.x86.exe
C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe
C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudDrive.exe
C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudPhotos.exe
C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\ApplePhotoStreams.exe
C:\Program Files (x86)\Tenda\Common\RaUI.exe
C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\APSDaemon.exe
C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\secd.exe
C:\Program Files (x86)\Sticky Password\spNMHost.exe
C:\WINDOWS\Lenovo\iMController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe
C:\WINDOWS\Lenovo\iMController\PluginHost86\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
C:\Users\DetialStav\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\PROFIT.exe
C:\Program Files\Adobe\Acrobat DC\Acrobat\x86\Acrobat\Acrobat.exe
C:\Program Files\Adobe\Acrobat DC\Acrobat\x86\Acrobat\Acrobat.exe
C:\Program Files\trend micro\DetialStav.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.69\BHO\ie_to_edge_bho.dll
O4 - HKLM\..\Run: [USB Gamepad] C:\WINDOWS\USB Vibration\7906\USB Gamepad.exe -boot
O4 - HKLM\..\Run: [Intel Driver & Support Assistant] C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe
O4 - HKCU\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
O4 - HKCU\..\Run: [StickyPassword] C:\Program Files (x86)\Sticky Password\stpass.exe
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_0F96C50E422CE382CA230B43EA35C0D0] "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: Tenda Wireless Utility.lnk = C:\Program Files (x86)\Tenda\Common\RaUI.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Inc. - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - AMD - C:\WINDOWS\System32\DriverStore\FileRepository\u0358356.inf_amd64_894c3b4bc882c059\B358199\atiesrxx.exe
O23 - Service: Avira Optimizer Host (AviraOptimizerHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_a2657 - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @oem7.inf,%ServiceDisplayName%;Dolby DAX API Service (DolbyDAXAPI) - Dolby Laboratories - C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_0222c12a396c055f\DAX3API.exe
O23 - Service: Intel(R) Driver & Support Assistant (DSAService) - Intel - C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe
O23 - Service: Intel(R) Driver & Support Assistant Updater (DSAUpdateService) - Intel - C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ELAN Service (ETDService) - Unknown owner - C:\WINDOWS\System32\ETDService.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Fortemedia APO Control Service (FMAPOService) - Unknown owner - C:\WINDOWS\System32\FMService64.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) (GoogleChromeElevationService) - Google LLC - C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.99\elevation_service.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP JumpStart Bridge (HPJumpStartBridge) - HP Inc. - c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe
O23 - Service: HP Print Scan Doctor Service (HPPrintScanDoctorService) - HP Inc. - C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
O23 - Service: HP CASL Framework Service (hpqcaslwmiex) - HP - C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - HP Inc. - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
O23 - Service: Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\System32\ibtsiva (file missing)
O23 - Service: @oem84.inf,%ImcSvcDisplayName%;System Interface Foundation Service (ImControllerService) - Lenovo Group Ltd. - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
O23 - Service: Intel(R) SUR QC Software Asset Manager (Intel(R) SUR QC SAM) - Intel Corporation - C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LenovoVantageService - Lenovo Group Ltd. - C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\LenovoVantageService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: RalinkRegistryWriter - Ralink Technology, Corp. - C:\Program Files (x86)\Tenda\Common\RaRegistry.exe
O23 - Service: RalinkRegistryWriter64 - Ralink Technology, Corp. - C:\Program Files (x86)\Tenda\Common\RaRegistry64.exe
O23 - Service: RaMediaServer - Unknown owner - C:\Program Files (x86)\Tenda\Common\RaMediaServer.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) - Realtek Semiconductor - C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_11f809ac26966b9b\RtkAudUService64.exe
O23 - Service: @oem16.inf,%RtkBtManServ.SvcDesc%;Realtek Bluetooth Device Manager Service (RtkBtManServ) - Realtek Semiconductor Corp. - C:\WINDOWS\RtkBtManServ.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 12515 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
"fontdrvhost.exe"
"fontdrvhost.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-e657dc56-141f-4fab-a924-19de4f343bb9 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-9f0df83e-fe19-4dc5-a8f9-f1dc0c60ab93 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-41d32391-702a-4f00-b982-ee6c877f45bc -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-67d5e57e-7339-442d-bca6-5162902f1e13 -LifetimeId:704abbab-cf6c-4216-9fb9-ef475d747e50 -DeviceGroupId: -HostArg:0
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k netsvcs -p
C:\WINDOWS\system32\svchost.exe -k appmodel -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p
dashost.exe {d0a12c6a-7693-451f-999e8faade18a5b1}
C:\WINDOWS\System32\DriverStore\FileRepository\u0358356.inf_amd64_894c3b4bc882c059\B358199\atiesrxx.exe
C:\WINDOWS\System32\ETDService.exe
C:\WINDOWS\system32\svchost.exe -k LocalService -p
dashost.exe {7f049e2c-afb1-4cce-a682a3cb99ac2bb6}
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
"C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_0222c12a396c055f\DAX3API.exe
"C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe"
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe"
C:\WINDOWS\System32\ibtsiva
C:\WINDOWS\System32\FMService64.exe
C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\LenovoVantageService.exe"
"C:\Program Files (x86)\Tenda\Common\RaRegistry.exe"
"C:\Program Files (x86)\Tenda\Common\RaRegistry64.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_11f809ac26966b9b\RtkAudUService64.exe"
C:\WINDOWS\RtkBtManServ.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p
C:\WINDOWS\System32\svchost.exe -k netsvcs
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
atieclxx
"C:\WINDOWS\System32\DriverStore\FileRepository\DAX3_S~2.INF\\DAX3API.exe" -capturestream
"C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe"
C:\WINDOWS\system32\ETDCtrlHelper.exe
C:\WINDOWS\system32\ETDCtrl.exe
"C:\WINDOWS\system32\ETDTouch.exe"
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"ctfmon.exe"
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" VantageCoreAddin C:\ProgramData\Lenovo\Vantage\Addins\\VantageCoreAddin\1.0.0.28\VantageCoreAddin.dll 8f2d88506fb949979d97ba9930456a00 8399716e-b425-4ed0-babe-037ac2a1042e
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" DeviceSettingsSystemAddin C:\ProgramData\Lenovo\Vantage\Addins\\DeviceSettingsSystemAddin\1.0.0.12\DeviceSettingsSystemAddin.dll 8853e8afb3344adf8cb9444a053c5d97 8399716e-b425-4ed0-babe-037ac2a1042e
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" LenovoServiceBridgeAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoServiceBridgeAddin\1.0.0.54\LenovoServiceBridgeAddin.dll c82617513d274d0cb71d28bb459b078e 8399716e-b425-4ed0-babe-037ac2a1042e
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.Amd64.exe" LenovoBoostAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoBoostAddin\1.0.0.32\LenovoBoostAddin.dll 9dfe4c8ccabe4652a929dcd97f6f9c6c 8399716e-b425-4ed0-babe-037ac2a1042e
"C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.Amd64.exe" LenovoBoostSystemAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoBoostSystemAddin\1.0.0.32\LenovoBoostSystemAddin.dll c5d75f25d6e34391bb9f524e50d91bfa 8399716e-b425-4ed0-babe-037ac2a1042e
"C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe"
"C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
-name 6bb40112-0f29-4760-b5b5-337b35550deb -runas -pluginName IdeaNotebookPlugin -pluginVersion 1.2.77.34
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.x86.exe" DeviceSettingsHeartbeatAddin C:\ProgramData\Lenovo\Vantage\Addins\\DeviceSettingsHeartbeatAddin\1.0.0.21\DeviceSettingsHeartbeatAddin.dll 65e07ca000fa42d7aaafc49bcee1d699 8399716e-b425-4ed0-babe-037ac2a1042e
"C:\Windows\System32\SecurityHealthSystray.exe"
"C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_11f809ac26966b9b\RtkAudUService64.exe" -background
"C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe"
"C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudDrive.exe"
"C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudPhotos.exe"
"C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\ApplePhotoStreams.exe"
"C:\Program Files (x86)\Tenda\Common\RaUI.exe" -s
"C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\APSDaemon.exe" -Embedding
"c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe"
C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\secd.exe -Embedding
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.0.315848657\2050442184" -parentBuildID 20220113185450 -prefsHandle 1656 -prefMapHandle 1648 -prefsLen 1 -prefMapSize 292892 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 1732 2a9fddd9c48 gpu
C:\WINDOWS\system32\svchost.exe -k DevicesFlow
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.3.226556831\1009850018" -childID 2 -isForBrowser -prefsHandle 3200 -prefMapHandle 3216 -prefsLen 910 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 3276 2aa032c5548 tab
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.11.1754303369\771999795" -childID 6 -isForBrowser -prefsHandle 4324 -prefMapHandle 4300 -prefsLen 6098 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 4288 2aa072dbe48 tab
"C:\Program Files (x86)\Sticky Password\spNMHost.exe" "C:\Program Files (x86)\Sticky Password\spNMHostMoz.json" {ecb80162-dfbd-4d91-a8da-17b35ba4707a}
"C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.14.125796728\1676463121" -parentBuildID 20220113185450 -prefsHandle 4176 -prefMapHandle 9456 -prefsLen 7368 -prefMapSize 292892 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 9468 2aa09e63e48 rdd
C:\Windows\System32\CompPkgSrv.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.16.417149883\1922100133" -childID 7 -isForBrowser -prefsHandle 8600 -prefMapHandle 8604 -prefsLen 7500 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 8632 2aa05627248 tab
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.17.1546857400\1922990408" -childID 8 -isForBrowser -prefsHandle 8860 -prefMapHandle 8868 -prefsLen 7500 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 5128 2aa00c0fc48 tab
"cmd" /c ""C:\Users\DetialStav\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe" -tag entry=LSBUpdater.exe,info={entry=unknown,afterupdate=no}"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Users\DetialStav\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe" -tag entry=LSBUpdater.exe,info={entry=unknown,afterupdate=no}
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k netsvcs -p
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.92.1669437438\1795041886" -parentBuildID 20220113185450 -prefsHandle 7580 -prefMapHandle 7988 -prefsLen 9855 -prefMapSize 292892 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 2592 2aa0013be48 socket
"C:\WINDOWS\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe" -ServerName:WindowsDefaultLockScreen.AppX7y4nbzq37zn4ks9k7amqjywdat7d3j2z.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\mousocoreworker.exe -Embedding
-name 58a7df7b-44ec-4f31-ad75-d9ff8a8e0a0a -runas -pluginName LenovoVisionProtectionPlugin -pluginVersion 1.2.98.14
-name 86d8b8e3-a372-4f35-8d68-5fcd79a73ca9 -runas -pluginName GenericMessagingPlugin -pluginVersion 3.2.0.57
-name dc427af5-06aa-48a3-ab2f-d89de25b179a -runas -pluginName DolbyAudioPlugin -pluginVersion 1.2.240.5
"C:\WINDOWS\Lenovo\iMController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe" -name f2abbe99-d765-406c-adc2-604192c5eef0 -runas SYSTEM -pluginName LenovoAppScenarioPluginSystem -pluginVersion 1.2.190.5
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" LenovoSecurityAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoSecurityAddin\1.0.0.31\LenovoSecurityAddin.dll 62221536e194416289e0d44a2404c5df 8399716e-b425-4ed0-babe-037ac2a1042e
-name 468d4c93-13ca-499a-a373-a9f17d2d606e -runas -pluginName GenericDisplayPlugin -pluginVersion 1.2.179.5
"C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe" "C:\Users\DetialStav\Downloads\FA1431018366.pdf"
"C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe" --type=renderer /prefetch:1 "C:\Users\DetialStav\Downloads\FA1431018366.pdf"
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --locale=cs_cz --backgroundcolor=5066061
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --lang=en-US --service-sandbox-type=utility --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --lang=en-US --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --mojo-platform-channel-handle=2080 --allow-no-sandbox-job /prefetch:8
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=3 --mojo-platform-channel-handle=2088 --allow-no-sandbox-job /prefetch:1
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --lang=en-US --service-sandbox-type=network --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --lang=en-US --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --mojo-platform-channel-handle=2344 --allow-no-sandbox-job /prefetch:8
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=8 --mojo-platform-channel-handle=2684 --allow-no-sandbox-job /prefetch:1
C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
"C:\WINDOWS\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe" -ServerName:CortanaUI.AppX8z9r6jm96hw4bsbneegw0kyxx296wr9t.mca
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.114.1318266813\1501312473" -childID 38 -isForBrowser -prefsHandle 5572 -prefMapHandle 3452 -prefsLen 10989 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 3516 2aa09eb4248 tab
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --flag-switches-begin --flag-switches-end --no-startup-window /prefetch:5
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\DetialStav\AppData\Local\Microsoft\Edge\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\DetialStav\AppData\Local\Microsoft\Edge\User Data\Crashpad" --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=97.0.4692.99 "--annotation=exe=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --annotation=plat=Win64 "--annotation=prod=Microsoft Edge" --annotation=ver=97.0.1072.69 --initial-client-data=0xf0,0xf4,0xf8,0xcc,0xfc,0x7fff3cb0db60,0x7fff3cb0db70,0x7fff3cb0db80
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=gpu-process --field-trial-handle=2164,5509821187523739032,4125491387824688950,131072 --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=2108 /prefetch:2
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=2164,5509821187523739032,4125491387824688950,131072 --lang=cs --service-sandbox-type=none --mojo-platform-channel-handle=2064 /prefetch:3
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --field-trial-handle=2164,5509821187523739032,4125491387824688950,131072 --lang=cs --service-sandbox-type=utility --mojo-platform-channel-handle=2636 /prefetch:8
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:AD2F1837.HPPrinterControl.AppXg27tfcrjvepe7p6m0w5zs7c77x5b4hhe.mca
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=11 --mojo-platform-channel-handle=1384 --allow-no-sandbox-job /prefetch:1
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=14 --mojo-platform-channel-handle=2504 --allow-no-sandbox-job /prefetch:1
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=15 --mojo-platform-channel-handle=3136 --allow-no-sandbox-job /prefetch:1
"C:\Program Files\LibreOffice\program\scalc.exe" -o "C:\Users\DetialStav\Desktop\2022\Rozpočty\32022_Odolená voda.xls"
"C:\Program Files\LibreOffice\program\scalc.exe" -o "C:\Users\DetialStav\Desktop\2022\Rozpočty\32022_Odolená voda.xls" --calc
"C:\Program Files\LibreOffice\program\scalc.exe" "-o" "C:\Users\DetialStav\Desktop\2022\Rozpočty\32022_Odolená voda.xls" "--calc" "-env:OOO_CWD=2C:\\Users\\DetialStav\\Desktop\\2022\\Rozpočty"
"C:\Users\DetialStav\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\PROFIT.exe"
C:\WINDOWS\splwow64.exe 12288
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=16 --mojo-platform-channel-handle=976 --allow-no-sandbox-job /prefetch:1
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=17 --mojo-platform-channel-handle=2668 --allow-no-sandbox-job /prefetch:1
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=18 --mojo-platform-channel-handle=2624 --allow-no-sandbox-job /prefetch:1
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.508.1022437907\61789924" -childID 168 -isForBrowser -prefsHandle 9948 -prefMapHandle 10228 -prefsLen 10989 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 8124 2aa1ea94c48 tab
"C:\Program Files\Adobe\Acrobat DC\Acrobat\x86\Acrobat\Acrobat.exe" --type=compute-only-broker --ipc-rdr-channel=ko.621711f4.4f8f341c.2 --ipc-co-channel=ko.1142b0e2.1c77228a.1 --proc=5 --helperprocpid=14600 --channeltype=2 /CR
"C:\Program Files\Adobe\Acrobat DC\Acrobat\x86\Acrobat\Acrobat.exe" --type=compute-only-renderer --ipc-rdr-channel=ko.621711f4.4f8f341c.2 --ipc-co-channel=ko.1142b0e2.1c77228a.1 --proc=5 --helperprocpid=14600 --channeltype=2 /n /prefetch:2 /CR
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.588.239878646\1381877528" -childID 195 -isForBrowser -prefsHandle 6452 -prefMapHandle 8272 -prefsLen 10990 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 10116 2aa12a8b948 tab
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.601.472183692\444381456" -childID 198 -isForBrowser -prefsHandle 8240 -prefMapHandle 10164 -prefsLen 11053 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 10264 2aa032c7948 tab
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=19 --mojo-platform-channel-handle=3524 --allow-no-sandbox-job /prefetch:1
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.614.68137135\1402926912" -childID 203 -isForBrowser -prefsHandle 6196 -prefMapHandle 4760 -prefsLen 11054 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 4136 2aa02216e48 tab
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.617.380792817\1993294177" -childID 204 -isForBrowser -prefsHandle 8696 -prefMapHandle 1428 -prefsLen 11054 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 9260 2aa0008bf48 tab
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.619.1968171733\662182704" -childID 205 -isForBrowser -prefsHandle 3920 -prefMapHandle 9268 -prefsLen 11054 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 2976 2aa06895348 tab
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.622.107630777\2093521128" -childID 206 -isForBrowser -prefsHandle 3400 -prefMapHandle 7784 -prefsLen 11054 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 4200 2aa0008ad48 tab
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe34_ Global\UsGthrCtrlFltPipeMssGthrPipe34 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 812 816 824 8192 820 796
C:\Windows\System32\smartscreen.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\AUDIODG.EXE 0x4c4
"C:\Users\DetialStav\Desktop\RSITx64.exe"
=========Mozilla firefox=========
ProfilePath - C:\Users\DetialStav\AppData\Roaming\Mozilla\Firefox\Profiles\co5tb96t.default
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Acrobat]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.69\BHO\ie_to_edge_bho_64.dll [2022-01-20 532352]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.69\BHO\ie_to_edge_bho.dll [2022-01-20 421760]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2019-12-07 86016]
"RtkAudUService"=C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_11f809ac26966b9b\RtkAudUService64.exe [2021-08-12 1274712]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDriveSetup"=C:\Windows\SysWOW64\OneDriveSetup.exe [2019-12-07 30870320]
"StickyPassword"=C:\Program Files (x86)\Sticky Password\stpass.exe [2019-02-28 64672]
"CCleaner Smart Cleaning"=C:\Program Files\CCleaner\CCleaner64.exe [2021-12-07 35373696]
"MicrosoftEdgeAutoLaunch_0F96C50E422CE382CA230B43EA35C0D0"=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [2022-01-20 3427712]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB Gamepad"=C:\WINDOWS\USB Vibration\7906\USB Gamepad.exe [2008-12-10 796784]
"Intel Driver & Support Assistant"=C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [2021-12-08 288184]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Tenda Wireless Utility.lnk - C:\Program Files (x86)\Tenda\Common\RaUI.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsQuic]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
"shell"=explorer.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"aux1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave1"=wdmaud.drv
"aux2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave2"=wdmaud.drv
======File associations======
.inf - install -
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\WINDOWS\system32\notepad.exe "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 month======
2022-01-18 09:08:51 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2022-01-18 09:08:51 ----A---- C:\WINDOWS\system32\Hydrogen.dll
2022-01-18 09:08:45 ----A---- C:\WINDOWS\system32\tcbloader.dll
2022-01-18 09:08:45 ----A---- C:\WINDOWS\system32\tcblaunch.exe
2022-01-18 09:08:45 ----A---- C:\WINDOWS\system32\hvix64.exe
2022-01-18 09:08:45 ----A---- C:\WINDOWS\system32\hvax64.exe
2022-01-18 09:08:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2022-01-18 09:08:44 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2022-01-18 09:08:44 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2022-01-18 09:08:44 ----A---- C:\WINDOWS\SYSWOW64\GameInput.dll
2022-01-18 09:08:44 ----A---- C:\WINDOWS\system32\sppcext.dll
2022-01-18 09:08:43 ----A---- C:\WINDOWS\system32\sppsvc.exe
2022-01-18 09:08:43 ----A---- C:\WINDOWS\system32\netlogon.dll
2022-01-18 09:08:42 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2022-01-18 09:08:42 ----A---- C:\WINDOWS\system32\msv1_0.dll
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\ISM.dll
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\GameInput.dll
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\drivers\refs.sys
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\BFE.DLL
2022-01-18 09:08:41 ----A---- C:\WINDOWS\explorer.exe
2022-01-18 08:47:01 ----HDC---- C:\$WinREAgent
2022-01-18 08:46:22 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2022-01-18 08:46:18 ----A---- C:\WINDOWS\system32\poqexec.exe
2022-01-17 18:19:14 ----DC---- C:\Program Files (x86)\Mozilla Firefox
2022-01-12 13:40:36 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2022-01-12 13:40:36 ----A---- C:\WINDOWS\SYSWOW64\DolbyDecMFT.dll
2022-01-12 13:40:36 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2022-01-12 13:40:34 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll
2022-01-12 13:40:34 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2022-01-12 13:40:34 ----A---- C:\WINDOWS\SYSWOW64\runas.exe
2022-01-12 13:40:34 ----A---- C:\WINDOWS\SYSWOW64\provsvc.dll
2022-01-12 13:40:34 ----A---- C:\WINDOWS\system32\mfcore.dll
2022-01-12 13:40:33 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2022-01-12 13:40:33 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2022-01-12 13:40:33 ----A---- C:\WINDOWS\SYSWOW64\msimsg.dll
2022-01-12 13:40:33 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2022-01-12 13:40:33 ----A---- C:\WINDOWS\SYSWOW64\certutil.exe
2022-01-12 13:40:33 ----A---- C:\WINDOWS\SYSWOW64\certreq.exe
2022-01-12 13:40:32 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\iassam.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\iasads.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\dhcpsapi.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\dataclen.dll
2022-01-12 13:40:30 ----A---- C:\WINDOWS\SYSWOW64\tar.exe
2022-01-12 13:40:30 ----A---- C:\WINDOWS\SYSWOW64\net1.exe
2022-01-12 13:40:30 ----A---- C:\WINDOWS\SYSWOW64\curl.exe
2022-01-12 13:40:30 ----A---- C:\WINDOWS\SYSWOW64\archiveint.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\WebClnt.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\tsgqec.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\runas.exe
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\rdpudd.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\provsvc.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\nltest.exe
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\mstscax.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\ListSvc.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\ksetup.exe
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\drivers\PktMon.sys
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\certutil.exe
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\certreq.exe
2022-01-12 13:40:28 ----A---- C:\WINDOWS\system32\nshwfp.dll
2022-01-12 13:40:28 ----A---- C:\WINDOWS\system32\msimsg.dll
2022-01-12 13:40:28 ----A---- C:\WINDOWS\system32\msi.dll
2022-01-12 13:40:28 ----A---- C:\WINDOWS\system32\Chakra.dll
2022-01-12 13:40:28 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\tar.exe
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\net1.exe
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\mtxclu.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\mshtml.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\msdtctm.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\iasads.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\dsauth.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\dhcpsapi.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\dataclen.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\curl.exe
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\computecore.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\CBDHSvc.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\archiveint.dll
2022-01-12 13:40:24 ----A---- C:\WINDOWS\system32\vertdll.dll
2022-01-12 13:40:24 ----A---- C:\WINDOWS\system32\skci.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\TSpkg.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\raschap.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\netprovfw.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\netjoin.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\netid.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\joinutil.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\wkscli.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\wincredui.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\srvcli.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\schedcli.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\samcli.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\netutils.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\netmsg.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\ncryptprov.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\msimg32.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\mf3216.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\logoncli.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\gmsaclient.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\es.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\CertPolEng.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\BitLockerCsp.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2022-01-12 13:40:21 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2022-01-12 13:40:21 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2022-01-12 13:40:21 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2022-01-12 13:40:21 ----A---- C:\WINDOWS\SYSWOW64\shacctprofile.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryUpgrade.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryCore.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\StateRepository.Core.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\negoexts.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\KerbClientShared.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\CertEnrollCtrl.exe
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\certca.dll
2022-01-12 13:40:16 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2022-01-12 13:40:16 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2022-01-12 13:40:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryPS.dll
2022-01-12 13:40:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2022-01-12 13:40:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2022-01-12 13:40:16 ----A---- C:\WINDOWS\SYSWOW64\TileDataRepository.dll
2022-01-12 13:40:16 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2022-01-12 13:40:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Launcher.dll
2022-01-12 13:40:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Core.dll
2022-01-12 13:40:15 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2022-01-12 13:40:15 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2022-01-12 13:40:15 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2022-01-12 13:40:15 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\wscproxystub.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\wscisvif.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\wscadminui.exe
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\netplwiz.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\netapi32.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\SYSWOW64\msobjs.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\TSpkg.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\shell32.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\scesrv.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\pku2u.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\LsaIso.exe
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\keymgr.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\iumcrypt.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\taskcomp.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\sppobjs.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\rastls.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\rasmans.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\raschap.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\rascustom.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\netprovfw.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\netjoin.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\joinutil.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\djoin.exe
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\WUDFHost.exe
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\WUDFCompanionHost.exe
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\wincredui.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\tdh.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\shutdownux.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\LocationFrameworkPS.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\gdi32full.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\efscore.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\BitLockerCsp.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\wkssvc.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\usermgr.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\sechost.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\ntlanman.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\msimg32.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\msctf.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\mf3216.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\KernelBase.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\gmsaclient.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\drivers\msrpc.sys
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\wkscli.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\srvcli.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\schedcli.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\schannel.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\ntdll.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\msobjs.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\msaudite.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\lsasrv.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\drivers\http.sys
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\adtschema.dll
2022-01-12 13:40:04 ----A---- C:\WINDOWS\system32\profsvc.dll
2022-01-12 13:40:04 ----A---- C:\WINDOWS\system32\ncryptprov.dll
2022-01-12 13:40:04 ----A---- C:\WINDOWS\system32\logoncli.dll
2022-01-12 13:40:04 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2022-01-12 13:40:04 ----A---- C:\WINDOWS\system32\authz.dll
2022-01-12 13:40:03 ----A---- C:\WINDOWS\system32\samsrv.dll
2022-01-12 13:40:03 ----A---- C:\WINDOWS\system32\samlib.dll
2022-01-12 13:40:03 ----A---- C:\WINDOWS\system32\samcli.dll
2022-01-12 13:40:03 ----A---- C:\WINDOWS\system32\offlinesam.dll
2022-01-12 13:40:03 ----A---- C:\WINDOWS\system32\netmsg.dll
2022-01-12 13:40:03 ----A---- C:\WINDOWS\system32\drivers\pcw.sys
2022-01-12 13:40:03 ----A---- C:\WINDOWS\system32\ci.dll
2022-01-12 13:40:02 ----A---- C:\WINDOWS\system32\winresume.exe
2022-01-12 13:40:02 ----A---- C:\WINDOWS\system32\winload.exe
2022-01-12 13:40:02 ----A---- C:\WINDOWS\system32\trkwks.dll
2022-01-12 13:40:02 ----A---- C:\WINDOWS\system32\es.dll
2022-01-12 13:40:02 ----A---- C:\WINDOWS\system32\dwmcore.dll
2022-01-12 13:40:02 ----A---- C:\WINDOWS\system32\comsvcs.dll
2022-01-12 13:40:02 ----A---- C:\WINDOWS\system32\CertPolEng.dll
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\uReFS.dll
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\shacct.dll
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\refsutil.exe
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\PasswordEnrollmentManager.dll
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\drivers\refsv1.sys
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\ApplyTrustOffline.exe
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\ApplicationFrame.dll
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\SettingsHandlers_User.dll
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\netapi32.dll
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\drivers\bindflt.sys
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\bindfltapi.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\wpnapps.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\win32u.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\win32kfull.sys
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\win32k.sys
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\StateRepository.Core.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\kerberos.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\KerbClientShared.dll
2022-01-12 13:39:58 ----A---- C:\WINDOWS\system32\wintrust.dll
2022-01-12 13:39:58 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2022-01-12 13:39:58 ----A---- C:\WINDOWS\system32\profext.dll
2022-01-12 13:39:57 ----A---- C:\WINDOWS\system32\windows.storage.dll
2022-01-12 13:39:57 ----A---- C:\WINDOWS\system32\win32kbase.sys
2022-01-12 13:39:57 ----A---- C:\WINDOWS\system32\TileDataRepository.dll
2022-01-12 13:39:57 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2022-01-12 13:39:57 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2022-01-12 13:39:57 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2022-01-12 13:39:57 ----A---- C:\WINDOWS\system32\cdd.dll
2022-01-12 13:39:56 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2022-01-12 13:39:56 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2022-01-12 13:39:56 ----A---- C:\WINDOWS\system32\negoexts.dll
2022-01-12 13:39:56 ----A---- C:\WINDOWS\system32\cloudAP.dll
2022-01-12 13:39:56 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2022-01-12 13:39:56 ----A---- C:\WINDOWS\system32\certcli.dll
2022-01-12 13:39:56 ----A---- C:\WINDOWS\system32\certca.dll
2022-01-12 13:39:55 ----A---- C:\WINDOWS\system32\Windows.System.Launcher.dll
2022-01-12 13:39:55 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2022-01-12 13:39:55 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2022-01-12 13:39:55 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2022-01-12 13:39:55 ----A---- C:\WINDOWS\system32\AppContracts.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\winlogonext.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\usercpl.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\ShareHost.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\netplwiz.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\kernel32.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\authui.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\wscsvc.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\wscproxystub.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\wscisvif.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\wscapi.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\wscadminui.exe
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\twinui.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\TaskFlowDataEngine.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\ptpprov.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\PinEnrollmentHelper.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\ManageCI.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\kdcpw.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\deviceregistration.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\browcli.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\agentactivationruntimewindows.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\advapi32.dll
2022-01-12 13:39:52 ----A---- C:\WINDOWS\system32\vmbuspipe.dll
2022-01-12 13:39:52 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2022-01-12 13:39:52 ----A---- C:\WINDOWS\system32\drivers\vmbus.sys
2022-01-12 13:39:52 ----A---- C:\WINDOWS\system32\drivers\Vid.sys
2022-01-12 13:39:52 ----A---- C:\WINDOWS\system32\drivers\netvsc.sys
2022-01-12 13:39:51 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2022-01-12 13:39:51 ----A---- C:\WINDOWS\system32\drivers\spacedump.sys
======List of files/folders modified in the last 1 month======
2022-01-24 12:01:54 ----DC---- C:\Program Files\trend micro
2022-01-24 11:53:41 ----D---- C:\WINDOWS\Temp
2022-01-24 11:48:01 ----D---- C:\WINDOWS\system32\sru
2022-01-24 11:24:03 ----D---- C:\WINDOWS\Prefetch
2022-01-24 11:05:45 ----DC---- C:\Program Files (x86)\Google
2022-01-24 09:50:22 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2022-01-24 09:20:40 ----D---- C:\ProgramData\firebird
2022-01-24 09:11:54 ----D---- C:\WINDOWS\system32\NDF
2022-01-24 09:10:29 ----D---- C:\WINDOWS\system32\config
2022-01-24 09:07:27 ----D---- C:\WINDOWS\WinSxS
2022-01-24 09:06:45 ----RD---- C:\WINDOWS\Microsoft.NET
2022-01-24 06:44:52 ----D---- C:\WINDOWS\AppReadiness
2022-01-24 06:44:38 ----HD---- C:\Program Files\WindowsApps
2022-01-24 06:17:16 ----ADC---- C:\Program Files\CCleaner
2022-01-24 05:44:09 ----D---- C:\WINDOWS\system32\SleepStudy
2022-01-21 13:54:57 ----D---- C:\WINDOWS\System32
2022-01-21 13:54:57 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2022-01-21 13:54:56 ----D---- C:\WINDOWS\INF
2022-01-21 13:50:55 ----DC---- C:\Program Files (x86)\Mozilla Maintenance Service
2022-01-21 13:50:53 ----RD---- C:\Program Files (x86)
2022-01-21 13:47:40 ----D---- C:\WINDOWS\ServiceState
2022-01-21 13:47:39 ----ASH---- C:\DumpStack.log.tmp
2022-01-21 13:47:17 ----D---- C:\WINDOWS\system32\catroot2
2022-01-21 13:47:09 ----D---- C:\WINDOWS\SysWOW64
2022-01-21 13:47:09 ----D---- C:\WINDOWS\bcastdvr
2022-01-21 13:47:09 ----D---- C:\Windows
2022-01-21 13:47:08 ----D---- C:\WINDOWS\system32\DriverStore
2022-01-21 13:47:08 ----D---- C:\WINDOWS\system32\drivers
2022-01-21 11:08:05 ----D---- C:\ProgramData\tmp
2022-01-21 11:08:02 ----D---- C:\ProgramData\hps
2022-01-20 13:17:37 ----DC---- C:\Stavitel
2022-01-18 09:09:58 ----D---- C:\WINDOWS\CbsTemp
2022-01-18 08:50:18 ----SHD---- C:\System Volume Information
2022-01-18 08:21:49 ----A---- C:\WINDOWS\storelibdebug.txt
2022-01-17 08:58:24 ----D---- C:\WINDOWS\system32\LogFiles
2022-01-17 08:57:28 ----D---- C:\WINDOWS\SYSWOW64\wbem
2022-01-17 08:57:28 ----D---- C:\WINDOWS\SYSWOW64\Dism
2022-01-17 08:57:28 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2022-01-17 08:57:27 ----SD---- C:\WINDOWS\system32\DiagSvcs
2022-01-17 08:57:27 ----D---- C:\WINDOWS\SystemResources
2022-01-17 08:57:27 ----D---- C:\WINDOWS\system32\setup
2022-01-17 08:57:27 ----D---- C:\WINDOWS\system32\oobe
2022-01-17 08:57:27 ----D---- C:\WINDOWS\system32\migration
2022-01-17 08:57:27 ----D---- C:\WINDOWS\system32\en-US
2022-01-17 08:57:27 ----D---- C:\WINDOWS\system32\Dism
2022-01-17 08:57:27 ----D---- C:\WINDOWS\system32\cs-CZ
2022-01-17 08:57:27 ----D---- C:\WINDOWS\system32\Boot
2022-01-17 08:57:25 ----D---- C:\WINDOWS\system32\CodeIntegrity
2022-01-17 08:56:31 ----SHD---- C:\WINDOWS\Installer
2022-01-17 08:56:30 ----SHDC---- C:\Config.Msi
2022-01-17 08:56:06 ----D---- C:\WINDOWS\system32\Tasks
2022-01-12 13:18:26 ----DC---- C:\WINDOWS\system32\MRT
2022-01-12 13:18:20 ----AC---- C:\WINDOWS\system32\MRT.exe
2022-01-12 09:41:24 ----D---- C:\WINDOWS\Logs
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2021-06-10 57168]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2021-07-16 41984]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2019-12-07 78136]
R1 CimFS;CimFS; C:\WINDOWS\system32\drivers\CimFS.sys [2021-10-01 98304]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2019-12-07 59392]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2019-12-07 8704]
R1 HWiNFO;HWiNFO Kernel Driver; \??\C:\WINDOWS\system32\drivers\HWiNFO64A.SYS [2019-04-05 66336]
R2 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2022-01-12 149320]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2021-10-29 496640]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2021-01-22 53248]
R3 ACPIVPC;@oem58.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2021-07-26 44024]
R3 amdgpio2;@oem62.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver; C:\WINDOWS\System32\drivers\amdgpio2.sys [2020-03-16 46344]
R3 amdi2c;@oem90.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service; C:\WINDOWS\System32\drivers\amdi2c.sys [2020-04-13 64816]
R3 amdkmdag;amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\u0358356.inf_amd64_894c3b4bc882c059\B358199\amdkmdag.sys [2020-08-26 71107088]
R3 AtiHDAudioService;@oem31.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2021-08-03 246200]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2021-12-03 113664]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2021-01-22 106496]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2019-12-07 133632]
R3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2021-12-03 1559552]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2021-12-03 110592]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2019-12-07 66576]
R3 ETD;@oem68.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\System32\drivers\ETD.sys [2020-05-13 743872]
R3 ETDHCF;@oem120.inf,%ETDHCF.SVCDESC%;ELAN HID Class Filter Service; C:\WINDOWS\System32\drivers\ETDHCF.sys [2020-03-29 30144]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2021-07-27 6515264]
R3 iwdbus;@oem53.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-12-01 38896]
R3 MpKsl077f0b4c;MpKsl077f0b4c; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{70203ACA-9566-4783-8FCB-BB75B223612C}\MpKslDrv.sys [2022-01-24 134376]
R3 MsQuic;@%SystemRoot%\system32\drivers\msquic.sys,-1; C:\WINDOWS\system32\drivers\msquic.sys [2021-01-22 322376]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2019-12-07 213504]
R3 RtkBtFilter;@oem16.inf,%BtFilt.SvcDesc%;Realtek Bluetooth Filter Driver; C:\WINDOWS\System32\drivers\RtkBtfilter.sys [2021-09-04 802264]
R3 RTWlanE;@oem74.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E Network Adapter; C:\WINDOWS\System32\drivers\rtwlane.sys [2020-04-29 11549792]
S0 amdpsp;@oem83.inf,%amdpsp.SVCDESC%;AMD PSP Service; C:\WINDOWS\System32\drivers\amdpsp.sys [2020-03-24 135184]
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2019-12-07 43832]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2019-12-07 319800]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2019-12-07 884752]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2019-12-07 172344]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2019-12-07 124216]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2019-12-07 135992]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2019-12-07 81720]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2019-12-07 105480]
S0 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2019-12-07 168464]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2019-12-07 58680]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2019-12-07 68408]
S0 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2019-12-07 138040]
S0 Ramdisk;Windows RAM Disk Driver; C:\WINDOWS\system32\DRIVERS\ramdisk.sys [2019-12-07 42296]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2019-12-07 158736]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2019-12-07 23040]
S3 Acx01000;@%SystemRoot%\system32\drivers\Acx01000.sys,-1000; C:\WINDOWS\system32\drivers\Acx01000.sys [2019-12-07 415232]
S3 AppleLowerFilter;@oem11.inf,%AppleLowerFilterDisplayName%;Apple Lower Filter Driver; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [2020-10-09 35976]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2021-12-03 18432]
S3 BthA2dp;@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver; C:\WINDOWS\System32\drivers\BthA2dp.sys [2019-12-07 279040]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2021-12-03 45568]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2019-12-07 44032]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_53931f0ae21d6d2c\genericusbfn.sys [2019-12-07 23040]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2019-12-07 55824]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2019-12-07 66560]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2021-09-13 95056]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2019-12-07 30208]
S3 CH341SER_A64;CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [2019-03-04 69016]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2019-12-07 1853752]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2019-12-07 36352]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2019-12-07 91136]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2019-12-07 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2019-12-07 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2019-12-07 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2019-12-07 96256]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2019-12-07 171520]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2019-12-07 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2019-12-07 177152]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2019-12-07 177664]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2019-12-07 558904]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2021-01-22 47104]
S3 intelpmax;@intelpmax.inf,%SvcDesc%;Intel(R) Dynamic Device Peak Power Manager Driver; C:\WINDOWS\System32\drivers\intelpmax.sys [2019-12-07 30720]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2019-12-07 59704]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2019-12-07 537608]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2019-12-07 64016]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2021-07-09 391168]
S3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2019-12-07 65024]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2019-12-07 1131320]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2019-12-07 146232]
S3 NDKPing;NDKPing Driver; C:\WINDOWS\system32\drivers\NDKPing.sys [2019-12-07 72720]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2021-12-03 214528]
S3 PktMon;Packet Monitor Driver; C:\WINDOWS\system32\drivers\PktMon.sys [2022-01-12 130360]
S3 PNPMEM;@memory.inf,%PNPMEM.SvcDesc%;Microsoft Memory Module Driver; C:\WINDOWS\System32\drivers\pnpmem.sys [2019-12-07 17408]
S3 portcfg;portcfg; C:\WINDOWS\System32\drivers\portcfg.sys [2019-12-07 27136]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2022-01-12 990536]
S3 rhproxy;@rhproxy.inf,%rhproxy.SVCDESC%;Resource Hub proxy driver; C:\WINDOWS\System32\drivers\rhproxy.sys [2019-12-07 115712]
S3 SDFRd;@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector; C:\WINDOWS\System32\drivers\SDFRd.sys [2019-12-07 35128]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2019-12-07 35128]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2021-11-17 169728]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository\u0358356.inf_amd64_894c3b4bc882c059\B358199\atiesrxx.exe [2020-08-26 537624]
R2 AviraOptimizerHost;Avira Optimizer Host; C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe [2020-06-03 2988544]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R2 CDPUserSvc_a2657;Uživatelská služba platformy připojených zařízení_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R2 DispBrokerDesktopSvc;@%SystemRoot%\system32\dispbroker.desktop.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R2 DolbyDAXAPI;@oem7.inf,%ServiceDisplayName%;Dolby DAX API Service; C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_0222c12a396c055f\DAX3API.exe [2021-01-04 2301912]
R2 DSAService;Intel(R) Driver & Support Assistant; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [2021-12-08 39352]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R2 ETDService;ELAN Service; C:\WINDOWS\System32\ETDService.exe [2020-05-13 254912]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2018-09-05 670816]
R2 FMAPOService;Fortemedia APO Control Service; C:\WINDOWS\System32\FMService64.exe [2021-08-05 387872]
R2 HPJumpStartBridge;HP JumpStart Bridge; c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [2017-05-23 471040]
R2 HPPrintScanDoctorService;HP Print Scan Doctor Service; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [2021-05-20 288360]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2020-08-20 379736]
R2 ibtsiva;Intel Bluetooth Service; C:\WINDOWS\System32\ibtsiva []
R2 ImControllerService;@oem84.inf,%ImcSvcDisplayName%;System Interface Foundation Service; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2021-11-07 83200]
R2 LenovoVantageService;LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\LenovoVantageService.exe [2021-12-14 31016]
R2 OneSyncSvc_a2657;Hostitel synchronizace_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R2 RalinkRegistryWriter;RalinkRegistryWriter; C:\Program Files (x86)\Tenda\Common\RaRegistry.exe [2011-03-31 375872]
R2 RalinkRegistryWriter64;RalinkRegistryWriter64; C:\Program Files (x86)\Tenda\Common\RaRegistry64.exe [2011-03-31 454208]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2018-09-05 170592]
R2 RtkAudioUniversalService;Realtek Audio Universal Service; C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_11f809ac26966b9b\RtkAudUService64.exe [2021-08-12 1274712]
R2 RtkBtManServ;@oem16.inf,%RtkBtManServ.SvcDesc%;Realtek Bluetooth Device Manager Service; C:\WINDOWS\RtkBtManServ.exe [2021-09-04 781280]
R3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 BluetoothUserService_a2657;Služba pro podporu uživatelů Bluetooth_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 cbdhsvc_a2657;Uživatelská služba schránky_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 DevicePickerUserSvc_a2657;DevicePicker_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 DevicesFlowUserSvc_a2657;Tok zařízení_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R3 DSAUpdateService;Intel(R) Driver & Support Assistant Updater; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [2021-12-08 177080]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 PimIndexMaintenanceSvc_a2657;Data kontaktů_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 PrintWorkflowUserSvc_a2657;PrintWorkflow_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R3 SecurityHealthService;@%systemroot%\system32\SecurityHealthAgent.dll,-1002; C:\WINDOWS\system32\SecurityHealthService.exe [2021-10-01 986032]
R3 SEMgrSvc;@%SystemRoot%\System32\SEMgrSvc.dll,-1001; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S2 edgeupdate;Služba Microsoft Edge Update (edgeupdate); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-08-18 224160]
S2 gupdate;Služba Aktualizace Google (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-30 153752]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 AarSvc;@%SystemRoot%\system32\AarSvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 AarSvc_a2657;Agent Activation Runtime_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 autotimesvc;@%SystemRoot%\System32\autotimesvc.dll,-6; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 BcastDVRUserService_a2657;Uživatelská služba pro GameDVR a vysílání her_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 CaptureService_a2657;CaptureService_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 ConsentUxUserSvc_a2657;ConsentUX_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 CredentialEnrollmentManagerUserSvc;@%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2021-09-13 382696]
S3 CredentialEnrollmentManagerUserSvc_a2657;CredentialEnrollmentManagerUserSvc_a2657; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2021-09-13 382696]
S3 DeviceAssociationBrokerSvc;@%SystemRoot%\system32\deviceaccess.dll,-107; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 DeviceAssociationBrokerSvc_a2657;DeviceAssociationBroker_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2022-01-12 94208]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 edgeupdatem;Služba Microsoft Edge Update (edgeupdatem); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-08-18 224160]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 GoogleChromeElevationService;Google Chrome Elevation Service (GoogleChromeElevationService); C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.99\elevation_service.exe [2022-01-19 1470296]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 gupdatem;Služba Aktualizace Google (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-30 153752]
S3 hpqcaslwmiex;HP CASL Framework Service; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [2016-06-03 1031704]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 Intel(R) SUR QC SAM;Intel(R) SUR QC Software Asset Manager; C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [2021-07-21 3075936]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 MessagingService_a2657;Služba zasílání zpráv_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 MicrosoftEdgeElevationService;Microsoft Edge Elevation Service (MicrosoftEdgeElevationService); C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.69\elevation_service.exe [2022-01-20 1610128]
S3 MixedRealityOpenXRSvc;@%SystemRoot%\system32\MixedRealityRuntime.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2022-01-17 243128]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2018-09-05 310880]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2018-06-14 161472]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2021-01-22 106496]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 PrintWorkflowUserSvc;@%SystemRoot%\system32\PrintWorkflowService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 PushToInstall;@%SystemRoot%\system32\pushtoinstall.dll,-200; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 RaMediaServer;RaMediaServer; C:\Program Files (x86)\Tenda\Common\RaMediaServer.exe [2011-03-04 621632]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2021-01-22 1265152]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
-----------------EOF-----------------
Run by DetialStav at 2022-01-24 12:01:50
Microsoft Windows 10 Home
System drive C: has 106 GB (47%) free of 227 GB
Total RAM: 3472 MB (11% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:01:57, on 24.01.2022
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.19041.1202)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe
C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.x86.exe
C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe
C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudDrive.exe
C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudPhotos.exe
C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\ApplePhotoStreams.exe
C:\Program Files (x86)\Tenda\Common\RaUI.exe
C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\APSDaemon.exe
C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\secd.exe
C:\Program Files (x86)\Sticky Password\spNMHost.exe
C:\WINDOWS\Lenovo\iMController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe
C:\WINDOWS\Lenovo\iMController\PluginHost86\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
C:\Users\DetialStav\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\PROFIT.exe
C:\Program Files\Adobe\Acrobat DC\Acrobat\x86\Acrobat\Acrobat.exe
C:\Program Files\Adobe\Acrobat DC\Acrobat\x86\Acrobat\Acrobat.exe
C:\Program Files\trend micro\DetialStav.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.69\BHO\ie_to_edge_bho.dll
O4 - HKLM\..\Run: [USB Gamepad] C:\WINDOWS\USB Vibration\7906\USB Gamepad.exe -boot
O4 - HKLM\..\Run: [Intel Driver & Support Assistant] C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe
O4 - HKCU\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
O4 - HKCU\..\Run: [StickyPassword] C:\Program Files (x86)\Sticky Password\stpass.exe
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_0F96C50E422CE382CA230B43EA35C0D0] "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: Tenda Wireless Utility.lnk = C:\Program Files (x86)\Tenda\Common\RaUI.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Inc. - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - AMD - C:\WINDOWS\System32\DriverStore\FileRepository\u0358356.inf_amd64_894c3b4bc882c059\B358199\atiesrxx.exe
O23 - Service: Avira Optimizer Host (AviraOptimizerHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_a2657 - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @oem7.inf,%ServiceDisplayName%;Dolby DAX API Service (DolbyDAXAPI) - Dolby Laboratories - C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_0222c12a396c055f\DAX3API.exe
O23 - Service: Intel(R) Driver & Support Assistant (DSAService) - Intel - C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe
O23 - Service: Intel(R) Driver & Support Assistant Updater (DSAUpdateService) - Intel - C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ELAN Service (ETDService) - Unknown owner - C:\WINDOWS\System32\ETDService.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Fortemedia APO Control Service (FMAPOService) - Unknown owner - C:\WINDOWS\System32\FMService64.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) (GoogleChromeElevationService) - Google LLC - C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.99\elevation_service.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP JumpStart Bridge (HPJumpStartBridge) - HP Inc. - c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe
O23 - Service: HP Print Scan Doctor Service (HPPrintScanDoctorService) - HP Inc. - C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
O23 - Service: HP CASL Framework Service (hpqcaslwmiex) - HP - C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - HP Inc. - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
O23 - Service: Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\System32\ibtsiva (file missing)
O23 - Service: @oem84.inf,%ImcSvcDisplayName%;System Interface Foundation Service (ImControllerService) - Lenovo Group Ltd. - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
O23 - Service: Intel(R) SUR QC Software Asset Manager (Intel(R) SUR QC SAM) - Intel Corporation - C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LenovoVantageService - Lenovo Group Ltd. - C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\LenovoVantageService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: RalinkRegistryWriter - Ralink Technology, Corp. - C:\Program Files (x86)\Tenda\Common\RaRegistry.exe
O23 - Service: RalinkRegistryWriter64 - Ralink Technology, Corp. - C:\Program Files (x86)\Tenda\Common\RaRegistry64.exe
O23 - Service: RaMediaServer - Unknown owner - C:\Program Files (x86)\Tenda\Common\RaMediaServer.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) - Realtek Semiconductor - C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_11f809ac26966b9b\RtkAudUService64.exe
O23 - Service: @oem16.inf,%RtkBtManServ.SvcDesc%;Realtek Bluetooth Device Manager Service (RtkBtManServ) - Realtek Semiconductor Corp. - C:\WINDOWS\RtkBtManServ.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 12515 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
"fontdrvhost.exe"
"fontdrvhost.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-e657dc56-141f-4fab-a924-19de4f343bb9 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-9f0df83e-fe19-4dc5-a8f9-f1dc0c60ab93 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-41d32391-702a-4f00-b982-ee6c877f45bc -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-67d5e57e-7339-442d-bca6-5162902f1e13 -LifetimeId:704abbab-cf6c-4216-9fb9-ef475d747e50 -DeviceGroupId: -HostArg:0
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k netsvcs -p
C:\WINDOWS\system32\svchost.exe -k appmodel -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p
dashost.exe {d0a12c6a-7693-451f-999e8faade18a5b1}
C:\WINDOWS\System32\DriverStore\FileRepository\u0358356.inf_amd64_894c3b4bc882c059\B358199\atiesrxx.exe
C:\WINDOWS\System32\ETDService.exe
C:\WINDOWS\system32\svchost.exe -k LocalService -p
dashost.exe {7f049e2c-afb1-4cce-a682a3cb99ac2bb6}
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
"C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_0222c12a396c055f\DAX3API.exe
"C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe"
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe"
C:\WINDOWS\System32\ibtsiva
C:\WINDOWS\System32\FMService64.exe
C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\LenovoVantageService.exe"
"C:\Program Files (x86)\Tenda\Common\RaRegistry.exe"
"C:\Program Files (x86)\Tenda\Common\RaRegistry64.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_11f809ac26966b9b\RtkAudUService64.exe"
C:\WINDOWS\RtkBtManServ.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p
C:\WINDOWS\System32\svchost.exe -k netsvcs
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
atieclxx
"C:\WINDOWS\System32\DriverStore\FileRepository\DAX3_S~2.INF\\DAX3API.exe" -capturestream
"C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe"
C:\WINDOWS\system32\ETDCtrlHelper.exe
C:\WINDOWS\system32\ETDCtrl.exe
"C:\WINDOWS\system32\ETDTouch.exe"
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"ctfmon.exe"
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" VantageCoreAddin C:\ProgramData\Lenovo\Vantage\Addins\\VantageCoreAddin\1.0.0.28\VantageCoreAddin.dll 8f2d88506fb949979d97ba9930456a00 8399716e-b425-4ed0-babe-037ac2a1042e
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" DeviceSettingsSystemAddin C:\ProgramData\Lenovo\Vantage\Addins\\DeviceSettingsSystemAddin\1.0.0.12\DeviceSettingsSystemAddin.dll 8853e8afb3344adf8cb9444a053c5d97 8399716e-b425-4ed0-babe-037ac2a1042e
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" LenovoServiceBridgeAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoServiceBridgeAddin\1.0.0.54\LenovoServiceBridgeAddin.dll c82617513d274d0cb71d28bb459b078e 8399716e-b425-4ed0-babe-037ac2a1042e
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.Amd64.exe" LenovoBoostAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoBoostAddin\1.0.0.32\LenovoBoostAddin.dll 9dfe4c8ccabe4652a929dcd97f6f9c6c 8399716e-b425-4ed0-babe-037ac2a1042e
"C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.Amd64.exe" LenovoBoostSystemAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoBoostSystemAddin\1.0.0.32\LenovoBoostSystemAddin.dll c5d75f25d6e34391bb9f524e50d91bfa 8399716e-b425-4ed0-babe-037ac2a1042e
"C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe"
"C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
-name 6bb40112-0f29-4760-b5b5-337b35550deb -runas -pluginName IdeaNotebookPlugin -pluginVersion 1.2.77.34
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.x86.exe" DeviceSettingsHeartbeatAddin C:\ProgramData\Lenovo\Vantage\Addins\\DeviceSettingsHeartbeatAddin\1.0.0.21\DeviceSettingsHeartbeatAddin.dll 65e07ca000fa42d7aaafc49bcee1d699 8399716e-b425-4ed0-babe-037ac2a1042e
"C:\Windows\System32\SecurityHealthSystray.exe"
"C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_11f809ac26966b9b\RtkAudUService64.exe" -background
"C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe"
"C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudDrive.exe"
"C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudPhotos.exe"
"C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\ApplePhotoStreams.exe"
"C:\Program Files (x86)\Tenda\Common\RaUI.exe" -s
"C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\APSDaemon.exe" -Embedding
"c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe"
C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\secd.exe -Embedding
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.0.315848657\2050442184" -parentBuildID 20220113185450 -prefsHandle 1656 -prefMapHandle 1648 -prefsLen 1 -prefMapSize 292892 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 1732 2a9fddd9c48 gpu
C:\WINDOWS\system32\svchost.exe -k DevicesFlow
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.3.226556831\1009850018" -childID 2 -isForBrowser -prefsHandle 3200 -prefMapHandle 3216 -prefsLen 910 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 3276 2aa032c5548 tab
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.11.1754303369\771999795" -childID 6 -isForBrowser -prefsHandle 4324 -prefMapHandle 4300 -prefsLen 6098 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 4288 2aa072dbe48 tab
"C:\Program Files (x86)\Sticky Password\spNMHost.exe" "C:\Program Files (x86)\Sticky Password\spNMHostMoz.json" {ecb80162-dfbd-4d91-a8da-17b35ba4707a}
"C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.14.125796728\1676463121" -parentBuildID 20220113185450 -prefsHandle 4176 -prefMapHandle 9456 -prefsLen 7368 -prefMapSize 292892 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 9468 2aa09e63e48 rdd
C:\Windows\System32\CompPkgSrv.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.16.417149883\1922100133" -childID 7 -isForBrowser -prefsHandle 8600 -prefMapHandle 8604 -prefsLen 7500 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 8632 2aa05627248 tab
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.17.1546857400\1922990408" -childID 8 -isForBrowser -prefsHandle 8860 -prefMapHandle 8868 -prefsLen 7500 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 5128 2aa00c0fc48 tab
"cmd" /c ""C:\Users\DetialStav\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe" -tag entry=LSBUpdater.exe,info={entry=unknown,afterupdate=no}"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Users\DetialStav\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe" -tag entry=LSBUpdater.exe,info={entry=unknown,afterupdate=no}
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k netsvcs -p
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.92.1669437438\1795041886" -parentBuildID 20220113185450 -prefsHandle 7580 -prefMapHandle 7988 -prefsLen 9855 -prefMapSize 292892 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 2592 2aa0013be48 socket
"C:\WINDOWS\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe" -ServerName:WindowsDefaultLockScreen.AppX7y4nbzq37zn4ks9k7amqjywdat7d3j2z.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\mousocoreworker.exe -Embedding
-name 58a7df7b-44ec-4f31-ad75-d9ff8a8e0a0a -runas -pluginName LenovoVisionProtectionPlugin -pluginVersion 1.2.98.14
-name 86d8b8e3-a372-4f35-8d68-5fcd79a73ca9 -runas -pluginName GenericMessagingPlugin -pluginVersion 3.2.0.57
-name dc427af5-06aa-48a3-ab2f-d89de25b179a -runas -pluginName DolbyAudioPlugin -pluginVersion 1.2.240.5
"C:\WINDOWS\Lenovo\iMController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe" -name f2abbe99-d765-406c-adc2-604192c5eef0 -runas SYSTEM -pluginName LenovoAppScenarioPluginSystem -pluginVersion 1.2.190.5
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" LenovoSecurityAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoSecurityAddin\1.0.0.31\LenovoSecurityAddin.dll 62221536e194416289e0d44a2404c5df 8399716e-b425-4ed0-babe-037ac2a1042e
-name 468d4c93-13ca-499a-a373-a9f17d2d606e -runas -pluginName GenericDisplayPlugin -pluginVersion 1.2.179.5
"C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe" "C:\Users\DetialStav\Downloads\FA1431018366.pdf"
"C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe" --type=renderer /prefetch:1 "C:\Users\DetialStav\Downloads\FA1431018366.pdf"
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --locale=cs_cz --backgroundcolor=5066061
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --lang=en-US --service-sandbox-type=utility --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --lang=en-US --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --mojo-platform-channel-handle=2080 --allow-no-sandbox-job /prefetch:8
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=3 --mojo-platform-channel-handle=2088 --allow-no-sandbox-job /prefetch:1
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --lang=en-US --service-sandbox-type=network --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --lang=en-US --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --mojo-platform-channel-handle=2344 --allow-no-sandbox-job /prefetch:8
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=8 --mojo-platform-channel-handle=2684 --allow-no-sandbox-job /prefetch:1
C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
"C:\WINDOWS\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe" -ServerName:CortanaUI.AppX8z9r6jm96hw4bsbneegw0kyxx296wr9t.mca
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.114.1318266813\1501312473" -childID 38 -isForBrowser -prefsHandle 5572 -prefMapHandle 3452 -prefsLen 10989 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 3516 2aa09eb4248 tab
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --flag-switches-begin --flag-switches-end --no-startup-window /prefetch:5
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\DetialStav\AppData\Local\Microsoft\Edge\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\DetialStav\AppData\Local\Microsoft\Edge\User Data\Crashpad" --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=97.0.4692.99 "--annotation=exe=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --annotation=plat=Win64 "--annotation=prod=Microsoft Edge" --annotation=ver=97.0.1072.69 --initial-client-data=0xf0,0xf4,0xf8,0xcc,0xfc,0x7fff3cb0db60,0x7fff3cb0db70,0x7fff3cb0db80
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=gpu-process --field-trial-handle=2164,5509821187523739032,4125491387824688950,131072 --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=2108 /prefetch:2
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=2164,5509821187523739032,4125491387824688950,131072 --lang=cs --service-sandbox-type=none --mojo-platform-channel-handle=2064 /prefetch:3
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --field-trial-handle=2164,5509821187523739032,4125491387824688950,131072 --lang=cs --service-sandbox-type=utility --mojo-platform-channel-handle=2636 /prefetch:8
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:AD2F1837.HPPrinterControl.AppXg27tfcrjvepe7p6m0w5zs7c77x5b4hhe.mca
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=11 --mojo-platform-channel-handle=1384 --allow-no-sandbox-job /prefetch:1
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=14 --mojo-platform-channel-handle=2504 --allow-no-sandbox-job /prefetch:1
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=15 --mojo-platform-channel-handle=3136 --allow-no-sandbox-job /prefetch:1
"C:\Program Files\LibreOffice\program\scalc.exe" -o "C:\Users\DetialStav\Desktop\2022\Rozpočty\32022_Odolená voda.xls"
"C:\Program Files\LibreOffice\program\scalc.exe" -o "C:\Users\DetialStav\Desktop\2022\Rozpočty\32022_Odolená voda.xls" --calc
"C:\Program Files\LibreOffice\program\scalc.exe" "-o" "C:\Users\DetialStav\Desktop\2022\Rozpočty\32022_Odolená voda.xls" "--calc" "-env:OOO_CWD=2C:\\Users\\DetialStav\\Desktop\\2022\\Rozpočty"
"C:\Users\DetialStav\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\PROFIT.exe"
C:\WINDOWS\splwow64.exe 12288
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=16 --mojo-platform-channel-handle=976 --allow-no-sandbox-job /prefetch:1
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=17 --mojo-platform-channel-handle=2668 --allow-no-sandbox-job /prefetch:1
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=18 --mojo-platform-channel-handle=2624 --allow-no-sandbox-job /prefetch:1
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.508.1022437907\61789924" -childID 168 -isForBrowser -prefsHandle 9948 -prefMapHandle 10228 -prefsLen 10989 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 8124 2aa1ea94c48 tab
"C:\Program Files\Adobe\Acrobat DC\Acrobat\x86\Acrobat\Acrobat.exe" --type=compute-only-broker --ipc-rdr-channel=ko.621711f4.4f8f341c.2 --ipc-co-channel=ko.1142b0e2.1c77228a.1 --proc=5 --helperprocpid=14600 --channeltype=2 /CR
"C:\Program Files\Adobe\Acrobat DC\Acrobat\x86\Acrobat\Acrobat.exe" --type=compute-only-renderer --ipc-rdr-channel=ko.621711f4.4f8f341c.2 --ipc-co-channel=ko.1142b0e2.1c77228a.1 --proc=5 --helperprocpid=14600 --channeltype=2 /n /prefetch:2 /CR
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.588.239878646\1381877528" -childID 195 -isForBrowser -prefsHandle 6452 -prefMapHandle 8272 -prefsLen 10990 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 10116 2aa12a8b948 tab
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.601.472183692\444381456" -childID 198 -isForBrowser -prefsHandle 8240 -prefMapHandle 10164 -prefsLen 11053 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 10264 2aa032c7948 tab
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe" --type=renderer --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --touch-events=enabled --field-trial-handle=1612,5182805645859981910,11901150591420553168,131072 --enable-features=CastMediaRouteProvider --disable-features=CalculateNativeWinOcclusion --disable-gpu-compositing --lang=en-US --disable-pack-loading --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\debug.log" --log-severity=disable --product-version="ReaderServices/21.11.20039 Chrome/80.0.0.0" --device-scale-factor=1 --num-raster-threads=1 --renderer-client-id=19 --mojo-platform-channel-handle=3524 --allow-no-sandbox-job /prefetch:1
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.614.68137135\1402926912" -childID 203 -isForBrowser -prefsHandle 6196 -prefMapHandle 4760 -prefsLen 11054 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 4136 2aa02216e48 tab
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.617.380792817\1993294177" -childID 204 -isForBrowser -prefsHandle 8696 -prefMapHandle 1428 -prefsLen 11054 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 9260 2aa0008bf48 tab
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.619.1968171733\662182704" -childID 205 -isForBrowser -prefsHandle 3920 -prefMapHandle 9268 -prefsLen 11054 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 2976 2aa06895348 tab
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="5292.622.107630777\2093521128" -childID 206 -isForBrowser -prefsHandle 3400 -prefMapHandle 7784 -prefsLen 11054 -prefMapSize 292892 -jsInitHandle 1388 -jsInitLen 279340 -parentBuildID 20220113185450 -appDir "C:\Program Files (x86)\Mozilla Firefox\browser" - 5292 "\\.\pipe\gecko-crash-server-pipe.5292" 4200 2aa0008ad48 tab
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe34_ Global\UsGthrCtrlFltPipeMssGthrPipe34 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 812 816 824 8192 820 796
C:\Windows\System32\smartscreen.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\AUDIODG.EXE 0x4c4
"C:\Users\DetialStav\Desktop\RSITx64.exe"
=========Mozilla firefox=========
ProfilePath - C:\Users\DetialStav\AppData\Roaming\Mozilla\Firefox\Profiles\co5tb96t.default
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Acrobat]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.69\BHO\ie_to_edge_bho_64.dll [2022-01-20 532352]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.69\BHO\ie_to_edge_bho.dll [2022-01-20 421760]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2019-12-07 86016]
"RtkAudUService"=C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_11f809ac26966b9b\RtkAudUService64.exe [2021-08-12 1274712]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDriveSetup"=C:\Windows\SysWOW64\OneDriveSetup.exe [2019-12-07 30870320]
"StickyPassword"=C:\Program Files (x86)\Sticky Password\stpass.exe [2019-02-28 64672]
"CCleaner Smart Cleaning"=C:\Program Files\CCleaner\CCleaner64.exe [2021-12-07 35373696]
"MicrosoftEdgeAutoLaunch_0F96C50E422CE382CA230B43EA35C0D0"=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [2022-01-20 3427712]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB Gamepad"=C:\WINDOWS\USB Vibration\7906\USB Gamepad.exe [2008-12-10 796784]
"Intel Driver & Support Assistant"=C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [2021-12-08 288184]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Tenda Wireless Utility.lnk - C:\Program Files (x86)\Tenda\Common\RaUI.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsQuic]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
"shell"=explorer.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"aux1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave1"=wdmaud.drv
"aux2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave2"=wdmaud.drv
======File associations======
.inf - install -
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\WINDOWS\system32\notepad.exe "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 month======
2022-01-18 09:08:51 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2022-01-18 09:08:51 ----A---- C:\WINDOWS\system32\Hydrogen.dll
2022-01-18 09:08:45 ----A---- C:\WINDOWS\system32\tcbloader.dll
2022-01-18 09:08:45 ----A---- C:\WINDOWS\system32\tcblaunch.exe
2022-01-18 09:08:45 ----A---- C:\WINDOWS\system32\hvix64.exe
2022-01-18 09:08:45 ----A---- C:\WINDOWS\system32\hvax64.exe
2022-01-18 09:08:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2022-01-18 09:08:44 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2022-01-18 09:08:44 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2022-01-18 09:08:44 ----A---- C:\WINDOWS\SYSWOW64\GameInput.dll
2022-01-18 09:08:44 ----A---- C:\WINDOWS\system32\sppcext.dll
2022-01-18 09:08:43 ----A---- C:\WINDOWS\system32\sppsvc.exe
2022-01-18 09:08:43 ----A---- C:\WINDOWS\system32\netlogon.dll
2022-01-18 09:08:42 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2022-01-18 09:08:42 ----A---- C:\WINDOWS\system32\msv1_0.dll
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\ISM.dll
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\GameInput.dll
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\drivers\refs.sys
2022-01-18 09:08:41 ----A---- C:\WINDOWS\system32\BFE.DLL
2022-01-18 09:08:41 ----A---- C:\WINDOWS\explorer.exe
2022-01-18 08:47:01 ----HDC---- C:\$WinREAgent
2022-01-18 08:46:22 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2022-01-18 08:46:18 ----A---- C:\WINDOWS\system32\poqexec.exe
2022-01-17 18:19:14 ----DC---- C:\Program Files (x86)\Mozilla Firefox
2022-01-12 13:40:36 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2022-01-12 13:40:36 ----A---- C:\WINDOWS\SYSWOW64\DolbyDecMFT.dll
2022-01-12 13:40:36 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2022-01-12 13:40:34 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll
2022-01-12 13:40:34 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2022-01-12 13:40:34 ----A---- C:\WINDOWS\SYSWOW64\runas.exe
2022-01-12 13:40:34 ----A---- C:\WINDOWS\SYSWOW64\provsvc.dll
2022-01-12 13:40:34 ----A---- C:\WINDOWS\system32\mfcore.dll
2022-01-12 13:40:33 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2022-01-12 13:40:33 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2022-01-12 13:40:33 ----A---- C:\WINDOWS\SYSWOW64\msimsg.dll
2022-01-12 13:40:33 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2022-01-12 13:40:33 ----A---- C:\WINDOWS\SYSWOW64\certutil.exe
2022-01-12 13:40:33 ----A---- C:\WINDOWS\SYSWOW64\certreq.exe
2022-01-12 13:40:32 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\iassam.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\iasads.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\dhcpsapi.dll
2022-01-12 13:40:31 ----A---- C:\WINDOWS\SYSWOW64\dataclen.dll
2022-01-12 13:40:30 ----A---- C:\WINDOWS\SYSWOW64\tar.exe
2022-01-12 13:40:30 ----A---- C:\WINDOWS\SYSWOW64\net1.exe
2022-01-12 13:40:30 ----A---- C:\WINDOWS\SYSWOW64\curl.exe
2022-01-12 13:40:30 ----A---- C:\WINDOWS\SYSWOW64\archiveint.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\WebClnt.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\tsgqec.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\runas.exe
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\rdpudd.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\provsvc.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\nltest.exe
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\mstscax.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\ListSvc.dll
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\ksetup.exe
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\drivers\PktMon.sys
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\certutil.exe
2022-01-12 13:40:29 ----A---- C:\WINDOWS\system32\certreq.exe
2022-01-12 13:40:28 ----A---- C:\WINDOWS\system32\nshwfp.dll
2022-01-12 13:40:28 ----A---- C:\WINDOWS\system32\msimsg.dll
2022-01-12 13:40:28 ----A---- C:\WINDOWS\system32\msi.dll
2022-01-12 13:40:28 ----A---- C:\WINDOWS\system32\Chakra.dll
2022-01-12 13:40:28 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\tar.exe
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\net1.exe
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\mtxclu.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\mshtml.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\msdtctm.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\iasads.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\dsauth.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\dhcpsapi.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\dataclen.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\curl.exe
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\computecore.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\CBDHSvc.dll
2022-01-12 13:40:26 ----A---- C:\WINDOWS\system32\archiveint.dll
2022-01-12 13:40:24 ----A---- C:\WINDOWS\system32\vertdll.dll
2022-01-12 13:40:24 ----A---- C:\WINDOWS\system32\skci.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\TSpkg.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\raschap.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\netprovfw.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\netjoin.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\netid.dll
2022-01-12 13:40:23 ----A---- C:\WINDOWS\SYSWOW64\joinutil.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\wkscli.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\wincredui.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\srvcli.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\schedcli.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\samcli.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\netutils.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\netmsg.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\ncryptprov.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\msimg32.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\mf3216.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\logoncli.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\gmsaclient.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\es.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\CertPolEng.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\BitLockerCsp.dll
2022-01-12 13:40:22 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2022-01-12 13:40:21 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2022-01-12 13:40:21 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2022-01-12 13:40:21 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2022-01-12 13:40:21 ----A---- C:\WINDOWS\SYSWOW64\shacctprofile.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryUpgrade.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryCore.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\StateRepository.Core.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\negoexts.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\KerbClientShared.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\CertEnrollCtrl.exe
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2022-01-12 13:40:17 ----A---- C:\WINDOWS\SYSWOW64\certca.dll
2022-01-12 13:40:16 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2022-01-12 13:40:16 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2022-01-12 13:40:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryPS.dll
2022-01-12 13:40:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2022-01-12 13:40:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2022-01-12 13:40:16 ----A---- C:\WINDOWS\SYSWOW64\TileDataRepository.dll
2022-01-12 13:40:16 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2022-01-12 13:40:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Launcher.dll
2022-01-12 13:40:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Core.dll
2022-01-12 13:40:15 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2022-01-12 13:40:15 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2022-01-12 13:40:15 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2022-01-12 13:40:15 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\wscproxystub.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\wscisvif.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\wscadminui.exe
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\netplwiz.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\netapi32.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2022-01-12 13:40:14 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\SYSWOW64\msobjs.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\TSpkg.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\shell32.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\scesrv.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\pku2u.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\LsaIso.exe
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\keymgr.dll
2022-01-12 13:40:13 ----A---- C:\WINDOWS\system32\iumcrypt.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\taskcomp.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\sppobjs.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\rastls.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\rasmans.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\raschap.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\rascustom.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\netprovfw.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\netjoin.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\joinutil.dll
2022-01-12 13:40:12 ----A---- C:\WINDOWS\system32\djoin.exe
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\WUDFHost.exe
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\WUDFCompanionHost.exe
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\wincredui.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\tdh.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\shutdownux.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\LocationFrameworkPS.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\gdi32full.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\efscore.dll
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys
2022-01-12 13:40:11 ----A---- C:\WINDOWS\system32\BitLockerCsp.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\wkssvc.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\usermgr.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\sechost.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\ntlanman.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\msimg32.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\msctf.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\mf3216.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\KernelBase.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\gmsaclient.dll
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\drivers\msrpc.sys
2022-01-12 13:40:10 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\wkscli.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\srvcli.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\schedcli.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\schannel.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\ntdll.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\msobjs.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\msaudite.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\lsasrv.dll
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\drivers\http.sys
2022-01-12 13:40:08 ----A---- C:\WINDOWS\system32\adtschema.dll
2022-01-12 13:40:04 ----A---- C:\WINDOWS\system32\profsvc.dll
2022-01-12 13:40:04 ----A---- C:\WINDOWS\system32\ncryptprov.dll
2022-01-12 13:40:04 ----A---- C:\WINDOWS\system32\logoncli.dll
2022-01-12 13:40:04 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2022-01-12 13:40:04 ----A---- C:\WINDOWS\system32\authz.dll
2022-01-12 13:40:03 ----A---- C:\WINDOWS\system32\samsrv.dll
2022-01-12 13:40:03 ----A---- C:\WINDOWS\system32\samlib.dll
2022-01-12 13:40:03 ----A---- C:\WINDOWS\system32\samcli.dll
2022-01-12 13:40:03 ----A---- C:\WINDOWS\system32\offlinesam.dll
2022-01-12 13:40:03 ----A---- C:\WINDOWS\system32\netmsg.dll
2022-01-12 13:40:03 ----A---- C:\WINDOWS\system32\drivers\pcw.sys
2022-01-12 13:40:03 ----A---- C:\WINDOWS\system32\ci.dll
2022-01-12 13:40:02 ----A---- C:\WINDOWS\system32\winresume.exe
2022-01-12 13:40:02 ----A---- C:\WINDOWS\system32\winload.exe
2022-01-12 13:40:02 ----A---- C:\WINDOWS\system32\trkwks.dll
2022-01-12 13:40:02 ----A---- C:\WINDOWS\system32\es.dll
2022-01-12 13:40:02 ----A---- C:\WINDOWS\system32\dwmcore.dll
2022-01-12 13:40:02 ----A---- C:\WINDOWS\system32\comsvcs.dll
2022-01-12 13:40:02 ----A---- C:\WINDOWS\system32\CertPolEng.dll
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\uReFS.dll
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\shacct.dll
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\refsutil.exe
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\PasswordEnrollmentManager.dll
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\drivers\refsv1.sys
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\ApplyTrustOffline.exe
2022-01-12 13:40:01 ----A---- C:\WINDOWS\system32\ApplicationFrame.dll
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\SettingsHandlers_User.dll
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\netapi32.dll
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\drivers\bindflt.sys
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2022-01-12 13:40:00 ----A---- C:\WINDOWS\system32\bindfltapi.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\wpnapps.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\win32u.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\win32kfull.sys
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\win32k.sys
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\StateRepository.Core.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\kerberos.dll
2022-01-12 13:39:59 ----A---- C:\WINDOWS\system32\KerbClientShared.dll
2022-01-12 13:39:58 ----A---- C:\WINDOWS\system32\wintrust.dll
2022-01-12 13:39:58 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2022-01-12 13:39:58 ----A---- C:\WINDOWS\system32\profext.dll
2022-01-12 13:39:57 ----A---- C:\WINDOWS\system32\windows.storage.dll
2022-01-12 13:39:57 ----A---- C:\WINDOWS\system32\win32kbase.sys
2022-01-12 13:39:57 ----A---- C:\WINDOWS\system32\TileDataRepository.dll
2022-01-12 13:39:57 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2022-01-12 13:39:57 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2022-01-12 13:39:57 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2022-01-12 13:39:57 ----A---- C:\WINDOWS\system32\cdd.dll
2022-01-12 13:39:56 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2022-01-12 13:39:56 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2022-01-12 13:39:56 ----A---- C:\WINDOWS\system32\negoexts.dll
2022-01-12 13:39:56 ----A---- C:\WINDOWS\system32\cloudAP.dll
2022-01-12 13:39:56 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2022-01-12 13:39:56 ----A---- C:\WINDOWS\system32\certcli.dll
2022-01-12 13:39:56 ----A---- C:\WINDOWS\system32\certca.dll
2022-01-12 13:39:55 ----A---- C:\WINDOWS\system32\Windows.System.Launcher.dll
2022-01-12 13:39:55 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2022-01-12 13:39:55 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2022-01-12 13:39:55 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2022-01-12 13:39:55 ----A---- C:\WINDOWS\system32\AppContracts.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\winlogonext.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\usercpl.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\ShareHost.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\netplwiz.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\kernel32.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2022-01-12 13:39:54 ----A---- C:\WINDOWS\system32\authui.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\wscsvc.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\wscproxystub.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\wscisvif.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\wscapi.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\wscadminui.exe
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\twinui.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\TaskFlowDataEngine.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\ptpprov.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\PinEnrollmentHelper.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\ManageCI.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\kdcpw.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\deviceregistration.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\browcli.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\agentactivationruntimewindows.dll
2022-01-12 13:39:53 ----A---- C:\WINDOWS\system32\advapi32.dll
2022-01-12 13:39:52 ----A---- C:\WINDOWS\system32\vmbuspipe.dll
2022-01-12 13:39:52 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2022-01-12 13:39:52 ----A---- C:\WINDOWS\system32\drivers\vmbus.sys
2022-01-12 13:39:52 ----A---- C:\WINDOWS\system32\drivers\Vid.sys
2022-01-12 13:39:52 ----A---- C:\WINDOWS\system32\drivers\netvsc.sys
2022-01-12 13:39:51 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2022-01-12 13:39:51 ----A---- C:\WINDOWS\system32\drivers\spacedump.sys
======List of files/folders modified in the last 1 month======
2022-01-24 12:01:54 ----DC---- C:\Program Files\trend micro
2022-01-24 11:53:41 ----D---- C:\WINDOWS\Temp
2022-01-24 11:48:01 ----D---- C:\WINDOWS\system32\sru
2022-01-24 11:24:03 ----D---- C:\WINDOWS\Prefetch
2022-01-24 11:05:45 ----DC---- C:\Program Files (x86)\Google
2022-01-24 09:50:22 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2022-01-24 09:20:40 ----D---- C:\ProgramData\firebird
2022-01-24 09:11:54 ----D---- C:\WINDOWS\system32\NDF
2022-01-24 09:10:29 ----D---- C:\WINDOWS\system32\config
2022-01-24 09:07:27 ----D---- C:\WINDOWS\WinSxS
2022-01-24 09:06:45 ----RD---- C:\WINDOWS\Microsoft.NET
2022-01-24 06:44:52 ----D---- C:\WINDOWS\AppReadiness
2022-01-24 06:44:38 ----HD---- C:\Program Files\WindowsApps
2022-01-24 06:17:16 ----ADC---- C:\Program Files\CCleaner
2022-01-24 05:44:09 ----D---- C:\WINDOWS\system32\SleepStudy
2022-01-21 13:54:57 ----D---- C:\WINDOWS\System32
2022-01-21 13:54:57 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2022-01-21 13:54:56 ----D---- C:\WINDOWS\INF
2022-01-21 13:50:55 ----DC---- C:\Program Files (x86)\Mozilla Maintenance Service
2022-01-21 13:50:53 ----RD---- C:\Program Files (x86)
2022-01-21 13:47:40 ----D---- C:\WINDOWS\ServiceState
2022-01-21 13:47:39 ----ASH---- C:\DumpStack.log.tmp
2022-01-21 13:47:17 ----D---- C:\WINDOWS\system32\catroot2
2022-01-21 13:47:09 ----D---- C:\WINDOWS\SysWOW64
2022-01-21 13:47:09 ----D---- C:\WINDOWS\bcastdvr
2022-01-21 13:47:09 ----D---- C:\Windows
2022-01-21 13:47:08 ----D---- C:\WINDOWS\system32\DriverStore
2022-01-21 13:47:08 ----D---- C:\WINDOWS\system32\drivers
2022-01-21 11:08:05 ----D---- C:\ProgramData\tmp
2022-01-21 11:08:02 ----D---- C:\ProgramData\hps
2022-01-20 13:17:37 ----DC---- C:\Stavitel
2022-01-18 09:09:58 ----D---- C:\WINDOWS\CbsTemp
2022-01-18 08:50:18 ----SHD---- C:\System Volume Information
2022-01-18 08:21:49 ----A---- C:\WINDOWS\storelibdebug.txt
2022-01-17 08:58:24 ----D---- C:\WINDOWS\system32\LogFiles
2022-01-17 08:57:28 ----D---- C:\WINDOWS\SYSWOW64\wbem
2022-01-17 08:57:28 ----D---- C:\WINDOWS\SYSWOW64\Dism
2022-01-17 08:57:28 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2022-01-17 08:57:27 ----SD---- C:\WINDOWS\system32\DiagSvcs
2022-01-17 08:57:27 ----D---- C:\WINDOWS\SystemResources
2022-01-17 08:57:27 ----D---- C:\WINDOWS\system32\setup
2022-01-17 08:57:27 ----D---- C:\WINDOWS\system32\oobe
2022-01-17 08:57:27 ----D---- C:\WINDOWS\system32\migration
2022-01-17 08:57:27 ----D---- C:\WINDOWS\system32\en-US
2022-01-17 08:57:27 ----D---- C:\WINDOWS\system32\Dism
2022-01-17 08:57:27 ----D---- C:\WINDOWS\system32\cs-CZ
2022-01-17 08:57:27 ----D---- C:\WINDOWS\system32\Boot
2022-01-17 08:57:25 ----D---- C:\WINDOWS\system32\CodeIntegrity
2022-01-17 08:56:31 ----SHD---- C:\WINDOWS\Installer
2022-01-17 08:56:30 ----SHDC---- C:\Config.Msi
2022-01-17 08:56:06 ----D---- C:\WINDOWS\system32\Tasks
2022-01-12 13:18:26 ----DC---- C:\WINDOWS\system32\MRT
2022-01-12 13:18:20 ----AC---- C:\WINDOWS\system32\MRT.exe
2022-01-12 09:41:24 ----D---- C:\WINDOWS\Logs
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2021-06-10 57168]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2021-07-16 41984]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2019-12-07 78136]
R1 CimFS;CimFS; C:\WINDOWS\system32\drivers\CimFS.sys [2021-10-01 98304]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2019-12-07 59392]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2019-12-07 8704]
R1 HWiNFO;HWiNFO Kernel Driver; \??\C:\WINDOWS\system32\drivers\HWiNFO64A.SYS [2019-04-05 66336]
R2 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2022-01-12 149320]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2021-10-29 496640]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2021-01-22 53248]
R3 ACPIVPC;@oem58.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2021-07-26 44024]
R3 amdgpio2;@oem62.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver; C:\WINDOWS\System32\drivers\amdgpio2.sys [2020-03-16 46344]
R3 amdi2c;@oem90.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service; C:\WINDOWS\System32\drivers\amdi2c.sys [2020-04-13 64816]
R3 amdkmdag;amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\u0358356.inf_amd64_894c3b4bc882c059\B358199\amdkmdag.sys [2020-08-26 71107088]
R3 AtiHDAudioService;@oem31.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2021-08-03 246200]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2021-12-03 113664]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2021-01-22 106496]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2019-12-07 133632]
R3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2021-12-03 1559552]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2021-12-03 110592]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2019-12-07 66576]
R3 ETD;@oem68.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\System32\drivers\ETD.sys [2020-05-13 743872]
R3 ETDHCF;@oem120.inf,%ETDHCF.SVCDESC%;ELAN HID Class Filter Service; C:\WINDOWS\System32\drivers\ETDHCF.sys [2020-03-29 30144]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2021-07-27 6515264]
R3 iwdbus;@oem53.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-12-01 38896]
R3 MpKsl077f0b4c;MpKsl077f0b4c; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{70203ACA-9566-4783-8FCB-BB75B223612C}\MpKslDrv.sys [2022-01-24 134376]
R3 MsQuic;@%SystemRoot%\system32\drivers\msquic.sys,-1; C:\WINDOWS\system32\drivers\msquic.sys [2021-01-22 322376]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2019-12-07 213504]
R3 RtkBtFilter;@oem16.inf,%BtFilt.SvcDesc%;Realtek Bluetooth Filter Driver; C:\WINDOWS\System32\drivers\RtkBtfilter.sys [2021-09-04 802264]
R3 RTWlanE;@oem74.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E Network Adapter; C:\WINDOWS\System32\drivers\rtwlane.sys [2020-04-29 11549792]
S0 amdpsp;@oem83.inf,%amdpsp.SVCDESC%;AMD PSP Service; C:\WINDOWS\System32\drivers\amdpsp.sys [2020-03-24 135184]
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2019-12-07 43832]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2019-12-07 319800]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2019-12-07 884752]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2019-12-07 172344]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2019-12-07 124216]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2019-12-07 135992]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2019-12-07 81720]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2019-12-07 105480]
S0 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2019-12-07 168464]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2019-12-07 58680]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2019-12-07 68408]
S0 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2019-12-07 138040]
S0 Ramdisk;Windows RAM Disk Driver; C:\WINDOWS\system32\DRIVERS\ramdisk.sys [2019-12-07 42296]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2019-12-07 158736]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2019-12-07 23040]
S3 Acx01000;@%SystemRoot%\system32\drivers\Acx01000.sys,-1000; C:\WINDOWS\system32\drivers\Acx01000.sys [2019-12-07 415232]
S3 AppleLowerFilter;@oem11.inf,%AppleLowerFilterDisplayName%;Apple Lower Filter Driver; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [2020-10-09 35976]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2021-12-03 18432]
S3 BthA2dp;@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver; C:\WINDOWS\System32\drivers\BthA2dp.sys [2019-12-07 279040]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2021-12-03 45568]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2019-12-07 44032]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_53931f0ae21d6d2c\genericusbfn.sys [2019-12-07 23040]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2019-12-07 55824]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2019-12-07 66560]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2021-09-13 95056]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2019-12-07 30208]
S3 CH341SER_A64;CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [2019-03-04 69016]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2019-12-07 1853752]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2019-12-07 36352]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2019-12-07 91136]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2019-12-07 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2019-12-07 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2019-12-07 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2019-12-07 96256]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2019-12-07 171520]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2019-12-07 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2019-12-07 177152]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2019-12-07 177664]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2019-12-07 558904]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2021-01-22 47104]
S3 intelpmax;@intelpmax.inf,%SvcDesc%;Intel(R) Dynamic Device Peak Power Manager Driver; C:\WINDOWS\System32\drivers\intelpmax.sys [2019-12-07 30720]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2019-12-07 59704]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2019-12-07 537608]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2019-12-07 64016]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2021-07-09 391168]
S3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2019-12-07 65024]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2019-12-07 1131320]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2019-12-07 146232]
S3 NDKPing;NDKPing Driver; C:\WINDOWS\system32\drivers\NDKPing.sys [2019-12-07 72720]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2021-12-03 214528]
S3 PktMon;Packet Monitor Driver; C:\WINDOWS\system32\drivers\PktMon.sys [2022-01-12 130360]
S3 PNPMEM;@memory.inf,%PNPMEM.SvcDesc%;Microsoft Memory Module Driver; C:\WINDOWS\System32\drivers\pnpmem.sys [2019-12-07 17408]
S3 portcfg;portcfg; C:\WINDOWS\System32\drivers\portcfg.sys [2019-12-07 27136]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2022-01-12 990536]
S3 rhproxy;@rhproxy.inf,%rhproxy.SVCDESC%;Resource Hub proxy driver; C:\WINDOWS\System32\drivers\rhproxy.sys [2019-12-07 115712]
S3 SDFRd;@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector; C:\WINDOWS\System32\drivers\SDFRd.sys [2019-12-07 35128]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2019-12-07 35128]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2021-11-17 169728]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository\u0358356.inf_amd64_894c3b4bc882c059\B358199\atiesrxx.exe [2020-08-26 537624]
R2 AviraOptimizerHost;Avira Optimizer Host; C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe [2020-06-03 2988544]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R2 CDPUserSvc_a2657;Uživatelská služba platformy připojených zařízení_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R2 DispBrokerDesktopSvc;@%SystemRoot%\system32\dispbroker.desktop.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R2 DolbyDAXAPI;@oem7.inf,%ServiceDisplayName%;Dolby DAX API Service; C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_0222c12a396c055f\DAX3API.exe [2021-01-04 2301912]
R2 DSAService;Intel(R) Driver & Support Assistant; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [2021-12-08 39352]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R2 ETDService;ELAN Service; C:\WINDOWS\System32\ETDService.exe [2020-05-13 254912]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2018-09-05 670816]
R2 FMAPOService;Fortemedia APO Control Service; C:\WINDOWS\System32\FMService64.exe [2021-08-05 387872]
R2 HPJumpStartBridge;HP JumpStart Bridge; c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [2017-05-23 471040]
R2 HPPrintScanDoctorService;HP Print Scan Doctor Service; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [2021-05-20 288360]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2020-08-20 379736]
R2 ibtsiva;Intel Bluetooth Service; C:\WINDOWS\System32\ibtsiva []
R2 ImControllerService;@oem84.inf,%ImcSvcDisplayName%;System Interface Foundation Service; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2021-11-07 83200]
R2 LenovoVantageService;LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\LenovoVantageService.exe [2021-12-14 31016]
R2 OneSyncSvc_a2657;Hostitel synchronizace_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R2 RalinkRegistryWriter;RalinkRegistryWriter; C:\Program Files (x86)\Tenda\Common\RaRegistry.exe [2011-03-31 375872]
R2 RalinkRegistryWriter64;RalinkRegistryWriter64; C:\Program Files (x86)\Tenda\Common\RaRegistry64.exe [2011-03-31 454208]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2018-09-05 170592]
R2 RtkAudioUniversalService;Realtek Audio Universal Service; C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_11f809ac26966b9b\RtkAudUService64.exe [2021-08-12 1274712]
R2 RtkBtManServ;@oem16.inf,%RtkBtManServ.SvcDesc%;Realtek Bluetooth Device Manager Service; C:\WINDOWS\RtkBtManServ.exe [2021-09-04 781280]
R3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 BluetoothUserService_a2657;Služba pro podporu uživatelů Bluetooth_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 cbdhsvc_a2657;Uživatelská služba schránky_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 DevicePickerUserSvc_a2657;DevicePicker_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 DevicesFlowUserSvc_a2657;Tok zařízení_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R3 DSAUpdateService;Intel(R) Driver & Support Assistant Updater; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [2021-12-08 177080]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 PimIndexMaintenanceSvc_a2657;Data kontaktů_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 PrintWorkflowUserSvc_a2657;PrintWorkflow_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
R3 SecurityHealthService;@%systemroot%\system32\SecurityHealthAgent.dll,-1002; C:\WINDOWS\system32\SecurityHealthService.exe [2021-10-01 986032]
R3 SEMgrSvc;@%SystemRoot%\System32\SEMgrSvc.dll,-1001; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S2 edgeupdate;Služba Microsoft Edge Update (edgeupdate); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-08-18 224160]
S2 gupdate;Služba Aktualizace Google (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-30 153752]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 AarSvc;@%SystemRoot%\system32\AarSvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 AarSvc_a2657;Agent Activation Runtime_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 autotimesvc;@%SystemRoot%\System32\autotimesvc.dll,-6; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 BcastDVRUserService_a2657;Uživatelská služba pro GameDVR a vysílání her_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 CaptureService_a2657;CaptureService_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 ConsentUxUserSvc_a2657;ConsentUX_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 CredentialEnrollmentManagerUserSvc;@%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2021-09-13 382696]
S3 CredentialEnrollmentManagerUserSvc_a2657;CredentialEnrollmentManagerUserSvc_a2657; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2021-09-13 382696]
S3 DeviceAssociationBrokerSvc;@%SystemRoot%\system32\deviceaccess.dll,-107; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 DeviceAssociationBrokerSvc_a2657;DeviceAssociationBroker_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2022-01-12 94208]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 edgeupdatem;Služba Microsoft Edge Update (edgeupdatem); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-08-18 224160]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 GoogleChromeElevationService;Google Chrome Elevation Service (GoogleChromeElevationService); C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.99\elevation_service.exe [2022-01-19 1470296]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 gupdatem;Služba Aktualizace Google (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-30 153752]
S3 hpqcaslwmiex;HP CASL Framework Service; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [2016-06-03 1031704]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 Intel(R) SUR QC SAM;Intel(R) SUR QC Software Asset Manager; C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [2021-07-21 3075936]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 MessagingService_a2657;Služba zasílání zpráv_a2657; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 MicrosoftEdgeElevationService;Microsoft Edge Elevation Service (MicrosoftEdgeElevationService); C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.69\elevation_service.exe [2022-01-20 1610128]
S3 MixedRealityOpenXRSvc;@%SystemRoot%\system32\MixedRealityRuntime.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2022-01-17 243128]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2018-09-05 310880]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2018-06-14 161472]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2021-01-22 106496]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 PrintWorkflowUserSvc;@%SystemRoot%\system32\PrintWorkflowService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
S3 PushToInstall;@%SystemRoot%\system32\pushtoinstall.dll,-200; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 RaMediaServer;RaMediaServer; C:\Program Files (x86)\Tenda\Common\RaMediaServer.exe [2011-03-04 621632]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2021-01-22 57360]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2021-01-22 1265152]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2021-01-22 57360]
-----------------EOF-----------------