Totalne pomaly NTB
Napsal: 12 úno 2022 09:25
Dobry den, syn ma totalne zasekany Notebook, mozem poprosit pomoc?
Logfile of random's system information tool 1.10 (written by random/random)
Run by 42191 at 2022-02-12 09:24:20
Microsoft Windows 11 Home
System drive C: has 4 GB (7%) free of 58 GB
Total RAM: 3467 MB (23% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:24:26, on 12. 2. 2022
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.22000.0001)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.x86.exe
C:\Program Files (x86)\Disig\Web Signer\WebSignerTray.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\WINDOWS\Lenovo\iMController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files\trend micro\42191.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.50\BHO\ie_to_edge_bho.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\42191\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [com.squirrel.Teams.Teams] C:\Users\42191\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" --process-start-args "--system-initiated"
O4 - HKCU\..\Run: [EpicGamesLauncher] "C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent
O4 - HKCU\..\Run: [Disig Web Signer] C:\Program Files (x86)\Disig\Web Signer\WebSignerTray.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office\root\Office16\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlansp_c.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - AMD - C:\WINDOWS\System32\DriverStore\FileRepository\u0370421.inf_amd64_8f365dc2ded16925\B370101\atiesrxx.exe
O23 - Service: AMD Log Utility - Unknown owner - C:\WINDOWS\System32\amdlogsr.exe (file missing)
O23 - Service: AtherosSvc - Unknown owner - C:\WINDOWS\System32\drivers\AdminService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_7da8a - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @oem21.inf,%ServiceDisplayName%;Dolby DAX API Service (DolbyDAXAPI) - Dolby Laboratories - C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Epic Online Services (EpicOnlineServices) - Epic Games, Inc. - C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Fortemedia APO Control Service (FMAPOService) - Unknown owner - C:\WINDOWS\System32\FMService64.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) (GoogleChromeElevationService) - Google LLC - C:\Program Files\Google\Chrome\Application\98.0.4758.82\elevation_service.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Print Scan Doctor Service (HPPrintScanDoctorService) - HP Inc. - C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
O23 - Service: @oem4.inf,%ImcSvcDisplayName%;System Interface Foundation Service (ImControllerService) - Lenovo Group Ltd. - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LenovoVantageService - Lenovo Group Ltd. - C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\LenovoVantageService.exe
O23 - Service: @oem61.inf,%ServiceDisplayName%;mcafeeintegrationservice (mcafeeintegrationservice) - McAfee - C:\WINDOWS\System32\DriverStore\FileRepository\mcafeeintegrationextension.inf_amd64_22df759ce010d03d\mcafeeintegrationservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: Qualcomm Atheros WLAN Driver Service (QcomWlanSrv) - Unknown owner - C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) - Unknown owner - C:\WINDOWS\System32\RtkAudUService64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTrap) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SAMSUNG Mobile USB Connectivity Launcher (ss_conn_launcher_service) - Unknown owner - C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12192 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
"fontdrvhost.exe"
"fontdrvhost.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-923f4467-4f7c-49d8-84c5-2582d5199b80 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-0d0d3ac0-059e-4d0d-978c-563c6dfdab25 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-95af1c3d-555b-4d49-aebb-18e964229a24 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-916d2232-8bea-4477-8165-f6c436f052c4 -LifetimeId:936cedd4-0ec0-4454-9fd3-31414fbe6e6f -DeviceGroupId: -HostArg:0
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netprofm -p
C:\WINDOWS\system32\svchost.exe -k osprivacy -p
C:\WINDOWS\system32\svchost.exe -k NetworkService -p
C:\WINDOWS\System32\DriverStore\FileRepository\u0370421.inf_amd64_8f365dc2ded16925\B370101\atiesrxx.exe
C:\WINDOWS\System32\amdlogsr.exe
dashost.exe {74863d67-4ea3-4f15-aa8667c4cf0dabc3}
atieclxx
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k appmodel -p
C:\WINDOWS\system32\AUDIODG.EXE 0x000000000000049C
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p
C:\WINDOWS\System32\drivers\AdminService.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService -p
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe" /service
C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe
C:\WINDOWS\System32\FMService64.exe
"C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe"
C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\LenovoVantageService.exe"
C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe
"C:\WINDOWS\System32\RtkAudUService64.exe"
C:\WINDOWS\System32\svchost.exe -k netsvcs
AggregatorHost.exe
"C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /c
"C:\WINDOWS\System32\DriverStore\FileRepository\DAX3_S~1.INF\\DAX3API.exe" -capturestream
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
sihost.exe
C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"ctfmon.exe"
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" VantageCoreAddin C:\ProgramData\Lenovo\Vantage\Addins\\VantageCoreAddin\1.0.0.28\VantageCoreAddin.dll 0e307c63268946489d6cf11418a5f6cd 5b580553-851f-4449-a0f8-5594846bd697
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" DeviceSettingsSystemAddin C:\ProgramData\Lenovo\Vantage\Addins\\DeviceSettingsSystemAddin\1.0.1.58\DeviceSettingsSystemAddin.dll 18c0f41122394a64b3eede85ec0ee2b2 5b580553-851f-4449-a0f8-5594846bd697
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" LenovoServiceBridgeAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoServiceBridgeAddin\1.0.0.54\LenovoServiceBridgeAddin.dll 2ac159aa3967480984eb9e3ca803380a 5b580553-851f-4449-a0f8-5594846bd697
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.Amd64.exe" LenovoBoostAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoBoostAddin\1.0.0.32\LenovoBoostAddin.dll 4acc021f2b8442c59640372a64595e13 5b580553-851f-4449-a0f8-5594846bd697
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.Amd64.exe" LenovoBoostSystemAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoBoostSystemAddin\1.0.0.32\LenovoBoostSystemAddin.dll d1a63d1cdef54598b6ede4205ccd1deb 5b580553-851f-4449-a0f8-5594846bd697
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe" -ServerName:CortanaUI.AppXstmwaab17q5s3y22tp6apqz7a45vwv65.mca
"C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.21121.243.0_x64__8wekyb3d8bbwe\YourPhone.exe" -ServerName:App.AppX9yct9q388jvt4h7y0gn06smzkxcsnt8m.mca
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe" -ServerName:InputApp.AppXjd5de1g66v206tj52m9d0dtpppx4cgpn.mca
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.x86.exe" DeviceSettingsHeartbeatAddin C:\ProgramData\Lenovo\Vantage\Addins\\DeviceSettingsHeartbeatAddin\1.0.0.25\DeviceSettingsHeartbeatAddin.dll eba99358b7cb40c9b7d80a1b02f5c5e8 5b580553-851f-4449-a0f8-5594846bd697
"C:\Windows\System32\SecurityHealthSystray.exe"
"C:\Windows\System32\RtkAudUService64.exe" -background
"C:\Users\42191\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent
"C:\Program Files (x86)\Disig\Web Signer\WebSignerTray.exe"
-name 5831dd19-9b02-4312-8387-fc14fcaf0550 -runas -pluginName IdeaNotebookPlugin -pluginVersion 1.2.78.16
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" LenovoSecurityAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoSecurityAddin\1.0.0.31\LenovoSecurityAddin.dll 9f0130fa635a465bb5a13c6aea3268ee 5b580553-851f-4449-a0f8-5594846bd697
-name 80df6e31-e100-4397-923f-cc53638e1c7d -runas -pluginName LenovoVisionProtectionPlugin -pluginVersion 1.2.98.14
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --system-initiated
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe"
"C:/Program Files (x86)/Epic Games/Launcher/Engine/Binaries/Win64/EpicWebHelper.exe" --type=gpu-process --field-trial-handle=1996,7108341891957599892,15977138843819679373,131072 --enable-features=CastMediaRouteProvider --disable-features=OutOfBlinkCors --no-sandbox --locales-dir-path="C:/Program Files (x86)/Epic Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources/locales" --log-file=C:/Users/42191/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --log-severity=warning --product-version="EpicGamesLauncher/13.1.8-18918412+++Portal+Release-Live UnrealEngine/4.23.0-18918412+++Portal+Release-Live Chrome/84.0.4147.38" --resources-dir-path="C:/Program Files (x86)/Epic Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources" --lang=en --gpu-preferences=MAAAAAAAAADgACAwAAAAAAAAAAAAAAAAAABgAAAAAAAQAAAAAAAAAAAAAAAAAAAAKAAAAAQAAAAgAAAAAAAAACgAAAAAAAAAMAAAAAAAAAA4AAAAAAAAABAAAAAAAAAAAAAAAAUAAAAQAAAAAAAAAAAAAAAGAAAAEAAAAAAAAAABAAAABQAAABAAAAAAAAAAAQAAAAYAAAA= --log-file=C:/Users/42191/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --mojo-platform-channel-handle=2012 /prefetch:2
"C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.10028.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe" atlogon
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --type=crashpad-handler "--user-data-dir=C:\Users\42191\AppData\Roaming\Microsoft\Skype for Store" /prefetch:7 --no-rate-limit --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\42191\AppData\Roaming\Microsoft\Skype for Store\Crashpad" --url=appcenter://generic?aid=a8902fe7-ef45-455c-8513-5e56d48e36fd&iid=40a372c7-2d03-4eac-7d13-70a5f1f0316e&uid=40a372c7-2d03-4eac-7d13-70a5f1f0316e --annotation=_companyName=Skype --annotation=_productName=skype-preview --annotation=_version=8.79.0.95 --annotation=prod=Electron --annotation=ver=13.6.0 --initial-client-data=0x694,0x698,0x69c,0x690,0x6a0,0x75a7a90,0x75a7aa0,0x75a7aac
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=gpu-process --field-trial-handle=1528,11652031473842646909,2830499240817006615,131072 --enable-features=ContextBridgeMutability,WebComponentsV0Enabled,WinUseBrowserSpellChecker,WinUseHybridSpellChecker --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess --gpu-preferences=MAAAAAAAAADgAAAwAAAAAAAAAAAAAAAAAABgAAAAAAAQAAAAAAAAAAAAAAAAAAAAKAAAAAQAAAAgAAAAAAAAACgAAAAAAAAAMAAAAAAAAAA4AAAAAAAAABAAAAAAAAAAAAAAAAUAAAAQAAAAAAAAAAAAAAAGAAAAEAAAAAAAAAABAAAABQAAABAAAAAAAAAAAQAAAAYAAAA= --mojo-platform-channel-handle=1584 /prefetch:2
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1528,11652031473842646909,2830499240817006615,131072 --enable-features=ContextBridgeMutability,WebComponentsV0Enabled,WinUseBrowserSpellChecker,WinUseHybridSpellChecker --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess --lang=sk --service-sandbox-type=network --enable-wer --ms-teams-less-cors=522133263 --mojo-platform-channel-handle=2260 /prefetch:8
"C:\Program Files\WindowsApps\Microsoft.GamingServices_3.62.4001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe"
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --field-trial-handle=1528,11652031473842646909,2830499240817006615,131072 --enable-features=ContextBridgeMutability,WebComponentsV0Enabled,WinUseBrowserSpellChecker,WinUseHybridSpellChecker --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess --lang=sk --enable-wer --ms-teams-less-cors=522133263 --app-user-model-id=com.squirrel.Teams.Teams --app-path="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar" --enable-sandbox --native-window-open --preload="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar\lib\renderer\notifications\preload_notifications.js" --background-color=#fff --enable-spellcheck --enable-websql --disable-electron-site-instance-overrides --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=7 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2976 /prefetch:1 --msteams-process-type=notificationsManager
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --field-trial-handle=1528,11652031473842646909,2830499240817006615,131072 --enable-features=ContextBridgeMutability,WebComponentsV0Enabled,WinUseBrowserSpellChecker,WinUseHybridSpellChecker --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess --lang=sk --enable-wer --ms-teams-less-cors=522133263 --app-user-model-id=com.squirrel.Teams.Teams --app-path="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar" --webview-tag --enable-sandbox --native-window-open --preload="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar\lib\renderer\preload.js" --world-safe-execute-javascript --background-color=#fff --enable-spellcheck --enable-websql --disable-electron-site-instance-overrides --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=3 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3216 /prefetch:1 --msteams-process-type=mainWindow
C:\WINDOWS\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --field-trial-handle=1528,11652031473842646909,2830499240817006615,131072 --enable-features=ContextBridgeMutability,WebComponentsV0Enabled,WinUseBrowserSpellChecker,WinUseHybridSpellChecker --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess --lang=sk --service-sandbox-type=audio --enable-wer --ms-teams-less-cors=522133263 --mojo-platform-channel-handle=3172 /prefetch:8
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --type=gpu-process --field-trial-handle=2248,10855228625506695052,6172956994334682983,131072 --enable-features=WinUseBrowserSpellChecker,WinUseHybridSpellChecker,WinrtGeolocationImplementation --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand --user-data-dir="C:\Users\42191\AppData\Roaming\Microsoft\Skype for Store" --gpu-preferences=SAAAAAAAAADgAAAwAAAAAAAAAAAAAAAAAABgAAAAAAAoAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAB4AAAAAAAAAHgAAAAAAAAAKAAAAAQAAAAgAAAAAAAAACgAAAAAAAAAMAAAAAAAAAA4AAAAAAAAABAAAAAAAAAAAAAAAAUAAAAQAAAAAAAAAAAAAAAGAAAAEAAAAAAAAAABAAAABQAAABAAAAAAAAAAAQAAAAYAAAAIAAAAAAAAAAgAAAAAAAAA --use-gl=swiftshader-webgl --mojo-platform-channel-handle=2264 /prefetch:2
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=2248,10855228625506695052,6172956994334682983,131072 --enable-features=WinUseBrowserSpellChecker,WinUseHybridSpellChecker,WinrtGeolocationImplementation --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand --lang=sk --service-sandbox-type=none --user-data-dir="C:\Users\42191\AppData\Roaming\Microsoft\Skype for Store" --mojo-platform-channel-handle=2504 /prefetch:8
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --ms-disable-indexeddb-transaction-timeout --field-trial-handle=2248,10855228625506695052,6172956994334682983,131072 --enable-features=WinUseBrowserSpellChecker,WinUseHybridSpellChecker,WinrtGeolocationImplementation --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand --disable-gpu-compositing --lang=sk --user-data-dir="C:\Users\42191\AppData\Roaming\Microsoft\Skype for Store" --app-user-model-id=Microsoft.Skype.SkypeDesktop --app-path="C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\resources\app.asar" --no-sandbox --no-zygote --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=4 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2876 /prefetch:1 --skype-process-type=Main --skype-window-id=__MAIN_ROOT_VIEW_ID__
"C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.10028.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe"
C:\WINDOWS\uus\AMD64\MoUsoCoreWorker.exe
"C:/Program Files (x86)/Epic Games/Launcher/Engine/Binaries/Win64/EpicWebHelper.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1996,7108341891957599892,15977138843819679373,131072 --enable-features=CastMediaRouteProvider --disable-features=OutOfBlinkCors --lang=en-US --service-sandbox-type=network --no-sandbox --locales-dir-path="C:/Program Files (x86)/Epic Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources/locales" --log-file=C:/Users/42191/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --log-severity=warning --product-version="EpicGamesLauncher/13.1.8-18918412+++Portal+Release-Live UnrealEngine/4.23.0-18918412+++Portal+Release-Live Chrome/84.0.4147.38" --resources-dir-path="C:/Program Files (x86)/Epic Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources" --lang=en --log-file=C:/Users/42191/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --mojo-platform-channel-handle=3396 /prefetch:8
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --field-trial-handle=1528,11652031473842646909,2830499240817006615,131072 --enable-features=ContextBridgeMutability,WebComponentsV0Enabled,WinUseBrowserSpellChecker,WinUseHybridSpellChecker --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess --lang=sk --enable-wer --ms-teams-less-cors=522133263 --app-user-model-id=com.squirrel.Teams.Teams --app-path="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar" --enable-sandbox --native-window-open --preload="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar\lib\renderer\experienceRenderer\preload_webview.js" --background-color=#fff --guest-instance-id=5 --enable-blink-features --disable-blink-features --hidden-page --node-integration-in-subframes --enable-spellcheck --enable-websql --disable-electron-site-instance-overrides --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=9 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2160 /prefetch:1 --msteams-process-type=experience-renderer
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --field-trial-handle=1528,11652031473842646909,2830499240817006615,131072 --enable-features=ContextBridgeMutability,WebComponentsV0Enabled,WinUseBrowserSpellChecker,WinUseHybridSpellChecker --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess --lang=sk --enable-wer --ms-teams-less-cors=522133263 --app-user-model-id=com.squirrel.Teams.Teams --app-path="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar" --no-sandbox --no-zygote --preload="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar\lib\pluginhost\preload.js" --context-isolation --background-color=#fff --enable-spellcheck --enable-websql --disable-electron-site-instance-overrides --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=10 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4316 /prefetch:1 --msteams-process-type=pluginHost
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe"
C:\WINDOWS\explorer.exe /factory,{5BD95610-9434-43C2-886C-57852CC8A120} -Embedding
"C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe"
-name 51a71d30-ec86-4ad4-ab3d-033528e5d9a1 -runas -pluginName DolbyAudioPlugin -pluginVersion 1.2.240.5
-name da82cff7-2562-402f-9c87-1a87f68d190d -runas -pluginName GenericMessagingPlugin -pluginVersion 3.2.0.57
"C:\WINDOWS\Lenovo\iMController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe" -name 5f9b8515-d819-4a8d-980d-148b59bcb8ff -runas SYSTEM -pluginName GenericTelemetryPlugin -pluginVersion 2.2.30.0
"C:\WINDOWS\Lenovo\iMController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe" -name eee60d8c-0be3-4bd8-b34e-09ab6c83c690 -runas SYSTEM -pluginName LenovoAppScenarioPluginSystem -pluginVersion 1.2.190.5
"C:\Program Files\WindowsApps\Microsoft.GamingServices_3.62.4001.0_x64__8wekyb3d8bbwe\GamingServices.exe"
C:\WINDOWS\System32\svchost.exe -k netsvcs -p
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy\mcafee-security.exe" -ServerName:App.AppX70z311bjdb1xmz7zp8wfg7gxg7f9v17f.mca
%systemroot%\system32\MoNotificationUx.exe /NotificationType Reboot_Engaged /FormFactor Passive /Timeout 0
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy\Win32\mcafee-security-ft.exe" /InvokerPRAID: App
"C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_321.14700.0.9_x64__cw5n1h2txyewy\Dashboard\Widgets.exe" -ServerName:Microsoft.Windows.DashboardServer
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto -critical
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Program Files\Google\Chrome\Application\chrome.exe"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\42191\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\42191\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\42191\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=97.0.4692.99 --initial-client-data=0xf0,0xf4,0xf8,0xcc,0xfc,0x7ffc0870a850,0x7ffc0870a860,0x7ffc0870a870
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAIAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1652 /prefetch:2
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --lang=sk --service-sandbox-type=none --mojo-platform-channel-handle=2000 /prefetch:8
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --lang=sk --service-sandbox-type=utility --mojo-platform-channel-handle=2088 /prefetch:8
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --display-capture-permissions-policy-allowed --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --lang=sk --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=8 --launch-time-ticks=451762750 --mojo-platform-channel-handle=4432 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --display-capture-permissions-policy-allowed --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --lang=sk --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=29 --launch-time-ticks=573002016 --mojo-platform-channel-handle=2792 /prefetch:1
C:\Windows\System32\oobe\UserOOBEBroker.exe -Embedding
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --lang=sk --service-sandbox-type=audio --mojo-platform-channel-handle=6308 /prefetch:8
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k LocalService -p
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p
-name ac57fea0-26f5-4dae-b934-0b8f6ae896dc -runas -pluginName GenericCorePlugin -pluginVersion 1.3.4.4
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --display-capture-permissions-policy-allowed --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --lang=sk --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=106 --launch-time-ticks=1027597260 --mojo-platform-channel-handle=9900 /prefetch:1
"C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.43\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=Widgets.exe --webview-exe-version=321.14700.0.0 --user-data-dir="C:\Users\42191\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --noerrdialogs --embedded-browser-webview-dpi-awareness=2 --disk-cache-size=52428800 --lang=sk-SK --mojo-named-platform-channel-pipe=5344.4088.739264755117398824
"C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.43\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\42191\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\42191\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=98.0.4758.80 "--annotation=exe=C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.43\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=98.0.1108.43 --initial-client-data=0xfc,0x100,0x104,0xd8,0x10c,0x7ffc08914cc0,0x7ffc08914cd0,0x7ffc08914ce0
"C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.43\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="C:\Users\42191\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --webview-exe-name=Widgets.exe --webview-exe-version=321.14700.0.0 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=2 --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1960 --field-trial-handle=1992,9166045675150128327,3105450883253473483,131072 /prefetch:2
"C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.43\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=sk --service-sandbox-type=none --noerrdialogs --user-data-dir="C:\Users\42191\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --webview-exe-name=Widgets.exe --webview-exe-version=321.14700.0.0 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=2 --mojo-platform-channel-handle=2060 --field-trial-handle=1992,9166045675150128327,3105450883253473483,131072 /prefetch:3
"C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.43\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=sk --service-sandbox-type=utility --noerrdialogs --user-data-dir="C:\Users\42191\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --webview-exe-name=Widgets.exe --webview-exe-version=321.14700.0.0 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=2 --mojo-platform-channel-handle=2404 --field-trial-handle=1992,9166045675150128327,3105450883253473483,131072 /prefetch:8
"C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.43\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="C:\Users\42191\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --webview-exe-name=Widgets.exe --webview-exe-version=321.14700.0.0 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=2 --disable-client-side-phishing-detection --display-capture-permissions-policy-allowed --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc" --lang=sk --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=5 --launch-time-ticks=1066133359 --mojo-platform-channel-handle=3268 --field-trial-handle=1992,9166045675150128327,3105450883253473483,131072 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=data_decoder.mojom.DataDecoderService --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --lang=sk --service-sandbox-type=service --mojo-platform-channel-handle=7180 /prefetch:8
"C:\Users\42191\OneDrive\Počítač\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.50\BHO\ie_to_edge_bho_64.dll [2022-02-10 530832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2021-06-27 551520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2021-06-27 212576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.50\BHO\ie_to_edge_bho.dll [2022-02-10 432016]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2021-11-02 154944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2021-06-05 266240]
"RtkAudUService"=C:\WINDOWS\System32\RtkAudUService64.exe [2020-08-21 1140456]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\42191\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2022-01-26 2593128]
"com.squirrel.Teams.Teams"=C:\Users\42191\AppData\Local\Microsoft\Teams\Update.exe [2021-12-16 2459304]
"EpicGamesLauncher"=C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [2022-02-10 33648608]
"Disig Web Signer"=C:\Program Files (x86)\Disig\Web Signer\WebSignerTray.exe [2021-02-04 254080]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-06-08 334896]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\nvdimm.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{53966cb1-4d46-4166-bf23-c522403cd495}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsQuic]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nvdimm.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{53966cb1-4d46-4166-bf23-c522403cd495}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"mixer1"=wdmaud.drv
"wave1"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave2"=wdmaud.drv
"aux1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave3"=wdmaud.drv
"aux2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave4"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.inf - open -
.inf - install -
.ini - open -
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.txt - open -
======List of files/folders created in the last 1 month======
2022-02-12 09:24:20 ----D---- C:\rsit
2022-02-12 09:24:20 ----D---- C:\Program Files\trend micro
2022-02-12 09:22:11 ----D---- C:\AdwCleaner
2022-02-12 09:04:05 ----D---- C:\WINDOWS\Panther
2022-02-11 22:33:27 ----HD---- C:\$WinREAgent
2022-02-10 19:00:49 ----A---- C:\WINDOWS\system32\RsDMFT64.dll
2022-02-10 19:00:49 ----A---- C:\WINDOWS\system32\RsDMFT_Assets.dll
2022-02-09 09:18:19 ----D---- C:\Users\42191\AppData\Roaming\vlc
2022-02-07 00:17:40 ----D---- C:\ProgramData\Microsoft OneDrive
2022-02-07 00:16:54 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2022-02-07 00:14:39 ----SHD---- C:\ProgramData\Templates
2022-02-07 00:14:39 ----SHD---- C:\ProgramData\Start Menu
2022-02-07 00:14:39 ----SHD---- C:\ProgramData\Documents
2022-02-07 00:14:39 ----SHD---- C:\ProgramData\Desktop
2022-02-07 00:14:39 ----SHD---- C:\ProgramData\Application Data
2022-02-07 00:09:42 ----ASH---- C:\hiberfil.sys
2022-02-07 00:08:07 ----SD---- C:\Users\42191\AppData\Roaming\Microsoft
2022-02-07 00:07:24 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2022-02-07 00:06:45 ----D---- C:\WINDOWS\system32\SleepStudy
2022-02-07 00:06:44 ----ASH---- C:\swapfile.sys
2022-02-07 00:06:44 ----ASH---- C:\pagefile.sys
2022-02-07 00:06:44 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2022-02-07 00:06:43 ----D---- C:\WINDOWS\Prefetch
2022-02-07 00:06:17 ----D---- C:\Windows.old
2022-02-07 00:02:15 ----AS---- C:\WINDOWS\bootstat.dat
2022-02-07 00:01:31 ----D---- C:\WINDOWS\system32\Microsoft
2022-02-07 00:01:31 ----D---- C:\WINDOWS\ServiceProfiles
2022-02-06 23:52:15 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2022-02-06 23:52:15 ----A---- C:\WINDOWS\system32\poqexec.exe
======List of files/folders modified in the last 1 month======
2022-02-12 09:24:20 ----RD---- C:\Program Files
2022-02-12 09:21:48 ----D---- C:\WINDOWS\Temp
2022-02-12 09:20:28 ----D---- C:\WINDOWS\AppReadiness
2022-02-12 09:20:17 ----HD---- C:\Program Files\WindowsApps
2022-02-12 09:20:13 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2022-02-12 09:12:15 ----D---- C:\WINDOWS\System32
2022-02-12 09:12:15 ----D---- C:\WINDOWS\INF
2022-02-12 09:11:22 ----D---- C:\WINDOWS\system32\config
2022-02-12 09:11:16 ----D---- C:\Program Files (x86)\Google
2022-02-12 09:11:00 ----SHDC---- C:\WINDOWS\Installer
2022-02-12 09:09:23 ----D---- C:\WINDOWS\system32\sru
2022-02-12 09:09:20 ----D---- C:\WINDOWS\CbsTemp
2022-02-12 09:09:13 ----D---- C:\WINDOWS\WinSxS
2022-02-12 09:08:59 ----RD---- C:\Program Files (x86)
2022-02-12 09:08:16 ----D---- C:\WINDOWS\SystemTemp
2022-02-12 09:08:13 ----D---- C:\WINDOWS\system32\DriverStore
2022-02-12 09:05:47 ----D---- C:\WINDOWS\Logs
2022-02-12 09:04:05 ----D---- C:\Windows
2022-02-12 09:04:00 ----D---- C:\WINDOWS\system32\LogFiles
2022-02-12 09:03:58 ----D---- C:\WINDOWS\ServiceState
2022-02-12 09:03:56 ----ASH---- C:\DumpStack.log.tmp
2022-02-12 08:59:34 ----D---- C:\Users\42191\AppData\Roaming\discord
2022-02-11 22:51:41 ----RD---- C:\WINDOWS\Microsoft.NET
2022-02-11 20:32:58 ----A---- C:\WINDOWS\system32\xgameruntime.dll
2022-02-11 20:32:57 ----A---- C:\WINDOWS\system32\gamingtcuihelpers.dll
2022-02-11 20:32:47 ----A---- C:\WINDOWS\system32\gamingservicesproxy.dll
2022-02-11 20:32:46 ----A---- C:\WINDOWS\system32\gameplatformservices.dll
2022-02-11 20:32:46 ----A---- C:\WINDOWS\system32\gamemodcontrol.exe
2022-02-11 20:32:46 ----A---- C:\WINDOWS\system32\gamelaunchhelper.dll
2022-02-11 20:32:46 ----A---- C:\WINDOWS\system32\gameconfighelper.dll
2022-02-11 20:30:25 ----D---- C:\WINDOWS\system32\MRT
2022-02-11 20:30:09 ----AC---- C:\WINDOWS\system32\MRT.exe
2022-02-11 17:14:44 ----D---- C:\WINDOWS\system32\drivers\UMDF
2022-02-11 17:14:38 ----D---- C:\WINDOWS\SysWOW64
2022-02-11 17:14:38 ----D---- C:\WINDOWS\system32\drivers
2022-02-11 13:44:03 ----D---- C:\WINDOWS\system32\WDI
2022-02-11 11:25:25 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2022-02-11 11:20:56 ----D---- C:\WINDOWS\system32\Tasks
2022-02-11 11:18:02 ----RD---- C:\Users
2022-02-10 19:00:51 ----D---- C:\WINDOWS\system32\catroot2
2022-02-10 17:51:09 ----D---- C:\WINDOWS\system32\drivers\wd
2022-02-09 07:07:15 ----D---- C:\WINDOWS\system32\Logs
2022-02-09 07:07:15 ----D---- C:\Program Files\Microsoft Update Health Tools
2022-02-07 00:32:41 ----D---- C:\ProgramData\Packages
2022-02-07 00:32:11 ----RD---- C:\WINDOWS\PrintDialog
2022-02-07 00:26:07 ----D---- C:\WINDOWS\servicing
2022-02-07 00:17:40 ----HD---- C:\ProgramData
2022-02-07 00:16:19 ----SD---- C:\ProgramData\Microsoft
2022-02-07 00:14:45 ----D---- C:\WINDOWS\system32\oobe
2022-02-07 00:14:29 ----D---- C:\WINDOWS\SoftwareDistribution
2022-02-07 00:14:26 ----D---- C:\WINDOWS\Tasks
2022-02-07 00:14:25 ----D---- C:\Program Files\Windows Defender
2022-02-07 00:09:14 ----D---- C:\Program Files\Common Files\microsoft shared
2022-02-07 00:09:11 ----RD---- C:\WINDOWS\assembly
2022-02-07 00:07:42 ----D---- C:\WINDOWS\system32\dolbyaposvc
2022-02-07 00:07:25 ----D---- C:\WINDOWS\appcompat
2022-02-07 00:07:21 ----D---- C:\WINDOWS\debug
2022-02-07 00:07:08 ----SHD---- C:\Recovery
2022-02-07 00:07:04 ----D---- C:\WINDOWS\system32\wbem
2022-02-07 00:06:27 ----D---- C:\WINDOWS\system32\WinBioDatabase
2022-02-07 00:06:26 ----RSD---- C:\WINDOWS\Fonts
2022-02-07 00:06:26 ----D---- C:\WINDOWS\system32\Tasks_Migrated
2022-02-07 00:06:25 ----D---- C:\WINDOWS\SYSWOW64\drivers
2022-02-07 00:06:25 ----D---- C:\WINDOWS\system32\spool
2022-02-07 00:06:25 ----D---- C:\WINDOWS\system32\Samsung
2022-02-07 00:06:25 ----D---- C:\WINDOWS\system32\drivers\etc
2022-02-07 00:06:24 ----D---- C:\WINDOWS\system32\Recovery
2022-02-07 00:06:24 ----D---- C:\WINDOWS\system32\MsDtc
2022-02-07 00:06:24 ----D---- C:\Program Files\Common Files
2022-02-07 00:06:24 ----D---- C:\Program Files (x86)\Microsoft.NET
2022-02-07 00:06:24 ----D---- C:\Program Files (x86)\Microsoft
2022-02-07 00:06:24 ----D---- C:\Program Files (x86)\Common Files
2022-02-07 00:06:15 ----D---- C:\WINDOWS\Setup
2022-02-07 00:06:09 ----D---- C:\ProgramData\USOPrivate
2022-02-07 00:03:04 ----D---- C:\WINDOWS\system32\AMD
2022-02-07 00:03:02 ----D---- C:\WINDOWS\Lenovo
2022-02-07 00:00:28 ----SD---- C:\WINDOWS\system32\en-US
2022-02-07 00:00:19 ----D---- C:\WINDOWS\OCR
2022-02-06 23:58:12 ----SD---- C:\WINDOWS\SYSWOW64\F12
2022-02-06 23:58:12 ----SD---- C:\WINDOWS\system32\F12
2022-02-06 23:58:12 ----D---- C:\WINDOWS\SYSWOW64\WCN
2022-02-06 23:58:12 ----D---- C:\WINDOWS\SYSWOW64\en-US
2022-02-06 23:58:12 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2022-02-06 23:58:12 ----D---- C:\WINDOWS\system32\WCN
2022-02-06 23:58:12 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2022-02-06 23:58:12 ----D---- C:\WINDOWS\system32\migwiz
2022-02-06 23:58:11 ----D---- C:\WINDOWS\system32\en
2022-02-06 23:58:11 ----D---- C:\WINDOWS\system32\drivers\en-US
2022-02-06 23:58:11 ----D---- C:\WINDOWS\en-US
2022-02-06 23:58:11 ----D---- C:\Program Files\Windows Photo Viewer
2022-02-06 23:58:11 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2022-02-06 23:58:11 ----D---- C:\Program Files (x86)\Windows Defender
2022-01-28 20:04:18 ----A---- C:\WINDOWS\system32\ImController.InfInstaller.exe
2022-01-28 20:04:16 ----A---- C:\WINDOWS\system32\WudfUpdate_02000.dll
2022-01-28 20:04:16 ----A---- C:\WINDOWS\system32\ImController.CoInstaller.dll
2022-01-28 20:03:26 ----A---- C:\WINDOWS\system32\iMDriverHelper.dll
2022-01-26 09:42:28 ----D---- C:\Program Files\Microsoft Office
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amdpsp;@oem45.inf,%amdpsp.SVCDESC%;AMD PSP Service; C:\WINDOWS\System32\drivers\amdpsp.sys [2020-03-24 135184]
R0 IntelPMT;@intelpmt.inf,%IntelPMT.SVCDESC%;Intel(R) Platform Monitoring Technology Service; C:\WINDOWS\System32\drivers\IntelPMT.sys [2021-06-05 74224]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2021-06-05 82256]
R0 PRM;@prm.inf,%PRM.SvcDesc%;Microsoft PRM Driver; C:\WINDOWS\System32\DriverStore\FileRepository\prm.inf_amd64_7fc9bb8ba2b73803\PRM.sys [2021-06-05 61752]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2021-06-05 77824]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2021-06-05 106808]
R1 CimFS;CimFS; C:\WINDOWS\system32\drivers\CimFS.sys [2021-06-05 155976]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2021-06-05 86016]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2021-06-05 40960]
R2 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2021-06-05 176464]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2021-06-05 540672]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2021-06-05 81920]
R3 ACPIVPC;@oem15.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2021-07-26 44024]
R3 amdacpbus;@oem50.inf,%amdacpbus.SVCDESC%;Audio Coprocessr Driver for DSP; C:\WINDOWS\System32\DriverStore\FileRepository\amdacpbus.inf_amd64_36c81572f42cc25a\amdacpbus.sys [2020-07-01 6380960]
R3 amdgpio2;@oem29.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver; C:\WINDOWS\System32\drivers\amdgpio2.sys [2020-03-16 46344]
R3 amdi2c;@oem55.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service; C:\WINDOWS\System32\drivers\amdi2c.sys [2020-07-14 65320]
R3 amdlog;@oem16.inf,%AMDLOG_svcdesc%;AMD LOG Utility Driver; C:\WINDOWS\System32\drivers\amdlog.sys [2020-06-11 88176]
R3 amdwddmg;amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0370421.inf_amd64_8f365dc2ded16925\B370101\amdkmdag.sys [2021-08-07 80463176]
R3 AtiHDAudioService;@oem51.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2020-06-09 107936]
R3 BtFilter;BtFilter; C:\WINDOWS\System32\drivers\btfilter.sys [2021-03-13 104728]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2021-06-05 139264]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2021-06-05 135168]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2021-06-05 155648]
R3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\drivers\BTHport.sys [2021-06-05 1916928]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\drivers\BTHUSB.sys [2021-06-05 118784]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2021-06-05 94536]
R3 gameflt;@oem70.inf,%ServiceName%;gameflt; C:\WINDOWS\System32\DriverStore\FileRepository\gameflt.inf_amd64_10c518155fa47d97\gameflt.sys [2022-02-11 134568]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2020-08-20 6114384]
R3 McAfeeIntegrationDriver;@oem20.inf,%McAfeeIntegrationDriver.SVCDESC%;McAfeeIntegrationDriver Service; C:\WINDOWS\System32\drivers\McAfeeIntegrationDriver.sys [2019-09-16 49928]
R3 MsQuic;@%SystemRoot%\system32\drivers\msquic.sys,-1; C:\WINDOWS\system32\drivers\msquic.sys [2021-06-05 377144]
R3 Qcamain10x64;@oem8.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN 11AC device driver; C:\WINDOWS\System32\drivers\Qcamain10x64.sys [2020-12-20 2455232]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2021-06-05 245760]
S0 AppleSSD;@AppleSSD.inf,%DevDesc1%;Apple Solid State Drive Device; C:\WINDOWS\System32\drivers\AppleSSD.sys [2021-06-05 112440]
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2021-06-05 74040]
S0 ebdrv0;@netevbd0a.inf,%vbd_srv_desc%;QLogic Legacy Ethernet Adapter VBD; C:\WINDOWS\System32\drivers\evbd0a.sys [2021-06-05 3423032]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2021-06-05 319800]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2021-06-05 884552]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2021-06-05 176952]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2021-06-05 124240]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2021-06-05 137552]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2021-06-05 80696]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2021-06-05 100176]
S0 mpi3drvi;mpi3drvi; C:\WINDOWS\System32\drivers\mpi3drvi.sys [2021-06-05 87352]
S0 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2021-06-05 201024]
S0 nvmedisk;@nvmedisk.inf,%nvmedisk.SvcDesc%;Microsoft NVMe disk driver; C:\WINDOWS\System32\drivers\nvmedisk.sys [2021-06-05 82240]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2021-06-05 58704]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2021-06-05 68432]
S0 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2021-06-05 172360]
S0 Ramdisk;Windows RAM Disk Driver; C:\WINDOWS\system32\DRIVERS\ramdisk.sys [2021-06-05 69960]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2021-06-05 209224]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2021-06-05 53248]
S3 Acx01000;@%SystemRoot%\system32\drivers\Acx01000.sys,-1000; C:\WINDOWS\system32\drivers\Acx01000.sys [2021-06-05 700416]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2021-06-05 45056]
S3 BthA2dp;@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver; C:\WINDOWS\System32\drivers\BthA2dp.sys [2021-06-05 507904]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2021-06-05 81920]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2021-06-05 81920]
S3 ExecutionContext;@%SystemRoot%\System32\Drivers\ExecutionContext.sys,-101; C:\WINDOWS\System32\Drivers\ExecutionContext.sys [2021-06-05 61440]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_dc3260bbd08046c4\genericusbfn.sys [2021-06-05 57344]
S3 GeneStor;@oem62.inf,%GeneStor.SvcDesc%;Genesys Logic Storage Driver; C:\WINDOWS\System32\drivers\GeneStor.sys [2020-05-19 134272]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2021-06-05 86352]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2021-06-05 131072]
S3 HidSpiCx;HidSpi KMDF Class Extension; C:\WINDOWS\system32\drivers\HidSpiCx.sys [2021-06-05 118784]
S3 hvservice;@hvservice.inf,%hvservice.SvcDesc%;Microsoft Hypervisor Service Driver; C:\WINDOWS\System32\drivers\hvservice.sys [2021-06-05 131400]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2021-06-05 57344]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2021-06-05 1853752]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2021-06-05 36352]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2021-06-05 91136]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2021-06-05 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2021-06-05 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2021-06-05 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2021-06-05 96256]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2021-06-05 171520]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2021-06-05 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2021-06-05 177152]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2021-06-05 177664]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2021-06-05 558928]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2021-06-05 69632]
S3 intelpmax;@intelpmax.inf,%SvcDesc%;Intel(R) Dynamic Device Peak Power Manager Driver; C:\WINDOWS\System32\drivers\intelpmax.sys [2021-06-05 61440]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2021-06-05 94520]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2021-06-05 561480]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2021-06-05 90440]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2021-06-05 425984]
S3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2021-06-05 94208]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2021-06-05 1131344]
S3 MpKsl9c375d4d;MpKsl9c375d4d; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{65251DED-1816-4266-96A3-CD8007BBC8B2}\MpKslDrv.sys []
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2021-06-05 146256]
S3 NDKPerf;NDKPerf Driver; C:\WINDOWS\system32\drivers\NDKPerf.sys [2021-06-05 78152]
S3 NDKPing;NDKPing Driver; C:\WINDOWS\system32\drivers\NDKPing.sys [2021-06-05 102712]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2021-06-05 348160]
S3 P9Rdr;@%SystemRoot%\System32\drivers\p9rdr.sys,-100; C:\WINDOWS\System32\drivers\p9rdr.sys [2021-06-05 135496]
S3 PktMon;Packet Monitor Driver; C:\WINDOWS\system32\drivers\PktMon.sys [2021-06-05 164152]
S3 PNPMEM;@memory.inf,%PNPMEM.SvcDesc%;Microsoft Memory Module Driver; C:\WINDOWS\System32\drivers\pnpmem.sys [2021-06-05 49152]
S3 portcfg;portcfg; C:\WINDOWS\System32\drivers\portcfg.sys [2021-06-05 57344]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2021-06-05 1016120]
S3 rhproxy;@rhproxy.inf,%rhproxy.SVCDESC%;Resource Hub proxy driver; C:\WINDOWS\System32\drivers\rhproxy.sys [2021-06-05 143360]
S3 SDFRd;@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector; C:\WINDOWS\System32\drivers\SDFRd.sys [2021-06-05 65856]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2021-06-05 69960]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository\u0370421.inf_amd64_8f365dc2ded16925\B370101\atiesrxx.exe [2021-08-07 602952]
R2 AMD Log Utility;AMD Log Utility; C:\WINDOWS\System32\amdlogsr.exe [2020-06-11 486320]
R2 AtherosSvc;AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [2021-03-13 384432]
R2 cbdhsvc_7da8a;Používateľská služba schránky_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R2 CDPUserSvc_7da8a;Connected Devices Platform User Service_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R2 ClickToRunSvc;Služba Microsoft Office Klikni a spusť; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2022-01-25 12119432]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
R2 DispBrokerDesktopSvc;@%SystemRoot%\system32\dispbroker.desktop.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R2 DolbyDAXAPI;@oem21.inf,%ServiceDisplayName%;Dolby DAX API Service; C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe [2020-07-06 1928648]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
R2 FMAPOService;Fortemedia APO Control Service; C:\WINDOWS\System32\FMService64.exe [2020-07-13 390400]
R2 GamingServices;Gaming Services; C:\Program Files\WindowsApps\Microsoft.GamingServices_3.62.4001.0_x64__8wekyb3d8bbwe\GamingServices.exe [2022-02-11 75240]
R2 GamingServicesNet;Gaming Services; C:\Program Files\WindowsApps\Microsoft.GamingServices_3.62.4001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe [2022-02-11 75240]
R2 HPPrintScanDoctorService;HP Print Scan Doctor Service; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [2021-05-15 288360]
R2 ImControllerService;@oem4.inf,%ImcSvcDisplayName%;System Interface Foundation Service; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2022-01-28 84240]
R2 LenovoVantageService;LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\LenovoVantageService.exe [2021-12-14 31016]
R2 OneSyncSvc_7da8a;Sync Host_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R2 QcomWlanSrv;Qualcomm Atheros WLAN Driver Service; C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe [2020-12-20 200384]
R2 RtkAudioUniversalService;Realtek Audio Universal Service; C:\WINDOWS\System32\RtkAudUService64.exe [2020-08-21 1140456]
R3 BluetoothUserService_7da8a;Služba podpory používateľov rozhrania Bluetooth_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
R3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 NPSMSvc_7da8a;NPSMSvc_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 PimIndexMaintenanceSvc_7da8a;Kontaktné údaje_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
R3 SecurityHealthService;@%systemroot%\system32\SecurityHealthAgent.dll,-1002; C:\WINDOWS\system32\SecurityHealthService.exe [2021-06-05 140864]
S2 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S2 edgeupdate;Microsoft Edge Update Service (edgeupdate); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-10-28 223120]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2021-02-06 154440]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 AarSvc;@%SystemRoot%\system32\AarSvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 AarSvc_7da8a;Agent Activation Runtime_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 autotimesvc;@%SystemRoot%\System32\autotimesvc.dll,-6; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 BcastDVRUserService_7da8a;GameDVR and Broadcast User Service_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 CaptureService_7da8a;CaptureService_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 ConsentUxUserSvc_7da8a;ConsentUX User Service_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 CredentialEnrollmentManagerUserSvc;@%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2021-06-05 454888]
S3 CredentialEnrollmentManagerUserSvc_7da8a;CredentialEnrollmentManagerUserSvc_7da8a; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2021-06-05 454888]
S3 DeviceAssociationBrokerSvc;@%SystemRoot%\system32\deviceaccess.dll,-107; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 DeviceAssociationBrokerSvc_7da8a;DeviceAssociationBroker_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 DevicePickerUserSvc_7da8a;DevicePicker_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 DevicesFlowUserSvc_7da8a;DevicesFlow_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2021-06-05 110592]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 edgeupdatem;Microsoft Edge Update Service (edgeupdatem); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-10-28 223120]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 EpicOnlineServices;Epic Online Services; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [2021-10-21 16029472]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 FrameServerMonitor;@%systemroot%\system32\FrameServerMonitor.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 GoogleChromeElevationService;Google Chrome Elevation Service (GoogleChromeElevationService); C:\Program Files\Google\Chrome\Application\98.0.4758.82\elevation_service.exe [2022-01-29 1505112]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2021-02-06 154440]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 mcafeeintegrationservice;@oem61.inf,%ServiceDisplayName%;mcafeeintegrationservice; C:\WINDOWS\System32\DriverStore\FileRepository\mcafeeintegrationextension.inf_amd64_22df759ce010d03d\mcafeeintegrationservice.exe [2019-09-16 2584344]
S3 McpManagementService;@%SystemRoot%\system32\McpManagementService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 MessagingService_7da8a;MessagingService_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 MicrosoftEdgeElevationService;Microsoft Edge Elevation Service (MicrosoftEdgeElevationService); C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.50\elevation_service.exe [2022-02-10 1542032]
S3 MixedRealityOpenXRSvc;@%SystemRoot%\system32\MixedRealityRuntime.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 NPSMSvc;@%SystemRoot%\system32\npsm.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 ose64;Office 64 Source Engine; c:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2002-02-02 263712]
S3 P9RdrService;@%systemroot%\system32\p9rdrservice.dll,-102; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 P9RdrService_7da8a;P9RdrService_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 PenService;@%SystemRoot%\system32\PenService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 PenService_7da8a;PenService_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2021-06-05 237568]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 PrintWorkflowUserSvc;@%SystemRoot%\system32\PrintWorkflowService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 PrintWorkflowUserSvc_7da8a;PrintWorkflow_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 PushToInstall;@%SystemRoot%\system32\pushtoinstall.dll,-200; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 SEMgrSvc;@%SystemRoot%\System32\SEMgrSvc.dll,-1001; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2021-06-05 1187840]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by 42191 at 2022-02-12 09:24:20
Microsoft Windows 11 Home
System drive C: has 4 GB (7%) free of 58 GB
Total RAM: 3467 MB (23% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:24:26, on 12. 2. 2022
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.22000.0001)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.x86.exe
C:\Program Files (x86)\Disig\Web Signer\WebSignerTray.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\WINDOWS\Lenovo\iMController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files\trend micro\42191.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.50\BHO\ie_to_edge_bho.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\42191\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [com.squirrel.Teams.Teams] C:\Users\42191\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" --process-start-args "--system-initiated"
O4 - HKCU\..\Run: [EpicGamesLauncher] "C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent
O4 - HKCU\..\Run: [Disig Web Signer] C:\Program Files (x86)\Disig\Web Signer\WebSignerTray.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office\root\Office16\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlansp_c.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - AMD - C:\WINDOWS\System32\DriverStore\FileRepository\u0370421.inf_amd64_8f365dc2ded16925\B370101\atiesrxx.exe
O23 - Service: AMD Log Utility - Unknown owner - C:\WINDOWS\System32\amdlogsr.exe (file missing)
O23 - Service: AtherosSvc - Unknown owner - C:\WINDOWS\System32\drivers\AdminService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_7da8a - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @oem21.inf,%ServiceDisplayName%;Dolby DAX API Service (DolbyDAXAPI) - Dolby Laboratories - C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Epic Online Services (EpicOnlineServices) - Epic Games, Inc. - C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Fortemedia APO Control Service (FMAPOService) - Unknown owner - C:\WINDOWS\System32\FMService64.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) (GoogleChromeElevationService) - Google LLC - C:\Program Files\Google\Chrome\Application\98.0.4758.82\elevation_service.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Print Scan Doctor Service (HPPrintScanDoctorService) - HP Inc. - C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
O23 - Service: @oem4.inf,%ImcSvcDisplayName%;System Interface Foundation Service (ImControllerService) - Lenovo Group Ltd. - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LenovoVantageService - Lenovo Group Ltd. - C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\LenovoVantageService.exe
O23 - Service: @oem61.inf,%ServiceDisplayName%;mcafeeintegrationservice (mcafeeintegrationservice) - McAfee - C:\WINDOWS\System32\DriverStore\FileRepository\mcafeeintegrationextension.inf_amd64_22df759ce010d03d\mcafeeintegrationservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: Qualcomm Atheros WLAN Driver Service (QcomWlanSrv) - Unknown owner - C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) - Unknown owner - C:\WINDOWS\System32\RtkAudUService64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTrap) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SAMSUNG Mobile USB Connectivity Launcher (ss_conn_launcher_service) - Unknown owner - C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12192 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
"fontdrvhost.exe"
"fontdrvhost.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-923f4467-4f7c-49d8-84c5-2582d5199b80 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-0d0d3ac0-059e-4d0d-978c-563c6dfdab25 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-95af1c3d-555b-4d49-aebb-18e964229a24 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-916d2232-8bea-4477-8165-f6c436f052c4 -LifetimeId:936cedd4-0ec0-4454-9fd3-31414fbe6e6f -DeviceGroupId: -HostArg:0
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netprofm -p
C:\WINDOWS\system32\svchost.exe -k osprivacy -p
C:\WINDOWS\system32\svchost.exe -k NetworkService -p
C:\WINDOWS\System32\DriverStore\FileRepository\u0370421.inf_amd64_8f365dc2ded16925\B370101\atiesrxx.exe
C:\WINDOWS\System32\amdlogsr.exe
dashost.exe {74863d67-4ea3-4f15-aa8667c4cf0dabc3}
atieclxx
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k appmodel -p
C:\WINDOWS\system32\AUDIODG.EXE 0x000000000000049C
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p
C:\WINDOWS\System32\drivers\AdminService.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService -p
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe" /service
C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe
C:\WINDOWS\System32\FMService64.exe
"C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe"
C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\LenovoVantageService.exe"
C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe
"C:\WINDOWS\System32\RtkAudUService64.exe"
C:\WINDOWS\System32\svchost.exe -k netsvcs
AggregatorHost.exe
"C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /c
"C:\WINDOWS\System32\DriverStore\FileRepository\DAX3_S~1.INF\\DAX3API.exe" -capturestream
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
sihost.exe
C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"ctfmon.exe"
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" VantageCoreAddin C:\ProgramData\Lenovo\Vantage\Addins\\VantageCoreAddin\1.0.0.28\VantageCoreAddin.dll 0e307c63268946489d6cf11418a5f6cd 5b580553-851f-4449-a0f8-5594846bd697
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" DeviceSettingsSystemAddin C:\ProgramData\Lenovo\Vantage\Addins\\DeviceSettingsSystemAddin\1.0.1.58\DeviceSettingsSystemAddin.dll 18c0f41122394a64b3eede85ec0ee2b2 5b580553-851f-4449-a0f8-5594846bd697
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" LenovoServiceBridgeAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoServiceBridgeAddin\1.0.0.54\LenovoServiceBridgeAddin.dll 2ac159aa3967480984eb9e3ca803380a 5b580553-851f-4449-a0f8-5594846bd697
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.Amd64.exe" LenovoBoostAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoBoostAddin\1.0.0.32\LenovoBoostAddin.dll 4acc021f2b8442c59640372a64595e13 5b580553-851f-4449-a0f8-5594846bd697
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.Amd64.exe" LenovoBoostSystemAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoBoostSystemAddin\1.0.0.32\LenovoBoostSystemAddin.dll d1a63d1cdef54598b6ede4205ccd1deb 5b580553-851f-4449-a0f8-5594846bd697
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe" -ServerName:CortanaUI.AppXstmwaab17q5s3y22tp6apqz7a45vwv65.mca
"C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.21121.243.0_x64__8wekyb3d8bbwe\YourPhone.exe" -ServerName:App.AppX9yct9q388jvt4h7y0gn06smzkxcsnt8m.mca
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe" -ServerName:InputApp.AppXjd5de1g66v206tj52m9d0dtpppx4cgpn.mca
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.x86.exe" DeviceSettingsHeartbeatAddin C:\ProgramData\Lenovo\Vantage\Addins\\DeviceSettingsHeartbeatAddin\1.0.0.25\DeviceSettingsHeartbeatAddin.dll eba99358b7cb40c9b7d80a1b02f5c5e8 5b580553-851f-4449-a0f8-5594846bd697
"C:\Windows\System32\SecurityHealthSystray.exe"
"C:\Windows\System32\RtkAudUService64.exe" -background
"C:\Users\42191\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent
"C:\Program Files (x86)\Disig\Web Signer\WebSignerTray.exe"
-name 5831dd19-9b02-4312-8387-fc14fcaf0550 -runas -pluginName IdeaNotebookPlugin -pluginVersion 1.2.78.16
"C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.exe" LenovoSecurityAddin C:\ProgramData\Lenovo\Vantage\Addins\\LenovoSecurityAddin\1.0.0.31\LenovoSecurityAddin.dll 9f0130fa635a465bb5a13c6aea3268ee 5b580553-851f-4449-a0f8-5594846bd697
-name 80df6e31-e100-4397-923f-cc53638e1c7d -runas -pluginName LenovoVisionProtectionPlugin -pluginVersion 1.2.98.14
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --system-initiated
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe"
"C:/Program Files (x86)/Epic Games/Launcher/Engine/Binaries/Win64/EpicWebHelper.exe" --type=gpu-process --field-trial-handle=1996,7108341891957599892,15977138843819679373,131072 --enable-features=CastMediaRouteProvider --disable-features=OutOfBlinkCors --no-sandbox --locales-dir-path="C:/Program Files (x86)/Epic Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources/locales" --log-file=C:/Users/42191/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --log-severity=warning --product-version="EpicGamesLauncher/13.1.8-18918412+++Portal+Release-Live UnrealEngine/4.23.0-18918412+++Portal+Release-Live Chrome/84.0.4147.38" --resources-dir-path="C:/Program Files (x86)/Epic Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources" --lang=en --gpu-preferences=MAAAAAAAAADgACAwAAAAAAAAAAAAAAAAAABgAAAAAAAQAAAAAAAAAAAAAAAAAAAAKAAAAAQAAAAgAAAAAAAAACgAAAAAAAAAMAAAAAAAAAA4AAAAAAAAABAAAAAAAAAAAAAAAAUAAAAQAAAAAAAAAAAAAAAGAAAAEAAAAAAAAAABAAAABQAAABAAAAAAAAAAAQAAAAYAAAA= --log-file=C:/Users/42191/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --mojo-platform-channel-handle=2012 /prefetch:2
"C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.10028.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe" atlogon
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --type=crashpad-handler "--user-data-dir=C:\Users\42191\AppData\Roaming\Microsoft\Skype for Store" /prefetch:7 --no-rate-limit --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\42191\AppData\Roaming\Microsoft\Skype for Store\Crashpad" --url=appcenter://generic?aid=a8902fe7-ef45-455c-8513-5e56d48e36fd&iid=40a372c7-2d03-4eac-7d13-70a5f1f0316e&uid=40a372c7-2d03-4eac-7d13-70a5f1f0316e --annotation=_companyName=Skype --annotation=_productName=skype-preview --annotation=_version=8.79.0.95 --annotation=prod=Electron --annotation=ver=13.6.0 --initial-client-data=0x694,0x698,0x69c,0x690,0x6a0,0x75a7a90,0x75a7aa0,0x75a7aac
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=gpu-process --field-trial-handle=1528,11652031473842646909,2830499240817006615,131072 --enable-features=ContextBridgeMutability,WebComponentsV0Enabled,WinUseBrowserSpellChecker,WinUseHybridSpellChecker --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess --gpu-preferences=MAAAAAAAAADgAAAwAAAAAAAAAAAAAAAAAABgAAAAAAAQAAAAAAAAAAAAAAAAAAAAKAAAAAQAAAAgAAAAAAAAACgAAAAAAAAAMAAAAAAAAAA4AAAAAAAAABAAAAAAAAAAAAAAAAUAAAAQAAAAAAAAAAAAAAAGAAAAEAAAAAAAAAABAAAABQAAABAAAAAAAAAAAQAAAAYAAAA= --mojo-platform-channel-handle=1584 /prefetch:2
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1528,11652031473842646909,2830499240817006615,131072 --enable-features=ContextBridgeMutability,WebComponentsV0Enabled,WinUseBrowserSpellChecker,WinUseHybridSpellChecker --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess --lang=sk --service-sandbox-type=network --enable-wer --ms-teams-less-cors=522133263 --mojo-platform-channel-handle=2260 /prefetch:8
"C:\Program Files\WindowsApps\Microsoft.GamingServices_3.62.4001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe"
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --field-trial-handle=1528,11652031473842646909,2830499240817006615,131072 --enable-features=ContextBridgeMutability,WebComponentsV0Enabled,WinUseBrowserSpellChecker,WinUseHybridSpellChecker --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess --lang=sk --enable-wer --ms-teams-less-cors=522133263 --app-user-model-id=com.squirrel.Teams.Teams --app-path="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar" --enable-sandbox --native-window-open --preload="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar\lib\renderer\notifications\preload_notifications.js" --background-color=#fff --enable-spellcheck --enable-websql --disable-electron-site-instance-overrides --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=7 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2976 /prefetch:1 --msteams-process-type=notificationsManager
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --field-trial-handle=1528,11652031473842646909,2830499240817006615,131072 --enable-features=ContextBridgeMutability,WebComponentsV0Enabled,WinUseBrowserSpellChecker,WinUseHybridSpellChecker --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess --lang=sk --enable-wer --ms-teams-less-cors=522133263 --app-user-model-id=com.squirrel.Teams.Teams --app-path="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar" --webview-tag --enable-sandbox --native-window-open --preload="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar\lib\renderer\preload.js" --world-safe-execute-javascript --background-color=#fff --enable-spellcheck --enable-websql --disable-electron-site-instance-overrides --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=3 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3216 /prefetch:1 --msteams-process-type=mainWindow
C:\WINDOWS\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --field-trial-handle=1528,11652031473842646909,2830499240817006615,131072 --enable-features=ContextBridgeMutability,WebComponentsV0Enabled,WinUseBrowserSpellChecker,WinUseHybridSpellChecker --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess --lang=sk --service-sandbox-type=audio --enable-wer --ms-teams-less-cors=522133263 --mojo-platform-channel-handle=3172 /prefetch:8
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --type=gpu-process --field-trial-handle=2248,10855228625506695052,6172956994334682983,131072 --enable-features=WinUseBrowserSpellChecker,WinUseHybridSpellChecker,WinrtGeolocationImplementation --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand --user-data-dir="C:\Users\42191\AppData\Roaming\Microsoft\Skype for Store" --gpu-preferences=SAAAAAAAAADgAAAwAAAAAAAAAAAAAAAAAABgAAAAAAAoAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAB4AAAAAAAAAHgAAAAAAAAAKAAAAAQAAAAgAAAAAAAAACgAAAAAAAAAMAAAAAAAAAA4AAAAAAAAABAAAAAAAAAAAAAAAAUAAAAQAAAAAAAAAAAAAAAGAAAAEAAAAAAAAAABAAAABQAAABAAAAAAAAAAAQAAAAYAAAAIAAAAAAAAAAgAAAAAAAAA --use-gl=swiftshader-webgl --mojo-platform-channel-handle=2264 /prefetch:2
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=2248,10855228625506695052,6172956994334682983,131072 --enable-features=WinUseBrowserSpellChecker,WinUseHybridSpellChecker,WinrtGeolocationImplementation --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand --lang=sk --service-sandbox-type=none --user-data-dir="C:\Users\42191\AppData\Roaming\Microsoft\Skype for Store" --mojo-platform-channel-handle=2504 /prefetch:8
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --ms-disable-indexeddb-transaction-timeout --field-trial-handle=2248,10855228625506695052,6172956994334682983,131072 --enable-features=WinUseBrowserSpellChecker,WinUseHybridSpellChecker,WinrtGeolocationImplementation --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand --disable-gpu-compositing --lang=sk --user-data-dir="C:\Users\42191\AppData\Roaming\Microsoft\Skype for Store" --app-user-model-id=Microsoft.Skype.SkypeDesktop --app-path="C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\resources\app.asar" --no-sandbox --no-zygote --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=4 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2876 /prefetch:1 --skype-process-type=Main --skype-window-id=__MAIN_ROOT_VIEW_ID__
"C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.10028.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe"
C:\WINDOWS\uus\AMD64\MoUsoCoreWorker.exe
"C:/Program Files (x86)/Epic Games/Launcher/Engine/Binaries/Win64/EpicWebHelper.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1996,7108341891957599892,15977138843819679373,131072 --enable-features=CastMediaRouteProvider --disable-features=OutOfBlinkCors --lang=en-US --service-sandbox-type=network --no-sandbox --locales-dir-path="C:/Program Files (x86)/Epic Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources/locales" --log-file=C:/Users/42191/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --log-severity=warning --product-version="EpicGamesLauncher/13.1.8-18918412+++Portal+Release-Live UnrealEngine/4.23.0-18918412+++Portal+Release-Live Chrome/84.0.4147.38" --resources-dir-path="C:/Program Files (x86)/Epic Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources" --lang=en --log-file=C:/Users/42191/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --mojo-platform-channel-handle=3396 /prefetch:8
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --field-trial-handle=1528,11652031473842646909,2830499240817006615,131072 --enable-features=ContextBridgeMutability,WebComponentsV0Enabled,WinUseBrowserSpellChecker,WinUseHybridSpellChecker --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess --lang=sk --enable-wer --ms-teams-less-cors=522133263 --app-user-model-id=com.squirrel.Teams.Teams --app-path="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar" --enable-sandbox --native-window-open --preload="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar\lib\renderer\experienceRenderer\preload_webview.js" --background-color=#fff --guest-instance-id=5 --enable-blink-features --disable-blink-features --hidden-page --node-integration-in-subframes --enable-spellcheck --enable-websql --disable-electron-site-instance-overrides --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=9 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2160 /prefetch:1 --msteams-process-type=experience-renderer
"C:\Users\42191\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --field-trial-handle=1528,11652031473842646909,2830499240817006615,131072 --enable-features=ContextBridgeMutability,WebComponentsV0Enabled,WinUseBrowserSpellChecker,WinUseHybridSpellChecker --disable-features=CookiesWithoutSameSiteMustBeSecure,SameSiteByDefaultCookies,SpareRendererForSitePerProcess --lang=sk --enable-wer --ms-teams-less-cors=522133263 --app-user-model-id=com.squirrel.Teams.Teams --app-path="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar" --no-sandbox --no-zygote --preload="C:\Users\42191\AppData\Local\Microsoft\Teams\current\resources\app.asar\lib\pluginhost\preload.js" --context-isolation --background-color=#fff --enable-spellcheck --enable-websql --disable-electron-site-instance-overrides --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=10 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4316 /prefetch:1 --msteams-process-type=pluginHost
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe"
C:\WINDOWS\explorer.exe /factory,{5BD95610-9434-43C2-886C-57852CC8A120} -Embedding
"C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe"
-name 51a71d30-ec86-4ad4-ab3d-033528e5d9a1 -runas -pluginName DolbyAudioPlugin -pluginVersion 1.2.240.5
-name da82cff7-2562-402f-9c87-1a87f68d190d -runas -pluginName GenericMessagingPlugin -pluginVersion 3.2.0.57
"C:\WINDOWS\Lenovo\iMController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe" -name 5f9b8515-d819-4a8d-980d-148b59bcb8ff -runas SYSTEM -pluginName GenericTelemetryPlugin -pluginVersion 2.2.30.0
"C:\WINDOWS\Lenovo\iMController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe" -name eee60d8c-0be3-4bd8-b34e-09ab6c83c690 -runas SYSTEM -pluginName LenovoAppScenarioPluginSystem -pluginVersion 1.2.190.5
"C:\Program Files\WindowsApps\Microsoft.GamingServices_3.62.4001.0_x64__8wekyb3d8bbwe\GamingServices.exe"
C:\WINDOWS\System32\svchost.exe -k netsvcs -p
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy\mcafee-security.exe" -ServerName:App.AppX70z311bjdb1xmz7zp8wfg7gxg7f9v17f.mca
%systemroot%\system32\MoNotificationUx.exe /NotificationType Reboot_Engaged /FormFactor Passive /Timeout 0
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy\Win32\mcafee-security-ft.exe" /InvokerPRAID: App
"C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_321.14700.0.9_x64__cw5n1h2txyewy\Dashboard\Widgets.exe" -ServerName:Microsoft.Windows.DashboardServer
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto -critical
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Program Files\Google\Chrome\Application\chrome.exe"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\42191\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\42191\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\42191\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=97.0.4692.99 --initial-client-data=0xf0,0xf4,0xf8,0xcc,0xfc,0x7ffc0870a850,0x7ffc0870a860,0x7ffc0870a870
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAIAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1652 /prefetch:2
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --lang=sk --service-sandbox-type=none --mojo-platform-channel-handle=2000 /prefetch:8
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --lang=sk --service-sandbox-type=utility --mojo-platform-channel-handle=2088 /prefetch:8
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --display-capture-permissions-policy-allowed --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --lang=sk --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=8 --launch-time-ticks=451762750 --mojo-platform-channel-handle=4432 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --display-capture-permissions-policy-allowed --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --lang=sk --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=29 --launch-time-ticks=573002016 --mojo-platform-channel-handle=2792 /prefetch:1
C:\Windows\System32\oobe\UserOOBEBroker.exe -Embedding
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --lang=sk --service-sandbox-type=audio --mojo-platform-channel-handle=6308 /prefetch:8
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k LocalService -p
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p
-name ac57fea0-26f5-4dae-b934-0b8f6ae896dc -runas -pluginName GenericCorePlugin -pluginVersion 1.3.4.4
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --display-capture-permissions-policy-allowed --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --lang=sk --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=106 --launch-time-ticks=1027597260 --mojo-platform-channel-handle=9900 /prefetch:1
"C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.43\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=Widgets.exe --webview-exe-version=321.14700.0.0 --user-data-dir="C:\Users\42191\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --noerrdialogs --embedded-browser-webview-dpi-awareness=2 --disk-cache-size=52428800 --lang=sk-SK --mojo-named-platform-channel-pipe=5344.4088.739264755117398824
"C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.43\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\42191\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\42191\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=98.0.4758.80 "--annotation=exe=C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.43\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=98.0.1108.43 --initial-client-data=0xfc,0x100,0x104,0xd8,0x10c,0x7ffc08914cc0,0x7ffc08914cd0,0x7ffc08914ce0
"C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.43\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="C:\Users\42191\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --webview-exe-name=Widgets.exe --webview-exe-version=321.14700.0.0 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=2 --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1960 --field-trial-handle=1992,9166045675150128327,3105450883253473483,131072 /prefetch:2
"C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.43\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=sk --service-sandbox-type=none --noerrdialogs --user-data-dir="C:\Users\42191\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --webview-exe-name=Widgets.exe --webview-exe-version=321.14700.0.0 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=2 --mojo-platform-channel-handle=2060 --field-trial-handle=1992,9166045675150128327,3105450883253473483,131072 /prefetch:3
"C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.43\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=sk --service-sandbox-type=utility --noerrdialogs --user-data-dir="C:\Users\42191\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --webview-exe-name=Widgets.exe --webview-exe-version=321.14700.0.0 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=2 --mojo-platform-channel-handle=2404 --field-trial-handle=1992,9166045675150128327,3105450883253473483,131072 /prefetch:8
"C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.43\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="C:\Users\42191\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --webview-exe-name=Widgets.exe --webview-exe-version=321.14700.0.0 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=2 --disable-client-side-phishing-detection --display-capture-permissions-policy-allowed --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc" --lang=sk --device-scale-factor=1.5 --num-raster-threads=1 --renderer-client-id=5 --launch-time-ticks=1066133359 --mojo-platform-channel-handle=3268 --field-trial-handle=1992,9166045675150128327,3105450883253473483,131072 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=data_decoder.mojom.DataDecoderService --field-trial-handle=1696,7547935674476676959,17471816099498032606,131072 --lang=sk --service-sandbox-type=service --mojo-platform-channel-handle=7180 /prefetch:8
"C:\Users\42191\OneDrive\Počítač\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.50\BHO\ie_to_edge_bho_64.dll [2022-02-10 530832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2021-06-27 551520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2021-06-27 212576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.50\BHO\ie_to_edge_bho.dll [2022-02-10 432016]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2021-11-02 154944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2021-06-05 266240]
"RtkAudUService"=C:\WINDOWS\System32\RtkAudUService64.exe [2020-08-21 1140456]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\42191\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2022-01-26 2593128]
"com.squirrel.Teams.Teams"=C:\Users\42191\AppData\Local\Microsoft\Teams\Update.exe [2021-12-16 2459304]
"EpicGamesLauncher"=C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [2022-02-10 33648608]
"Disig Web Signer"=C:\Program Files (x86)\Disig\Web Signer\WebSignerTray.exe [2021-02-04 254080]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-06-08 334896]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\nvdimm.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{53966cb1-4d46-4166-bf23-c522403cd495}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsQuic]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nvdimm.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{53966cb1-4d46-4166-bf23-c522403cd495}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"mixer1"=wdmaud.drv
"wave1"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave2"=wdmaud.drv
"aux1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave3"=wdmaud.drv
"aux2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave4"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.inf - open -
.inf - install -
.ini - open -
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.txt - open -
======List of files/folders created in the last 1 month======
2022-02-12 09:24:20 ----D---- C:\rsit
2022-02-12 09:24:20 ----D---- C:\Program Files\trend micro
2022-02-12 09:22:11 ----D---- C:\AdwCleaner
2022-02-12 09:04:05 ----D---- C:\WINDOWS\Panther
2022-02-11 22:33:27 ----HD---- C:\$WinREAgent
2022-02-10 19:00:49 ----A---- C:\WINDOWS\system32\RsDMFT64.dll
2022-02-10 19:00:49 ----A---- C:\WINDOWS\system32\RsDMFT_Assets.dll
2022-02-09 09:18:19 ----D---- C:\Users\42191\AppData\Roaming\vlc
2022-02-07 00:17:40 ----D---- C:\ProgramData\Microsoft OneDrive
2022-02-07 00:16:54 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2022-02-07 00:14:39 ----SHD---- C:\ProgramData\Templates
2022-02-07 00:14:39 ----SHD---- C:\ProgramData\Start Menu
2022-02-07 00:14:39 ----SHD---- C:\ProgramData\Documents
2022-02-07 00:14:39 ----SHD---- C:\ProgramData\Desktop
2022-02-07 00:14:39 ----SHD---- C:\ProgramData\Application Data
2022-02-07 00:09:42 ----ASH---- C:\hiberfil.sys
2022-02-07 00:08:07 ----SD---- C:\Users\42191\AppData\Roaming\Microsoft
2022-02-07 00:07:24 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2022-02-07 00:06:45 ----D---- C:\WINDOWS\system32\SleepStudy
2022-02-07 00:06:44 ----ASH---- C:\swapfile.sys
2022-02-07 00:06:44 ----ASH---- C:\pagefile.sys
2022-02-07 00:06:44 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2022-02-07 00:06:43 ----D---- C:\WINDOWS\Prefetch
2022-02-07 00:06:17 ----D---- C:\Windows.old
2022-02-07 00:02:15 ----AS---- C:\WINDOWS\bootstat.dat
2022-02-07 00:01:31 ----D---- C:\WINDOWS\system32\Microsoft
2022-02-07 00:01:31 ----D---- C:\WINDOWS\ServiceProfiles
2022-02-06 23:52:15 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2022-02-06 23:52:15 ----A---- C:\WINDOWS\system32\poqexec.exe
======List of files/folders modified in the last 1 month======
2022-02-12 09:24:20 ----RD---- C:\Program Files
2022-02-12 09:21:48 ----D---- C:\WINDOWS\Temp
2022-02-12 09:20:28 ----D---- C:\WINDOWS\AppReadiness
2022-02-12 09:20:17 ----HD---- C:\Program Files\WindowsApps
2022-02-12 09:20:13 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2022-02-12 09:12:15 ----D---- C:\WINDOWS\System32
2022-02-12 09:12:15 ----D---- C:\WINDOWS\INF
2022-02-12 09:11:22 ----D---- C:\WINDOWS\system32\config
2022-02-12 09:11:16 ----D---- C:\Program Files (x86)\Google
2022-02-12 09:11:00 ----SHDC---- C:\WINDOWS\Installer
2022-02-12 09:09:23 ----D---- C:\WINDOWS\system32\sru
2022-02-12 09:09:20 ----D---- C:\WINDOWS\CbsTemp
2022-02-12 09:09:13 ----D---- C:\WINDOWS\WinSxS
2022-02-12 09:08:59 ----RD---- C:\Program Files (x86)
2022-02-12 09:08:16 ----D---- C:\WINDOWS\SystemTemp
2022-02-12 09:08:13 ----D---- C:\WINDOWS\system32\DriverStore
2022-02-12 09:05:47 ----D---- C:\WINDOWS\Logs
2022-02-12 09:04:05 ----D---- C:\Windows
2022-02-12 09:04:00 ----D---- C:\WINDOWS\system32\LogFiles
2022-02-12 09:03:58 ----D---- C:\WINDOWS\ServiceState
2022-02-12 09:03:56 ----ASH---- C:\DumpStack.log.tmp
2022-02-12 08:59:34 ----D---- C:\Users\42191\AppData\Roaming\discord
2022-02-11 22:51:41 ----RD---- C:\WINDOWS\Microsoft.NET
2022-02-11 20:32:58 ----A---- C:\WINDOWS\system32\xgameruntime.dll
2022-02-11 20:32:57 ----A---- C:\WINDOWS\system32\gamingtcuihelpers.dll
2022-02-11 20:32:47 ----A---- C:\WINDOWS\system32\gamingservicesproxy.dll
2022-02-11 20:32:46 ----A---- C:\WINDOWS\system32\gameplatformservices.dll
2022-02-11 20:32:46 ----A---- C:\WINDOWS\system32\gamemodcontrol.exe
2022-02-11 20:32:46 ----A---- C:\WINDOWS\system32\gamelaunchhelper.dll
2022-02-11 20:32:46 ----A---- C:\WINDOWS\system32\gameconfighelper.dll
2022-02-11 20:30:25 ----D---- C:\WINDOWS\system32\MRT
2022-02-11 20:30:09 ----AC---- C:\WINDOWS\system32\MRT.exe
2022-02-11 17:14:44 ----D---- C:\WINDOWS\system32\drivers\UMDF
2022-02-11 17:14:38 ----D---- C:\WINDOWS\SysWOW64
2022-02-11 17:14:38 ----D---- C:\WINDOWS\system32\drivers
2022-02-11 13:44:03 ----D---- C:\WINDOWS\system32\WDI
2022-02-11 11:25:25 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2022-02-11 11:20:56 ----D---- C:\WINDOWS\system32\Tasks
2022-02-11 11:18:02 ----RD---- C:\Users
2022-02-10 19:00:51 ----D---- C:\WINDOWS\system32\catroot2
2022-02-10 17:51:09 ----D---- C:\WINDOWS\system32\drivers\wd
2022-02-09 07:07:15 ----D---- C:\WINDOWS\system32\Logs
2022-02-09 07:07:15 ----D---- C:\Program Files\Microsoft Update Health Tools
2022-02-07 00:32:41 ----D---- C:\ProgramData\Packages
2022-02-07 00:32:11 ----RD---- C:\WINDOWS\PrintDialog
2022-02-07 00:26:07 ----D---- C:\WINDOWS\servicing
2022-02-07 00:17:40 ----HD---- C:\ProgramData
2022-02-07 00:16:19 ----SD---- C:\ProgramData\Microsoft
2022-02-07 00:14:45 ----D---- C:\WINDOWS\system32\oobe
2022-02-07 00:14:29 ----D---- C:\WINDOWS\SoftwareDistribution
2022-02-07 00:14:26 ----D---- C:\WINDOWS\Tasks
2022-02-07 00:14:25 ----D---- C:\Program Files\Windows Defender
2022-02-07 00:09:14 ----D---- C:\Program Files\Common Files\microsoft shared
2022-02-07 00:09:11 ----RD---- C:\WINDOWS\assembly
2022-02-07 00:07:42 ----D---- C:\WINDOWS\system32\dolbyaposvc
2022-02-07 00:07:25 ----D---- C:\WINDOWS\appcompat
2022-02-07 00:07:21 ----D---- C:\WINDOWS\debug
2022-02-07 00:07:08 ----SHD---- C:\Recovery
2022-02-07 00:07:04 ----D---- C:\WINDOWS\system32\wbem
2022-02-07 00:06:27 ----D---- C:\WINDOWS\system32\WinBioDatabase
2022-02-07 00:06:26 ----RSD---- C:\WINDOWS\Fonts
2022-02-07 00:06:26 ----D---- C:\WINDOWS\system32\Tasks_Migrated
2022-02-07 00:06:25 ----D---- C:\WINDOWS\SYSWOW64\drivers
2022-02-07 00:06:25 ----D---- C:\WINDOWS\system32\spool
2022-02-07 00:06:25 ----D---- C:\WINDOWS\system32\Samsung
2022-02-07 00:06:25 ----D---- C:\WINDOWS\system32\drivers\etc
2022-02-07 00:06:24 ----D---- C:\WINDOWS\system32\Recovery
2022-02-07 00:06:24 ----D---- C:\WINDOWS\system32\MsDtc
2022-02-07 00:06:24 ----D---- C:\Program Files\Common Files
2022-02-07 00:06:24 ----D---- C:\Program Files (x86)\Microsoft.NET
2022-02-07 00:06:24 ----D---- C:\Program Files (x86)\Microsoft
2022-02-07 00:06:24 ----D---- C:\Program Files (x86)\Common Files
2022-02-07 00:06:15 ----D---- C:\WINDOWS\Setup
2022-02-07 00:06:09 ----D---- C:\ProgramData\USOPrivate
2022-02-07 00:03:04 ----D---- C:\WINDOWS\system32\AMD
2022-02-07 00:03:02 ----D---- C:\WINDOWS\Lenovo
2022-02-07 00:00:28 ----SD---- C:\WINDOWS\system32\en-US
2022-02-07 00:00:19 ----D---- C:\WINDOWS\OCR
2022-02-06 23:58:12 ----SD---- C:\WINDOWS\SYSWOW64\F12
2022-02-06 23:58:12 ----SD---- C:\WINDOWS\system32\F12
2022-02-06 23:58:12 ----D---- C:\WINDOWS\SYSWOW64\WCN
2022-02-06 23:58:12 ----D---- C:\WINDOWS\SYSWOW64\en-US
2022-02-06 23:58:12 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2022-02-06 23:58:12 ----D---- C:\WINDOWS\system32\WCN
2022-02-06 23:58:12 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2022-02-06 23:58:12 ----D---- C:\WINDOWS\system32\migwiz
2022-02-06 23:58:11 ----D---- C:\WINDOWS\system32\en
2022-02-06 23:58:11 ----D---- C:\WINDOWS\system32\drivers\en-US
2022-02-06 23:58:11 ----D---- C:\WINDOWS\en-US
2022-02-06 23:58:11 ----D---- C:\Program Files\Windows Photo Viewer
2022-02-06 23:58:11 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2022-02-06 23:58:11 ----D---- C:\Program Files (x86)\Windows Defender
2022-01-28 20:04:18 ----A---- C:\WINDOWS\system32\ImController.InfInstaller.exe
2022-01-28 20:04:16 ----A---- C:\WINDOWS\system32\WudfUpdate_02000.dll
2022-01-28 20:04:16 ----A---- C:\WINDOWS\system32\ImController.CoInstaller.dll
2022-01-28 20:03:26 ----A---- C:\WINDOWS\system32\iMDriverHelper.dll
2022-01-26 09:42:28 ----D---- C:\Program Files\Microsoft Office
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amdpsp;@oem45.inf,%amdpsp.SVCDESC%;AMD PSP Service; C:\WINDOWS\System32\drivers\amdpsp.sys [2020-03-24 135184]
R0 IntelPMT;@intelpmt.inf,%IntelPMT.SVCDESC%;Intel(R) Platform Monitoring Technology Service; C:\WINDOWS\System32\drivers\IntelPMT.sys [2021-06-05 74224]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2021-06-05 82256]
R0 PRM;@prm.inf,%PRM.SvcDesc%;Microsoft PRM Driver; C:\WINDOWS\System32\DriverStore\FileRepository\prm.inf_amd64_7fc9bb8ba2b73803\PRM.sys [2021-06-05 61752]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2021-06-05 77824]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2021-06-05 106808]
R1 CimFS;CimFS; C:\WINDOWS\system32\drivers\CimFS.sys [2021-06-05 155976]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2021-06-05 86016]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2021-06-05 40960]
R2 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2021-06-05 176464]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2021-06-05 540672]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2021-06-05 81920]
R3 ACPIVPC;@oem15.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2021-07-26 44024]
R3 amdacpbus;@oem50.inf,%amdacpbus.SVCDESC%;Audio Coprocessr Driver for DSP; C:\WINDOWS\System32\DriverStore\FileRepository\amdacpbus.inf_amd64_36c81572f42cc25a\amdacpbus.sys [2020-07-01 6380960]
R3 amdgpio2;@oem29.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver; C:\WINDOWS\System32\drivers\amdgpio2.sys [2020-03-16 46344]
R3 amdi2c;@oem55.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service; C:\WINDOWS\System32\drivers\amdi2c.sys [2020-07-14 65320]
R3 amdlog;@oem16.inf,%AMDLOG_svcdesc%;AMD LOG Utility Driver; C:\WINDOWS\System32\drivers\amdlog.sys [2020-06-11 88176]
R3 amdwddmg;amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0370421.inf_amd64_8f365dc2ded16925\B370101\amdkmdag.sys [2021-08-07 80463176]
R3 AtiHDAudioService;@oem51.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2020-06-09 107936]
R3 BtFilter;BtFilter; C:\WINDOWS\System32\drivers\btfilter.sys [2021-03-13 104728]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2021-06-05 139264]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2021-06-05 135168]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2021-06-05 155648]
R3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\drivers\BTHport.sys [2021-06-05 1916928]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\drivers\BTHUSB.sys [2021-06-05 118784]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2021-06-05 94536]
R3 gameflt;@oem70.inf,%ServiceName%;gameflt; C:\WINDOWS\System32\DriverStore\FileRepository\gameflt.inf_amd64_10c518155fa47d97\gameflt.sys [2022-02-11 134568]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2020-08-20 6114384]
R3 McAfeeIntegrationDriver;@oem20.inf,%McAfeeIntegrationDriver.SVCDESC%;McAfeeIntegrationDriver Service; C:\WINDOWS\System32\drivers\McAfeeIntegrationDriver.sys [2019-09-16 49928]
R3 MsQuic;@%SystemRoot%\system32\drivers\msquic.sys,-1; C:\WINDOWS\system32\drivers\msquic.sys [2021-06-05 377144]
R3 Qcamain10x64;@oem8.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN 11AC device driver; C:\WINDOWS\System32\drivers\Qcamain10x64.sys [2020-12-20 2455232]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2021-06-05 245760]
S0 AppleSSD;@AppleSSD.inf,%DevDesc1%;Apple Solid State Drive Device; C:\WINDOWS\System32\drivers\AppleSSD.sys [2021-06-05 112440]
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2021-06-05 74040]
S0 ebdrv0;@netevbd0a.inf,%vbd_srv_desc%;QLogic Legacy Ethernet Adapter VBD; C:\WINDOWS\System32\drivers\evbd0a.sys [2021-06-05 3423032]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2021-06-05 319800]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2021-06-05 884552]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2021-06-05 176952]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2021-06-05 124240]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2021-06-05 137552]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2021-06-05 80696]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2021-06-05 100176]
S0 mpi3drvi;mpi3drvi; C:\WINDOWS\System32\drivers\mpi3drvi.sys [2021-06-05 87352]
S0 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2021-06-05 201024]
S0 nvmedisk;@nvmedisk.inf,%nvmedisk.SvcDesc%;Microsoft NVMe disk driver; C:\WINDOWS\System32\drivers\nvmedisk.sys [2021-06-05 82240]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2021-06-05 58704]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2021-06-05 68432]
S0 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2021-06-05 172360]
S0 Ramdisk;Windows RAM Disk Driver; C:\WINDOWS\system32\DRIVERS\ramdisk.sys [2021-06-05 69960]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2021-06-05 209224]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2021-06-05 53248]
S3 Acx01000;@%SystemRoot%\system32\drivers\Acx01000.sys,-1000; C:\WINDOWS\system32\drivers\Acx01000.sys [2021-06-05 700416]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2021-06-05 45056]
S3 BthA2dp;@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver; C:\WINDOWS\System32\drivers\BthA2dp.sys [2021-06-05 507904]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2021-06-05 81920]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2021-06-05 81920]
S3 ExecutionContext;@%SystemRoot%\System32\Drivers\ExecutionContext.sys,-101; C:\WINDOWS\System32\Drivers\ExecutionContext.sys [2021-06-05 61440]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_dc3260bbd08046c4\genericusbfn.sys [2021-06-05 57344]
S3 GeneStor;@oem62.inf,%GeneStor.SvcDesc%;Genesys Logic Storage Driver; C:\WINDOWS\System32\drivers\GeneStor.sys [2020-05-19 134272]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2021-06-05 86352]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2021-06-05 131072]
S3 HidSpiCx;HidSpi KMDF Class Extension; C:\WINDOWS\system32\drivers\HidSpiCx.sys [2021-06-05 118784]
S3 hvservice;@hvservice.inf,%hvservice.SvcDesc%;Microsoft Hypervisor Service Driver; C:\WINDOWS\System32\drivers\hvservice.sys [2021-06-05 131400]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2021-06-05 57344]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2021-06-05 1853752]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2021-06-05 36352]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2021-06-05 91136]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2021-06-05 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2021-06-05 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2021-06-05 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2021-06-05 96256]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2021-06-05 171520]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2021-06-05 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2021-06-05 177152]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2021-06-05 177664]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2021-06-05 558928]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2021-06-05 69632]
S3 intelpmax;@intelpmax.inf,%SvcDesc%;Intel(R) Dynamic Device Peak Power Manager Driver; C:\WINDOWS\System32\drivers\intelpmax.sys [2021-06-05 61440]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2021-06-05 94520]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2021-06-05 561480]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2021-06-05 90440]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2021-06-05 425984]
S3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2021-06-05 94208]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2021-06-05 1131344]
S3 MpKsl9c375d4d;MpKsl9c375d4d; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{65251DED-1816-4266-96A3-CD8007BBC8B2}\MpKslDrv.sys []
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2021-06-05 146256]
S3 NDKPerf;NDKPerf Driver; C:\WINDOWS\system32\drivers\NDKPerf.sys [2021-06-05 78152]
S3 NDKPing;NDKPing Driver; C:\WINDOWS\system32\drivers\NDKPing.sys [2021-06-05 102712]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2021-06-05 348160]
S3 P9Rdr;@%SystemRoot%\System32\drivers\p9rdr.sys,-100; C:\WINDOWS\System32\drivers\p9rdr.sys [2021-06-05 135496]
S3 PktMon;Packet Monitor Driver; C:\WINDOWS\system32\drivers\PktMon.sys [2021-06-05 164152]
S3 PNPMEM;@memory.inf,%PNPMEM.SvcDesc%;Microsoft Memory Module Driver; C:\WINDOWS\System32\drivers\pnpmem.sys [2021-06-05 49152]
S3 portcfg;portcfg; C:\WINDOWS\System32\drivers\portcfg.sys [2021-06-05 57344]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2021-06-05 1016120]
S3 rhproxy;@rhproxy.inf,%rhproxy.SVCDESC%;Resource Hub proxy driver; C:\WINDOWS\System32\drivers\rhproxy.sys [2021-06-05 143360]
S3 SDFRd;@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector; C:\WINDOWS\System32\drivers\SDFRd.sys [2021-06-05 65856]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2021-06-05 69960]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository\u0370421.inf_amd64_8f365dc2ded16925\B370101\atiesrxx.exe [2021-08-07 602952]
R2 AMD Log Utility;AMD Log Utility; C:\WINDOWS\System32\amdlogsr.exe [2020-06-11 486320]
R2 AtherosSvc;AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [2021-03-13 384432]
R2 cbdhsvc_7da8a;Používateľská služba schránky_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R2 CDPUserSvc_7da8a;Connected Devices Platform User Service_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R2 ClickToRunSvc;Služba Microsoft Office Klikni a spusť; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2022-01-25 12119432]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
R2 DispBrokerDesktopSvc;@%SystemRoot%\system32\dispbroker.desktop.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R2 DolbyDAXAPI;@oem21.inf,%ServiceDisplayName%;Dolby DAX API Service; C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe [2020-07-06 1928648]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
R2 FMAPOService;Fortemedia APO Control Service; C:\WINDOWS\System32\FMService64.exe [2020-07-13 390400]
R2 GamingServices;Gaming Services; C:\Program Files\WindowsApps\Microsoft.GamingServices_3.62.4001.0_x64__8wekyb3d8bbwe\GamingServices.exe [2022-02-11 75240]
R2 GamingServicesNet;Gaming Services; C:\Program Files\WindowsApps\Microsoft.GamingServices_3.62.4001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe [2022-02-11 75240]
R2 HPPrintScanDoctorService;HP Print Scan Doctor Service; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [2021-05-15 288360]
R2 ImControllerService;@oem4.inf,%ImcSvcDisplayName%;System Interface Foundation Service; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2022-01-28 84240]
R2 LenovoVantageService;LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\LenovoVantageService.exe [2021-12-14 31016]
R2 OneSyncSvc_7da8a;Sync Host_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R2 QcomWlanSrv;Qualcomm Atheros WLAN Driver Service; C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe [2020-12-20 200384]
R2 RtkAudioUniversalService;Realtek Audio Universal Service; C:\WINDOWS\System32\RtkAudUService64.exe [2020-08-21 1140456]
R3 BluetoothUserService_7da8a;Služba podpory používateľov rozhrania Bluetooth_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
R3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 NPSMSvc_7da8a;NPSMSvc_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 PimIndexMaintenanceSvc_7da8a;Kontaktné údaje_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
R3 SecurityHealthService;@%systemroot%\system32\SecurityHealthAgent.dll,-1002; C:\WINDOWS\system32\SecurityHealthService.exe [2021-06-05 140864]
S2 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S2 edgeupdate;Microsoft Edge Update Service (edgeupdate); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-10-28 223120]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2021-02-06 154440]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 AarSvc;@%SystemRoot%\system32\AarSvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 AarSvc_7da8a;Agent Activation Runtime_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 autotimesvc;@%SystemRoot%\System32\autotimesvc.dll,-6; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 BcastDVRUserService_7da8a;GameDVR and Broadcast User Service_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 CaptureService_7da8a;CaptureService_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 ConsentUxUserSvc_7da8a;ConsentUX User Service_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 CredentialEnrollmentManagerUserSvc;@%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2021-06-05 454888]
S3 CredentialEnrollmentManagerUserSvc_7da8a;CredentialEnrollmentManagerUserSvc_7da8a; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2021-06-05 454888]
S3 DeviceAssociationBrokerSvc;@%SystemRoot%\system32\deviceaccess.dll,-107; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 DeviceAssociationBrokerSvc_7da8a;DeviceAssociationBroker_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 DevicePickerUserSvc_7da8a;DevicePicker_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 DevicesFlowUserSvc_7da8a;DevicesFlow_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2021-06-05 110592]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 edgeupdatem;Microsoft Edge Update Service (edgeupdatem); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-10-28 223120]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 EpicOnlineServices;Epic Online Services; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [2021-10-21 16029472]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 FrameServerMonitor;@%systemroot%\system32\FrameServerMonitor.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 GoogleChromeElevationService;Google Chrome Elevation Service (GoogleChromeElevationService); C:\Program Files\Google\Chrome\Application\98.0.4758.82\elevation_service.exe [2022-01-29 1505112]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2021-02-06 154440]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 mcafeeintegrationservice;@oem61.inf,%ServiceDisplayName%;mcafeeintegrationservice; C:\WINDOWS\System32\DriverStore\FileRepository\mcafeeintegrationextension.inf_amd64_22df759ce010d03d\mcafeeintegrationservice.exe [2019-09-16 2584344]
S3 McpManagementService;@%SystemRoot%\system32\McpManagementService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 MessagingService_7da8a;MessagingService_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 MicrosoftEdgeElevationService;Microsoft Edge Elevation Service (MicrosoftEdgeElevationService); C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.50\elevation_service.exe [2022-02-10 1542032]
S3 MixedRealityOpenXRSvc;@%SystemRoot%\system32\MixedRealityRuntime.dll,-101; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 NPSMSvc;@%SystemRoot%\system32\npsm.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 ose64;Office 64 Source Engine; c:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2002-02-02 263712]
S3 P9RdrService;@%systemroot%\system32\p9rdrservice.dll,-102; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 P9RdrService_7da8a;P9RdrService_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 PenService;@%SystemRoot%\system32\PenService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 PenService_7da8a;PenService_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2021-06-05 237568]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 PrintWorkflowUserSvc;@%SystemRoot%\system32\PrintWorkflowService.dll,-100; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 PrintWorkflowUserSvc_7da8a;PrintWorkflow_7da8a; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 PushToInstall;@%SystemRoot%\system32\pushtoinstall.dll,-200; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2021-06-05 78880]
S3 SEMgrSvc;@%SystemRoot%\System32\SEMgrSvc.dll,-1001; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2021-06-05 1187840]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2021-06-05 78880]
-----------------EOF-----------------