Zdravím, prosím o kontrolu logu, vypadá že se tam ukrývá někde nějaký nešvar.
Logfile of random's system information tool 1.10 (written by random/random)
Run by bulcan at 2015-11-14 09:15:40
Microsoft Windows 8.1
System drive C: has 270 GB (71%) free of 382 GB
Total RAM: 8095 MB (72% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:15:45, on 14. 11. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\Windows\TEMP\DPTF\esif_assist.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Users\bulcan\AppData\Local\gmsd_re_004010007\upgmsd_re_004010007.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\gmsd_re_004010007\gmsd_re_004010007.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\ProgramData\Battle.net\Agent\Agent.4568\Agent.exe
C:\Program Files (x86)\Battle.net\Battle.net.6337\Battle.net.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\bulcan.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [WebStorage] C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [gmsd_re_004010007] "C:\Program Files (x86)\gmsd_re_004010007\gmsd_re_004010007.exe"
O4 - HKLM\..\RunOnce: [upgmsd_re_004010007.exe] C:\Users\bulcan\AppData\Local\gmsd_re_004010007\upgmsd_re_004010007.exe -runonce
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: WebBrowserMixVideoPlayer.lnk = C:\Program Files (x86)\MixVideoPlayer\BrowserWeb.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
O23 - Service: Asus WebStorage Windows Service - ASUS Cloud Corporation - C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @oem24.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\Windows\system32\BtwRSupportService.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESIF Upper Framework Service (esifsvc) - Intel Corporation - C:\Windows\SysWOW64\esif_uf.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: ihpmServer - Unknown owner - C:\Program Files (x86)\RayDld\ihpmServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9590 bytes
======Listing Processes======
wininit.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\igfxCUIService.exe
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-561e4109-67ec-4f27-be7b-4efa2bb8f2b7 -SystemEventPortName:HostProcess-f214efe9-ff3a-466e-b1f5-3ea4f47c60cf -IoCancelEventPortName:HostProcess-54251a89-c67f-48c1-9965-21be9597b685 -NonStateChangingEventPortName:HostProcess-99aecdd3-8f6e-492b-921a-2b49d5ab77bb -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:d8ffe5e1-6fbc-4428-a86a-257e98666ddd -DeviceGroupId:
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe"
C:\Windows\system32\WLANExt.exe 796364800912
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\SysWOW64\esif_uf.exe
dashost.exe {638488c7-f761-4e5c-81e77d825601c5c8}
"C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe"
"C:\Program Files (x86)\RayDld\ihpmServer.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
taskeng.exe {1A05890D-5C52-45B3-9E9A-D6DF19AD56F4}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
taskhost.exe $(Arg0)
C:\Windows\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Windows\TEMP\DPTF\esif_assist.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
taskhostex.exe
C:\Windows\Explorer.EXE
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Users\bulcan\AppData\Local\gmsd_re_004010007\upgmsd_re_004010007.exe" -runhelper
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\MixVideoPlayer\BrowserWeb.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\gmsd_re_004010007\gmsd_re_004010007.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Windows\SysWOW64\RunDll32.exe" "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\Steam\Steam.exe" "-silent"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cachedir="C:\Users\bulcan\AppData\Local\Steam\htmlcache" -steampid=6508 -buildid=1447125378 -steamid="0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
/S
"C:\ProgramData\Battle.net\Agent\Agent.4568\Agent.exe" --locale=enUS --session=6773340138658165110
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\Battle.net\Battle.net.6337\Battle.net.exe" "--gamepath=C:\Program Files (x86)\StarCraft II" --game=s2_enus
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://kds.adspirit.de/adframe.php?pid= ... mestamp%5D
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5696.0.999096567\1125756054" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,20,45 --gpu-vendor-id=0x8086 --gpu-device-id=0x1616 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.14.4062 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/*AutofillClassifier/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/ChromotingQUIC/Disabled/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/*PasswordLinkInSettings/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Disabled/SafeBrowsingSocialEngineeringStrings/Enabled/*SdchPersistence/Enabled/SessionRestoreBackgroundLoading/Restore/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="5696.10.1900579280\1076483793" --font-cache-shared-handle=5864 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/*AutofillClassifier/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/ChromotingQUIC/Disabled/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/*PasswordLinkInSettings/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Disabled/SafeBrowsingSocialEngineeringStrings/Enabled/*SdchPersistence/Enabled/SessionRestoreBackgroundLoading/Restore/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="5696.16.339356639\1216978994" --font-cache-shared-handle=2204 /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe75_ Global\UsGthrCtrlFltPipeMssGthrPipe75 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 572 576 584 65536 580
"C:\Users\bulcan\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-11-09 885152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-11-09 664184]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-12-13 2531472]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-11-10 3011152]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-10-19 8551848]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"WebStorage"=C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe [2014-08-20 63296]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-11-09 7004376]
"gmsd_re_004010007"=C:\Program Files (x86)\gmsd_re_004010007\gmsd_re_004010007.exe [2015-06-19 3983528]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"upgmsd_re_004010007.exe"=C:\Users\bulcan\AppData\Local\gmsd_re_004010007\upgmsd_re_004010007.exe [2015-06-19 3307688]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
WebBrowserMixVideoPlayer.lnk - C:\Program Files (x86)\MixVideoPlayer\BrowserWeb.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux2"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux3"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux4"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-11-14 09:15:41 ----D---- C:\Program Files\trend micro
2015-11-14 09:15:40 ----D---- C:\rsit
2015-11-12 18:24:58 ----D---- C:\Users\bulcan\AppData\Roaming\Guild Wars 2
2015-11-11 22:25:32 ----D---- C:\Windows\system32\appraiser
2015-11-11 17:48:09 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-11-11 17:48:09 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-11-11 16:18:24 ----A---- C:\Windows\system32\aspnet_counters.dll
2015-11-11 16:18:23 ----A---- C:\Windows\SYSWOW64\aspnet_counters.dll
2015-11-11 16:01:55 ----D---- C:\Windows\system32\MRT
2015-11-11 16:01:50 ----A---- C:\Windows\system32\MRT.exe
2015-11-11 13:55:58 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-11-11 13:55:58 ----A---- C:\Windows\SYSWOW64\certcli.dll
2015-11-11 13:55:58 ----A---- C:\Windows\system32\schannel.dll
2015-11-11 13:55:58 ----A---- C:\Windows\system32\certcli.dll
2015-11-11 13:55:57 ----A---- C:\Windows\SYSWOW64\ncryptsslp.dll
2015-11-11 13:55:57 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-11-11 13:55:57 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll
2015-11-11 13:55:57 ----A---- C:\Windows\system32\ncryptsslp.dll
2015-11-11 13:55:57 ----A---- C:\Windows\system32\ncrypt.dll
2015-11-11 13:55:57 ----A---- C:\Windows\system32\lsasrv.dll
2015-11-11 13:55:57 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-11-11 13:55:57 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-11-11 13:55:57 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-11-11 13:55:57 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-11-11 13:55:57 ----A---- C:\Windows\system32\drivers\cng.sys
2015-11-11 13:55:57 ----A---- C:\Windows\system32\bcryptprimitives.dll
2015-11-11 13:55:52 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-11-11 13:55:52 ----A---- C:\Windows\system32\gdi32.dll
2015-11-11 13:55:52 ----A---- C:\Windows\system32\drivers\tpm.sys
2015-11-11 13:55:47 ----A---- C:\Windows\SYSWOW64\untfs.dll
2015-11-11 13:55:47 ----A---- C:\Windows\system32\untfs.dll
2015-11-11 13:55:47 ----A---- C:\Windows\system32\drivers\tunnel.sys
2015-11-11 13:55:43 ----A---- C:\Windows\system32\drivers\tdx.sys
2015-11-11 13:55:43 ----A---- C:\Windows\system32\drivers\afd.sys
2015-11-11 13:55:43 ----A---- C:\Windows\system32\AuthHost.exe
2015-11-11 13:55:42 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2015-11-11 13:55:42 ----A---- C:\Windows\system32\win32spl.dll
2015-11-11 13:55:42 ----A---- C:\Windows\system32\puiobj.dll
2015-11-11 13:55:42 ----A---- C:\Windows\system32\localspl.dll
2015-11-11 13:55:42 ----A---- C:\Windows\system32\compstui.dll
2015-11-11 13:55:38 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-11-11 13:55:38 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-11-11 13:55:38 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-11-11 13:55:38 ----A---- C:\Windows\system32\ntdll.dll
2015-11-11 13:55:38 ----A---- C:\Windows\system32\microsoft-windows-system-events.dll
2015-11-11 13:55:38 ----A---- C:\Windows\system32\kerberos.dll
2015-11-11 13:55:37 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-11-11 13:55:37 ----A---- C:\Windows\SYSWOW64\user.exe
2015-11-11 13:55:37 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-11-11 13:55:37 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-11-11 13:55:37 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-11-11 13:55:37 ----A---- C:\Windows\system32\wow64cpu.dll
2015-11-11 13:55:37 ----A---- C:\Windows\system32\wow64.dll
2015-11-11 13:55:37 ----A---- C:\Windows\system32\winresume.exe
2015-11-11 13:55:37 ----A---- C:\Windows\system32\winload.exe
2015-11-11 13:55:37 ----A---- C:\Windows\system32\ntvdm64.dll
2015-11-11 13:55:32 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-11-11 13:55:32 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-11-11 13:55:32 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-11-11 13:55:32 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-11-11 13:55:32 ----A---- C:\Windows\system32\wuwebv.dll
2015-11-11 13:55:32 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2015-11-11 13:55:32 ----A---- C:\Windows\system32\wudriver.dll
2015-11-11 13:55:32 ----A---- C:\Windows\system32\wucltux.dll
2015-11-11 13:55:32 ----A---- C:\Windows\system32\wuaueng.dll
2015-11-11 13:55:32 ----A---- C:\Windows\system32\wuauclt.exe
2015-11-11 13:55:32 ----A---- C:\Windows\system32\wuapp.exe
2015-11-11 13:55:32 ----A---- C:\Windows\system32\wuapi.dll
2015-11-11 13:55:29 ----A---- C:\Windows\system32\actxprxy.dll
2015-11-11 13:55:28 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-11-11 13:55:28 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-11-11 13:55:28 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-11-11 13:55:28 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-11-11 13:55:28 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-11-11 13:55:28 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-11-11 13:55:28 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-11-11 13:55:28 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2015-11-11 13:55:28 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-11-11 13:55:28 ----A---- C:\Windows\system32\ie4uinit.exe
2015-11-11 13:55:27 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-11-11 13:55:27 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-11-11 13:55:27 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-11-11 13:55:27 ----A---- C:\Windows\system32\urlmon.dll
2015-11-11 13:55:27 ----A---- C:\Windows\system32\occache.dll
2015-11-11 13:55:27 ----A---- C:\Windows\system32\msfeeds.dll
2015-11-11 13:55:27 ----A---- C:\Windows\system32\iedkcs32.dll
2015-11-11 13:55:27 ----A---- C:\Windows\system32\dxtrans.dll
2015-11-11 13:55:26 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-11-11 13:55:25 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-11-11 13:55:25 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-11-11 13:55:25 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-11-11 13:55:25 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-11-11 13:55:25 ----A---- C:\Windows\system32\jsproxy.dll
2015-11-11 13:55:25 ----A---- C:\Windows\system32\iertutil.dll
2015-11-11 13:55:24 ----A---- C:\Windows\system32\mshtmled.dll
2015-11-11 13:55:24 ----A---- C:\Windows\system32\jscript9diag.dll
2015-11-11 13:55:24 ----A---- C:\Windows\system32\ieframe.dll
2015-11-11 13:55:24 ----A---- C:\Windows\system32\dxtmsft.dll
2015-11-11 13:55:23 ----A---- C:\Windows\system32\wininet.dll
2015-11-11 13:55:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-11-11 13:55:23 ----A---- C:\Windows\system32\jscript9.dll
2015-11-11 13:55:23 ----A---- C:\Windows\system32\ieapfltr.dll
2015-11-11 13:55:22 ----A---- C:\Windows\system32\mshtml.dll
2015-11-11 13:55:21 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-11-11 13:55:21 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-11-11 13:55:21 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-11-11 13:55:21 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-11-11 13:55:21 ----A---- C:\Windows\system32\vbscript.dll
2015-11-11 13:55:21 ----A---- C:\Windows\system32\inetcomm.dll
2015-11-11 13:55:21 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-11-11 13:55:20 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-11-11 13:55:20 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-11-11 13:55:20 ----A---- C:\Windows\SYSWOW64\hlink.dll
2015-11-11 13:55:20 ----A---- C:\Windows\system32\webcheck.dll
2015-11-11 13:55:20 ----A---- C:\Windows\system32\jscript.dll
2015-11-11 13:55:20 ----A---- C:\Windows\system32\ieui.dll
2015-11-11 13:55:20 ----A---- C:\Windows\system32\hlink.dll
2015-11-11 13:55:19 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-11-11 13:55:19 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2015-11-11 13:55:19 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2015-11-11 13:55:19 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-11-11 13:55:19 ----A---- C:\Windows\SYSWOW64\inseng.dll
2015-11-11 13:55:19 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2015-11-11 13:55:19 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2015-11-11 13:55:19 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-11-11 13:55:19 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2015-11-11 13:55:19 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-11-11 13:55:19 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-11-11 13:55:19 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-11-11 13:55:19 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2015-11-11 13:55:19 ----A---- C:\Windows\system32\pngfilt.dll
2015-11-11 13:55:19 ----A---- C:\Windows\system32\msrating.dll
2015-11-11 13:55:19 ----A---- C:\Windows\system32\msfeedsbs.dll
2015-11-11 13:55:19 ----A---- C:\Windows\system32\licmgr10.dll
2015-11-11 13:55:19 ----A---- C:\Windows\system32\inseng.dll
2015-11-11 13:55:19 ----A---- C:\Windows\system32\imgutil.dll
2015-11-11 13:55:19 ----A---- C:\Windows\system32\iexpress.exe
2015-11-11 13:55:19 ----A---- C:\Windows\system32\ieUnatt.exe
2015-11-11 13:55:19 ----A---- C:\Windows\system32\iesysprep.dll
2015-11-11 13:55:19 ----A---- C:\Windows\system32\iepeers.dll
2015-11-11 13:55:18 ----A---- C:\Windows\SYSWOW64\wextract.exe
2015-11-11 13:55:18 ----A---- C:\Windows\SYSWOW64\url.dll
2015-11-11 13:55:18 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2015-11-11 13:55:18 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2015-11-11 13:55:18 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-11-11 13:55:18 ----A---- C:\Windows\system32\wextract.exe
2015-11-11 13:55:18 ----A---- C:\Windows\system32\url.dll
2015-11-11 13:55:18 ----A---- C:\Windows\system32\msfeedssync.exe
2015-11-11 13:55:18 ----A---- C:\Windows\system32\iesetup.dll
2015-11-11 13:55:18 ----A---- C:\Windows\system32\iernonce.dll
2015-11-11 13:55:18 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-11-11 13:55:18 ----A---- C:\Windows\system32\IEAdvpack.dll
2015-11-11 13:55:17 ----A---- C:\Windows\SYSWOW64\mshta.exe
2015-11-11 13:55:17 ----A---- C:\Windows\system32\mshta.exe
2015-11-11 13:55:17 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-11-11 13:54:19 ----A---- C:\Windows\SYSWOW64\sdbinst.exe
2015-11-11 13:54:19 ----A---- C:\Windows\system32\sdbinst.exe
2015-11-11 13:54:19 ----A---- C:\Windows\system32\apphelp.dll
2015-11-11 13:54:16 ----A---- C:\Windows\system32\win32k.sys
2015-11-11 13:53:58 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2015-11-11 13:53:58 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2015-11-11 13:53:58 ----A---- C:\Windows\system32\nshwfp.dll
2015-11-11 13:53:58 ----A---- C:\Windows\system32\IKEEXT.DLL
2015-11-11 13:53:58 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2015-11-11 13:53:58 ----A---- C:\Windows\system32\drivers\wfplwfs.sys
2015-11-11 13:53:58 ----A---- C:\Windows\system32\BFE.DLL
2015-11-11 13:49:42 ----D---- C:\Users\bulcan\AppData\Roaming\Identities
2015-11-10 21:12:58 ----D---- C:\Users\bulcan\AppData\Roaming\NVIDIA
2015-11-10 20:51:32 ----A---- C:\Windows\system32\WiFiDisplay.dll
2015-11-10 20:51:31 ----A---- C:\Windows\SYSWOW64\calc.exe
2015-11-10 20:51:31 ----A---- C:\Windows\system32\calc.exe
2015-11-10 20:51:30 ----A---- C:\Windows\system32\crypt32.dll
2015-11-10 20:51:29 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-11-10 20:41:55 ----A---- C:\Windows\SYSWOW64\DeviceSetupStatusProvider.dll
2015-11-10 20:41:55 ----A---- C:\Windows\system32\drivers\USBHUB3.SYS
2015-11-10 20:41:55 ----A---- C:\Windows\system32\DeviceSetupStatusProvider.dll
2015-11-10 20:39:52 ----A---- C:\Windows\SYSWOW64\SHCore.dll
2015-11-10 20:39:52 ----A---- C:\Windows\system32\SHCore.dll
2015-11-10 20:39:50 ----A---- C:\Windows\system32\rpcrt4.dll
2015-11-10 20:39:49 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-11-10 20:39:49 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-11-10 20:39:49 ----A---- C:\Windows\system32\msv1_0.dll
2015-11-10 20:39:47 ----A---- C:\Windows\system32\drivers\bthhfenum.sys
2015-11-10 20:39:44 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2015-11-10 20:39:44 ----A---- C:\Windows\SYSWOW64\wer.dll
2015-11-10 20:39:44 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2015-11-10 20:39:44 ----A---- C:\Windows\system32\WerFaultSecure.exe
2015-11-10 20:39:44 ----A---- C:\Windows\system32\wer.dll
2015-11-10 20:39:44 ----A---- C:\Windows\system32\Faultrep.dll
2015-11-10 20:39:44 ----A---- C:\Windows\system32\EncDump.dll
2015-11-10 20:39:44 ----A---- C:\Windows\system32\ci.dll
2015-11-10 20:39:44 ----A---- C:\Windows\system32\audiosrv.dll
2015-11-10 20:39:44 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2015-11-10 20:39:43 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2015-11-10 20:39:43 ----A---- C:\Windows\system32\werdiagcontroller.dll
2015-11-10 20:39:43 ----A---- C:\Windows\system32\oleaut32.dll
2015-11-10 20:39:40 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2015-11-10 20:39:40 ----A---- C:\Windows\system32\poqexec.exe
2015-11-10 20:39:32 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2015-11-10 20:39:32 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-11-10 20:39:32 ----A---- C:\Windows\system32\msiexec.exe
2015-11-10 20:39:32 ----A---- C:\Windows\system32\msi.dll
2015-11-10 20:39:31 ----A---- C:\Windows\SYSWOW64\GeofenceMonitorService.dll
2015-11-10 20:39:31 ----A---- C:\Windows\system32\GeofenceMonitorService.dll
2015-11-10 20:39:30 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2015-11-10 20:39:30 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2015-11-10 20:39:30 ----A---- C:\Windows\system32\dwmcore.dll
2015-11-10 20:39:30 ----A---- C:\Windows\system32\d2d1.dll
2015-11-10 20:39:29 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-11-10 20:39:29 ----A---- C:\Windows\system32\msctf.dll
2015-11-10 20:39:28 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2015-11-10 20:39:28 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2015-11-10 20:39:28 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-11-10 20:39:28 ----A---- C:\Windows\system32\photowiz.dll
2015-11-10 20:39:28 ----A---- C:\Windows\system32\msxml6.dll
2015-11-10 20:39:28 ----A---- C:\Windows\system32\msxml3.dll
2015-11-10 20:39:27 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2015-11-10 20:39:27 ----A---- C:\Windows\system32\scesrv.dll
2015-11-10 20:39:23 ----A---- C:\Windows\system32\ExplorerFrame.dll
2015-11-10 20:39:22 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2015-11-10 20:39:15 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-11-10 20:39:15 ----A---- C:\Windows\system32\shell32.dll
2015-11-10 20:39:06 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-11-10 20:39:06 ----A---- C:\Windows\system32\UtcResources.dll
2015-11-10 20:39:06 ----A---- C:\Windows\system32\tdh.dll
2015-11-10 20:39:06 ----A---- C:\Windows\system32\diagtrack.dll
2015-11-10 20:39:02 ----A---- C:\Windows\SYSWOW64\Windows.UI.Input.Inking.dll
2015-11-10 20:39:02 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2015-11-10 20:39:02 ----A---- C:\Windows\system32\Windows.UI.Input.Inking.dll
2015-11-10 20:39:02 ----A---- C:\Windows\system32\rastapi.dll
2015-11-10 20:39:02 ----A---- C:\Windows\system32\drivers\ahcache.sys
2015-11-10 20:38:59 ----A---- C:\Windows\system32\SystemSettingsDatabase.dll
2015-11-10 20:38:58 ----A---- C:\Windows\system32\sysmain.dll
2015-11-10 20:38:58 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2015-11-10 20:38:57 ----A---- C:\Windows\SYSWOW64\SRH.dll
2015-11-10 20:38:57 ----A---- C:\Windows\system32\SRH.dll
2015-11-10 20:38:57 ----A---- C:\Windows\system32\consent.exe
2015-11-10 20:38:56 ----A---- C:\Windows\system32\KernelBase.dll
2015-11-10 20:38:55 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-11-10 20:38:55 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-11-10 20:38:55 ----A---- C:\Windows\system32\advapi32.dll
2015-11-10 20:38:54 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2015-11-10 20:38:54 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2015-11-10 20:38:54 ----A---- C:\Windows\system32\dbghelp.dll
2015-11-10 20:38:54 ----A---- C:\Windows\system32\dbgeng.dll
2015-11-10 20:38:52 ----A---- C:\Windows\system32\drivers\rfcomm.sys
2015-11-10 20:38:52 ----A---- C:\Windows\system32\drivers\hidbth.sys
2015-11-10 20:38:52 ----A---- C:\Windows\system32\drivers\bthport.sys
2015-11-10 20:38:47 ----A---- C:\Windows\system32\winbici.dll
2015-11-10 20:38:47 ----A---- C:\Windows\system32\SyncEngine.dll
2015-11-10 20:38:46 ----A---- C:\Windows\SYSWOW64\SkyDriveShell.dll
2015-11-10 20:38:46 ----A---- C:\Windows\system32\SkyDriveTelemetry.dll
2015-11-10 20:38:46 ----A---- C:\Windows\system32\SkyDriveShell.dll
2015-11-10 20:38:46 ----A---- C:\Windows\system32\SkyDrive.exe
2015-11-10 20:38:46 ----A---- C:\Windows\system32\BulkOperationHost.exe
2015-11-10 20:38:42 ----A---- C:\Windows\system32\drivers\sermouse.sys
2015-11-10 20:38:42 ----A---- C:\Windows\system32\drivers\mouhid.sys
2015-11-10 20:38:42 ----A---- C:\Windows\system32\drivers\mouclass.sys
2015-11-10 20:38:42 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2015-11-10 20:38:42 ----A---- C:\Windows\system32\drivers\kbdclass.sys
2015-11-10 20:38:42 ----A---- C:\Windows\system32\drivers\i8042prt.sys
2015-11-10 20:38:41 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2015-11-10 20:38:41 ----A---- C:\Windows\system32\InkEd.dll
2015-11-10 20:38:38 ----A---- C:\Windows\SYSWOW64\rgb9rast.dll
2015-11-10 20:38:38 ----A---- C:\Windows\SYSWOW64\PhotoMetadataHandler.dll
2015-11-10 20:38:38 ----A---- C:\Windows\system32\TSWbPrxy.exe
2015-11-10 20:38:38 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2015-11-10 20:38:01 ----A---- C:\Windows\system32\drivers\udfs.sys
2015-11-10 20:37:57 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-11-10 20:37:57 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-11-10 20:37:57 ----A---- C:\Windows\system32\tracerpt.exe
2015-11-10 20:37:57 ----A---- C:\Windows\system32\sechost.dll
2015-11-10 20:37:56 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2015-11-10 20:37:56 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2015-11-10 20:37:56 ----A---- C:\Windows\system32\WebClnt.dll
2015-11-10 20:37:56 ----A---- C:\Windows\system32\SettingsHandlers.dll
2015-11-10 20:37:56 ----A---- C:\Windows\system32\davclnt.dll
2015-11-10 20:37:54 ----A---- C:\Windows\system32\wevtsvc.dll
2015-11-10 20:37:54 ----A---- C:\Windows\system32\fveapi.dll
2015-11-10 20:37:54 ----A---- C:\Windows\system32\bdesvc.dll
2015-11-10 20:37:53 ----A---- C:\Windows\system32\lsm.dll
2015-11-10 20:37:53 ----A---- C:\Windows\system32\drivers\usb8023.sys
2015-11-10 20:37:50 ----A---- C:\Windows\system32\services.exe
2015-11-10 20:37:49 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2015-11-10 20:37:49 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-11-10 20:37:49 ----A---- C:\Windows\system32\WSShared.dll
2015-11-10 20:37:49 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-11-10 20:37:47 ----A---- C:\Windows\SYSWOW64\Windows.UI.Immersive.dll
2015-11-10 20:37:47 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2015-11-10 20:37:47 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-11-10 20:37:47 ----A---- C:\Windows\system32\Windows.UI.Immersive.dll
2015-11-10 20:37:47 ----A---- C:\Windows\system32\SettingSync.dll
2015-11-10 20:37:47 ----A---- C:\Windows\system32\authui.dll
2015-11-10 20:37:46 ----A---- C:\Windows\SYSWOW64\shacct.dll
2015-11-10 20:37:46 ----A---- C:\Windows\system32\shacct.dll
2015-11-10 20:37:45 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2015-11-10 20:37:45 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2015-11-10 20:37:43 ----A---- C:\Windows\system32\drivers\WdNisDrv.sys
2015-11-10 20:37:43 ----A---- C:\Windows\system32\drivers\WdFilter.sys
2015-11-10 20:37:43 ----A---- C:\Windows\system32\drivers\WdBoot.sys
2015-11-10 20:37:42 ----A---- C:\Windows\SYSWOW64\winshfhc.dll
2015-11-10 20:37:42 ----A---- C:\Windows\system32\winshfhc.dll
2015-11-10 20:37:40 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2015-11-10 20:37:40 ----A---- C:\Windows\system32\pku2u.dll
2015-11-10 20:37:40 ----A---- C:\Windows\system32\mfc42u.dll
2015-11-10 20:37:40 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-11-10 20:37:40 ----A---- C:\Windows\system32\D3DCompiler_47.dll
2015-11-10 20:37:39 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2015-11-10 20:37:39 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2015-11-10 20:37:39 ----A---- C:\Windows\SYSWOW64\D3DCompiler_47.dll
2015-11-10 20:37:39 ----A---- C:\Windows\SYSWOW64\atlthunk.dll
2015-11-10 20:37:39 ----A---- C:\Windows\system32\mfc42.dll
2015-11-10 20:37:39 ----A---- C:\Windows\system32\atmfd.dll
2015-11-10 20:37:38 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-11-10 20:37:38 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-11-10 20:37:38 ----A---- C:\Windows\system32\sppobjs.dll
2015-11-10 20:37:38 ----A---- C:\Windows\system32\atmlib.dll
2015-11-10 20:32:03 ----A---- C:\Windows\SYSWOW64\StorageContextHandler.dll
2015-11-10 20:32:03 ----A---- C:\Windows\system32\StorageContextHandler.dll
2015-11-10 20:28:39 ----A---- C:\Windows\system32\dpapisrv.dll
2015-11-10 20:28:35 ----A---- C:\Windows\system32\csrsrv.dll
2015-11-10 20:28:35 ----A---- C:\Windows\system32\basesrv.dll
2015-11-10 20:28:34 ----A---- C:\Windows\SYSWOW64\authz.dll
2015-11-10 20:28:34 ----A---- C:\Windows\system32\authz.dll
2015-11-10 20:28:30 ----A---- C:\Windows\SYSWOW64\UIAutomationCore.dll
2015-11-10 20:28:30 ----A---- C:\Windows\system32\UIAutomationCore.dll
2015-11-10 20:28:29 ----A---- C:\Windows\system32\ubpm.dll
2015-11-10 20:28:29 ----A---- C:\Windows\system32\profsvc.dll
2015-11-10 20:28:24 ----A---- C:\Windows\system32\invagent.dll
2015-11-10 20:28:24 ----A---- C:\Windows\system32\generaltel.dll
2015-11-10 20:28:24 ----A---- C:\Windows\system32\devinv.dll
2015-11-10 20:28:24 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-11-10 20:28:24 ----A---- C:\Windows\system32\appraiser.dll
2015-11-10 20:28:24 ----A---- C:\Windows\system32\aepic.dll
2015-11-10 20:28:24 ----A---- C:\Windows\system32\aeinv.dll
2015-11-10 20:28:24 ----A---- C:\Windows\system32\acmigration.dll
2015-11-10 20:28:18 ----A---- C:\Windows\system32\rdpcorets.dll
2015-11-10 20:28:17 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-11-10 20:28:17 ----A---- C:\Windows\system32\rdpudd.dll
2015-11-10 20:28:17 ----A---- C:\Windows\system32\comctl32.dll
2015-11-10 20:28:13 ----A---- C:\Windows\system32\drivers\USBXHCI.SYS
2015-11-10 20:28:12 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2015-11-10 20:28:12 ----A---- C:\Windows\system32\netcfgx.dll
2015-11-10 20:28:12 ----A---- C:\Windows\system32\drivers\ndis.sys
2015-11-10 20:28:08 ----A---- C:\Windows\SYSWOW64\notepad.exe
2015-11-10 20:28:08 ----A---- C:\Windows\system32\notepad.exe
2015-11-10 20:28:08 ----A---- C:\Windows\system32\fhcpl.dll
2015-11-10 20:28:08 ----A---- C:\Windows\notepad.exe
2015-11-10 20:28:07 ----A---- C:\Windows\system32\drivers\http.sys
2015-11-10 20:28:06 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2015-11-10 20:28:06 ----A---- C:\Windows\system32\tquery.dll
2015-11-10 20:28:06 ----A---- C:\Windows\system32\mssrch.dll
2015-11-10 20:28:05 ----A---- C:\Windows\SYSWOW64\tquery.dll
2015-11-10 20:28:05 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2015-11-10 20:28:05 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2015-11-10 20:28:05 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2015-11-10 20:28:05 ----A---- C:\Windows\SYSWOW64\mssph.dll
2015-11-10 20:28:05 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2015-11-10 20:28:05 ----A---- C:\Windows\system32\SearchIndexer.exe
2015-11-10 20:28:05 ----A---- C:\Windows\system32\mssvp.dll
2015-11-10 20:28:05 ----A---- C:\Windows\system32\mssphtb.dll
2015-11-10 20:28:05 ----A---- C:\Windows\system32\mssph.dll
2015-11-10 20:28:05 ----A---- C:\Windows\system32\drivers\tcpip.sys
2015-11-10 20:28:04 ----A---- C:\Windows\system32\drivers\sdbus.sys
2015-11-10 20:28:04 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2015-11-10 20:28:04 ----A---- C:\Windows\system32\drivers\dumpsd.sys
2015-11-10 20:28:03 ----A---- C:\Windows\system32\nlasvc.dll
2015-11-10 20:28:03 ----A---- C:\Windows\system32\ncsi.dll
2015-11-10 20:28:02 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-11-10 20:28:01 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-11-10 20:28:01 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2015-11-10 20:28:01 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2015-11-10 20:28:01 ----A---- C:\Windows\SYSWOW64\eappcfg.dll
2015-11-10 20:28:01 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2015-11-10 20:28:01 ----A---- C:\Windows\system32\LockScreenContentServer.exe
2015-11-10 20:28:01 ----A---- C:\Windows\system32\eapphost.dll
2015-11-10 20:28:01 ----A---- C:\Windows\system32\eappgnui.dll
2015-11-10 20:28:01 ----A---- C:\Windows\system32\eappcfg.dll
2015-11-10 20:28:01 ----A---- C:\Windows\system32\eapp3hst.dll
2015-11-10 20:27:02 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2015-11-10 20:27:02 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2015-11-10 20:27:02 ----A---- C:\Windows\system32\taskeng.exe
2015-11-10 20:27:02 ----A---- C:\Windows\system32\schtasks.exe
2015-11-10 20:27:02 ----A---- C:\Windows\system32\schedsvc.dll
2015-11-10 20:26:58 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2015-11-10 20:26:58 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2015-11-10 20:26:58 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-11-10 20:26:58 ----A---- C:\Windows\system32\rdvidcrl.dll
2015-11-10 20:26:58 ----A---- C:\Windows\system32\mstscax.dll
2015-11-10 20:26:58 ----A---- C:\Windows\system32\appidsvc.dll
2015-11-10 20:26:58 ----A---- C:\Windows\system32\appidapi.dll
2015-11-10 20:26:57 ----A---- C:\Windows\system32\MrmCoreR.dll
2015-11-10 20:26:56 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2015-11-10 20:26:56 ----A---- C:\Windows\SYSWOW64\MrmCoreR.dll
2015-11-10 20:26:56 ----A---- C:\Windows\system32\WMPhoto.dll
2015-11-10 20:26:55 ----A---- C:\Windows\SYSWOW64\ole32.dll
2015-11-10 20:26:55 ----A---- C:\Windows\system32\ole32.dll
2015-11-10 20:26:50 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-11-10 20:26:50 ----A---- C:\Windows\system32\FntCache.dll
2015-11-10 20:26:50 ----A---- C:\Windows\system32\DWrite.dll
2015-11-10 20:26:47 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2015-11-10 20:26:47 ----A---- C:\Windows\system32\msftedit.dll
2015-11-10 20:26:41 ----A---- C:\Windows\system32\tzsync.exe
2015-11-10 20:26:37 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2015-11-10 20:26:37 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2015-11-10 20:26:37 ----A---- C:\Windows\system32\wpdshext.dll
2015-11-10 20:26:37 ----A---- C:\Windows\system32\NcdAutoSetup.dll
2015-11-10 20:26:37 ----A---- C:\Windows\system32\drivers\clfs.sys
2015-11-10 20:26:37 ----A---- C:\Windows\system32\drivers\bthpan.sys
2015-11-10 20:26:37 ----A---- C:\Windows\system32\clfsw32.dll
2015-11-10 20:26:35 ----A---- C:\Windows\system32\storewuauth.dll
2015-11-10 20:26:20 ----A---- C:\Windows\SYSWOW64\msvcr120_clr0400.dll
2015-11-10 20:26:20 ----A---- C:\Windows\system32\msvcr120_clr0400.dll
2015-11-10 20:25:58 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2015-11-10 20:25:58 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\system32\ucrtbase.dll
2015-11-10 20:25:58 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-11-10 20:25:58 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-11-10 20:25:57 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-11-10 20:25:57 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-11-10 20:25:57 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-11-10 20:25:57 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-11-10 20:25:57 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-11-10 20:25:57 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-11-10 20:25:57 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-11-10 20:25:52 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll
2015-11-10 20:25:30 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2015-11-10 20:25:30 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2015-11-10 20:14:07 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2015-11-10 20:14:07 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2015-11-10 20:14:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2015-11-10 20:14:07 ----A---- C:\Windows\system32\XAudio2_7.dll
2015-11-10 20:14:07 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2015-11-10 20:14:07 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2015-11-10 20:14:06 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2015-11-10 20:14:06 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-11-10 20:14:06 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2015-11-10 20:14:06 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2015-11-10 20:14:06 ----A---- C:\Windows\system32\D3DX9_43.dll
2015-11-10 20:14:06 ----A---- C:\Windows\system32\d3dx11_43.dll
2015-11-10 20:14:05 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2015-11-10 20:14:05 ----A---- C:\Windows\system32\xinput1_3.dll
2015-11-10 19:19:52 ----D---- C:\ProgramData\Hi-Rez Studios
2015-11-10 19:19:49 ----D---- C:\Program Files (x86)\Hi-Rez Studios
2015-11-10 18:40:42 ----D---- C:\Users\bulcan\AppData\Roaming\LolClient
2015-11-10 17:42:16 ----D---- C:\ProgramData\Riot Games
2015-11-10 17:41:24 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2015-11-10 17:41:24 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2015-11-10 17:41:24 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2015-11-10 17:41:24 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2015-11-10 17:41:24 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2015-11-10 17:41:19 ----D---- C:\Riot Games
2015-11-10 17:39:29 ----D---- C:\Users\bulcan\AppData\Roaming\Riot Games
2015-11-10 16:15:30 ----D---- C:\Program Files\CCleaner
2015-11-10 16:01:40 ----D---- C:\Program Files (x86)\StarCraft II
2015-11-10 14:02:42 ----D---- C:\Program Files (x86)\RayDld
2015-11-10 14:02:03 ----D---- C:\Program Files (x86)\gmsd_re_004010007
2015-11-10 14:02:02 ----D---- C:\Users\bulcan\AppData\Roaming\istartsurf
2015-11-10 14:01:42 ----D---- C:\Program Files (x86)\MixVideoPlayer
2015-11-10 13:58:25 ----A---- C:\AVScanner.ini
2015-11-09 20:17:06 ----D---- C:\Program Files (x86)\Heroes of the Storm
2015-11-09 18:50:18 ----D---- C:\Program Files (x86)\NosTale(CZ)
2015-11-09 18:20:31 ----D---- C:\Program Files (x86)\Diablo III
2015-11-09 18:15:30 ----D---- C:\Program Files (x86)\Hearthstone
2015-11-09 18:13:19 ----D---- C:\ProgramData\Blizzard Entertainment
2015-11-09 18:13:18 ----D---- C:\Users\bulcan\AppData\Roaming\Battle.net
2015-11-09 18:12:47 ----D---- C:\Program Files (x86)\Battle.net
2015-11-09 18:12:18 ----D---- C:\ProgramData\Battle.net
2015-11-09 18:01:12 ----D---- C:\Program Files (x86)\Steam
2015-11-09 17:48:35 ----D---- C:\Users\bulcan\AppData\Roaming\Skype
2015-11-09 17:29:13 ----D---- C:\Program Files\McAfee
2015-11-09 17:14:24 ----D---- C:\Program Files\Google
2015-11-09 17:13:27 ----D---- C:\Program Files (x86)\Google
2015-11-09 17:13:17 ----A---- C:\Windows\system32\aswBoot.exe
2015-11-09 17:12:25 ----D---- C:\Users\bulcan\AppData\Roaming\AVAST Software
2015-11-09 17:11:53 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2015-11-09 17:11:53 ----A---- C:\Windows\system32\drivers\aswStm.sys
2015-11-09 17:11:53 ----A---- C:\Windows\system32\drivers\aswSP.sys
2015-11-09 17:11:53 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2015-11-09 17:11:53 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2015-11-09 17:11:53 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2015-11-09 17:11:53 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2015-11-09 17:11:53 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2015-11-09 17:11:40 ----A---- C:\Windows\avastSS.scr
2015-11-09 17:10:49 ----D---- C:\Program Files\AVAST Software
2015-11-09 17:10:30 ----D---- C:\ProgramData\AVAST Software
2015-11-09 17:06:09 ----D---- C:\Users\bulcan\AppData\Roaming\Macromedia
2015-11-09 17:05:34 ----D---- C:\Users\bulcan\AppData\Roaming\WebStorage
2015-11-09 17:01:30 ----A---- C:\Users\bulcan\AppData\Roaming\sp_data.sys
2015-11-09 17:01:14 ----D---- C:\ProgramData\USBChargerPlus
2015-11-09 17:00:19 ----D---- C:\ProgramData\ASUS Smart Gesture
2015-11-09 16:59:00 ----D---- C:\Users\bulcan\AppData\Roaming\Adobe
2015-11-09 16:58:49 ----A---- C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-11-09 16:58:28 ----SD---- C:\Users\bulcan\AppData\Roaming\Microsoft
2015-11-09 16:56:04 ----SD---- C:\Windows\SYSWOW64\GWX
2015-11-09 16:56:03 ----SD---- C:\Windows\system32\GWX
2015-11-09 16:56:03 ----D---- C:\Windows\Migration
2015-11-09 16:54:44 ----A---- C:\Windows\SYSWOW64\explorer.exe
2015-11-09 16:54:44 ----A---- C:\Windows\explorer.exe
2015-11-09 16:54:23 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-11-09 16:54:23 ----A---- C:\Windows\SYSWOW64\RestoreOptIn.exe
2015-11-09 16:54:23 ----A---- C:\Windows\system32\wups2.dll
2015-11-09 16:54:23 ----A---- C:\Windows\system32\wups.dll
2015-11-09 16:54:23 ----A---- C:\Windows\system32\wuaext.dll
2015-11-09 16:54:23 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-11-09 16:54:23 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-11-09 16:54:23 ----A---- C:\Windows\system32\RestoreOptIn.exe
2015-10-30 16:49:20 ----A---- C:\SecurityScanner.dll
======List of files/folders modified in the last 1 month======
2015-11-14 09:15:41 ----RD---- C:\Program Files
2015-11-14 09:09:31 ----D---- C:\Windows\Prefetch
2015-11-14 09:09:24 ----HD---- C:\ProgramData
2015-11-14 09:09:23 ----SHD---- C:\Windows\Installer
2015-11-14 09:09:23 ----AD---- C:\Windows\Temp
2015-11-14 09:00:00 ----D---- C:\Windows\system32\sru
2015-11-14 07:38:54 ----D---- C:\Windows\Microsoft.NET
2015-11-13 19:02:43 ----D---- C:\Windows\system32\config
2015-11-13 18:28:57 ----D---- C:\Windows\WinSxS
2015-11-13 18:28:33 ----D---- C:\Program Files\Windows Media Player
2015-11-13 18:28:33 ----D---- C:\Program Files\Windows Journal
2015-11-13 18:28:33 ----D---- C:\Program Files\Windows Defender
2015-11-13 18:28:33 ----D---- C:\Program Files\Internet Explorer
2015-11-13 18:28:33 ----D---- C:\Program Files (x86)\Windows Media Player
2015-11-13 18:28:33 ----D---- C:\Program Files (x86)\Internet Explorer
2015-11-13 18:28:32 ----D---- C:\Windows\WinStore
2015-11-13 18:28:32 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-11-13 18:28:32 ----D---- C:\Windows\SYSWOW64\en
2015-11-13 18:28:32 ----D---- C:\Windows\servicing
2015-11-13 18:28:32 ----D---- C:\Program Files (x86)\Windows Defender
2015-11-13 18:28:29 ----D---- C:\Windows\SYSWOW64\en-US
2015-11-13 18:28:29 ----D---- C:\Windows\SYSWOW64\drivers\en-US
2015-11-13 18:28:29 ----D---- C:\Windows\SYSWOW64\drivers
2015-11-13 18:28:28 ----D---- C:\Windows\SYSWOW64\wbem
2015-11-13 18:28:27 ----RD---- C:\Windows\ImmersiveControlPanel
2015-11-13 18:28:27 ----D---- C:\Windows\system32\oobe
2015-11-13 18:28:27 ----D---- C:\Windows\PolicyDefinitions
2015-11-13 18:28:27 ----D---- C:\Windows\en-US
2015-11-13 18:28:27 ----AD---- C:\Windows
2015-11-13 18:28:26 ----RD---- C:\Windows\System32
2015-11-13 18:28:26 ----D---- C:\Windows\system32\Sysprep
2015-11-13 18:28:26 ----D---- C:\Windows\system32\sk-SK
2015-11-13 18:28:26 ----D---- C:\Windows\system32\migwiz
2015-11-13 18:28:26 ----D---- C:\Windows\system32\en
2015-11-13 18:28:19 ----D---- C:\Windows\system32\drivers\en-US
2015-11-13 18:28:19 ----D---- C:\Windows\system32\drivers
2015-11-13 18:28:18 ----D---- C:\Windows\system32\en-US
2015-11-13 18:28:15 ----D---- C:\Windows\system32\DriverStore
2015-11-13 18:28:13 ----D---- C:\Windows\system32\wbem
2015-11-13 18:09:15 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-11-13 18:09:15 ----D---- C:\Program Files (x86)\Windows Mail
2015-11-13 18:09:08 ----D---- C:\Windows\SYSWOW64\winrm
2015-11-13 18:09:08 ----D---- C:\Windows\SYSWOW64\WCN
2015-11-13 18:09:08 ----D---- C:\Windows\SYSWOW64\slmgr
2015-11-13 18:09:08 ----D---- C:\Windows\SYSWOW64\Printing_Admin_Scripts
2015-11-13 18:09:08 ----D---- C:\Windows\SYSWOW64\oobe
2015-11-13 18:09:08 ----D---- C:\Windows\SYSWOW64\migration
2015-11-13 18:09:08 ----D---- C:\Windows\SYSWOW64\hu-HU
2015-11-13 18:09:08 ----D---- C:\Windows\SYSWOW64\Dism
2015-11-13 18:09:08 ----D---- C:\Windows\SysWOW64
2015-11-13 18:09:05 ----D---- C:\Windows\SYSWOW64\Com
2015-11-13 18:09:05 ----D---- C:\Windows\IME
2015-11-13 18:09:04 ----D---- C:\Windows\system32\winrm
2015-11-13 18:09:04 ----D---- C:\Windows\system32\slmgr
2015-11-13 18:09:04 ----D---- C:\Windows\system32\migration
2015-11-13 18:09:04 ----D---- C:\Windows\system32\drivers\UMDF
2015-11-13 18:09:04 ----D---- C:\Windows\system32\Boot
2015-11-13 18:09:03 ----D---- C:\Windows\system32\WCN
2015-11-13 18:09:03 ----D---- C:\Windows\system32\Dism
2015-11-13 18:09:00 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2015-11-13 18:08:57 ----D---- C:\Windows\system32\hu-HU
2015-11-13 18:08:37 ----D---- C:\Windows\system32\SystemResetPlatform
2015-11-13 18:08:37 ----D---- C:\Windows\system32\Com
2015-11-13 18:08:37 ----D---- C:\Windows\Help
2015-11-13 18:08:37 ----D---- C:\Windows\apppatch
2015-11-13 18:08:37 ----D---- C:\Program Files\Windows Mail
2015-11-13 18:08:36 ----D---- C:\Program Files\Windows Photo Viewer
2015-11-13 18:08:36 ----D---- C:\Program Files\Common Files\System
2015-11-13 17:56:50 ----D---- C:\Windows\SYSWOW64\en-GB
2015-11-13 17:56:45 ----D---- C:\Windows\system32\en-GB
2015-11-13 17:48:56 ----SHD---- C:\System Volume Information
2015-11-13 17:46:59 ----RSD---- C:\Windows\assembly
2015-11-13 17:42:26 ----D---- C:\Windows\Logs
2015-11-13 15:57:33 ----HD---- C:\Program Files\WindowsApps
2015-11-13 15:57:25 ----D---- C:\Windows\AppReadiness
2015-11-13 14:04:47 ----D---- C:\Windows\CbsTemp
2015-11-13 13:58:55 ----D---- C:\Windows\debug
2015-11-13 13:52:47 ----D---- C:\Windows\system32\Tasks
2015-11-13 13:51:52 ----D---- C:\Windows\Inf
2015-11-13 13:51:52 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-11-13 00:52:27 ----D---- C:\Windows\AppCompat
2015-11-12 19:09:25 ----RD---- C:\Program Files (x86)
2015-11-11 22:26:13 ----D---- C:\Windows\system32\sr-Latn-RS
2015-11-11 22:26:13 ----D---- C:\Windows\system32\sr-Latn-CS
2015-11-11 22:26:13 ----D---- C:\Windows\system32\CodeIntegrity
2015-11-11 22:26:05 ----D---- C:\Windows\SYSWOW64\pl-PL
2015-11-11 22:26:05 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-11-11 22:26:05 ----D---- C:\Windows\system32\cs-CZ
2015-11-11 22:26:04 ----D---- C:\Windows\system32\pl-PL
2015-11-11 22:26:00 ----RD---- C:\Windows\ToastData
2015-11-11 22:25:58 ----RSD---- C:\Windows\Fonts
2015-11-11 22:25:57 ----D---- C:\Windows\system32\drivers\pl-PL
2015-11-11 22:25:57 ----D---- C:\Windows\system32\drivers\cs-CZ
2015-11-11 22:25:54 ----D---- C:\Windows\MediaViewer
2015-11-11 22:25:54 ----D---- C:\Windows\FileManager
2015-11-11 22:25:54 ----D---- C:\Windows\Camera
2015-11-11 22:25:32 ----SD---- C:\Windows\system32\CompatTel
2015-11-11 22:25:32 ----SD---- C:\ProgramData\Microsoft
2015-11-11 22:25:31 ----D---- C:\Program Files\Common Files\microsoft shared
2015-11-11 22:20:39 ----D---- C:\Windows\SoftwareDistribution
2015-11-11 16:40:26 ----D---- C:\Windows\system32\catroot2
2015-11-10 20:14:01 ----D---- C:\ProgramData\Package Cache
2015-11-10 19:19:49 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-11-10 17:41:21 ----D---- C:\Windows\Tasks
2015-11-10 16:23:23 ----D---- C:\Windows\Panther
2015-11-10 13:58:22 ----D---- C:\Windows\system32\drivers\etc
2015-11-10 13:48:52 ----D---- C:\Windows\system32\wdi
2015-11-09 18:01:13 ----D---- C:\Program Files (x86)\Common Files
2015-11-09 17:25:34 ----D---- C:\ProgramData\McAfee
2015-11-09 17:25:34 ----D---- C:\Program Files (x86)\McAfee
2015-11-09 17:25:23 ----D---- C:\Program Files\Common Files
2015-11-09 17:23:22 ----HD---- C:\Windows\ELAMBKUP
2015-11-09 17:10:24 ----D---- C:\Windows\system32\catroot
2015-11-09 17:04:50 ----D---- C:\Program Files (x86)\ASUS
2015-11-09 17:03:46 ----SHD---- C:\$Recycle.Bin
2015-11-09 16:58:55 ----D---- C:\Windows\Log
2015-11-09 16:58:27 ----RD---- C:\Users
2015-11-09 16:55:14 ----D---- C:\Windows\system32\AdvancedInstallers
2015-11-09 16:54:46 ----D---- C:\Windows\system32\restore
2015-11-03 01:23:06 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-11-09 65224]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-11-09 273784]
R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2015-02-09 1399536]
R0 IntelHSWPcc;IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [2014-08-26 79016]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2015-11-09 93528]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-11-09 1059656]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-11-09 449992]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2013-07-02 19768]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2014-10-21 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-11-09 28656]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-11-09 97648]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2015-11-09 154256]
R3 AiCharger;ASUS Charger Driver; C:\Windows\system32\DRIVERS\AiCharger.sys [2014-09-11 17152]
R3 ATP;@oem16.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\Windows\System32\drivers\AsusTP.sys [2015-03-18 73512]
R3 bcbtums;@oem24.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2013-11-14 170712]
R3 BCM43XX;@oem19.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl63a.sys [2015-06-22 7546544]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\Windows\System32\drivers\BthEnum.sys [2014-10-29 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\Windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\System32\drivers\bthpan.sys [2015-07-10 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 btwampfl;@oem24.inf,%btwampfl.ServiceName%;btwampfl; C:\Windows\system32\DRIVERS\btwampfl.sys [2014-02-03 166616]
R3 btwaudio;@oem20.inf,%btaudio.SvcDesc%;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2014-05-13 190168]
R3 btwavdt;@oem20.inf,%btwavdt.SvcDesc%;Bluetooth AVDT; C:\Windows\System32\drivers\btwavdt.sys [2014-03-19 229080]
R3 btwl2cap;@oem23.inf,%btwl2cap.SVCDESC%;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2012-07-27 40248]
R3 dptf_cpu;dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [2014-09-18 38720]
R3 dptf_pch;dptf_pch; C:\Windows\System32\drivers\dptf_pch.sys [2014-09-18 38208]
R3 esif_lf;esif_lf; C:\Windows\System32\drivers\esif_lf.sys [2014-09-18 216360]
R3 HIDSwitch;@oem26.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\Windows\System32\drivers\AsHIDSwitch64.sys [2013-10-08 20280]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-12-15 4787128]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-12-26 4363864]
R3 iwdbus;@oem13.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2014-12-11 30512]
R3 MEIx64;@oem8.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2015-02-25 129312]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2014-12-24 13036232]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
R3 RSUSBVSTOR;@oem18.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUVStor.sys [2013-07-09 329944]
R3 RTL8168;@oem17.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\Windows\system32\DRIVERS\Rt630x64.sys [2014-05-29 873176]
R3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2014-03-18 121088]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\Windows\system32\DRIVERS\vwifimp.sys [2014-10-21 38912]
S0 mfeelamk;McAfee Inc. mfeelamk; C:\Windows\system32\drivers\mfeelamk.sys [2015-02-13 80160]
S3 AgereSoftModem;@mdmags64.inf,%FullProductName%;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2013-06-18 1146880]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 btwrchid;btwrchid; C:\Windows\System32\drivers\btwrchid.sys [2014-03-19 38616]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\Windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem12.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2014-12-11 42288]
S3 IntcDAud;@oem10.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-12-22 455440]
S3 mfesapsn;McAfee Process Start Notification Service; \??\C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [2015-11-03 37960]
S3 NETwNs64;@netwsw00.inf,___ %NIC_Service_DispName_WIN7_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\Netwsw00.sys [2013-06-18 11518976]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [2014-03-26 115512]
R2 Asus WebStorage Windows Service;Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe [2014-08-20 71168]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-11-09 174416]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2014-07-10 977664]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 esifsvc;ESIF Upper Framework Service; C:\Windows\SysWOW64\esif_uf.exe [2014-09-18 1037568]
R2 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2014-04-24 227904]
R2 HiPatchService;Hi-Rez Studios Authenticate and Update Service; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2015-11-03 9728]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2014-12-15 344976]
R2 ihpmServer;ihpmServer; C:\Program Files (x86)\RayDld\ihpmServer.exe [2015-11-10 271464]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2015-02-25 156960]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2015-02-25 409376]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-12-13 1701520]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-12-24 934032]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-11-10 836176]
S2 BcmBtRSupport;@oem24.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\Windows\system32\BtwRSupportService.exe [2013-11-14 2251992]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-09 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-10 269000]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-12-15 279952]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2014-04-24 203344]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-09 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-10-03 881152]
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- Rudy
- Site Admin
- Příspěvky: 119381
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu
tady zasílám požadovaný log:
# AdwCleaner v5.021 - Logfile created 15/11/2015 at 13:19:24
# Updated 14/11/2015 by Xplode
# Database : 2015-11-13.3 [Server]
# Operating system : Windows 8.1 (x64)
# Username : bulcan - PC-OBYVAK
# Running from : C:\Users\bulcan\Desktop\adwcleaner_5.021.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
[-] Service Deleted : ihpmServer
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\RayDld
[-] Folder Deleted : C:\Program Files (x86)\gmsd_re_004010007
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP
[-] Folder Deleted : C:\Users\bulcan\AppData\Local\BrowserWeb
[-] Folder Deleted : C:\Users\bulcan\AppData\Local\gmsd_re_004010007
[-] Folder Deleted : C:\Users\bulcan\AppData\Roaming\istartsurf
***** [ Files ] *****
[-] File Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WebBrowserMixVideoPlayer.lnk
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
[-] Task Deleted : MixVideoPlayer Update
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
[-] Key Deleted : HKLM\SOFTWARE\Classes\Applications\MixVideoPlayer.exe
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [gmsd_re_004010007]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce [upgmsd_re_004010007.exe]
[-] Key Deleted : HKCU\Software\Tutorials
[-] Key Deleted : HKCU\Software\TutoTag
[-] Key Deleted : HKCU\Software\GAMESDESKTOP
[-] Key Deleted : HKLM\SOFTWARE\istartsurfSoftware
[-] Key Deleted : HKLM\SOFTWARE\Tutorials
[-] Key Deleted : HKLM\SOFTWARE\GAMESDESKTOP
[-] Key Deleted : HKLM\SOFTWARE\MixVideoPlayer
[-] Key Deleted : HKLM\SOFTWARE\RayDld
[-] Key Deleted : HKLM\SOFTWARE\ihpmserver
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\gmsd_re_004010007_is1
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [2527 bytes] ##########
# AdwCleaner v5.021 - Logfile created 15/11/2015 at 13:19:24
# Updated 14/11/2015 by Xplode
# Database : 2015-11-13.3 [Server]
# Operating system : Windows 8.1 (x64)
# Username : bulcan - PC-OBYVAK
# Running from : C:\Users\bulcan\Desktop\adwcleaner_5.021.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
[-] Service Deleted : ihpmServer
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\RayDld
[-] Folder Deleted : C:\Program Files (x86)\gmsd_re_004010007
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP
[-] Folder Deleted : C:\Users\bulcan\AppData\Local\BrowserWeb
[-] Folder Deleted : C:\Users\bulcan\AppData\Local\gmsd_re_004010007
[-] Folder Deleted : C:\Users\bulcan\AppData\Roaming\istartsurf
***** [ Files ] *****
[-] File Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WebBrowserMixVideoPlayer.lnk
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
[-] Task Deleted : MixVideoPlayer Update
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
[-] Key Deleted : HKLM\SOFTWARE\Classes\Applications\MixVideoPlayer.exe
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [gmsd_re_004010007]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce [upgmsd_re_004010007.exe]
[-] Key Deleted : HKCU\Software\Tutorials
[-] Key Deleted : HKCU\Software\TutoTag
[-] Key Deleted : HKCU\Software\GAMESDESKTOP
[-] Key Deleted : HKLM\SOFTWARE\istartsurfSoftware
[-] Key Deleted : HKLM\SOFTWARE\Tutorials
[-] Key Deleted : HKLM\SOFTWARE\GAMESDESKTOP
[-] Key Deleted : HKLM\SOFTWARE\MixVideoPlayer
[-] Key Deleted : HKLM\SOFTWARE\RayDld
[-] Key Deleted : HKLM\SOFTWARE\ihpmserver
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\gmsd_re_004010007_is1
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [2527 bytes] ##########
- Rudy
- Site Admin
- Příspěvky: 119381
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.