Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Logfile of random's system information tool 1.16 (written by random/random)
- Run by Jan at 2017-05-18 11:08:24
- Microsoft Windows 10 Home
- System drive C: has 131 GB (34%) free of 381 GB
- Total RAM: 8078 MB (56% free)
- X64
- Logfile of Trend Micro HijackThis v2.0.4
- Scan saved at 11:08:32, on 18. 5. 2017
- Platform: Unknown Windows (WinNT 6.02.1008)
- MSIE: Internet Explorer v11.0 (11.00.14393.0953)
- Boot mode: Normal
- Running processes:
- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
- C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
- C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe
- C:\Program Files (x86)\BlueStacks\HD-Agent.exe
- C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe
- C:\Program Files (x86)\Steam\Steam.exe
- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- C:\Program Files\trend micro\Jan_RSITx64.exe
- R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com
- R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
- R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
- R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
- R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
- R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
- R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
- R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
- R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
- R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
- R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://unstopweb.biz/wpad.dat?395de1d813876091b11dee6f0f5fa73a31405560
- R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
- F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe
- O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
- O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll
- O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
- O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
- O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll
- O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
- O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
- O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
- O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
- O4 - HKLM\..\Run: [ASUSWebStorage] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe /S
- O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
- O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
- O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
- O4 - HKLM\..\Run: [Autodesk Desktop App] "C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe" -tray
- O4 - HKLM\..\Run: [Bonus.SSR.FR12] "C:\Program Files (x86)\ABBYY FineReader 12\Bonus.ScreenshotReader.exe" /autorun
- O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
- O4 - HKLM\..\Run: [SafeQClient] C:\Program Files (x86)\SafeQ\SafeQ_cli.exe
- O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe"
- O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
- O4 - HKCU\..\Run: [OneDrive] "C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
- O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
- O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
- O4 - HKCU\..\Run: [Discord] C:\Users\Jan\AppData\Local\Discord\app-0.0.297\Discord.exe
- O4 - HKCU\..\Run: [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
- O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
- O4 - HKCU\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
- O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
- O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
- O4 - HKUS\S-1-5-18\..\Run: [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe (User 'SYSTEM')
- O4 - HKUS\.DEFAULT\..\Run: [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe (User 'Default user')
- O8 - Extra context menu item: &Enviar para o OneNote - res://C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll/105
- O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
- O9 - Extra button: Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
- O9 - Extra 'Tools' menuitem: &Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
- O9 - Extra button: Clique para Telefonar do Lync - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
- O9 - Extra 'Tools' menuitem: Clique para Telefonar do Lync - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
- O9 - Extra button: &Anotaçoes Vinculadas do OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
- O9 - Extra 'Tools' menuitem: &Anotaçoes Vinculadas do OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
- O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
- O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
- O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
- O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
- O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
- O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
- O23 - Service: ABBYY FineReader 12 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.12.0) - ABBYY Production LLC - C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe
- O23 - Service: Autodesk Desktop App Service (AdAppMgrSvc) - Autodesk Inc. - C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe
- O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
- O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe
- O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
- O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
- O23 - Service: ArcGIS License Manager - Flexera Software LLC - C:\Program Files (x86)\ArcGIS\License10.3\bin\lmgrd.exe
- O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
- O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
- O23 - Service: Asus WebStorage Windows Service - Unknown owner - C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
- O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
- O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
- O23 - Service: @oem18.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
- O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
- O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
- O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
- O23 - Service: BlueStacks Plus Android Service (BstHdPlusAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe
- O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
- O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
- O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
- O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
- O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
- O23 - Service: FlexNet Licensing Service - Flexera Software LLC - C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
- O23 - Service: FlexNet Licensing Service 64 - Flexera Software LLC - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
- O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
- O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
- O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
- O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
- O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
- O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
- O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
- O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
- O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
- O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
- O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
- O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
- O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
- O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
- O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
- O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
- O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
- O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
- O23 - Service: Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) - arvato digital services llc - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
- O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
- O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
- O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
- O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
- O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
- O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
- O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
- O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
- O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
- O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
- O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle\TnglCtrl.exe
- O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
- O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
- O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
- O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
- O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
- O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
- O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
- O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
- O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
- O23 - Service: Wondershare Application Framework Service (WsAppService) - Unknown owner - C:\Program Files (x86)\Wondershare\WAF\2.3.2.220\WsAppService.exe (file missing)
- --
- End of file - 16937 bytes
- ====== Enumerating Processes ======
- C:\WINDOWS\system32\winlogon.exe
- C:\WINDOWS\system32\lsass.exe
- C:\WINDOWS\system32\svchost.exe -k DcomLaunch
- C:\WINDOWS\system32\svchost.exe -k RPCSS
- C:\WINDOWS\system32\dwm.exe
- C:\WINDOWS\system32\svchost.exe -k netsvcs
- C:\WINDOWS\System32\svchost.exe -k NetworkService
- C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
- C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
- C:\WINDOWS\system32\svchost.exe -k LocalService
- "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-1803f6ec-c136-40b8-b94a-24d7a173c774 -SystemEventPortName:HostProcess-4d163c69-bad8-4906-923e-f43d4cdfc7c2 -IoCancelEventPortName:HostProcess-0670ca7f-a424-46ba-a7b0-6e2a0a992619 -NonStateChangingEventPortName:HostProcess-27f92a2d-b8be-4725-b772-b6394b48f5e2 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:e3b9d20d-b12c-4981-acdc-562780cb7be5 -DeviceGroupId:WudfDefaultDevicePool
- "C:\WINDOWS\system32\nvvsvc.exe"
- C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
- C:\WINDOWS\system32\dashost.exe
- C:\WINDOWS\system32\igfxCUIService.exe
- C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
- C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
- C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
- "C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
- "C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
- C:\WINDOWS\system32\WLANExt.exe 1704213323360
- \??\C:\WINDOWS\system32\conhost.exe 0x4
- C:\WINDOWS\System32\spoolsv.exe
- C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
- "C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe"
- "C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe"
- C:\WINDOWS\system32\BtwRSupportService.exe
- C:\WINDOWS\System32\svchost.exe -k utcsvc
- "C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe" -service
- "C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe"
- "C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
- "C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe"
- "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
- "C:\Program Files\Intel\iCLS Client\HeciServer.exe"
- "C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
- "c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
- "C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
- C:\WINDOWS\system32\svchost.exe -k imgsvc
- C:\WINDOWS\system32\svchost.exe -k appmodel
- C:\WINDOWS\system32\SearchIndexer.exe /Embedding
- C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
- "C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
- "C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe"
- "C:\Program Files\Windows Media Player\wmpnetwk.exe"
- C:\WINDOWS\system32\sihost.exe
- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
- C:\WINDOWS\system32\wbem\wmiprvse.exe
- "C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
- "C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
- C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
- C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
- C:\WINDOWS\system32\taskhostw.exe
- "C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
- "C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
- "C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
- "C:\Program Files\ASUS\P4G\BatteryLife.exe"
- C:\WINDOWS\system32\igfxEM.exe
- "C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
- C:\WINDOWS\system32\igfxHK.exe
- C:\WINDOWS\system32\igfxTray.exe
- "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX4
- "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /AECBYLISTENTOSTATUS
- "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
- C:\Windows\System32\RuntimeBroker.exe -Embedding
- "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
- "C:\Program Files\Windows Defender\MSASCuiL.exe"
- "C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
- "C:\Program Files (x86)\BlueStacks\HD-Agent.exe"
- "C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe"
- "C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE15\CSISYN~1.EXE" -Embedding
- C:\WINDOWS\system32\wbem\WmiApSrv.exe
- "C:\Program Files (x86)\ArcGIS\License10.3\bin\lmgrd.exe"
- \??\C:\WINDOWS\system32\conhost.exe 0x4
- "C:\Program Files (x86)\ArcGIS\License10.3\bin\lmgrd.exe" -c "C:\Program Files (x86)\ArcGIS\License10.3\bin\service.txt" -l "C:\Program Files (x86)\ArcGIS\License10.3\bin\lmgrd9.log" -z -s -local
- "C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe"
- "C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
- "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
- "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
- C:\Program Files\Windows Defender\MpCmdRun.exe
- "C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.15.597.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
- "C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe"
- "C:\Program Files\Microsoft Office\Office15\WINWORD.EXE" /n "C:\Users\Jan\Desktop\MODELOVÁNÍ.docx
- C:\WINDOWS\system32\DllHost.exe /Processid:{49F6E667-6658-4BD1-9DE9-6AF87F9FAF85}
- "C:\Program Files (x86)\Steam\Steam.exe"
- "C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe" "-cachedir=C:\Users\Jan\AppData\Local\Steam\htmlcache" "-steampid=1896" "-buildid=1493162727" "-steamid=0" --disable-gpu-compositing --disable-gpu --process-per-tab --disable-spell-checking --disable-out-of-process-pac --disable-smooth-scrolling --enable-direct-write "--log-file=C:\Program Files (x86)\Steam\logs\cef_log.txt"
- "C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
- "C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --disable-smooth-scrolling --enable-pinch --primordial-pipe-token=CD8888AD20B946189D496F7F1C78E170 --lang=en-US --lang=cs-CZ --log-file="C:\Program Files (x86)\Steam\logs\cef_log.txt" --product-version="Valve Steam Client" --disable-spell-checking --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --disable-accelerated-video-decode --disable-webrtc-hw-encoding --disable-gpu-compositing --service-request-channel-token=CD8888AD20B946189D496F7F1C78E170 --renderer-client-id=2 --mojo-platform-channel-handle=1516 /prefetch:1
- C:\WINDOWS\explorer.exe
- "C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
- "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
- C:\Program Files (x86)\ArcGIS\License10.3\bin\ARCGIS.exe
- "C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe"
- "C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
- \??\C:\WINDOWS\system32\conhost.exe 0x4
- C:\WINDOWS\system32\AUDIODG.EXE 0x4bc
- C:\Windows\System32\smartscreen.exe -Embedding
- C:\WINDOWS\system32\taskhostw.exe
- C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
- "D:\Download\RSITx64.exe"
- C:\WINDOWS\system32\wbem\wmiprvse.exe
- ====== Scheduled tasks folder ======
- C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe
- C:\WINDOWS\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
- C:\WINDOWS\system32\tasks\Adobe Flash Player Updater - C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe
- C:\WINDOWS\system32\tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-xawier01@gmail.com - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe -mode=scheduled
- C:\WINDOWS\system32\tasks\ASUS InstantOn Config - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe
- C:\WINDOWS\system32\tasks\ASUS Live Update1 - C:\Program Files (x86) -critical
- C:\WINDOWS\system32\tasks\ASUS Live Update2 - C:\Program Files (x86) -check
- C:\WINDOWS\system32\tasks\ASUS P4G - C:\Program Files\ASUS\P4G\BatteryLife.exe
- C:\WINDOWS\system32\tasks\ASUS Smart Gesture Launcher - "C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe"
- C:\WINDOWS\system32\tasks\ASUS Splendid ACMON - C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
- C:\WINDOWS\system32\tasks\ASUS Splendid ColorU - C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
- C:\WINDOWS\system32\tasks\ASUS USB Charger Plus - "C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
- C:\WINDOWS\system32\tasks\AsusVibeSchedule - "C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe" /start
- C:\WINDOWS\system32\tasks\CCleanerSkipUAC - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
- C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
- C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
- C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task - C:\Users\Jan\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe
- C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
- C:\WINDOWS\system32\tasks\Opera scheduled Autoupdate 1469091417 - C:\Program Files (x86)\Opera\launcher.exe --scheduledautoupdate $(Arg0)
- C:\WINDOWS\system32\tasks\RtHDVBg - "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX4
- C:\WINDOWS\system32\tasks\RtHDVBg_ListenToDevice - "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /AECBYLISTENTOSTATUS
- C:\WINDOWS\system32\tasks\RTKCPL - "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
- C:\WINDOWS\system32\tasks\Update Checker - C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe
- C:\WINDOWS\system32\tasks\User_Feed_Synchronization-{3BAF0A95-1555-4DC9-87F7-3420FF3694B6} - C:\WINDOWS\system32\msfeedssync.exe sync
- C:\WINDOWS\system32\tasks\{D5691734-86E2-4663-830D-09E193D786BE} - C:\WINDOWS\system32\pcalua.exe -a "c:\Program Files\Corel\CorelDRAW Graphics Suite X7\Setup\SetupARP.exe" -c /arp
- C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
- C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
- C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdCleanup
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan - %ProgramFiles%\Windows Defender\MpCmdRun.exe Scan -ScheduleJob
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdVerification
- C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
- C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
- C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval - %systemroot%\system32\MusNotification.exe Display
- C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
- C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe RebootDialog
- C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
- C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
- C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
- C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - C:\windows\system32\MusNotification.exe Display
- C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - C:\windows\system32\MusNotification.exe ReadyToReboot
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
- C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
- C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
- C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
- C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
- C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
- C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
- C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
- C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
- C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
- C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
- C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup - %windir%\system32\dstokenclean.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
- C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
- C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
- C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
- C:\WINDOWS\system32\tasks\Microsoft\VisualStudio\VSIX Auto Update 14 - C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\VSIXAutoUpdate.exe
- C:\WINDOWS\system32\tasks\Microsoft\Office\Office 15 Subscription Heartbeat - %ProgramFiles%\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe
- C:\WINDOWS\system32\tasks\Microsoft\Office\OfficeTelemetryAgentFallBack - "C:\Program Files\Microsoft Office\Office15\msoia.exe" scan upload mininterval:2880
- C:\WINDOWS\system32\tasks\Microsoft\Office\OfficeTelemetryAgentLogOn - "C:\Program Files\Microsoft Office\Office15\msoia.exe" scan upload
- =========Mozilla firefox=========
- ProfilePath - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\8obh3292.default
- prefs.js - "browser.startup.homepage" - "about:home"
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
- "Description"=Adobe® Flash® Player 24.0.0.221 Plugin
- "Path"=C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_221.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
- "Description"=Intel IPT WebApi plugin
- "Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56]
- "Description"=Intel IPT WebApi plugin
- "Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
- "Description"=This plugin updates Intel WebAPI component
- "Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.121.2]
- "Description"=Java™ Deployment Toolkit
- "Path"=C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.121.2]
- "Description"=Oracle® Next Generation Java™ Plug-In
- "Path"=C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
- "Description"=Microsoft Lync Plug-in for Firefox
- "Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
- "Description"=Ag Player Plugin
- "Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
- "Description"=Microsoft SharePoint Plug-in for Firefox
- "Path"=C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912]
- "Description"=WLPG Install MIME type
- "Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
- "Description"=Google Update
- "Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
- "Description"=Google Update
- "Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0]
- "Description"=WildTangent Games App V2 Presence Detector Plugin
- "Path"=C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Acrobat]
- "Description"=Handles PDFs in-place in Firefox
- "Path"=C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
- "Description"=Handles PDFs in-place in Firefox
- "Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
- "Description"=
- "Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
- "Description"=Adobe® Flash® Player 24.0.0.221 Plugin
- "Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_24_0_0_221.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
- "Description"=Ag Player Plugin
- "Path"=C:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
- "Description"=Microsoft SharePoint Plug-in for Firefox
- "Path"=C:\PROGRA~1\MICROS~4\Office15\NPSPWRAP.DLL
- [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
- "Description"=
- "Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll
- C:\Program Files (x86)\Mozilla Firefox\plugins\
- npMeetingJoinPluginOC.dll
- nppdf32.CZE
- nppdf32.dll
- C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\8obh3292.default\addons.json
- Firebug - extension - firebug@software.joehewitt.com
- C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\8obh3292.default\extensions.json
- Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
- Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
- Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
- Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
- Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
- Firebug - extension - firebug@software.joehewitt.com - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\8obh3292.default\extensions\firebug@software.joehewitt.com.xpi
- Adobe Acrobat DC - Create PDF - extension - web2pdfextension.15@web2pdf.adobedotcom - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn
- Disable TLS Certificate Transparency - extension - disable-cert-transparency@mozilla.org - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\8obh3292.default\features\{a5874bc1-3990-42ca-b10e-35f008bb08f5}\disable-cert-transparency@mozilla.org.xpi
- Disable Prefetch - extension - disable-prefetch@mozilla.org - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\8obh3292.default\features\{a5874bc1-3990-42ca-b10e-35f008bb08f5}\disable-prefetch@mozilla.org.xpi
- Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\8obh3292.default\features\{a5874bc1-3990-42ca-b10e-35f008bb08f5}\e10srollout@mozilla.org.xpi
- C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\8obh3292.default\pluginreg.dat
- Plugin - Shockwave Flash - 24.0.0.221 - C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_221.dll
- =========Google Chrome=========
- C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
- Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
- Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
- Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
- Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
- Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
- Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
- Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
- Extension efaidnbmnnnibpcajpcglclefindmkaj 0 Adobe Acrobat 15.1.0.6
- Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
- Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
- Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
- Extension gighmmpiobklfepjocnamgkkbiglidom 1 AdBlock 3.10.0
- Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
- Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
- Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
- Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
- Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.2
- Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.2
- Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
- Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5817.313.0.5
- Homepage:
- default_search_provider.search_url:
- C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Preferences
- Homepage:
- default_search_provider.search_url:
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj]
- "Path"=
- ======Registry dump ======
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
- "DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
- "URL"=http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS
- [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
- "DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
- "URL"=http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
- Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2017-04-11 229064]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
- Adobe Acrobat Create PDF Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-02-17 171704]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
- Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~4\Office15\GROOVEEX.DLL [2017-02-23 2351920]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
- Adobe Acrobat Create PDF from Selection - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-02-17 171704]
- [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
- Skype for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2017-04-11 163528]
- [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
- Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-01-29 473152]
- [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
- Adobe Acrobat Create PDF Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-02-17 141496]
- [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
- Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2017-02-23 1743664]
- [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
- Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-01-29 186944]
- [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
- Adobe Acrobat Create PDF from Selection - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-02-17 141496]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
- {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-02-17 171704]
- [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
- {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-02-17 141496]
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
- "AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01 508128]
- "NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-06-15 2398776]
- "WindowsDefender"=C:\Program Files\Windows Defender\MSASCuiL.exe [2017-04-28 631808]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "Steam"=C:\Program Files (x86)\Steam\steam.exe [2017-04-26 3019552]
- "OneDrive"=C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-04-14 1518808]
- "CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-12-06 9288408]
- "DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2016-12-22 4701888]
- "Discord"=C:\Users\Jan\AppData\Local\Discord\app-0.0.297\Discord.exe [2017-01-04 64290304]
- "Autodesk Sync"=C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [2013-02-05 1081224]
- "Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2017-03-14 27545048]
- "BlueStacks Agent"=C:\Program Files (x86)\BlueStacks\HD-Agent.exe [2017-03-31 225816]
- [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
- "Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2015-09-24 40336]
- "ASUSPRP"=C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2013-05-01 3187360]
- "ASUSWebStorage"=C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe [2012-12-19 3576784]
- "RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2013-03-08 95192]
- "SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
- "AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
- "Autodesk Desktop App"=C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe [2016-07-01 721856]
- "Bonus.SSR.FR12"=C:\Program Files (x86)\ABBYY FineReader 12\Bonus.ScreenshotReader.exe [2016-11-13 1517088]
- "LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2017-03-02 5883912]
- "SafeQClient"=C:\Program Files (x86)\SafeQ\SafeQ_cli.exe [2015-12-10 493568]
- "Acrobat Assistant 8.0"=C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [2017-04-05 1870928]
- ""= []
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
- WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
- [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
- "SecurityProviders" = credssp.dll
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MBAMService]
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
- "ConsentPromptBehaviorAdmin"=5
- "ConsentPromptBehaviorUser"=3
- "DSCAutomationHostEnabled"=2
- "EnableCursorSuppression"=1
- "EnableUIADesktopToggle"=0
- "undockwithoutlogon"=1
- "dontdisplaylastusername"=0
- "legalnoticecaption"=
- "legalnoticetext"=
- "shutdownwithoutlogon"=1
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
- ""=
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
- "ForceActiveDesktopOn"=0
- "NoActiveDesktop"=1
- "NoActiveDesktopChanges"=1
- [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
- [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
- "StubPath" = %SystemRoot%\inf\unregmp2.exe /ShowWMP
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
- "StubPath" = "C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
- "midimapper"=midimap.dll
- "msacm.imaadpcm"=imaadp32.acm
- "msacm.l3acm"=C:\Windows\System32\l3codeca.acm
- "msacm.msadpcm"=msadp32.acm
- "msacm.msg711"=msg711.acm
- "msacm.msgsm610"=msgsm32.acm
- "vidc.i420"=iyuv_32.dll
- "vidc.iyuv"=iyuv_32.dll
- "vidc.mrle"=msrle32.dll
- "vidc.msvc"=msvidc32.dll
- "vidc.uyvy"=msyuv.dll
- "vidc.yuy2"=msyuv.dll
- "vidc.yvu9"=tsbyuv.dll
- "vidc.yvyu"=msyuv.dll
- "wavemapper"=msacm32.drv
- "MSVideo8"=VfWWDM32.dll
- "wave1"=wdmaud.drv
- "midi1"=wdmaud.drv
- "mixer1"=wdmaud.drv
- "VIDC.FPS1"=frapsv64.dll
- "wave"=wdmaud.drv
- "midi"=wdmaud.drv
- "mixer"=wdmaud.drv
- "aux"=wdmaud.drv
- "vidc.x264"=x264vfw64.dll
- "wave2"=wdmaud.drv
- "midi2"=wdmaud.drv
- "mixer2"=wdmaud.drv
- "aux1"=wdmaud.drv
- ====== File associations ======
- .js - edit - C:\Windows\System32\Notepad.exe %1
- .js - open - C:\Windows\System32\WScript.exe "%1" %*
- .scr - open - C:\WINDOWS\system32\notepad.exe "%1"
- .scr - install -
- .scr - config -
- ====== List of files/folders created in the last 1 month ======
- 2017-05-10 21:57:34 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
- 2017-05-10 21:57:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
- 2017-05-10 21:57:34 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
- 2017-05-10 21:57:34 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
- 2017-05-10 21:57:34 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
- 2017-05-10 21:57:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
- 2017-05-10 21:57:33 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
- 2017-05-10 21:57:32 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
- 2017-05-10 21:57:32 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
- 2017-05-10 21:57:32 ----A---- C:\WINDOWS\SYSWOW64\TSWorkspace.dll
- 2017-05-10 21:57:32 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
- 2017-05-10 21:57:32 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
- 2017-05-10 21:57:32 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
- 2017-05-10 21:57:31 ----A---- C:\WINDOWS\SYSWOW64\WwaApi.dll
- 2017-05-10 21:57:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Maps.dll
- 2017-05-10 21:57:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
- 2017-05-10 21:57:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
- 2017-05-10 21:57:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
- 2017-05-10 21:57:31 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
- 2017-05-10 21:57:31 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
- 2017-05-10 21:57:31 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
- 2017-05-10 21:57:31 ----A---- C:\WINDOWS\SYSWOW64\Geolocation.dll
- 2017-05-10 21:57:30 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
- 2017-05-10 21:57:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Phone.dll
- 2017-05-10 21:57:30 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
- 2017-05-10 21:57:30 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
- 2017-05-10 21:57:30 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
- 2017-05-10 21:57:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
- 2017-05-10 21:57:29 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
- 2017-05-10 21:57:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
- 2017-05-10 21:57:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
- 2017-05-10 21:57:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
- 2017-05-10 21:57:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
- 2017-05-10 21:57:28 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
- 2017-05-10 21:57:28 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
- 2017-05-10 21:57:28 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
- 2017-05-10 21:57:28 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
- 2017-05-10 21:57:28 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
- 2017-05-10 21:57:28 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
- 2017-05-10 21:57:28 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
- 2017-05-10 21:57:28 ----A---- C:\WINDOWS\SYSWOW64\AuthBroker.dll
- 2017-05-10 21:57:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
- 2017-05-10 21:57:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
- 2017-05-10 21:57:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
- 2017-05-10 21:57:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
- 2017-05-10 21:57:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
- 2017-05-10 21:57:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
- 2017-05-10 21:57:27 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
- 2017-05-10 21:57:27 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
- 2017-05-10 21:57:27 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
- 2017-05-10 21:57:27 ----A---- C:\WINDOWS\SYSWOW64\CryptoWinRT.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.FaceAnalysis.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Usb.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Picker.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.LowLevel.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Core.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\PlayToReceiver.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\dlnashext.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\dialclient.dll
- 2017-05-10 21:57:26 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\WinRtTracing.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Perception.Stub.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Devices.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.XboxLive.Storage.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Input.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFiDirect.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Lights.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Wallet.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\mbsmsapi.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetails.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
- 2017-05-10 21:57:25 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Ocr.dll
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.PointOfService.dll
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Midi.dll
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.AllJoyn.dll
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsDesktopEngine.exe
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
- 2017-05-10 21:57:24 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
- 2017-05-10 21:57:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
- 2017-05-10 21:57:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
- 2017-05-10 21:57:23 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
- 2017-05-10 21:57:23 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
- 2017-05-10 21:57:23 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
- 2017-05-10 21:57:23 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
- 2017-05-10 21:57:23 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
- 2017-05-10 21:57:23 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
- 2017-05-10 21:57:23 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
- 2017-05-10 21:57:22 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
- 2017-05-10 21:57:22 ----A---- C:\WINDOWS\SYSWOW64\NaturalLanguage6.dll
- 2017-05-10 21:57:21 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
- 2017-05-10 21:57:21 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
- 2017-05-10 21:57:21 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
- 2017-05-10 21:57:21 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
- 2017-05-10 21:57:21 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
- 2017-05-10 21:57:20 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
- 2017-05-10 21:57:20 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
- 2017-05-10 21:57:20 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
- 2017-05-10 21:57:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
- 2017-05-10 21:57:19 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
- 2017-05-10 21:57:19 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
- 2017-05-10 21:57:19 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
- 2017-05-10 21:57:18 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
- 2017-05-10 21:57:18 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
- 2017-05-10 21:57:18 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
- 2017-05-10 21:57:17 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
- 2017-05-10 21:57:17 ----A---- C:\WINDOWS\SYSWOW64\wsp_sr.dll
- 2017-05-10 21:57:17 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
- 2017-05-10 21:57:17 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
- 2017-05-10 21:57:17 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
- 2017-05-10 21:57:17 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
- 2017-05-10 21:57:17 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
- 2017-05-10 21:57:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
- 2017-05-10 21:57:16 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
- 2017-05-10 21:57:16 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
- 2017-05-10 21:57:16 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
- 2017-05-10 21:57:16 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
- 2017-05-10 21:57:16 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
- 2017-05-10 21:57:16 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
- 2017-05-10 21:57:15 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
- 2017-05-10 21:57:15 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
- 2017-05-10 21:57:15 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
- 2017-05-10 21:57:15 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
- 2017-05-10 21:57:15 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
- 2017-05-10 21:57:15 ----A---- C:\WINDOWS\SYSWOW64\OpcServices.dll
- 2017-05-10 21:57:15 ----A---- C:\WINDOWS\SYSWOW64\MMDevAPI.dll
- 2017-05-10 21:57:15 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
- 2017-05-10 21:57:15 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
- 2017-05-10 21:57:15 ----A---- C:\WINDOWS\system32\drivers\BthLEEnum.sys
- 2017-05-10 21:57:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
- 2017-05-10 21:57:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Enumeration.dll
- 2017-05-10 21:57:14 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
- 2017-05-10 21:57:14 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
- 2017-05-10 21:57:14 ----A---- C:\WINDOWS\SYSWOW64\input.dll
- 2017-05-10 21:57:14 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
- 2017-05-10 21:57:14 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
- 2017-05-10 21:57:14 ----A---- C:\WINDOWS\system32\drivers\scmbus.sys
- 2017-05-10 21:57:13 ----A---- C:\WINDOWS\SYSWOW64\virtdisk.dll
- 2017-05-10 21:57:13 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
- 2017-05-10 21:57:13 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
- 2017-05-10 21:57:13 ----A---- C:\WINDOWS\SYSWOW64\PrintDialogs.dll
- 2017-05-10 21:57:13 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
- 2017-05-10 21:57:13 ----A---- C:\WINDOWS\SYSWOW64\LocationApi.dll
- 2017-05-10 21:57:13 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
- 2017-05-10 21:57:13 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll
- 2017-05-10 21:57:13 ----A---- C:\WINDOWS\SYSWOW64\adsnt.dll
- 2017-05-10 21:57:12 ----A---- C:\WINDOWS\SYSWOW64\dsreg.dll
- 2017-05-10 21:57:12 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
- 2017-05-10 21:57:12 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
- 2017-05-10 21:57:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
- 2017-05-10 21:57:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Energy.dll
- 2017-05-10 21:57:11 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
- 2017-05-10 21:57:11 ----A---- C:\WINDOWS\SYSWOW64\vaultcli.dll
- 2017-05-10 21:57:11 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
- 2017-05-10 21:57:11 ----A---- C:\WINDOWS\SYSWOW64\ReInfo.dll
- 2017-05-10 21:57:11 ----A---- C:\WINDOWS\SYSWOW64\rastlsext.dll
- 2017-05-10 21:57:11 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
- 2017-05-10 21:57:11 ----A---- C:\WINDOWS\SYSWOW64\imapi2.dll
- 2017-05-10 21:57:11 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
- 2017-05-10 21:57:11 ----A---- C:\WINDOWS\SYSWOW64\CameraCaptureUI.dll
- 2017-05-10 21:57:11 ----A---- C:\WINDOWS\SYSWOW64\BthTelemetry.dll
- 2017-05-10 21:57:09 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
- 2017-05-10 21:57:09 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
- 2017-05-10 21:57:08 ----A---- C:\WINDOWS\system32\WinRtTracing.dll
- 2017-05-10 21:57:08 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
- 2017-05-10 21:57:08 ----A---- C:\WINDOWS\system32\Windows.Media.Ocr.dll
- 2017-05-10 21:57:08 ----A---- C:\WINDOWS\system32\Windows.Devices.Perception.dll
- 2017-05-10 21:57:08 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
- 2017-05-10 21:57:07 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
- 2017-05-10 21:57:07 ----A---- C:\WINDOWS\system32\WwaApi.dll
- 2017-05-10 21:57:07 ----A---- C:\WINDOWS\system32\wuuhext.dll
- 2017-05-10 21:57:07 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
- 2017-05-10 21:57:07 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
- 2017-05-10 21:57:07 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
- 2017-05-10 21:57:07 ----A---- C:\WINDOWS\system32\Windows.UI.dll
- 2017-05-10 21:57:07 ----A---- C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
- 2017-05-10 21:57:07 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
- 2017-05-10 21:57:07 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
- 2017-05-10 21:57:07 ----A---- C:\WINDOWS\system32\WebcamUi.dll
- 2017-05-10 21:57:07 ----A---- C:\WINDOWS\system32\mssprxy.dll
- 2017-05-10 21:57:06 ----A---- C:\WINDOWS\system32\mssrch.dll
- 2017-05-10 21:57:05 ----A---- C:\WINDOWS\system32\usocore.dll
- 2017-05-10 21:57:04 ----A---- C:\WINDOWS\system32\WWAHost.exe
- 2017-05-10 21:57:04 ----A---- C:\WINDOWS\system32\MusNotification.exe
- 2017-05-10 21:56:59 ----A---- C:\WINDOWS\system32\updatehandlers.dll
- 2017-05-10 21:56:56 ----A---- C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
- 2017-05-10 21:56:54 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
- 2017-05-10 21:56:54 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
- 2017-05-10 21:56:53 ----A---- C:\WINDOWS\system32\Windows.Perception.Stub.dll
- 2017-05-10 21:56:53 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
- 2017-05-10 21:56:53 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
- 2017-05-10 21:56:53 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
- 2017-05-10 21:56:53 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
- 2017-05-10 21:56:53 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
- 2017-05-10 21:56:53 ----A---- C:\WINDOWS\system32\InstallAgent.exe
- 2017-05-10 21:56:53 ----A---- C:\WINDOWS\system32\efswrt.dll
- 2017-05-10 21:56:53 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
- 2017-05-10 21:56:52 ----A---- C:\WINDOWS\system32\wpnapps.dll
- 2017-05-10 21:56:52 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
- 2017-05-10 21:56:52 ----A---- C:\WINDOWS\system32\StoreAgent.dll
- 2017-05-10 21:56:52 ----A---- C:\WINDOWS\system32\SensorsApi.dll
- 2017-05-10 21:56:52 ----A---- C:\WINDOWS\system32\RTMediaFrame.dll
- 2017-05-10 21:56:52 ----A---- C:\WINDOWS\system32\mfnetcore.dll
- 2017-05-10 21:56:52 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
- 2017-05-10 21:56:52 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
- 2017-05-10 21:56:52 ----A---- C:\WINDOWS\system32\EmailApis.dll
- 2017-05-10 21:56:51 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
- 2017-05-10 21:56:51 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
- 2017-05-10 21:56:51 ----A---- C:\WINDOWS\system32\mfcore.dll
- 2017-05-10 21:56:51 ----A---- C:\WINDOWS\system32\LicenseManager.dll
- 2017-05-10 21:56:50 ----A---- C:\WINDOWS\system32\Windows.Media.dll
- 2017-05-10 21:56:50 ----A---- C:\WINDOWS\system32\rdpudd.dll
- 2017-05-10 21:56:50 ----A---- C:\WINDOWS\system32\KernelBase.dll
- 2017-05-10 21:56:49 ----A---- C:\WINDOWS\system32\windows.storage.dll
- 2017-05-10 21:56:49 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
- 2017-05-10 21:56:49 ----A---- C:\WINDOWS\system32\oleaut32.dll
- 2017-05-10 21:56:49 ----A---- C:\WINDOWS\system32\localspl.dll
- 2017-05-10 21:56:49 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
- 2017-05-10 21:56:48 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
- 2017-05-10 21:56:48 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
- 2017-05-10 21:56:48 ----A---- C:\WINDOWS\system32\shell32.dll
- 2017-05-10 21:56:47 ----A---- C:\WINDOWS\system32\mstscax.dll
- 2017-05-10 21:56:46 ----A---- C:\WINDOWS\system32\smartscreen.exe
- 2017-05-10 21:56:46 ----A---- C:\WINDOWS\system32\rdpcorets.dll
- 2017-05-10 21:56:46 ----A---- C:\WINDOWS\system32\diagtrack.dll
- 2017-05-10 21:56:45 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
- 2017-05-10 21:56:45 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
- 2017-05-10 21:56:45 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
- 2017-05-10 21:56:45 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
- 2017-05-10 21:56:44 ----A---- C:\WINDOWS\system32\wmp.dll
- 2017-05-10 21:56:44 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
- 2017-05-10 21:56:44 ----A---- C:\WINDOWS\system32\puiobj.dll
- 2017-05-10 21:56:43 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
- 2017-05-10 21:56:43 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
- 2017-05-10 21:56:42 ----A---- C:\WINDOWS\system32\wpncore.dll
- 2017-05-10 21:56:42 ----A---- C:\WINDOWS\system32\wmpps.dll
- 2017-05-10 21:56:42 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
- 2017-05-10 21:56:42 ----A---- C:\WINDOWS\system32\services.exe
- 2017-05-10 21:56:42 ----A---- C:\WINDOWS\system32\ngcsvc.dll
- 2017-05-10 21:56:42 ----A---- C:\WINDOWS\system32\mf.dll
- 2017-05-10 21:56:41 ----A---- C:\WINDOWS\system32\usercpl.dll
- 2017-05-10 21:56:41 ----A---- C:\WINDOWS\system32\rdpcore.dll
- 2017-05-10 21:56:41 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
- 2017-05-10 21:56:41 ----A---- C:\WINDOWS\system32\mstsc.exe
- 2017-05-10 21:56:41 ----A---- C:\WINDOWS\system32\mprddm.dll
- 2017-05-10 21:56:41 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
- 2017-05-10 21:56:41 ----A---- C:\WINDOWS\system32\drivers\srv.sys
- 2017-05-10 21:56:40 ----A---- C:\WINDOWS\system32\wiaservc.dll
- 2017-05-10 21:56:40 ----A---- C:\WINDOWS\system32\tsmf.dll
- 2017-05-10 21:56:40 ----A---- C:\WINDOWS\system32\SpaceControl.dll
- 2017-05-10 21:56:40 ----A---- C:\WINDOWS\system32\mfps.dll
- 2017-05-10 21:56:40 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
- 2017-05-10 21:56:39 ----A---- C:\WINDOWS\system32\msi.dll
- 2017-05-10 21:56:39 ----A---- C:\WINDOWS\system32\MMDevAPI.dll
- 2017-05-10 21:56:39 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
- 2017-05-10 21:56:37 ----A---- C:\WINDOWS\system32\PrintDialogs3D.dll
- 2017-05-10 21:56:37 ----A---- C:\WINDOWS\system32\PrintDialogs.dll
- 2017-05-10 21:56:27 ----A---- C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
- 2017-05-10 21:56:27 ----A---- C:\WINDOWS\system32\fvewiz.dll
- 2017-05-10 21:56:26 ----A---- C:\WINDOWS\system32\wksprt.exe
- 2017-05-10 21:56:26 ----A---- C:\WINDOWS\system32\Unistore.dll
- 2017-05-10 21:56:26 ----A---- C:\WINDOWS\system32\storewuauth.dll
- 2017-05-10 21:56:26 ----A---- C:\WINDOWS\system32\rdpencom.dll
- 2017-05-10 21:56:26 ----A---- C:\WINDOWS\system32\rdpclip.exe
- 2017-05-10 21:56:26 ----A---- C:\WINDOWS\system32\rastlsext.dll
- 2017-05-10 21:56:26 ----A---- C:\WINDOWS\system32\rastls.dll
- 2017-05-10 21:56:26 ----A---- C:\WINDOWS\system32\PrintWSDAHost.dll
- 2017-05-10 21:56:26 ----A---- C:\WINDOWS\system32\fvecpl.dll
- 2017-05-10 21:56:26 ----A---- C:\WINDOWS\system32\drivers\raspppoe.sys
- 2017-05-10 21:56:25 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
- 2017-05-10 21:56:25 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
- 2017-05-10 21:56:25 ----A---- C:\WINDOWS\system32\ie4uinit.exe
- 2017-05-10 21:56:24 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
- 2017-05-10 21:56:23 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
- 2017-05-10 21:56:23 ----A---- C:\WINDOWS\system32\msfeeds.dll
- 2017-05-10 21:56:22 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
- 2017-05-10 21:56:22 ----A---- C:\WINDOWS\system32\urlmon.dll
- 2017-05-10 21:56:22 ----A---- C:\WINDOWS\system32\iedkcs32.dll
- 2017-05-10 21:56:21 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
- 2017-05-10 21:56:21 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
- 2017-05-10 21:56:20 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
- 2017-05-10 21:56:20 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
- 2017-05-10 21:56:17 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
- 2017-05-10 21:56:15 ----A---- C:\WINDOWS\system32\Chakra.dll
- 2017-05-10 21:56:14 ----A---- C:\WINDOWS\system32\mshtmled.dll
- 2017-05-10 21:56:13 ----A---- C:\WINDOWS\system32\win32kbase.sys
- 2017-05-10 21:56:13 ----A---- C:\WINDOWS\system32\odbcconf.dll
- 2017-05-10 21:56:13 ----A---- C:\WINDOWS\system32\ieframe.dll
- 2017-05-10 21:56:13 ----A---- C:\WINDOWS\system32\dxtrans.dll
- 2017-05-10 21:56:13 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
- 2017-05-10 21:56:12 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
- 2017-05-10 21:56:12 ----A---- C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe
- 2017-05-10 21:56:12 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
- 2017-05-10 21:56:12 ----A---- C:\WINDOWS\system32\ieapfltr.dll
- 2017-05-10 21:56:12 ----A---- C:\WINDOWS\system32\Geolocation.dll
- 2017-05-10 21:56:11 ----A---- C:\WINDOWS\system32\mshtml.dll
- 2017-05-10 21:56:11 ----A---- C:\WINDOWS\system32\FlightSettings.dll
- 2017-05-10 21:56:10 ----A---- C:\WINDOWS\system32\wininet.dll
- 2017-05-10 21:56:10 ----A---- C:\WINDOWS\system32\ole32.dll
- 2017-05-10 21:56:10 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
- 2017-05-10 21:56:10 ----A---- C:\WINDOWS\system32\NaturalLanguage6.dll
- 2017-05-10 21:56:10 ----A---- C:\WINDOWS\system32\msdtctm.dll
- 2017-05-10 21:56:10 ----A---- C:\WINDOWS\system32\iertutil.dll
- 2017-05-10 21:56:09 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
- 2017-05-10 21:56:09 ----A---- C:\WINDOWS\system32\PlayToManager.dll
- 2017-05-10 21:56:09 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
- 2017-05-10 21:56:09 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
- 2017-05-10 21:56:09 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
- 2017-05-10 21:56:09 ----A---- C:\WINDOWS\system32\d2d1.dll
- 2017-05-10 21:56:09 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
- 2017-05-10 21:56:08 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
- 2017-05-10 21:56:08 ----A---- C:\WINDOWS\system32\Windows.Web.dll
- 2017-05-10 21:56:08 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
- 2017-05-10 21:56:08 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
- 2017-05-10 21:56:08 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
- 2017-05-10 21:56:08 ----A---- C:\WINDOWS\system32\TokenBroker.dll
- 2017-05-10 21:56:08 ----A---- C:\WINDOWS\system32\aadcloudap.dll
- 2017-05-10 21:56:07 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
- 2017-05-10 21:56:07 ----A---- C:\WINDOWS\system32\edgehtml.dll
- 2017-05-10 21:56:05 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\Windows.Devices.Printers.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\Windows.Devices.Lights.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\SyncSettings.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\RDXService.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\DisplayManager.dll
- 2017-05-10 21:56:04 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
- 2017-05-10 21:56:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
- 2017-05-10 21:56:03 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
- 2017-05-10 21:56:03 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
- 2017-05-10 21:56:03 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
- 2017-05-10 21:56:03 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
- 2017-05-10 21:56:03 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
- 2017-05-10 21:56:01 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
- 2017-05-10 21:56:01 ----A---- C:\WINDOWS\system32\jscript9.dll
- 2017-05-10 21:56:00 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
- 2017-05-10 21:56:00 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
- 2017-05-10 21:56:00 ----A---- C:\WINDOWS\system32\DWrite.dll
- 2017-05-10 21:56:00 ----A---- C:\WINDOWS\system32\aadtb.dll
- 2017-05-10 21:55:59 ----A---- C:\WINDOWS\system32\wlidsvc.dll
- 2017-05-10 21:55:59 ----A---- C:\WINDOWS\system32\LogonController.dll
- 2017-05-10 21:55:59 ----A---- C:\WINDOWS\system32\dwmcore.dll
- 2017-05-10 21:55:58 ----A---- C:\WINDOWS\system32\FntCache.dll
- 2017-05-10 21:55:57 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
- 2017-05-10 21:55:57 ----A---- C:\WINDOWS\system32\rasmans.dll
- 2017-05-10 21:55:57 ----A---- C:\WINDOWS\system32\ieproxy.dll
- 2017-05-10 21:55:57 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
- 2017-05-10 21:55:57 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
- 2017-05-10 21:55:57 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
- 2017-05-10 21:55:56 ----A---- C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
- 2017-05-10 21:55:56 ----A---- C:\WINDOWS\system32\thumbcache.dll
- 2017-05-10 21:55:56 ----A---- C:\WINDOWS\system32\browserbroker.dll
- 2017-05-10 21:55:55 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
- 2017-05-10 21:55:55 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
- 2017-05-10 21:55:55 ----A---- C:\WINDOWS\system32\ConhostV2.dll
- 2017-05-10 21:55:55 ----A---- C:\WINDOWS\system32\browser_broker.exe
- 2017-05-10 21:55:54 ----A---- C:\WINDOWS\system32\vbscript.dll
- 2017-05-10 21:55:53 ----A---- C:\WINDOWS\system32\credprovhost.dll
- 2017-05-10 21:55:53 ----A---- C:\WINDOWS\system32\CameraCaptureUI.dll
- 2017-05-10 21:55:52 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
- 2017-05-10 21:55:52 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
- 2017-05-10 21:55:52 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
- 2017-05-10 21:55:52 ----A---- C:\WINDOWS\system32\LocationFramework.dll
- 2017-05-10 21:55:52 ----A---- C:\WINDOWS\system32\iepeers.dll
- 2017-05-10 21:55:52 ----A---- C:\WINDOWS\system32\dialclient.dll
- 2017-05-10 21:55:52 ----A---- C:\WINDOWS\system32\DevicesFlowBroker.dll
- 2017-05-10 21:55:52 ----A---- C:\WINDOWS\system32\catsrvps.dll
- 2017-05-10 21:55:51 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
- 2017-05-10 21:55:51 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
- 2017-05-10 21:55:51 ----A---- C:\WINDOWS\system32\Windows.Energy.dll
- 2017-05-10 21:55:51 ----A---- C:\WINDOWS\system32\webcheck.dll
- 2017-05-10 21:55:51 ----A---- C:\WINDOWS\system32\shutdownux.dll
- 2017-05-10 21:55:51 ----A---- C:\WINDOWS\system32\CellularAPI.dll
- 2017-05-10 21:55:48 ----A---- C:\WINDOWS\system32\GamePanel.exe
- 2017-05-10 21:55:48 ----A---- C:\WINDOWS\system32\apprepsync.dll
- 2017-05-10 21:55:48 ----A---- C:\WINDOWS\system32\apprepapi.dll
- 2017-05-10 21:55:46 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
- 2017-05-10 21:55:46 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
- 2017-05-10 21:55:46 ----A---- C:\WINDOWS\system32\CertEnroll.dll
- 2017-05-10 21:55:45 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
- 2017-05-10 21:55:45 ----A---- C:\WINDOWS\system32\oleacc.dll
- 2017-05-10 21:55:45 ----A---- C:\WINDOWS\system32\msxml6.dll
- 2017-05-10 21:55:45 ----A---- C:\WINDOWS\system32\dlnashext.dll
- 2017-05-10 21:55:45 ----A---- C:\WINDOWS\system32\AuthBroker.dll
- 2017-05-10 21:55:45 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
- 2017-05-10 21:55:44 ----A---- C:\WINDOWS\system32\wuaueng.dll
- 2017-05-10 21:55:44 ----A---- C:\WINDOWS\system32\win32kfull.sys
- 2017-05-10 21:55:44 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
- 2017-05-10 21:55:44 ----A---- C:\WINDOWS\system32\sppobjs.dll
- 2017-05-10 21:55:44 ----A---- C:\WINDOWS\system32\AppContracts.dll
- 2017-05-10 21:55:43 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
- 2017-05-10 21:55:43 ----A---- C:\WINDOWS\system32\twinui.dll
- 2017-05-10 21:55:43 ----A---- C:\WINDOWS\system32\ShareHost.dll
- 2017-05-10 21:55:43 ----A---- C:\WINDOWS\system32\deviceaccess.dll
- 2017-05-10 21:55:43 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
- 2017-05-10 21:55:40 ----A---- C:\WINDOWS\system32\Windows.Gaming.Input.dll
- 2017-05-10 21:55:40 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFi.dll
- 2017-05-10 21:55:40 ----A---- C:\WINDOWS\system32\Windows.Devices.Radios.dll
- 2017-05-10 21:55:40 ----A---- C:\WINDOWS\system32\Windows.Devices.Midi.dll
- 2017-05-10 21:55:40 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
- 2017-05-10 21:55:40 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.dll
- 2017-05-10 21:55:40 ----A---- C:\WINDOWS\system32\gdi32full.dll
- 2017-05-10 21:55:40 ----A---- C:\WINDOWS\system32\Family.SyncEngine.dll
- 2017-05-10 21:55:40 ----A---- C:\WINDOWS\system32\Family.Client.dll
- 2017-05-10 21:55:40 ----A---- C:\WINDOWS\system32\ErrorDetails.dll
- 2017-05-10 21:55:39 ----A---- C:\WINDOWS\system32\WinTypes.dll
- 2017-05-10 21:55:39 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
- 2017-05-10 21:55:39 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
- 2017-05-10 21:55:39 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
- 2017-05-10 21:55:39 ----A---- C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
- 2017-05-10 21:55:39 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
- 2017-05-10 21:55:39 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
- 2017-05-10 21:55:39 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
- 2017-05-10 21:55:39 ----A---- C:\WINDOWS\system32\combase.dll
- 2017-05-10 21:55:38 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
- 2017-05-10 21:55:38 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
- 2017-05-10 21:55:38 ----A---- C:\WINDOWS\system32\mispace.dll
- 2017-05-10 21:55:38 ----A---- C:\WINDOWS\system32\drivers\cng.sys
- 2017-05-10 21:55:38 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
- 2017-05-10 21:55:37 ----A---- C:\WINDOWS\system32\storagewmi.dll
- 2017-05-10 21:55:37 ----A---- C:\WINDOWS\explorer.exe
- 2017-05-10 21:55:36 ----A---- C:\WINDOWS\system32\wsp_fs.dll
- 2017-05-10 21:55:36 ----A---- C:\WINDOWS\system32\usermgr.dll
- 2017-05-10 21:55:36 ----A---- C:\WINDOWS\system32\OpcServices.dll
- 2017-05-10 21:55:36 ----A---- C:\WINDOWS\system32\OneBackupHandler.dll
- 2017-05-10 21:55:36 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
- 2017-05-10 21:55:35 ----A---- C:\WINDOWS\system32\wsp_sr.dll
- 2017-05-10 21:55:35 ----A---- C:\WINDOWS\system32\wsp_health.dll
- 2017-05-10 21:55:35 ----A---- C:\WINDOWS\system32\winsrv.dll
- 2017-05-10 21:55:35 ----A---- C:\WINDOWS\system32\updatepolicy.dll
- 2017-05-10 21:55:35 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
- 2017-05-10 21:55:35 ----A---- C:\WINDOWS\system32\lsasrv.dll
- 2017-05-10 21:55:35 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
- 2017-05-10 21:55:35 ----A---- C:\WINDOWS\system32\crypt32.dll
- 2017-05-10 21:55:34 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
- 2017-05-10 21:55:34 ----A---- C:\WINDOWS\system32\uReFS.dll
- 2017-05-10 21:55:34 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
- 2017-05-10 21:55:34 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
- 2017-05-10 21:55:34 ----A---- C:\WINDOWS\system32\audiosrv.dll
- 2017-05-10 21:55:33 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
- 2017-05-10 21:55:33 ----A---- C:\WINDOWS\system32\SettingsHandlers_ClosedCaptioning.dll
- 2017-05-10 21:55:33 ----A---- C:\WINDOWS\system32\resutils.dll
- 2017-05-10 21:55:33 ----A---- C:\WINDOWS\system32\kernel32.dll
- 2017-05-10 21:55:33 ----A---- C:\WINDOWS\system32\CloudExperienceHostCommon.dll
- 2017-05-10 21:55:33 ----A---- C:\WINDOWS\system32\authui.dll
- 2017-05-10 21:55:32 ----A---- C:\WINDOWS\system32\wbengine.exe
- 2017-05-10 21:55:32 ----A---- C:\WINDOWS\system32\rpcss.dll
- 2017-05-10 21:55:32 ----A---- C:\WINDOWS\system32\ResetEngine.dll
- 2017-05-10 21:55:32 ----A---- C:\WINDOWS\system32\dafBth.dll
- 2017-05-10 21:55:32 ----A---- C:\WINDOWS\system32\bisrv.dll
- 2017-05-10 21:55:31 ----A---- C:\WINDOWS\system32\VSSVC.exe
- 2017-05-10 21:55:31 ----A---- C:\WINDOWS\system32\SpaceAgent.exe
- 2017-05-10 21:55:31 ----A---- C:\WINDOWS\system32\securekernel.exe
- 2017-05-10 21:55:31 ----A---- C:\WINDOWS\system32\DevicePairing.dll
- 2017-05-10 21:55:31 ----A---- C:\WINDOWS\system32\AppReadiness.dll
- 2017-05-10 21:55:30 ----A---- C:\WINDOWS\system32\wimserv.exe
- 2017-05-10 21:55:30 ----A---- C:\WINDOWS\system32\wimgapi.dll
- 2017-05-10 21:55:30 ----A---- C:\WINDOWS\system32\virtdisk.dll
- 2017-05-10 21:55:30 ----A---- C:\WINDOWS\system32\spwizeng.dll
- 2017-05-10 21:55:30 ----A---- C:\WINDOWS\system32\spaceman.exe
- 2017-05-10 21:55:30 ----A---- C:\WINDOWS\system32\ReAgent.dll
- 2017-05-10 21:55:30 ----A---- C:\WINDOWS\system32\input.dll
- 2017-05-10 21:55:30 ----A---- C:\WINDOWS\system32\drivers\fsdepends.sys
- 2017-05-10 21:55:30 ----A---- C:\WINDOWS\system32\CPFilters.dll
- 2017-05-10 21:55:29 ----A---- C:\WINDOWS\system32\winlogon.exe
- 2017-05-10 21:55:29 ----A---- C:\WINDOWS\system32\vds.exe
- 2017-05-10 21:55:29 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
- 2017-05-10 21:55:29 ----A---- C:\WINDOWS\system32\LocationApi.dll
- 2017-05-10 21:55:29 ----A---- C:\WINDOWS\system32\imapi2.dll
- 2017-05-10 21:55:29 ----A---- C:\WINDOWS\system32\cryptui.dll
- 2017-05-10 21:55:29 ----A---- C:\WINDOWS\system32\bthserv.dll
- 2017-05-10 21:55:29 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
- 2017-05-10 21:55:29 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
- 2017-05-10 21:55:28 ----A---- C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
- 2017-05-10 21:55:28 ----A---- C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
- 2017-05-10 21:55:28 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
- 2017-05-10 21:55:28 ----A---- C:\WINDOWS\system32\vaultcli.dll
- 2017-05-10 21:55:28 ----A---- C:\WINDOWS\system32\ConsentUX.dll
- 2017-05-10 21:55:28 ----A---- C:\WINDOWS\system32\BthTelemetry.dll
- 2017-05-10 21:55:28 ----A---- C:\WINDOWS\system32\appidsvc.dll
- 2017-05-10 21:55:28 ----A---- C:\WINDOWS\system32\appidcertstorecheck.exe
- 2017-05-10 21:55:28 ----A---- C:\WINDOWS\system32\adsnt.dll
- 2017-04-23 18:11:57 ----AD---- C:\Program Files (x86)\PDFTools
- ====== List of files/folders modified in the last 1 month ======
- 2017-05-18 11:08:27 ----D---- C:\Program Files\trend micro
- 2017-05-18 11:07:31 ----D---- C:\WINDOWS\Temp
- 2017-05-18 11:06:02 ----D---- C:\WINDOWS\AppReadiness
- 2017-05-18 10:31:17 ----D---- C:\WINDOWS\system32\sru
- 2017-05-18 10:30:30 ----D---- C:\WINDOWS\system32\SleepStudy
- 2017-05-17 22:38:14 ----RD---- C:\WINDOWS\Microsoft.NET
- 2017-05-17 21:37:07 ----D---- C:\Users\Jan\AppData\Roaming\.minecraft
- 2017-05-17 17:38:23 ----D---- C:\WINDOWS\Prefetch
- 2017-05-17 12:15:45 ----D---- C:\Program Files (x86)\Steam
- 2017-05-17 11:55:47 ----D---- C:\ProgramData\ASUS Smart Gesture
- 2017-05-17 11:55:06 ----D---- C:\WINDOWS\System32
- 2017-05-17 11:55:06 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
- 2017-05-17 11:48:26 ----D---- C:\WINDOWS\system32\catroot2
- 2017-05-17 11:47:56 ----D---- C:\AdwCleaner
- 2017-05-17 10:28:29 ----HD---- C:\Program Files\WindowsApps
- 2017-05-17 10:23:10 ----D---- C:\Users\Jan\AppData\Roaming\FileZilla
- 2017-05-16 18:10:18 ----D---- C:\WINDOWS\system32\config
- 2017-05-16 18:01:17 ----D---- C:\WINDOWS\INF
- 2017-05-16 17:34:10 ----D---- C:\WINDOWS\WinSxS
- 2017-05-16 17:31:53 ----D---- C:\WINDOWS\system32\DriverStore
- 2017-05-16 17:30:01 ----SHD---- C:\Config.Msi
- 2017-05-16 17:30:01 ----D---- C:\WINDOWS\system32\drivers
- 2017-05-16 17:23:50 ----SD---- C:\WINDOWS\SYSWOW64\F12
- 2017-05-16 17:23:50 ----D---- C:\WINDOWS\SYSWOW64\wbem
- 2017-05-16 17:23:50 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS
- 2017-05-16 17:23:50 ----D---- C:\WINDOWS\SYSWOW64\Dism
- 2017-05-16 17:23:50 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
- 2017-05-16 17:23:50 ----AD---- C:\WINDOWS\SysWOW64
- 2017-05-16 17:23:39 ----D---- C:\WINDOWS\system32\wbem
- 2017-05-16 17:23:38 ----SD---- C:\WINDOWS\system32\F12
- 2017-05-16 17:23:38 ----D---- C:\WINDOWS\system32\SystemResetPlatform
- 2017-05-16 17:23:38 ----D---- C:\WINDOWS\system32\sr-Latn-CS
- 2017-05-16 17:23:38 ----D---- C:\WINDOWS\system32\oobe
- 2017-05-16 17:23:38 ----D---- C:\WINDOWS\system32\cs-CZ
- 2017-05-16 17:23:28 ----D---- C:\WINDOWS\ShellExperiences
- 2017-05-16 17:23:28 ----D---- C:\WINDOWS\Provisioning
- 2017-05-16 17:23:28 ----D---- C:\WINDOWS\PolicyDefinitions
- 2017-05-16 17:23:27 ----RD---- C:\WINDOWS\ImmersiveControlPanel
- 2017-05-16 17:23:27 ----RD---- C:\Program Files\Windows Defender
- 2017-05-16 17:23:27 ----D---- C:\Windows
- 2017-05-16 17:23:27 ----D---- C:\Program Files\Windows Photo Viewer
- 2017-05-16 17:23:27 ----D---- C:\Program Files (x86)\Windows Photo Viewer
- 2017-05-16 17:23:27 ----D---- C:\Program Files (x86)\Windows Defender
- 2017-05-16 16:35:53 ----D---- C:\WINDOWS\CbsTemp
- 2017-05-16 16:35:40 ----D---- C:\WINDOWS\system32\appraiser
- 2017-05-16 16:35:28 ----SHD---- C:\System Volume Information
- 2017-05-16 11:45:04 ----AD---- C:\Program Files (x86)\Mozilla Firefox
- 2017-05-15 15:34:06 ----D---- C:\Users\Jan\AppData\Roaming\uTorrent
- 2017-05-14 14:18:59 ----D---- C:\ProgramData\BlueStacksSetup
- 2017-05-11 22:12:07 ----D---- C:\Users\Jan\AppData\Roaming\TS3Client
- 2017-05-11 16:53:52 ----D---- C:\WINDOWS\system32\MRT
- 2017-05-11 16:49:51 ----AC---- C:\WINDOWS\system32\MRT.exe
- 2017-05-11 16:49:20 ----SHDC---- C:\WINDOWS\Installer
- 2017-05-11 16:49:19 ----D---- C:\ProgramData\Microsoft Help
- 2017-05-11 16:46:55 ----RSD---- C:\WINDOWS\assembly
- 2017-05-11 16:36:11 ----A---- C:\WINDOWS\win.ini
- 2017-05-10 21:23:55 ----A---- C:\WINDOWS\system32\WSManMigrationPlugin.dll
- 2017-05-05 11:01:56 ----D---- C:\WINDOWS\system32\Tasks
- 2017-05-02 10:28:22 ----D---- C:\WINDOWS\system32\NDF
- 2017-04-29 10:34:59 ----RD---- C:\Program Files (x86)
- 2017-04-29 02:59:37 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
- 2017-04-28 03:01:16 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
- 2017-04-23 19:03:46 ----D---- C:\Users\Jan\AppData\Roaming\Adobe
- 2017-04-23 18:51:54 ----D---- C:\ProgramData\regid.1986-12.com.adobe
- 2017-04-23 18:42:13 ----D---- C:\WINDOWS\system32\CatRoot
- 2017-04-23 18:40:52 ----RSD---- C:\WINDOWS\Fonts
- 2017-04-23 18:40:05 ----AD---- C:\Program Files (x86)\Adobe
- 2017-04-23 18:31:31 ----D---- C:\WINDOWS\system32\drivers\etc
- File C:\WINDOWS\system32\winlogon.exe is digitally signed
- File C:\WINDOWS\system32\wininit.exe is digitally signed
- File C:\WINDOWS\explorer.exe is digitally signed
- File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
- File C:\WINDOWS\system32\svchost.exe is digitally signed
- File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
- File C:\WINDOWS\system32\services.exe is digitally signed
- File C:\WINDOWS\system32\User32.dll is digitally signed
- File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
- File C:\WINDOWS\system32\userinit.exe is digitally signed
- File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
- File C:\WINDOWS\system32\rpcss.dll is digitally signed
- File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed
- ====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
- R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-09-14 647736]
- R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
- R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2016-09-20 48696]
- R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2013-07-02 19768]
- R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
- R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
- R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2012-09-18 17152]
- R3 AsusTP;@oem26.inf,%PS2.DeviceDesc%;ASUS Input Touchpad Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2017-03-09 128024]
- R3 bcbtums;@oem18.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2015-03-27 173312]
- R3 BCM43XX;@oem1.inf,%BCM43XX_Service_DispName%;Ovladač síťového adaptéru Broadcom 802.11; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [2014-04-18 8462000]
- R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-09-19 114176]
- R3 BthLEEnum;@BthLEEnum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2017-04-28 249856]
- R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-10-05 128512]
- R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-09-19 84992]
- R3 dtlitescsibus;@oem13.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2017-01-03 30264]
- R3 dtliteusbbus;@oem15.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2017-01-03 47672]
- R3 Hamachi;@oem29.inf,%Hamachi.Service.DispName%;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\System32\drivers\Hamdrv.sys [2016-07-20 45680]
- R3 HIDSwitch;@oem96.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2015-05-13 19976]
- R3 iwdbus;@oem22.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-12-01 38896]
- R3 kbfiltr;@oem11.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992]
- R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_d5bd1ae16e09cc23\nvlddmkm.sys [2016-09-20 14242872]
- R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-06-15 28216]
- R3 nvvad_WaveExtensible;@oem5.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2016-04-14 56384]
- R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-07-16 183808]
- R3 RSBASTOR;@oem6.inf,%Rts5208%;Realtek PCIE CardReader Driver - BA; C:\WINDOWS\system32\DRIVERS\RtsBaStor.sys [2015-07-08 321792]
- R3 rt640x64;@oem20.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2017-02-20 947712]
- R3 SensorsSimulatorDriver;@oem31.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [2016-07-16 216064]
- R3 tap0901t;@oem0.inf,%DeviceDescription%;TAP-Win32 Adapter V9 (Tunngle); C:\WINDOWS\System32\drivers\tap0901t.sys [2016-04-26 48824]
- S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
- S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2017-04-28 88416]
- S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
- S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
- S3 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2017-03-31 152672]
- S3 BstkDrv;BlueStacks Plus Hypervisor; \??\C:\Program Files (x86)\BlueStacks\BstkDrv.sys [2017-03-31 270904]
- S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2017-04-28 967680]
- S3 btwampfl;@oem18.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2015-03-27 188160]
- S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-09-19 73568]
- S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
- S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
- S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
- S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
- S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
- S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-12-01 50160]
- S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
- S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
- S3 RTL8168;@oem66.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\System32\drivers\Rt630x64.sys [2013-11-29 838872]
- S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
- ====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
- R2 ABBYY.Licensing.FineReader.Professional.12.0;ABBYY FineReader 12 PE Licensing Service; C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe [2014-07-13 961744]
- R2 AdAppMgrSvc;Autodesk Desktop App Service; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [2016-07-01 1295376]
- R2 AGSService;Adobe Genuine Software Integrity Service; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2017-02-27 2227312]
- R2 ArcGIS License Manager;ArcGIS License Manager; C:\Program Files (x86)\ArcGIS\License10.3\bin\lmgrd.exe [2014-09-18 1499512]
- R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-09-09 111416]
- R2 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [2012-04-13 277120]
- R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
- R2 BcmBtRSupport;@oem18.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2015-03-27 2251992]
- R2 CDPUserSvc_3da44;CDPUserSvc_3da44; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
- R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2016-05-03 337888]
- R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
- R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-08-13 154584]
- R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [2017-02-27 419248]
- R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-08-13 405976]
- R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-06-15 1881144]
- R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-06-15 2522680]
- R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2016-09-17 1364024]
- R2 OneSyncSvc_3da44;Hostitel synchronizace_3da44; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
- R2 PSI_SVC_2_x64;Corel License Validation Service V2 x64, Powered by arvato; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2013-09-13 337776]
- R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2016-04-30 131776]
- R3 FlexNet Licensing Service;FlexNet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [2016-07-20 1104176]
- R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
- R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2016-06-15 3634232]
- R3 PimIndexMaintenanceSvc_3da44;Data kontaktů_3da44; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
- R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2017-04-26 1590048]
- S2 Asus WebStorage Windows Service;Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [2012-12-19 72192]
- S2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2012-12-13 12288]
- S2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2017-03-31 406040]
- S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" = %SystemRoot%\System32\CDPUserSvc.dll
- S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [2017-03-02 3416584]
- S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2017-02-27 317400]
- S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-07-16 52920]
- S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2017-04-13 1530376]
- S3 BstHdAndroidSvc;BlueStacks Android Service ; C:\Program Files (x86)\BlueStacks\HD-Service.exe [2017-03-31 428056]
- S3 BstHdPlusAndroidSvc;BlueStacks Plus Android Service ; C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe [2017-03-31 452632]
- S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2016-12-22 1471168]
- S3 FlexNet Licensing Service 64;FlexNet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2017-03-08 1471352]
- S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll" = %SystemRoot%\system32\FrameServer.dll
- S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
- S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\hvhostsvc.dll
- S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
- S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\irmon.dll
- S3 MessagingService_3da44;Služba zasílání zpráv_3da44; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
- S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2017-03-19 172488]
- S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
- S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
- S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\RMapi.dll
- S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
- S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; %SystemRoot%\System32\svchost.exe -k netsvcs;"ServiceDll" = %systemroot%\system32\Windows.SharedPC.AccountManager.dll
- -----------------EOF-----------------
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement