Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Podivně chovající se facebook zprávy

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
bert.foley
Návštěvník
Návštěvník
Příspěvky: 2
Registrován: 26 led 2018 17:06

Podivně chovající se facebook zprávy

#1 Příspěvek od bert.foley »

Dobrý den. Od včerejška mi začly podivně chovat zprávy na facebooku.

Chrome: Pravidelně poskakují nahoru a dolu, přibližně 5mm, s frekvencí cca 5 poskočení za sekundu. Navíc, když začnu zmenšovat okno, začne to dělat ještě větší bordel..

Firefox: Nic neposkakuje, ale blbne scrolling. Chvíli se to vrací na původní místo. Posuvník na pravo funguje. Zde malé video o problému: https://youtu.be/7Qv_oGyP6G8

Předem díky za jakoukoliv pomoc. Bert

---

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21.01.2018
Ran by Bert (administrator) on EKLEN-PC1 (26-01-2018 17:12:28)
Running from C:\Users\Bert\Desktop
Loaded Profiles: Bert (Available Profiles: Bert)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Brio) C:\Program Files\FolderSize\FolderSizeSvc.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\nlssrv32.exe
(PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe
(Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsserv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe
(WiseCleaner.COM) C:\Program Files (x86)\Wise\Wise Auto Shutdown\WiseAutoShutdown.exe
(RME) C:\Windows\System32\hdsp32.exe
(RME) C:\Windows\System32\TotalMixFX.exe
() C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
() C:\Program Files (x86)\RocketDock\RocketDock.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\bdagent.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe
(forum.viry.cz) C:\Users\Bert\Desktop\FRSTLauncher.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [HDSPTray1] => C:\Windows\system32\hdsp32.exe [664064 2016-10-31] (RME)
HKLM\...\Run: [FirefaceMixTray2] => C:\Windows\system32\TotalMixFX.exe [23923416 2016-11-08] (RME)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] ()
HKU\S-1-5-21-3254497445-1613137920-521823671-1000\...\Run: [RocketDock] => C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] ()
HKU\S-1-5-21-3254497445-1613137920-521823671-1000\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3254497445-1613137920-521823671-1000\...\MountPoints2: {4d8651c7-d475-11e7-b6f0-806e6f6e6963} - D:\DVDSetup.exe
HKU\S-1-5-21-3254497445-1613137920-521823671-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\PhotoScreensaver.scr [477696 2010-11-21] (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{F2D23908-A3A4-4F5B-8B68-341DB2407C33}: [DhcpNameServer] 10.0.0.138

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-3254497445-1613137920-521823671-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\S-1-5-21-3254497445-1613137920-521823671-1000 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://search.yahoo.com/yhs/search?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__ch_WCYID10440__171204__yaie&p={searchTerms}
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office16\URLREDIR.DLL [2015-07-31] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office16\URLREDIR.DLL [2015-07-31] (Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2016-06-15] (Microsoft Corporation)
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-06-14] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-06-14] (Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-06-14] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-06-14] (Microsoft Corporation)

FireFox:
========
FF DefaultProfile: cngi3qlu.default
FF ProfilePath: C:\Users\Bert\AppData\Roaming\Mozilla\Firefox\Profiles\cngi3qlu.default [2018-01-26]
FF Homepage: Mozilla\Firefox\Profiles\cngi3qlu.default -> eklen.cz
FF NewTab: Mozilla\Firefox\Profiles\cngi3qlu.default -> hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10440__171204__yaff
FF Session Restore: Mozilla\Firefox\Profiles\cngi3qlu.default -> is enabled.
FF Extension: (Stylish - Custom themes for any website) - C:\Users\Bert\AppData\Roaming\Mozilla\Firefox\Profiles\cngi3qlu.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [2017-12-15]
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~4\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-01-26] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-01-26] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-11-04] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)

Chrome:
=======
CHR HomePage: Default -> file:///C:/Users/B3RT/Downloads
CHR StartupUrls: Default -> "hxxps://www.google.com/"
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default [2018-01-26]
CHR Extension: (Prezentace) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-01-26]
CHR Extension: (Dokumenty) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-01-26]
CHR Extension: (Disk Google) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-01-26]
CHR Extension: (YouTube) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-01-26]
CHR Extension: (Slinky Elegantní) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmanlajnpdncmhfkiccmbgeocgbncfln [2018-01-26]
CHR Extension: (plugCubed) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfeomlnnfncblkheeneahgmngbnbiaoi [2018-01-26]
CHR Extension: (Adblock Plus) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-01-26]
CHR Extension: (Word Replacer II) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\djakfbefalbkkdgnhkkdiihelkjdpbfh [2018-01-26]
CHR Extension: (Tabulky) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-01-26]
CHR Extension: (Stylish - Custom themes for any website) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe [2018-01-26]
CHR Extension: (Dokumenty Google offline) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-01-26]
CHR Extension: (Flashcontrol) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfidmkgnfgnkihnjeklbekckimkipmoe [2018-01-26]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-01-26]
CHR Extension: (Gmail) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-01-26]
CHR Extension: (Chrome Media Router) - C:\Users\Bert\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-01-26]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6998536 2017-12-24] ()
R2 FolderSize; C:\Program Files\FolderSize\FolderSizeSvc.exe [163840 2013-02-13] (Brio) [File not signed]
R2 nlsX86cc; C:\Windows\SysWOW64\nlssrv32.exe [66560 2011-09-22] (Nalpeiron Ltd.) [File not signed]
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519992 2018-01-10] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519992 2018-01-10] (NVIDIA Corporation)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1254736 2017-04-11] (Bitdefender)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 updatesrv; C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe [100392 2018-01-24] (Bitdefender)
R2 vsserv; C:\Program Files\Bitdefender Antivirus Free\vsserv.exe [100392 2018-01-24] (Bitdefender)
R2 vsservppl; C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe [100392 2018-01-24] (Bitdefender)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
R2 PaceLicenseDServices; "C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe" -u https://activation.paceap.com/InitiateActivation [X] <==== ATTENTION
S2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [X]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 atc; C:\Windows\System32\DRIVERS\atc.sys [1058784 2018-01-24] (BitDefender S.R.L. Bucharest, ROMANIA)
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1765336 2018-01-24] (BitDefender)
R0 BdDci; C:\Windows\System32\DRIVERS\bddci.sys [155488 2017-12-15] (Bitdefender)
S3 cpuz144; C:\Windows\temp\cpuz144\cpuz144_x64.sys [48984 2017-11-30] (CPUID)
R3 edrsensor; C:\Windows\System32\DRIVERS\edrsensor.sys [250504 2017-11-28] (BitDefender S.R.L. Bucharest, ROMANIA)
R0 gzflt; C:\Windows\System32\drivers\gzflt.sys [187688 2017-05-11] (BitDefender LLC)
R3 hdsp; C:\Windows\System32\drivers\hdsp_64.sys [83456 2016-10-31] (RME)
R3 NIWinCDEmu; C:\Windows\System32\DRIVERS\NIWinCDEmu.sys [112408 2015-08-24] ()
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [31024 2018-01-10] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [59240 2017-12-15] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57792 2018-01-04] (NVIDIA Corporation)
R0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation)
R3 ScpVBus; C:\Windows\System32\DRIVERS\ScpVBus.sys [44080 2017-10-27] (Nefarius Software Solutions)
R2 trufos; C:\Windows\System32\drivers\trufos.sys [520032 2016-06-22] (BitDefender S.R.L.)
S3 vjoy; C:\Windows\System32\DRIVERS\vjoy.sys [57976 2017-04-06] (Shaul Eizikovich)
S3 xb1usb; C:\Windows\System32\DRIVERS\xb1usb.sys [34016 2014-05-27] (Microsoft Corporation)
S3 MSICDSetup; \??\D:\CDriver64.sys [X]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X]
S4 NVHDA; system32\drivers\nvhda64v.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-01-26 17:12 - 2018-01-26 17:12 - 000015289 _____ C:\Users\Bert\Desktop\FRST.txt
2018-01-26 17:11 - 2018-01-26 17:12 - 000000000 ____D C:\FRST
2018-01-26 17:09 - 2018-01-26 17:09 - 000112640 _____ (forum.viry.cz) C:\Users\Bert\Desktop\FRSTLauncher.exe
2018-01-26 17:08 - 2018-01-26 17:08 - 002393088 _____ (Farbar) C:\Users\Bert\Desktop\FRST64.exe
2018-01-26 17:01 - 2018-01-26 17:01 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-01-26 17:01 - 2018-01-26 17:01 - 000002262 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-01-26 17:00 - 2018-01-26 17:00 - 001129816 _____ (Google Inc.) C:\Users\Bert\Downloads\ChromeSetup.exe
2018-01-26 17:00 - 2018-01-26 17:00 - 000003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2018-01-26 17:00 - 2018-01-26 17:00 - 000003256 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2018-01-26 16:55 - 2018-01-26 16:56 - 000000000 ____D C:\Users\Bert\AppData\Local\NPE
2018-01-26 16:55 - 2018-01-26 16:55 - 000000000 ____D C:\ProgramData\Norton
2018-01-26 16:54 - 2018-01-26 16:55 - 009494240 _____ (Symantec Corporation) C:\Users\Bert\Downloads\NPE.exe
2018-01-26 16:45 - 2018-01-26 16:45 - 000000000 ____D C:\Windows\LastGood
2018-01-26 16:45 - 2017-12-15 03:03 - 000059240 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2018-01-25 20:07 - 2018-01-25 20:07 - 000069185 _____ C:\Users\Bert\Downloads\kirvy.zip
2018-01-22 21:23 - 2018-01-22 21:23 - 000139619 _____ C:\Users\Bert\Downloads\eklen_vector.png.zip
2018-01-20 14:32 - 2018-01-20 14:34 - 291625591 _____ C:\Users\Bert\Downloads\zasilka-UPCKD2ZYU9ZJ32E9.zip
2018-01-18 23:25 - 2011-09-28 13:39 - 000003584 _____ C:\Windows\system32\ColorEfexPro4FC32.dll
2018-01-18 23:24 - 2011-09-28 13:39 - 000004608 _____ C:\Windows\system32\ColorEfexPro4FC64.dll
2018-01-18 23:23 - 2018-01-18 23:23 - 000000000 ____D C:\Users\Bert\AppData\Local\Nik Software
2018-01-18 23:23 - 2018-01-18 23:23 - 000000000 ____D C:\ProgramData\Nik Software
2018-01-18 23:23 - 2018-01-18 23:23 - 000000000 ____D C:\Program Files\Nik Software
2018-01-18 23:22 - 2018-01-18 23:22 - 000000000 ____D C:\Users\Bert\Downloads\Nik Software Color Efex Pro 4.00 REV 15202 Complete Edition (x86-x64) with CRACK
2018-01-16 23:28 - 2018-01-16 23:28 - 002410365 _____ C:\Users\Bert\Downloads\WEB.rar
2018-01-13 12:53 - 2018-01-13 12:53 - 000180942 _____ C:\Users\Bert\Downloads\micronus_y145m-2009.zip
2018-01-13 12:51 - 2018-01-13 12:51 - 000070394 _____ C:\Users\Bert\Downloads\peter-wiegel_tgl-31034.zip
2018-01-13 12:06 - 2018-01-13 12:06 - 000000000 ____D C:\Users\Bert\Documents\Custom Office Templates
2018-01-13 10:15 - 2018-01-13 10:15 - 000000000 ____D C:\Users\Bert\AppData\Roaming\NVIDIA
2018-01-11 20:09 - 2018-01-11 20:09 - 000002833 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2018-01-11 20:09 - 2018-01-11 20:09 - 000002805 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2018-01-11 20:09 - 2018-01-11 20:09 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
2018-01-11 20:09 - 2018-01-11 20:09 - 000000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2018-01-11 20:08 - 2018-01-11 20:08 - 000000000 ____D C:\Windows\PCHEALTH
2018-01-11 20:08 - 2018-01-11 20:08 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-01-11 20:08 - 2018-01-11 20:08 - 000000000 ____D C:\Program Files\Microsoft SQL Server
2018-01-11 20:08 - 2018-01-11 20:08 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2018-01-11 20:08 - 2018-01-11 20:08 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2018-01-11 20:04 - 2018-01-11 20:04 - 000000000 __RHD C:\MSOCache
2018-01-11 20:04 - 2018-01-11 20:04 - 000000000 ____D C:\Users\Bert\AppData\Local\Microsoft Help
2018-01-11 20:04 - 2018-01-11 20:04 - 000000000 ____D C:\Program Files\Microsoft Office
2018-01-11 20:04 - 2018-01-11 20:04 - 000000000 ____D C:\Program Files\Microsoft Analysis Services
2018-01-11 20:04 - 2018-01-11 20:04 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2018-01-11 20:04 - 2018-01-11 20:04 - 000000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2018-01-11 20:00 - 2018-01-11 20:00 - 000000000 ____D C:\Users\Bert\AppData\Local\mpress
2018-01-08 20:45 - 2018-01-08 20:45 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
2018-01-08 20:45 - 2018-01-08 20:45 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2018-01-08 20:45 - 2018-01-04 02:39 - 000532792 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2018-01-08 20:45 - 2018-01-04 02:39 - 000437648 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2018-01-08 20:45 - 2018-01-04 00:50 - 005951336 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2018-01-08 20:45 - 2018-01-04 00:50 - 002588232 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2018-01-08 20:45 - 2018-01-04 00:50 - 001768480 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2018-01-08 20:45 - 2018-01-04 00:50 - 000631880 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2018-01-08 20:45 - 2018-01-04 00:50 - 000450352 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2018-01-08 20:45 - 2018-01-04 00:50 - 000123704 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2018-01-08 20:45 - 2018-01-04 00:50 - 000081992 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2018-01-08 20:45 - 2017-12-24 20:07 - 007928821 _____ C:\Windows\system32\nvcoproc.bin
2018-01-08 20:45 - 2017-12-13 20:25 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2018-01-08 20:45 - 2017-11-02 21:15 - 000928568 _____ C:\Windows\system32\vulkan-1.dll
2018-01-08 20:45 - 2017-11-02 21:15 - 000798520 _____ C:\Windows\SysWOW64\vulkan-1.dll
2018-01-08 20:45 - 2017-11-02 21:15 - 000490808 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2018-01-08 20:45 - 2017-11-02 21:14 - 000591672 _____ C:\Windows\system32\vulkaninfo.exe
2018-01-08 20:43 - 2018-01-04 02:39 - 040269624 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 035278136 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 035179080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 027856456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 022573984 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 019796008 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 019677112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 018730328 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 017303112 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2018-01-08 20:43 - 2018-01-04 02:39 - 016450056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 015408072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 013430632 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 012842984 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 011015584 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 010900248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 004375648 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 003902448 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 003874728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 003432944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 001975184 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6439065.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 001674544 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6439065.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 001134952 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 001125688 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 001054512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 000988144 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 000939504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 000885680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 000616240 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 000528312 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 000506672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 000492048 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 000447424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 000407064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 000171896 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 000154208 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 000149736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 000132072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2018-01-08 20:43 - 2018-01-04 02:39 - 000057792 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
2018-01-08 20:43 - 2018-01-04 02:39 - 000045386 _____ C:\Windows\system32\nvinfo.pb
2018-01-08 20:43 - 2018-01-04 02:39 - 000000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2018-01-08 20:43 - 2018-01-04 02:39 - 000000669 _____ C:\Windows\system32\nv-vk64.json
2018-01-07 19:33 - 2018-01-07 19:33 - 000001533 _____ C:\Users\Bert\Desktop\Minecraft.lnk
2018-01-07 13:58 - 2018-01-07 19:35 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2018-01-07 13:58 - 2018-01-07 13:58 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2018-01-07 13:57 - 2018-01-07 13:57 - 001207800 _____ (Adobe Systems Incorporated) C:\Users\Bert\Downloads\readerdc_cz_xa_crd_install - Copy.exe
2018-01-06 21:41 - 2018-01-06 21:41 - 000000000 ____D C:\Users\Bert\AppData\Local\fontconfig
2018-01-06 21:39 - 2018-01-06 21:39 - 000000000 ____D C:\Users\Bert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2018-01-06 21:39 - 2018-01-06 21:39 - 000000000 ____D C:\Program Files (x86)\FormatFactory
2018-01-06 21:37 - 2018-01-06 21:38 - 054080744 _____ (Free Time Co., Ltd) C:\Users\Bert\Downloads\FFSetup4.2.0.0.exe
2018-01-06 20:46 - 2018-01-06 20:46 - 000515008 _____ C:\Users\Bert\Downloads\Loscil- Sickbay.mp3.sfk
2018-01-04 20:07 - 2018-01-04 20:07 - 000000000 ____D C:\Tor Browser
2018-01-04 20:05 - 2018-01-04 20:06 - 053564880 _____ C:\Users\Bert\Downloads\torbrowser-install-7.0.11_en-US.exe
2017-12-31 12:48 - 2017-12-31 12:48 - 000000220 _____ C:\Users\Bert\Desktop\Garry's Mod.url
2017-12-29 12:57 - 2018-01-01 13:28 - 000000000 ____D C:\Users\Bert\Documents\The Witcher 3
2017-12-29 12:57 - 2017-12-29 12:57 - 000000000 ____D C:\Users\Bert\ansel
2017-12-28 21:35 - 2017-12-28 21:36 - 000000000 ____D C:\Users\Bert\AppData\Local\Skyrim
2017-12-28 19:45 - 2017-12-28 19:45 - 000000221 _____ C:\Users\Bert\Desktop\The Elder Scrolls V Skyrim.url
2017-12-28 19:20 - 2017-12-28 19:20 - 000000222 _____ C:\Users\Bert\Desktop\The Witcher 3 Wild Hunt.url

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-01-26 17:12 - 2017-11-28 21:44 - 000000000 ____D C:\Program Files\Bitdefender Antivirus Free
2018-01-26 17:01 - 2017-12-07 21:16 - 000000000 ____D C:\Users\Bert\AppData\Local\CrashDumps
2018-01-26 17:01 - 2017-11-28 21:13 - 000000000 ____D C:\Users\Bert\AppData\Local\Google
2018-01-26 17:01 - 2017-11-28 21:13 - 000000000 ____D C:\Program Files (x86)\Google
2018-01-26 16:58 - 2017-11-30 01:20 - 000000000 ____D C:\Users\Bert\AppData\LocalLow\Mozilla
2018-01-26 16:45 - 2017-12-20 11:45 - 000001419 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2018-01-26 16:45 - 2017-12-20 11:36 - 000004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-01-26 16:45 - 2017-12-20 11:36 - 000003814 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-01-26 16:45 - 2017-12-20 11:36 - 000003798 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-01-26 16:45 - 2017-12-20 11:36 - 000003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-01-26 16:45 - 2017-12-20 11:36 - 000003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-01-26 16:45 - 2017-12-20 11:36 - 000003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-01-26 16:45 - 2017-12-20 11:36 - 000003554 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-01-26 16:45 - 2017-12-20 11:36 - 000003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-01-26 16:45 - 2017-11-28 21:07 - 000000000 ____D C:\ProgramData\NVIDIA
2018-01-26 16:45 - 2017-11-28 21:05 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2018-01-26 16:45 - 2017-11-28 21:05 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2018-01-26 16:45 - 2017-11-28 21:04 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2018-01-26 16:45 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2018-01-26 16:33 - 2017-11-30 01:20 - 000000000 ____D C:\Program Files\Mozilla Firefox
2018-01-26 16:33 - 2017-11-30 01:20 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2018-01-26 14:27 - 2017-12-10 18:51 - 000000000 ____D C:\Users\Bert\AppData\Local\Adobe
2018-01-26 14:25 - 2009-07-14 05:45 - 000026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-01-26 14:25 - 2009-07-14 05:45 - 000026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-01-26 14:23 - 2009-07-14 06:13 - 000781582 _____ C:\Windows\system32\PerfStringBackup.INI
2018-01-26 14:17 - 2017-12-10 02:37 - 000000450 _____ C:\Windows\Tasks\Wise Auto Shutdown Task.job
2018-01-26 14:17 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-01-26 14:17 - 2009-07-14 05:45 - 005022616 _____ C:\Windows\system32\FNTCACHE.DAT
2018-01-25 20:22 - 2017-11-28 21:11 - 000086192 _____ C:\Users\Bert\AppData\Local\GDIPFONTCACHEV1.DAT
2018-01-25 19:22 - 2009-07-14 04:20 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2018-01-24 18:36 - 2017-11-28 21:44 - 001765336 _____ (BitDefender) C:\Windows\system32\Drivers\avc3.sys
2018-01-24 18:36 - 2017-11-28 21:44 - 001058784 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\atc.sys
2018-01-24 14:43 - 2017-11-29 19:47 - 000000000 ____D C:\Users\Bert\AppData\Roaming\vlc
2018-01-22 19:06 - 2017-12-03 21:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2018-01-18 23:25 - 2017-12-10 18:54 - 000000000 ____D C:\Users\Bert\Documents\Adobe
2018-01-18 23:25 - 2017-11-28 21:38 - 000000000 ____D C:\Users\Bert\AppData\Roaming\Adobe
2018-01-18 23:24 - 2017-12-04 23:34 - 000000000 ____D C:\Users\Bert\AppData\Roaming\uTorrent
2018-01-17 12:30 - 2017-12-10 19:18 - 000000132 _____ C:\Users\Bert\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2018-01-13 10:15 - 2017-12-03 03:15 - 000000000 ____D C:\Users\Bert\AppData\Local\NVIDIA
2018-01-11 20:08 - 2009-07-14 04:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2018-01-11 20:04 - 2010-11-21 08:16 - 000000000 ____D C:\Windows\ShellNew
2018-01-10 22:53 - 2017-11-28 22:11 - 000000000 ____D C:\Program Files (x86)\Steam
2018-01-10 21:18 - 2017-12-06 17:35 - 000000000 ____D C:\Users\Bert\Desktop\Shred
2018-01-10 15:33 - 2017-12-20 11:36 - 002425656 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2018-01-10 15:33 - 2017-12-20 11:36 - 002090800 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2018-01-10 15:33 - 2017-12-20 11:36 - 001310008 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll
2018-01-10 10:41 - 2017-12-03 03:14 - 000001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2018-01-08 21:26 - 2017-12-05 02:19 - 000000000 ____D C:\Users\Bert\AppData\Roaming\audacity
2018-01-08 20:45 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\Help
2018-01-08 20:07 - 2017-12-22 15:25 - 000000260 _____ C:\Users\Public\Documents\OSCFile.txt
2018-01-07 19:32 - 2017-12-06 17:29 - 000000000 ____D C:\Users\Bert\AppData\Roaming\.minecraft
2018-01-07 14:00 - 2017-12-10 18:52 - 000000000 ____D C:\ProgramData\Adobe
2018-01-07 13:59 - 2017-12-10 19:52 - 000000000 ____D C:\Users\Bert\AppData\LocalLow\Adobe
2018-01-07 13:58 - 2017-12-10 19:08 - 000000000 ____D C:\Program Files (x86)\Adobe
2018-01-07 01:19 - 2017-11-30 16:06 - 000000000 ____D C:\Users\Bert\AppData\Roaming\obs-studio
2018-01-06 23:02 - 2017-12-15 03:04 - 000007606 _____ C:\Users\Bert\AppData\Local\Resmon.ResmonCfg
2018-01-06 18:52 - 2017-12-02 00:34 - 000000000 ____D C:\Users\Bert\AppData\Local\ElevatedDiagnostics
2017-12-29 12:57 - 2017-11-28 20:52 - 000000000 ____D C:\Users\Bert
2017-12-28 20:51 - 2017-11-28 22:38 - 000000000 ____D C:\Users\Bert\Documents\My Games

==================== Files in the root of some directories =======

2017-12-10 19:18 - 2018-01-17 12:30 - 000000132 _____ () C:\Users\Bert\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2017-12-15 03:04 - 2018-01-06 23:02 - 000007606 _____ () C:\Users\Bert\AppData\Local\Resmon.ResmonCfg

Some files in TEMP:
====================
2017-12-24 22:28 - 2017-12-24 22:28 - 000000180 _____ () C:\Users\Bert\AppData\Local\Temp\00e481b5e22dbe1f649fcddd505d3eb7.dll
2017-12-24 22:28 - 2018-01-01 21:27 - 000000020 _____ () C:\Users\Bert\AppData\Local\Temp\dd17a189ed1680cc14c57fbf4431fd2f.dll
2010-12-31 04:07 - 2010-12-31 04:07 - 000086880 ____R (Microsoft Corporation) C:\Users\Bert\AppData\Local\Temp\devcon64.exe
2017-12-20 11:36 - 2017-12-05 20:36 - 000874696 _____ (NVIDIA Corporation) C:\Users\Bert\AppData\Local\Temp\nvSCPAPI64.dll
2017-12-03 03:31 - 2017-12-05 20:36 - 000371184 _____ (NVIDIA Corporation) C:\Users\Bert\AppData\Local\Temp\nvStInst.exe
2017-12-15 04:30 - 2017-12-15 04:30 - 057017640 _____ (Rockstar Games) C:\Users\Bert\AppData\Local\Temp\Social-Club-v1.1.7.8-Setup.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-01-19 00:44

==================== End of FRST.txt ============================



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: (Windows) (Fixed) (Total:119.14 GB) (Free:15.85 GB) NTFS
Drive d: (Data 1) (Fixed) (Total:931.29 GB) (Free:494.26 GB) NTFS
Drive e: (Zálohy) (Fixed) (Total:596.17 GB) (Free:384.45 GB) NTFS

Available physical RAM: 12649.9 MB
Total physical RAM: 16316.43 MB
Percentage of memory in use: 22%

==================== MBR and Partition Table ==================

Folder Size (64-bit) (HKLM\...\{F24FF688-7138-4CCF-A83F-71E9FB01170E}) (Version: 2.6 - Brio)
MSCONFIG\startupreg: Folder Size => C:\Program Files\FolderSize\FolderSize.exe
Disk: 0 (Size: 596.2 GB) (Disk ID: 1EFAD293)
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: 00000001)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=119.1 GB) - (Type=07 NTFS)
Disk: 2 (Size: 931.5 GB) (Disk ID: 189620ED)

==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Wise Auto Shutdown Task.job => C:\Program Files (x86)\Wise\Wise Auto Shutdown\WiseAutoShutdown.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\ProgramData:482EE99B1E21CE8C [217]
AlternateDataStreams: C:\Windows:nlsPreferences [0]
AlternateDataStreams: C:\Users\All Users:482EE99B1E21CE8C [217]
AlternateDataStreams: C:\ProgramData\Application Data:482EE99B1E21CE8C [217]
AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`28hfm [0]

==================== Security Center ==================

AV: Bitdefender Antivirus Free Antimalware (Enabled - Up to date) {3FB17364-4FCC-0FA7-6BBF-973897395371}
AS: Bitdefender Antivirus Free Antimalware (Enabled - Up to date) {84D09280-69F6-0029-510F-AC4AECBE19CC}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Bert\Desktop" je 2 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS6ServiceManager
"C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon
"C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Folder Size
C:\Program Files\FolderSize\FolderSize.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OnScreen Control
C:\Program Files (x86)\LG Electronics\OnScreen Control\bin\OnScreenStartUpApp.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype for Desktop
C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify
C:\Users\Bert\AppData\Roaming\Spotify\Spotify.exe --autostart --minimized [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper
C:\Users\Bert\AppData\Roaming\Spotify\SpotifyWebHelper.exe --autostart [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam
"C:\Program Files (x86)\Steam\steam.exe" -silent [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Web Companion
C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Podivně chovající se facebook zprávy

#2 Příspěvek od Rudy »

Zdravím!
Jak je na tom váš operační systém s legalitou?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

bert.foley
Návštěvník
Návštěvník
Příspěvky: 2
Registrován: 26 led 2018 17:06

Re: Podivně chovající se facebook zprávy

#3 Příspěvek od bert.foley »

Rudy píše:Zdravím!
Jak je na tom váš operační systém s legalitou?
Legální úplně není. Má to něco dočinění s tím problémem?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Podivně chovající se facebook zprávy

#4 Příspěvek od Rudy »

Spíše to má co do činění s našimi pravidly: https://forum.viry.cz/viewtopic.php?f=12&t=115512 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět