# AdwCleaner v3.014 - Report created 09/12/2013 at 20:45:12
# Updated 01/12/2013 by Xplode
# Operating System : Windows 7 Ultimate (32 bits)
# Username : Deleter - DELETER-PC
# Running from : C:\Users\Deleter\Downloads\AdwCleaner.exe
# Option : Clean
***** [ Services ] *****
Service Deleted : vToolbarUpdater17.1.2
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\AVG Secure Search
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\BitGuard
Folder Deleted : C:\ProgramData\DSearchLink
Folder Deleted : C:\ProgramData\Tarma Installer
Folder Deleted : C:\Program Files\AVG Secure Search
Folder Deleted : C:\Program Files\SoftwareUpdater
Folder Deleted : C:\Program Files\Common Files\AVG Secure Search
Folder Deleted : C:\Users\Deleter\AppData\Local\AVG Secure Search
Folder Deleted : C:\Users\Deleter\AppData\Local\Bundled software uninstaller
Folder Deleted : C:\Users\Deleter\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Deleter\AppData\LocalLow\AVG Secure Search
Folder Deleted : C:\Users\Deleter\AppData\Roaming\Babylon
Folder Deleted : C:\Users\Deleter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard
Folder Deleted : C:\Users\Deleter\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
File Deleted : C:\Users\Deleter\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
File Deleted : C:\Users\Deleter\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.babylon.com_0.localstorage
File Deleted : C:\Users\Deleter\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.babylon.com_0.localstorage-journal
File Deleted : C:\Windows\System32\Tasks\BitGuard
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\mggiecmcgkpfmegnobeimepgndgdhbjm
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4226D1D4-285D-42E7-9279-CE7C3E69BEDF}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4226D1D4-285D-42E7-9279-CE7C3E69BEDF}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs [bProtectTabs]
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftwareUpdater_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftwareUpdater_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Deleted : HKCU\Software\53e8cd1b03dec10
Key Deleted : HKLM\SOFTWARE\53e8cd1b03dec10
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4B71-B0A3-3D82E62A6909}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Key Deleted : HKCU\Software\AVG Secure Search
Key Deleted : HKCU\Software\BI
Key Deleted : HKCU\Software\DataMngr
[#] Key Deleted : HKCU\Software\DataMngr_Toolbar
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\Software\AVG Secure Search
Key Deleted : HKLM\Software\AVG Security Toolbar
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\Software\SoftwareUpdater
Key Deleted : HKLM\Software\Tarma Installer
Key Deleted : HKLM\Software\Vittalia
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdater
Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\bitguard\271832~1.68\{c16c1~1\bitguard.dll
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.7100.0
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs]
-\\ Google Chrome v31.0.1650.63
[ File : C:\Users\Deleter\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted : homepage
Deleted : icon_url
Deleted : search_url
Deleted : keyword
Deleted : urls_to_restore_on_startup
*************************
AdwCleaner[R0].txt - [8730 octets] - [09/12/2013 20:44:37]
AdwCleaner[S0].txt - [8576 octets] - [09/12/2013 20:45:12]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8636 octets] ##########
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 09-12-2013
Ran by Deleter (administrator) on DELETER-PC on 09-12-2013 20:51:22
Running from C:\Users\Deleter\Downloads
Microsoft Windows 7 Ultimate (X86) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgrsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgcsrvx.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Corporation) C:\Windows\System32\audiodg.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgwdsvc.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgui.exe
(TuneUp Software) C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgnsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgemcx.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
() C:\Users\Deleter\AppData\Roaming\QipGuard\QipGuard.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Valve Corporation) C:\Program Files\Steam\Steam.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
(TuneUp Software) C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesApp32.exe
(Valve Corporation) C:\Program Files\Common Files\Steam\SteamService.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) \\?\C:\Windows\system32\wbem\WMIADAP.EXE
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-06] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [AVG_UI] - C:\Program Files\AVG\AVG2013\avgui.exe [4411952 2013-09-23] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [SDTray] - C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X]
HKCU\...\Run: [QIP Internet Guardian] - C:\Users\Deleter\AppData\Roaming\QipGuard\QipGuard.exe [188416 2010-10-20] ()
HKCU\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3673184 2013-07-03] (Disc Soft Ltd)
HKCU\...\Run: [Steam] - C:\Program Files\Steam\Steam.exe [1823656 2013-12-04] (Valve Corporation)
MountPoints2: {bff25a1a-05a0-11e3-9e84-50465d8e211a} - D:\Setup.exe
AppInit_DLLs: [ ] ()
BootExecute: autocheck autochk * sdnclean.exe
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
URLSearchHook: HKCU - Default Value = {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
SearchScopes: HKLM - DefaultScope value is missing.
BHO: QIPBHO Class - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Deleter\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll No File
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.36 213.46.172.37
Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR RestoreOnStartup: "hxxp://www.google.com"
CHR DefaultSearchKeyword: babylon.com
CHR DefaultSearchProvider: Babylon Search
CHR DefaultSearchURL: http://search.babylon.com/?q={searchTer ... 5&tsp=4975
CHR DefaultSuggestURL: {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\31.0.1650.63\pdf.dll ()
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File
CHR Plugin: (Windows Presentation Foundation) - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Extension: (Google Docs) - C:\Users\Deleter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\Deleter\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\Deleter\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\Deleter\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Dota 2 Lounge Helper) - C:\Users\Deleter\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljmpblpndedodbmceeghpahabeppemed\0.2_0
CHR Extension: (Ghostery) - C:\Users\Deleter\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij\5.0.0_0
CHR Extension: (Google Wallet) - C:\Users\Deleter\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Gmail) - C:\Users\Deleter\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
========================== Services (Whitelisted) =================
R2 AVGIDSAgent; C:\Program Files\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.)
R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.)
R2 TuneUp.UtilitiesSvc; C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe [1724192 2013-01-31] (TuneUp Software)
S3 TunngleService; C:\Program Files\Tunngle\TnglCtrl.exe [759192 2013-09-03] (Tunngle.net GmbH)
==================== Drivers (Whitelisted) ====================
S3 amdsata; C:\Windows\system32\DRIVERS\amdsata.sys [77904 2009-04-22] (AMD)
R0 amdxata; C:\Windows\System32\DRIVERS\amdxata.sys [23120 2009-04-22] (AMD)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [208184 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [60216 2013-07-20] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22328 2013-09-10] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [171320 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [96568 2013-07-01] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [39224 2013-09-05] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [182072 2013-03-21] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [37664 2013-11-11] (AVG Technologies)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [243128 2013-08-15] (Disc Soft Ltd)
R3 MEI; C:\Windows\System32\DRIVERS\HECI.sys [55104 2012-07-17] (Intel Corporation)
R2 RtNdPt60; C:\Windows\System32\DRIVERS\RtNdPt60.sys [33056 2011-06-15] (Realtek )
S3 RTTEAMPT; C:\Windows\System32\DRIVERS\RtTeam60.sys [40736 2011-06-15] (Realtek Corporation)
S3 RTVLANPT; C:\Windows\System32\DRIVERS\RtVlan620.sys [27752 2011-09-16] (Realtek Corporation)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [27136 2009-09-16] (Tunngle.net)
S3 TEAM; C:\Windows\System32\DRIVERS\RtTeam60.sys [40736 2011-06-15] (Realtek Corporation)
R3 TuneUpUtilitiesDrv; C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [10088 2012-09-18] (TuneUp Software)
R3 VLAN; C:\Windows\System32\DRIVERS\RtVLAN620.sys [27752 2011-09-16] (Realtek Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-12-09 20:51 - 2013-12-09 20:51 - 00010541 _____ C:\Users\Deleter\Downloads\FRST.txt
2013-12-09 20:51 - 2013-12-09 20:51 - 00000000 ____D C:\FRST
2013-12-09 20:44 - 2013-12-09 20:45 - 00000000 ____D C:\AdwCleaner
2013-12-09 20:42 - 2013-12-09 20:43 - 01110034 _____ C:\Users\Deleter\Downloads\AdwCleaner.exe
2013-12-09 20:40 - 2013-12-09 20:41 - 01060641 _____ (Farbar) C:\Users\Deleter\Downloads\FRST.exe
2013-12-09 20:38 - 2013-12-09 20:38 - 00000000 ____D C:\rsit
2013-12-09 20:38 - 2013-12-09 20:38 - 00000000 ____D C:\Program Files\trend micro
2013-12-09 20:37 - 2013-12-09 20:37 - 00781383 _____ C:\Users\Deleter\Downloads\RSIT.exe
2013-12-09 20:26 - 2013-12-09 20:36 - 00000000 ___SD C:\32788R22FWJFW
2013-12-09 20:26 - 2013-12-09 20:26 - 00000000 ____D C:\Windows\erdnt
2013-12-09 20:23 - 2013-12-09 20:26 - 05153091 ____R (Swearware) C:\Users\Deleter\Desktop\ComboFix.exe
2013-12-08 12:39 - 2013-12-08 12:42 - 373917624 _____ C:\Users\Deleter\Downloads\Greys.Anatomy.S10E11.HDTV.XviD.avi
2013-12-08 12:39 - 2013-12-08 12:39 - 00073055 _____ C:\Users\Deleter\Downloads\Greys-Anatomy-10x11.zip
2013-12-01 12:42 - 2013-12-01 12:42 - 00000000 ____D C:\Users\Default\AppData\Roaming\TuneUp Software
2013-12-01 12:42 - 2013-12-01 12:42 - 00000000 ____D C:\Users\Default User\AppData\Roaming\TuneUp Software
2013-11-25 13:20 - 2013-11-25 13:21 - 214335687 _____ C:\Users\Deleter\Downloads\Greys.Anatomy.S10E10.HDTV.x264-LOL.mp4
2013-11-25 13:17 - 2013-11-25 13:17 - 00104186 _____ C:\Users\Deleter\Downloads\Greys-Anatomy-10x103.zip
2013-11-24 21:53 - 2013-11-24 21:55 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-11-24 21:53 - 2013-11-24 21:54 - 00000000 ____D C:\Program Files\Spybot - Search & Destroy 2
2013-11-24 21:53 - 2013-11-24 21:53 - 00002115 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2013-11-24 21:53 - 2013-09-20 10:49 - 00018968 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean.exe
2013-11-24 21:52 - 2013-11-24 21:53 - 46988968 _____ C:\Users\Deleter\Downloads\spybot-2.2.exe
2013-11-15 18:45 - 2013-11-15 19:28 - 233424458 _____ C:\Users\Deleter\Downloads\The-big-bang-theory-s07e08-hdtv-lol-+-cz-titulky.avi
2013-11-15 18:24 - 2013-11-15 18:24 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2013-11-14 13:27 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2013-11-14 13:27 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2013-11-14 13:27 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2013-11-14 13:27 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2013-11-14 13:27 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2013-11-14 13:27 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2013-11-14 13:27 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2013-11-14 13:27 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2013-11-14 13:27 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2013-11-14 13:27 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2013-11-14 13:27 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2013-11-14 13:27 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2013-11-14 13:27 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2013-11-14 13:27 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2013-11-14 13:27 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2013-11-14 13:27 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2013-11-14 13:27 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2013-11-14 13:27 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2013-11-14 13:27 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2013-11-14 13:27 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2013-11-14 13:27 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2013-11-14 13:27 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2013-11-14 13:27 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2013-11-14 13:27 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2013-11-14 13:27 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2013-11-14 13:27 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2013-11-14 13:27 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2013-11-14 13:27 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2013-11-14 13:27 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2013-11-14 13:27 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2013-11-14 13:27 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2013-11-14 13:27 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2013-11-14 13:27 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2013-11-14 13:27 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2013-11-14 13:27 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2013-11-14 13:27 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2013-11-14 13:27 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2013-11-14 13:27 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2013-11-14 13:27 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2013-11-14 13:27 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2013-11-14 13:27 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2013-11-14 13:27 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2013-11-14 13:27 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2013-11-14 13:27 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2013-11-14 13:27 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2013-11-14 13:27 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2013-11-14 13:27 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2013-11-14 13:27 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2013-11-14 13:27 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2013-11-14 13:27 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2013-11-14 13:27 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2013-11-14 13:27 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2013-11-14 13:27 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2013-11-14 13:27 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2013-11-14 13:27 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2013-11-14 13:27 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2013-11-14 13:27 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2013-11-14 13:27 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2013-11-14 13:27 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2013-11-14 13:27 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2013-11-14 13:27 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2013-11-14 13:27 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2013-11-14 13:27 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2013-11-14 13:27 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2013-11-14 13:27 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2013-11-14 13:27 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2013-11-14 13:27 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2013-11-14 13:27 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2013-11-14 13:27 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2013-11-14 13:27 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2013-11-14 13:27 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2013-11-14 13:27 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2013-11-14 13:27 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2013-11-14 13:27 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2013-11-14 13:27 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2013-11-14 13:27 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2013-11-14 13:27 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2013-11-14 13:27 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2013-11-14 13:27 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2013-11-14 13:26 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2013-11-14 13:26 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2013-11-14 13:26 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2013-11-14 13:26 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2013-11-14 13:26 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2013-11-14 13:26 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2013-11-14 13:26 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2013-11-14 13:26 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2013-11-14 13:26 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2013-11-14 13:10 - 2013-11-14 13:10 - 00000187 _____ C:\Users\Deleter\Desktop\Dota 2 Test.url
==================== One Month Modified Files and Folders =======
2013-12-09 20:51 - 2013-12-09 20:51 - 00010541 _____ C:\Users\Deleter\Downloads\FRST.txt
2013-12-09 20:51 - 2013-12-09 20:51 - 00000000 ____D C:\FRST
2013-12-09 20:49 - 2013-08-03 00:44 - 01361784 _____ C:\Windows\WindowsUpdate.log
2013-12-09 20:47 - 2013-09-04 01:30 - 00000000 ____D C:\Program Files\Steam
2013-12-09 20:47 - 2013-08-04 13:08 - 00000000 ____D C:\Users\Deleter\AppData\Roaming\Skype
2013-12-09 20:46 - 2013-08-03 01:55 - 00000938 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-09 20:46 - 2009-04-22 09:27 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-12-09 20:46 - 2009-04-22 09:12 - 00029532 _____ C:\Windows\setupact.log
2013-12-09 20:45 - 2013-12-09 20:44 - 00000000 ____D C:\AdwCleaner
2013-12-09 20:43 - 2013-12-09 20:42 - 01110034 _____ C:\Users\Deleter\Downloads\AdwCleaner.exe
2013-12-09 20:41 - 2013-12-09 20:40 - 01060641 _____ (Farbar) C:\Users\Deleter\Downloads\FRST.exe
2013-12-09 20:38 - 2013-12-09 20:38 - 00000000 ____D C:\rsit
2013-12-09 20:38 - 2013-12-09 20:38 - 00000000 ____D C:\Program Files\trend micro
2013-12-09 20:37 - 2013-12-09 20:37 - 00781383 _____ C:\Users\Deleter\Downloads\RSIT.exe
2013-12-09 20:36 - 2013-12-09 20:26 - 00000000 ___SD C:\32788R22FWJFW
2013-12-09 20:26 - 2013-12-09 20:26 - 00000000 ____D C:\Windows\erdnt
2013-12-09 20:26 - 2013-12-09 20:23 - 05153091 ____R (Swearware) C:\Users\Deleter\Desktop\ComboFix.exe
2013-12-09 20:24 - 2013-10-02 12:58 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-12-09 20:10 - 2013-08-03 01:55 - 00000942 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-09 17:39 - 2013-08-03 02:44 - 00000000 ____D C:\ProgramData\MFAData
2013-12-09 16:06 - 2013-08-03 00:51 - 00713888 _____ C:\Windows\system32\PerfStringBackup.INI
2013-12-08 13:36 - 2013-08-04 05:12 - 00000000 ____D C:\Users\Deleter\AppData\Roaming\vlc
2013-12-08 12:42 - 2013-12-08 12:39 - 373917624 _____ C:\Users\Deleter\Downloads\Greys.Anatomy.S10E11.HDTV.XviD.avi
2013-12-08 12:39 - 2013-12-08 12:39 - 00073055 _____ C:\Users\Deleter\Downloads\Greys-Anatomy-10x11.zip
2013-12-05 17:13 - 2013-08-03 01:56 - 00002129 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-12-05 12:03 - 2013-08-03 02:42 - 00000000 ____D C:\Program Files\Common Files\Steam
2013-12-02 16:34 - 2013-08-03 02:48 - 00000947 _____ C:\Users\Public\Desktop\AVG 2013.lnk
2013-12-02 11:58 - 2013-08-03 02:01 - 00024496 _____ C:\Windows\PFRO.log
2013-12-01 17:42 - 2013-08-03 03:11 - 00000000 ____D C:\Users\Deleter\AppData\Roaming\TS3Client
2013-12-01 12:43 - 2013-11-02 18:50 - 00000000 ____D C:\Users\Deleter\Downloads\Sony Vegas Pro 11
2013-12-01 12:42 - 2013-12-01 12:42 - 00000000 ____D C:\Users\Default\AppData\Roaming\TuneUp Software
2013-12-01 12:42 - 2013-12-01 12:42 - 00000000 ____D C:\Users\Default User\AppData\Roaming\TuneUp Software
2013-11-26 16:03 - 2013-08-04 13:08 - 00000000 ___RD C:\Program Files\Skype
2013-11-26 16:03 - 2013-08-04 13:08 - 00000000 ____D C:\ProgramData\Skype
2013-11-25 13:21 - 2013-11-25 13:20 - 214335687 _____ C:\Users\Deleter\Downloads\Greys.Anatomy.S10E10.HDTV.x264-LOL.mp4
2013-11-25 13:17 - 2013-11-25 13:17 - 00104186 _____ C:\Users\Deleter\Downloads\Greys-Anatomy-10x103.zip
2013-11-24 21:55 - 2013-11-24 21:53 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-11-24 21:54 - 2013-11-24 21:53 - 00000000 ____D C:\Program Files\Spybot - Search & Destroy 2
2013-11-24 21:53 - 2013-11-24 21:53 - 00002115 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2013-11-24 21:53 - 2013-11-24 21:52 - 46988968 _____ C:\Users\Deleter\Downloads\spybot-2.2.exe
2013-11-22 16:53 - 2013-11-03 04:01 - 00000213 _____ C:\Users\Deleter\Desktop\Dota 2.url
2013-11-15 19:28 - 2013-11-15 18:45 - 233424458 _____ C:\Users\Deleter\Downloads\The-big-bang-theory-s07e08-hdtv-lol-+-cz-titulky.avi
2013-11-15 18:24 - 2013-11-15 18:24 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2013-11-14 13:10 - 2013-11-14 13:10 - 00000187 _____ C:\Users\Deleter\Desktop\Dota 2 Test.url
2013-11-14 13:10 - 2013-09-04 01:46 - 00000000 ____D C:\Users\Deleter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2013-11-11 13:55 - 2013-08-03 02:35 - 00037664 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx86.sys
Some content of TEMP:
====================
C:\Users\Deleter\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe
[2009-04-22 04:40] - [2009-04-22 06:19] - 2607616 ____A (Microsoft Corporation) C133788B393EEC01439AD997D24E66ED
C:\Windows\System32\winlogon.exe
[2009-04-22 04:35] - [2009-04-22 06:19] - 0285696 ____A (Microsoft Corporation) B9CFF761509E6C95E964B29B279D7721
C:\Windows\System32\wininit.exe
[2009-04-22 04:35] - [2009-04-22 06:19] - 0096256 ____A (Microsoft Corporation) 2E4264C95BAB587431C79C101899CCC8
C:\Windows\System32\svchost.exe
[2009-04-22 04:16] - [2009-04-22 06:19] - 0020992 ____A (Microsoft Corporation) 5F1FE2F551E74B069C436152F06CCFDC
C:\Windows\System32\services.exe
[2009-04-22 04:08] - [2009-04-22 06:19] - 0259072 ____A (Microsoft Corporation) 77474E495E99CCE05AD2720E6FA85A35
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe
[2009-04-22 04:32] - [2009-04-22 06:19] - 0026112 ____A (Microsoft Corporation) 50771CA86FF1ADAF5FD1920F8CB5665E
C:\Windows\System32\Drivers\volsnap.sys
[2009-04-22 04:08] - [2009-04-22 06:23] - 0244304 ____A (Microsoft Corporation) 803F111D3DBA35D34DE1F0AC12517DE8
LastRegBack: 2013-08-03 00:39
==================== End Of Log ============================[/code]
Kód: Vybrat vše
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 09-12-2013
Ran by Deleter at 2013-12-09 20:51:47
Running from C:\Users\Deleter\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: AVG AntiVirus Free Edition 2013 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: AVG AntiVirus Free Edition 2013 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}
FW: AVG Internet Security 2013 (Disabled) {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
==================== Installed Programs ======================
Adobe Flash Player 11 Plugin (Version: 11.9.900.117)
AMD APP SDK Runtime (Version: 10.0.938.2)
AMD Catalyst Install Manager (Version: 8.0.881.0)
AMD Drag and Drop Transcoding (Version: 2.00.0000)
AMD Media Foundation Decoders (Version: 1.0.70727.2219)
ASUS Product Register Program (Version: 1.0.014)
AVG 2013 (Version: 13.0.3426)
AVG 2013 (Version: 13.0.3658)
AVG 2013 (Version: 2013.0.3426)
Catalyst Control Center - Branding (Version: 1.00.0000)
Catalyst Control Center (Version: 2012.0806.1213.19931)
Catalyst Control Center Graphics Previews Common (Version: 2012.0806.1213.19931)
Catalyst Control Center InstallProxy (Version: 2012.0806.1213.19931)
Catalyst Control Center Localization All (Version: 2012.0806.1213.19931)
CCC Help Czech (Version: 2012.0806.1212.19931)
CCC Help Danish (Version: 2012.0806.1212.19931)
CCC Help Dutch (Version: 2012.0806.1212.19931)
CCC Help English (Version: 2012.0806.1212.19931)
CCC Help Finnish (Version: 2012.0806.1212.19931)
CCC Help French (Version: 2012.0806.1212.19931)
CCC Help German (Version: 2012.0806.1212.19931)
CCC Help Greek (Version: 2012.0806.1212.19931)
CCC Help Hungarian (Version: 2012.0806.1212.19931)
CCC Help Chinese Standard (Version: 2012.0806.1212.19931)
CCC Help Chinese Traditional (Version: 2012.0806.1212.19931)
CCC Help Italian (Version: 2012.0806.1212.19931)
CCC Help Japanese (Version: 2012.0806.1212.19931)
CCC Help Korean (Version: 2012.0806.1212.19931)
CCC Help Norwegian (Version: 2012.0806.1212.19931)
CCC Help Polish (Version: 2012.0806.1212.19931)
CCC Help Portuguese (Version: 2012.0806.1212.19931)
CCC Help Russian (Version: 2012.0806.1212.19931)
CCC Help Spanish (Version: 2012.0806.1212.19931)
CCC Help Swedish (Version: 2012.0806.1212.19931)
CCC Help Thai (Version: 2012.0806.1212.19931)
CCC Help Turkish (Version: 2012.0806.1212.19931)
ccc-utility (Version: 2012.0806.1213.19931)
DAEMON Tools Lite (Version: 4.47.1.0335)
Dota 2 Test
Dream Tale - The Golden Keys (Version: 1.0)
Google Chrome (Version: 31.0.1650.63)
Google Update Helper (Version: 1.3.22.3)
Left 4 Dead 2 version 2.1.2.9 (Version: 2.1.2.9)
Magicka
Microsoft Silverlight (Version: 4.0.60310.0)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (Version: 11.0.60610.1)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (Version: 11.0.60610)
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (Version: 11.0.60610)
Microsoft XNA Framework Redistributable 3.1 (Version: 3.1.10527.0)
MSVCRT Redists (Version: 1.0)
Mumble 1.2.4 (Version: 1.2.4)
Open Broadcaster Software
OpenOffice.org 3.4.1 (Version: 3.41.9593)
Path of Exile (Version: 1.0.0.29229)
PokerStars
QIP 2005 8097 (HKCU Version: 8097)
QIP Internet Guardian
Realtek Ethernet Controller Driver (Version: 7.52.203.2012)
Realtek Ethernet Diagnostic Utility (Version: 1.00.0000)
Skype™ 6.11 (Version: 6.11.102)
Spybot - Search & Destroy (Version: 2.2.25)
Steam (Version: 1.0.0.0)
TeamSpeak 3 Client (Version: 3.0.11)
The Battle for Middle-earth (tm) II
TuneUp Utilities 2013 (Version: 13.0.3020.7)
TuneUp Utilities Language Pack (en-US) (Version: 13.0.3020.7)
Tunngle beta
Unity Web Player (HKCU Version: )
Vegas Pro 10.0 (Version: 10.0.387)
Vegas Pro 11.0 (Version: 11.0.682)
VLC media player 2.0.8 (Version: 2.0.8)
WinRAR 5.00 beta 7 (32-bit) (Version: 5.00.7)
x264vfw - H.264/MPEG-4 AVC codec (remove only)
==================== Restore Points =========================
21-11-2013 17:59:38 Scheduled Checkpoint
08-12-2013 13:46:38 Scheduled Checkpoint
==================== Hosts content: ==========================
2009-04-22 06:57 - 2009-03-20 16:31 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {185F42AC-BF32-4509-8455-1BB6BE2C07F5} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files\TuneUp Utilities 2013\OneClick.exe [2013-01-31] (TuneUp Software)
Task: {22E3FCC5-8EAC-4F6F-992D-25E58222C1FF} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe
Task: {24D0CEA5-A6C0-4AFF-9417-6B7FBAF61225} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe
Task: {4B624321-3827-4DE4-902F-208A7E3842BB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-09] (Adobe Systems Incorporated)
Task: {60BD51E4-1E71-4537-919C-9C0D3D0B4E25} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2013-08-03] (Google Inc.)
Task: {FAC1E707-9726-4CCE-9A7E-772801345325} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {FF85A062-F53B-4962-91D8-1783366546C4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2013-08-03] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2013-11-24 21:53 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2013-11-24 21:53 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl
2013-08-21 13:18 - 2013-11-06 22:48 - 00691200 _____ () C:\Program Files\Steam\SDL2.dll
2012-06-22 01:39 - 2013-12-04 03:51 - 01135016 _____ () C:\Program Files\Steam\bin\chromehtml.DLL
2012-06-22 01:39 - 2013-11-06 22:48 - 20625832 _____ () C:\Program Files\Steam\bin\libcef.dll
2013-06-14 14:49 - 2013-06-15 00:49 - 01100800 _____ () C:\Program Files\Steam\bin\avcodec-53.dll
2013-06-14 14:49 - 2013-06-15 00:49 - 00124416 _____ () C:\Program Files\Steam\bin\avutil-51.dll
2013-06-14 14:49 - 2013-06-15 00:49 - 00192000 _____ () C:\Program Files\Steam\bin\avformat-53.dll
2012-08-06 11:07 - 2012-08-06 11:07 - 00369152 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2013-12-05 17:13 - 2013-12-04 03:47 - 00702416 _____ () C:\Program Files\Google\Chrome\Application\31.0.1650.63\libglesv2.dll
2013-12-05 17:13 - 2013-12-04 03:47 - 00099792 _____ () C:\Program Files\Google\Chrome\Application\31.0.1650.63\libegl.dll
2013-12-05 17:13 - 2013-12-04 03:48 - 04055504 _____ () C:\Program Files\Google\Chrome\Application\31.0.1650.63\pdf.dll
2013-12-05 17:13 - 2013-12-04 03:48 - 00399312 _____ () C:\Program Files\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll
2013-12-05 17:13 - 2013-12-04 03:47 - 01619408 _____ () C:\Program Files\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll
2013-12-05 17:13 - 2013-12-04 03:48 - 13586896 _____ () C:\Program Files\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"
==================== Faulty Device Manager Devices =============
Name: Universal Serial Bus (USB) Controller
Description: Universal Serial Bus (USB) Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (12/09/2013 08:46:44 PM) (Source: Winlogon) (User: )
Description: Windows license activation failed. Error 0x80070005.
Error: (12/09/2013 08:46:43 PM) (Source: ATIeRecord) (User: )
Description: ATI EEU Client has failed to start
Error: (12/09/2013 04:00:44 PM) (Source: Winlogon) (User: )
Description: Windows license activation failed. Error 0x80070005.
Error: (12/09/2013 04:00:43 PM) (Source: ATIeRecord) (User: )
Description: ATI EEU Client has failed to start
Error: (12/08/2013 10:03:06 AM) (Source: Winlogon) (User: )
Description: Windows license activation failed. Error 0x80070005.
Error: (12/08/2013 10:03:00 AM) (Source: ATIeRecord) (User: )
Description: ATI EEU Client has failed to start
Error: (12/07/2013 03:54:07 PM) (Source: Winlogon) (User: )
Description: Windows license activation failed. Error 0x80070005.
Error: (12/07/2013 03:54:04 PM) (Source: ATIeRecord) (User: )
Description: ATI EEU Client has failed to start
Error: (12/06/2013 03:54:05 PM) (Source: Winlogon) (User: )
Description: Windows license activation failed. Error 0x80070005.
Error: (12/06/2013 03:53:59 PM) (Source: ATIeRecord) (User: )
Description: ATI EEU Client has failed to start
System errors:
=============
Error: (12/09/2013 08:45:51 PM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5
Error: (12/09/2013 04:03:39 PM) (Source: DCOM) (User: )
Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}
Error: (12/08/2013 11:23:35 PM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5
Error: (12/08/2013 10:06:24 AM) (Source: DCOM) (User: )
Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}
Error: (12/07/2013 09:18:51 PM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5
Error: (12/07/2013 03:57:03 PM) (Source: DCOM) (User: )
Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}
Error: (12/06/2013 09:17:06 PM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5
Error: (12/06/2013 03:57:18 PM) (Source: DCOM) (User: )
Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}
Error: (12/06/2013 03:54:17 PM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5
Error: (12/05/2013 10:46:16 PM) (Source: Service Control Manager) (User: )
Description: The TuneUp Utilities Service service did not shut down properly after receiving a preshutdown control.
Microsoft Office Sessions:
=========================
Error: (12/09/2013 08:46:44 PM) (Source: Winlogon)(User: )
Description: 0x800700050x00000000
Error: (12/09/2013 08:46:43 PM) (Source: ATIeRecord)(User: )
Description:
Error: (12/09/2013 04:00:44 PM) (Source: Winlogon)(User: )
Description: 0x800700050x00000000
Error: (12/09/2013 04:00:43 PM) (Source: ATIeRecord)(User: )
Description:
Error: (12/08/2013 10:03:06 AM) (Source: Winlogon)(User: )
Description: 0x800700050x00000000
Error: (12/08/2013 10:03:00 AM) (Source: ATIeRecord)(User: )
Description:
Error: (12/07/2013 03:54:07 PM) (Source: Winlogon)(User: )
Description: 0x800700050x00000000
Error: (12/07/2013 03:54:04 PM) (Source: ATIeRecord)(User: )
Description:
Error: (12/06/2013 03:54:05 PM) (Source: Winlogon)(User: )
Description: 0x800700050x00000000
Error: (12/06/2013 03:53:59 PM) (Source: ATIeRecord)(User: )
Description:
CodeIntegrity Errors:
===================================
Date: 2013-12-09 20:46:43.770
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-12-09 16:21:24.633
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-12-09 16:00:43.215
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-12-08 23:23:17.055
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-12-08 23:04:23.815
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-12-08 22:58:43.486
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-12-08 15:25:25.314
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-12-08 14:56:08.766
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-12-08 14:45:44.253
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-12-08 13:43:53.863
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
Percentage of memory in use: 49%
Total physical RAM: 3549.66 MB
Available physical RAM: 1802.54 MB
Total Pagefile: 7097.6 MB
Available Pagefile: 4573.59 MB
Total Virtual: 2047.88 MB
Available Virtual: 1880.82 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:931.5 GB) (Free:800.71 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (Magicka) (CDROM) (Total:0.95 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 202B202A)
Partition 1: (Active) - (Size=932 GB) - (Type=07 NTFS)
==================== End Of Log ============================