Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Samovolné vypínání notebooku

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
AbjCh
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 30 bře 2014 09:50

Samovolné vypínání notebooku

#1 Příspěvek od AbjCh »

Dobrý den,

v posledních dnech se mi už dvakrát stalo, že se notebook samovolně vypnul. Nikoliv však, že by se objevila vypínací obrazovka a pak by notebook zhasl, ale vypnul se okamžitě, bez varování, jako kdyby byl stolní počítač odpojen od přívodu elektrické energie.
Také se mi nechce nainstalovat jedna automatická aktualizace Windows a některé jiné aktualizace programů. (Podotýkám, že jiné aktualizace Windows se normálně nainstalují, jen tato ne.)
Tímto vás prosím o pomoc s řešením této svízelné situace.

Přikládám log z programu FRST, kdyby to bylo k něčemu prospěšné.


Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-07-2014
Ran by Datart (administrator) on BAZYL-NTB on 14-07-2014 17:27:25
Running from C:\Users\Datart\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe
(Acer Incorporated) C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
() C:\altera\13.0sp1\quartus\bin64\jtagserver.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Packard Bell MyBackup\IScheduleSvc.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Windows\System32\StikyNot.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Western Digital) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
(Western Digital ) C:\Program Files (x86)\Western Digital\WD SmartWare\WDRulesEngine.exe
(Dropbox, Inc.) C:\Users\Datart\AppData\Roaming\Dropbox\bin\Dropbox.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Packard Bell MyBackup\BackupManagerTray.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Western Digital ) C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(forum.viry.cz) C:\Users\Datart\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2280232 2010-07-29] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11786344 2012-03-03] (Realtek Semiconductor)
HKLM\...\Run: [Power Management] => C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [1796200 2011-02-23] (Acer Incorporated)
HKLM\...\Run: [Nvtmru] => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [615584 2011-01-20] (Atheros Communications)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2352072 2014-05-30] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1279480 2014-05-30] (NVIDIA Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4086432 2014-07-13] (AVAST Software)
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-04-27] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1081424 2011-03-14] (Dritek System Inc.)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2011-02-18] (Intel Corporation)
HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NTI\Packard Bell MyBackup\BackupManagerTray.exe [295744 2011-02-15] (NTI Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2654051900-2249548951-410519497-1000\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation)
HKU\S-1-5-21-2654051900-2249548951-410519497-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3481408 2012-02-13] (DT Soft Ltd)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [266448 2013-06-21] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [214448 2013-06-21] (NVIDIA Corporation)
Startup: C:\Users\Datart\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Datart\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: application/xhtml+xml - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
Filter: application/xhtml+xml; charset=iso-8859-1 - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
Filter: application/xhtml+xml; charset=utf-8 - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
Filter: text/xml; charset=iso-8859-1 - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
Filter: text/xml; charset=utf-8 - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
Filter-x32: application/xhtml+xml - {32F66A26-7614-11D4-BD11-00104BD3F987} - C:\Program Files (x86)\Design Science\MathPlayer\MathMLMimer.dll (Design Science, Inc.)
Filter-x32: application/xhtml+xml; charset=iso-8859-1 - {32F66A26-7614-11D4-BD11-00104BD3F987} - C:\Program Files (x86)\Design Science\MathPlayer\MathMLMimer.dll (Design Science, Inc.)
Filter-x32: application/xhtml+xml; charset=utf-8 - {32F66A26-7614-11D4-BD11-00104BD3F987} - C:\Program Files (x86)\Design Science\MathPlayer\MathMLMimer.dll (Design Science, Inc.)
Filter-x32: text/xml; charset=iso-8859-1 - {32F66A26-7614-11D4-BD11-00104BD3F987} - C:\Program Files (x86)\Design Science\MathPlayer\MathMLMimer.dll (Design Science, Inc.)
Filter-x32: text/xml; charset=utf-8 - {32F66A26-7614-11D4-BD11-00104BD3F987} - C:\Program Files (x86)\Design Science\MathPlayer\MathMLMimer.dll (Design Science, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\Datart\AppData\Roaming\Mozilla\Firefox\Profiles\6t4ynq8x.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\8\NP_wtapp.dll ()
FF Plugin-x32: @wolfram.com/Mathematica - C:\Program Files (x86)\Common Files\Wolfram Research\Browser\9.0.1.4055459\npmathplugin.dll (Wolfram Research, Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Datart\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll No File
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Datart\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll No File
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-04-22]

Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR StartupUrls: "hxxp://www.google.cz/", "hxxp://mystart.incredibar.com/?a=6OyLOPOi3D&loc=skw"
CHR Extension: (Google Translate) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2014-04-14]
CHR Extension: (Bejeweled) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\adpkifcfcacgmnggcbpbjbkdijciiigm [2014-04-14]
CHR Extension: (Angry Birds) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2014-04-14]
CHR Extension: (Dokumenty Google) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-14]
CHR Extension: (Disk Google) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-14]
CHR Extension: (YouTube) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-02-29]
CHR Extension: (Vyhledávání Google) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-02-29]
CHR Extension: (jQuery Debugger) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbhhnnnpaeobfddmlalhnehgclcmjimi [2014-07-10]
CHR Extension: (Papa's Pizzeria) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjaihmihhhgfofccgiboicjloaemhhfi [2014-07-10]
CHR Extension: (Dots) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\gliedaffibdnbhbiaolgkdhhfbjgmhgi [2014-04-14]
CHR Extension: (avast! Online Security) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-07-13]
CHR Extension: (TweetDeck by Twitter) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbdpomandigafcibbmofojjchbcdagbl [2014-04-14]
CHR Extension: (Cargo Bridge: Armor Games Edition) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\hlpiaibleklmjieibbnmkignbggodmmj [2014-04-14]
CHR Extension: (Custom new tab) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbnkijekempmdlleaimfelifcejbkmcd [2014-04-14]
CHR Extension: (Cargo Bridge) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\keembkgclppcbilkekfgpobhldjjhpmn [2014-04-14]
CHR Extension: (Mapy Google) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2014-04-14]
CHR Extension: (The Fancy Pants Adventure: World 2) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\loamdenijebhollnjgehcfbnpeelfhlk [2014-04-14]
CHR Extension: (Awesome New Tab Page™) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgmiemnjjchgkmgbeljfocdjjnpjnmcg [2014-04-14]
CHR Extension: (Peněženka Google) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-31]
CHR Extension: (SEO Global For Google Search™) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\ojgmigafbpedhdilmemphfklkbghlphi [2014-07-10]
CHR Extension: (Gmail) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-02-29]
CHR Extension: (Cracking Sands Racing) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnafpgbiiobelphegdbieldnmojicndb [2014-04-14]
CHR Extension: (Canvas Rider) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\poknhlcknimnnbfcombaooklofipaibk [2014-04-14]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-13]

==================== Services (Whitelisted) =================

R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [76448 2011-01-20] (Atheros Commnucations) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-13] (AVAST Software)
R2 ePowerSvc; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [873064 2011-02-23] (Acer Incorporated)
S3 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227936 2013-11-09] (WildTangent)
R2 GREGService; C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe [23584 2010-01-08] (Acer Incorporated)
R2 JTAGServer; C:\altera\13.0sp1\quartus\bin64\jtagserver.exe [268800 2013-06-13] () [File not signed]
R2 Live Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [244624 2011-01-31] (Acer Incorporated)
R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Packard Bell MyBackup\IScheduleSvc.exe [257344 2011-02-15] (NTI Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation)
R2 WDBackup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [1157056 2012-09-19] (Western Digital )
R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [248248 2012-09-06] (Western Digital)
R2 WDRulesService; C:\Program Files (x86)\Western Digital\WD SmartWare\WDRulesEngine.exe [1177536 2012-09-19] (Western Digital )

==================== Drivers (Whitelisted) ====================

U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-13] ()
R1 aswKbd; C:\Windows\System32\Drivers\aswKbd.sys [22600 2013-03-07] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-13] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-13] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-13] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-13] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-13] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-13] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-13] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-03-19] (DT Soft Ltd)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 PcaSp60; C:\Windows\SysWOW64\DRIVERS\PcaSp60.sys [38912 2010-05-19] (Printing Communications Assoc., Inc. (PCAUSA))
S0 prohlp02; C:\Windows\SysWOW64\drivers\prohlp02.sys [70400 2004-04-08] (Protection Technology) [File not signed]
S0 prosync1; C:\Windows\SysWOW64\drivers\prosync1.sys [6944 2003-09-06] (Protection Technology) [File not signed]
S0 sfhlp01; C:\Windows\SysWOW64\drivers\sfhlp01.sys [4832 2003-12-01] (Protection Technology) [File not signed]
S1 prodrv06; \SystemRoot\System32\drivers\prodrv06.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-07-14 17:27 - 2014-07-14 17:28 - 00024089 _____ () C:\Users\Datart\Desktop\FRST.txt
2014-07-14 17:25 - 2014-07-14 17:26 - 00112640 _____ (forum.viry.cz) C:\Users\Datart\Desktop\FRSTLauncher.exe
2014-07-14 17:16 - 2014-07-14 17:27 - 00000000 ____D () C:\FRST
2014-07-14 17:16 - 2014-07-14 17:16 - 00001344 _____ () C:\Users\Datart\Desktop\DT_EAP_ThePrematureBurial – zástupce.lnk
2014-07-14 17:13 - 2014-07-14 17:15 - 02086912 _____ (Farbar) C:\Users\Datart\Desktop\FRST64.exe
2014-07-14 15:18 - 2014-07-14 15:18 - 00000000 ____D () C:\Users\Datart\Documents\Escape Goat
2014-07-14 15:16 - 2014-07-14 15:16 - 00000000 ____D () C:\Program Files (x86)\Microsoft XNA
2014-07-14 13:57 - 2014-07-14 13:57 - 00000222 _____ () C:\Users\Datart\Desktop\FLY'N.url
2014-07-14 13:55 - 2014-07-14 13:55 - 00000222 _____ () C:\Users\Datart\Desktop\Escape Goat.url
2014-07-14 11:09 - 2014-07-14 11:09 - 00001768 _____ () C:\Users\Datart\Desktop\Heroes II.lnk
2014-07-13 21:37 - 2014-07-13 21:37 - 00000000 ____D () C:\Users\Datart\AppData\Local\Chromium
2014-07-13 20:49 - 2014-07-13 22:43 - 00000000 ____D () C:\Users\Datart\AppData\Roaming\Might & Magic Heroes VI
2014-07-13 20:49 - 2014-07-13 21:50 - 00000000 ____D () C:\Users\Datart\Documents\Might & Magic Heroes VI
2014-07-13 20:49 - 2014-07-13 21:30 - 00000000 ____D () C:\Users\Datart\AppData\Local\Ubisoft Game Launcher
2014-07-13 20:48 - 2014-07-13 20:48 - 00000000 ____D () C:\Program Files (x86)\Ubisoft
2014-07-13 13:34 - 2014-07-13 13:34 - 00001724 _____ () C:\Users\Datart\Desktop\AssassinsCreed_Game – zástupce.lnk
2014-07-13 13:31 - 2014-07-13 13:31 - 00000000 ____D () C:\Users\Datart\AppData\Roaming\Ubisoft
2014-07-13 13:31 - 2014-07-13 13:31 - 00000000 ____D () C:\ProgramData\Ubisoft
2014-07-13 11:42 - 2014-07-13 11:42 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-12 16:33 - 2014-07-12 16:33 - 00000222 _____ () C:\Users\Datart\Desktop\Unmechanical.url
2014-07-12 15:57 - 2014-07-12 15:59 - 00000000 ____D () C:\8ed2cf780012421d087559514dd234
2014-07-11 03:02 - 2014-07-11 03:02 - 00000000 ____D () C:\ac38929bc4ba3b929fc2d37ded
2014-07-10 21:58 - 2014-07-10 21:58 - 00001216 _____ () C:\Users\Datart\Desktop\Heroes.lnk
2014-07-10 21:14 - 2014-07-10 21:14 - 00000221 _____ () C:\Users\Datart\Desktop\Might & Magic Heroes VI.url
2014-07-10 17:15 - 2014-07-10 17:15 - 00003112 _____ () C:\Windows\System32\Tasks\{B432E43B-D95B-40BD-A786-D51C3E3F622D}
2014-07-10 12:40 - 2014-06-30 04:09 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-10 12:40 - 2014-06-30 04:04 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-07-10 12:39 - 2014-06-20 22:14 - 00266424 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-07-10 12:39 - 2014-06-20 21:39 - 00240824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-07-10 12:39 - 2014-06-19 03:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-07-10 12:39 - 2014-06-19 03:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-07-10 12:39 - 2014-06-19 02:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-07-10 12:39 - 2014-06-19 02:31 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-07-10 12:39 - 2014-06-19 02:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-07-10 12:39 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-07-10 12:39 - 2014-06-19 01:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-07-10 12:39 - 2014-06-19 01:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-07-10 12:39 - 2014-06-19 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-07-10 12:39 - 2014-06-19 01:36 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-07-10 12:39 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-07-10 12:39 - 2014-06-19 01:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-07-10 12:39 - 2014-06-19 01:28 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-07-10 12:39 - 2014-06-19 01:22 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-07-10 12:39 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-07-10 12:39 - 2014-06-19 01:06 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-07-10 12:39 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-07-10 12:39 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-07-10 12:39 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-07-10 12:39 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-07-10 12:39 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-07-10 12:39 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-07-10 12:39 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2014-07-10 12:39 - 2014-06-18 03:10 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-07-10 12:39 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-07-10 12:39 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-07-10 12:39 - 2014-05-30 10:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-07-10 12:39 - 2014-05-30 10:08 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-07-10 12:39 - 2014-05-30 10:08 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-07-10 12:39 - 2014-05-30 10:08 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-07-10 12:39 - 2014-05-30 10:08 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-07-10 12:39 - 2014-05-30 10:08 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-07-10 12:39 - 2014-05-30 10:08 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-07-10 12:39 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-07-10 12:39 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-07-10 12:39 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-07-10 12:39 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-07-10 12:39 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-07-10 12:39 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-07-10 12:39 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-07-10 12:39 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-07-10 12:38 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-07-10 12:38 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-07-10 12:38 - 2014-06-19 02:42 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-07-10 12:38 - 2014-06-19 02:42 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-07-10 12:38 - 2014-06-19 02:41 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-07-10 12:38 - 2014-06-19 02:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-07-10 12:38 - 2014-06-19 02:26 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-07-10 12:38 - 2014-06-19 02:24 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-07-10 12:38 - 2014-06-19 02:23 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-07-10 12:38 - 2014-06-19 02:14 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-07-10 12:38 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-07-10 12:38 - 2014-06-19 01:53 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-07-10 12:38 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-07-10 12:38 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-07-10 12:38 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-07-10 12:38 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-07-10 12:38 - 2014-06-19 01:38 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-07-10 12:38 - 2014-06-19 01:35 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-07-10 12:38 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-07-10 12:38 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-07-10 12:38 - 2014-06-19 01:27 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-07-10 12:38 - 2014-06-19 01:25 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-07-10 12:38 - 2014-06-19 01:23 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-07-10 12:38 - 2014-06-19 01:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-07-10 12:38 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-07-10 12:38 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-07-10 12:38 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-07-10 12:38 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-07-10 12:38 - 2014-06-19 00:46 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-07-10 12:38 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-07-10 12:38 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-07-10 12:38 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-07-10 12:38 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-07-10 12:37 - 2014-06-05 16:45 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-07-10 12:37 - 2014-06-05 16:26 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-07-10 12:37 - 2014-06-05 16:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-06-27 22:17 - 2014-06-27 22:18 - 00000000 ____D () C:\b8c3bb21732e86870a
2014-06-26 22:58 - 2014-06-26 22:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-06-26 22:50 - 2014-07-14 16:55 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-26 22:50 - 2014-07-14 16:46 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-26 22:50 - 2014-06-26 22:50 - 00003948 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-26 22:50 - 2014-06-26 22:50 - 00003696 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-25 23:48 - 2014-06-25 23:49 - 00000000 ____D () C:\7cc59729e7abbe1f5362dd5bdf
2014-06-25 15:08 - 2014-06-25 15:08 - 00000000 ____D () C:\ProgramData\Trymedia
2014-06-25 12:39 - 2014-06-25 12:39 - 00000000 ____D () C:\ProgramData\Airline Tycoon 2
2014-06-25 10:06 - 2014-06-25 10:06 - 00001856 _____ () C:\Users\Public\Desktop\The Settlers 3.lnk
2014-06-25 10:03 - 2014-06-25 10:05 - 00000000 ____D () C:\781949fa9e67ab35a3
2014-06-24 22:00 - 2014-06-24 22:00 - 00001861 _____ () C:\Users\Public\Desktop\Heroes of Might and Magic 3 Complete.lnk
2014-06-23 21:01 - 2014-06-23 21:01 - 00000000 ____D () C:\13e1c6c1bd2bcfc6589d5236
2014-06-23 08:43 - 2014-07-13 20:47 - 00049888 _____ () C:\Windows\DirectX.log
2014-06-23 03:00 - 2014-06-23 03:01 - 00000000 ____D () C:\6cbb09992be2d36291989fba45
2014-06-22 19:29 - 2014-06-22 19:29 - 00000221 _____ () C:\Users\Datart\Desktop\Burnout Paradise The Ultimate Box.url
2014-06-22 18:36 - 2014-06-22 18:37 - 00000000 ____D () C:\0f46885eb35c2778671c3f259f40149a
2014-06-19 10:00 - 2014-06-19 10:00 - 00618496 _____ () C:\Users\Datart\Downloads\80B7.tmp
2014-06-18 19:06 - 2014-06-18 19:07 - 00000000 ____D () C:\5149c073c96b89cfb539
2014-06-18 11:26 - 2014-06-18 11:27 - 00000000 ____D () C:\df20b2e7d4db3cc507122a7c7a38d381
2014-06-17 19:25 - 2014-06-17 19:26 - 00000000 ____D () C:\7cd4c641178b44127db26b8f67
2014-06-17 10:58 - 2014-06-17 10:59 - 00000000 ____D () C:\b1b0850b182402d540e5
2014-06-15 16:51 - 2014-06-15 16:52 - 00000000 ____D () C:\6e5146ba000af26ed08913816aa872
2014-06-14 10:54 - 2014-06-14 10:55 - 00000000 ____D () C:\608b6b688b39a1b358

==================== One Month Modified Files and Folders =======

2014-07-14 17:28 - 2014-07-14 17:27 - 00024089 _____ () C:\Users\Datart\Desktop\FRST.txt
2014-07-14 17:27 - 2014-07-14 17:16 - 00000000 ____D () C:\FRST
2014-07-14 17:26 - 2014-07-14 17:25 - 00112640 _____ (forum.viry.cz) C:\Users\Datart\Desktop\FRSTLauncher.exe
2014-07-14 17:25 - 2014-04-13 14:24 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-07-14 17:16 - 2014-07-14 17:16 - 00001344 _____ () C:\Users\Datart\Desktop\DT_EAP_ThePrematureBurial – zástupce.lnk
2014-07-14 17:15 - 2014-07-14 17:13 - 02086912 _____ (Farbar) C:\Users\Datart\Desktop\FRST64.exe
2014-07-14 17:15 - 2012-03-07 11:12 - 00000000 ____D () C:\Program Files (x86)\Hry
2014-07-14 17:04 - 2014-05-03 03:25 - 00000000 ____D () C:\Users\Datart\AppData\Roaming\DropboxMaster
2014-07-14 17:04 - 2013-03-21 23:00 - 00000000 ___RD () C:\Users\Datart\Dropbox
2014-07-14 17:04 - 2013-03-21 22:57 - 00000000 ____D () C:\Users\Datart\AppData\Roaming\Dropbox
2014-07-14 17:00 - 2011-07-09 17:46 - 01423175 _____ () C:\Windows\WindowsUpdate.log
2014-07-14 16:59 - 2014-01-09 23:57 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-07-14 16:55 - 2014-06-26 22:50 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-14 16:55 - 2009-07-14 06:45 - 00024608 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-14 16:55 - 2009-07-14 06:45 - 00024608 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-14 16:46 - 2014-06-26 22:50 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-14 16:46 - 2014-04-08 22:22 - 00026676 _____ () C:\Windows\setupact.log
2014-07-14 16:46 - 2012-03-03 17:51 - 00000035 _____ () C:\Users\Public\Documents\AtherosServiceConfig.ini
2014-07-14 16:45 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-14 15:18 - 2014-07-14 15:18 - 00000000 ____D () C:\Users\Datart\Documents\Escape Goat
2014-07-14 15:16 - 2014-07-14 15:16 - 00000000 ____D () C:\Program Files (x86)\Microsoft XNA
2014-07-14 13:57 - 2014-07-14 13:57 - 00000222 _____ () C:\Users\Datart\Desktop\FLY'N.url
2014-07-14 13:55 - 2014-07-14 13:55 - 00000222 _____ () C:\Users\Datart\Desktop\Escape Goat.url
2014-07-14 11:24 - 2012-07-15 10:27 - 00000000 ____D () C:\Users\Datart\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-07-14 11:09 - 2014-07-14 11:09 - 00001768 _____ () C:\Users\Datart\Desktop\Heroes II.lnk
2014-07-14 11:08 - 2011-04-15 10:33 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-07-14 11:03 - 2012-03-31 11:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3DO
2014-07-14 10:55 - 2013-04-22 15:33 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-07-13 22:43 - 2014-07-13 20:49 - 00000000 ____D () C:\Users\Datart\AppData\Roaming\Might & Magic Heroes VI
2014-07-13 21:50 - 2014-07-13 20:49 - 00000000 ____D () C:\Users\Datart\Documents\Might & Magic Heroes VI
2014-07-13 21:37 - 2014-07-13 21:37 - 00000000 ____D () C:\Users\Datart\AppData\Local\Chromium
2014-07-13 21:30 - 2014-07-13 20:49 - 00000000 ____D () C:\Users\Datart\AppData\Local\Ubisoft Game Launcher
2014-07-13 21:14 - 2012-02-29 16:09 - 00000000 ____D () C:\Users\Datart\AppData\Local\CrashDumps
2014-07-13 20:48 - 2014-07-13 20:48 - 00000000 ____D () C:\Program Files (x86)\Ubisoft
2014-07-13 20:47 - 2014-06-23 08:43 - 00049888 _____ () C:\Windows\DirectX.log
2014-07-13 20:39 - 2012-10-22 09:06 - 00000000 ____D () C:\Users\Datart\AppData\Roaming\Skype
2014-07-13 13:34 - 2014-07-13 13:34 - 00001724 _____ () C:\Users\Datart\Desktop\AssassinsCreed_Game – zástupce.lnk
2014-07-13 13:31 - 2014-07-13 13:31 - 00000000 ____D () C:\Users\Datart\AppData\Roaming\Ubisoft
2014-07-13 13:31 - 2014-07-13 13:31 - 00000000 ____D () C:\ProgramData\Ubisoft
2014-07-13 13:19 - 2011-07-09 18:34 - 00682186 _____ () C:\Windows\system32\perfh005.dat
2014-07-13 13:19 - 2011-07-09 18:34 - 00146342 _____ () C:\Windows\system32\perfc005.dat
2014-07-13 13:19 - 2009-07-14 07:13 - 01612596 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-13 12:06 - 2012-12-01 19:26 - 00000000 ___RD () C:\Users\Datart\Desktop\nepoužívané ikony
2014-07-13 12:03 - 2014-04-14 08:20 - 00002012 _____ () C:\Windows\PFRO.log
2014-07-13 11:42 - 2014-07-13 11:42 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-13 11:42 - 2014-05-02 16:54 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-07-13 11:42 - 2014-01-04 18:50 - 00092008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-07-13 11:42 - 2013-04-22 15:33 - 01041168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-07-13 11:42 - 2013-04-22 15:33 - 00427360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-07-13 11:42 - 2013-04-22 15:33 - 00307344 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-07-13 11:42 - 2013-04-22 15:33 - 00224896 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-07-13 11:42 - 2013-04-22 15:33 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-07-13 11:42 - 2013-04-22 15:33 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-07-13 11:42 - 2013-04-22 15:33 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-07-13 11:37 - 2014-05-06 13:09 - 00000000 ____D () C:\Users\Datart\AppData\Roaming\Notepad++
2014-07-13 11:37 - 2014-05-06 13:09 - 00000000 ____D () C:\Program Files (x86)\Notepad++
2014-07-13 11:27 - 2013-01-23 10:56 - 00000000 ____D () C:\Users\Datart\AppData\Roaming\ERS Game Studios
2014-07-12 17:57 - 2012-12-27 11:31 - 00000000 ____D () C:\Users\Datart\Documents\My Games
2014-07-12 16:55 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-07-12 16:33 - 2014-07-12 16:33 - 00000222 _____ () C:\Users\Datart\Desktop\Unmechanical.url
2014-07-12 15:59 - 2014-07-12 15:57 - 00000000 ____D () C:\8ed2cf780012421d087559514dd234
2014-07-11 04:06 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-07-11 03:28 - 2009-07-14 06:45 - 00523056 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-11 03:26 - 2010-11-21 09:17 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-11 03:25 - 2014-05-07 04:18 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-11 03:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2014-07-11 03:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism
2014-07-11 03:08 - 2013-08-16 10:09 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-11 03:04 - 2012-02-28 19:17 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-11 03:03 - 2012-05-16 20:50 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-07-11 03:02 - 2014-07-11 03:02 - 00000000 ____D () C:\ac38929bc4ba3b929fc2d37ded
2014-07-10 21:58 - 2014-07-10 21:58 - 00001216 _____ () C:\Users\Datart\Desktop\Heroes.lnk
2014-07-10 21:14 - 2014-07-10 21:14 - 00000221 _____ () C:\Users\Datart\Desktop\Might & Magic Heroes VI.url
2014-07-10 17:15 - 2014-07-10 17:15 - 00003112 _____ () C:\Windows\System32\Tasks\{B432E43B-D95B-40BD-A786-D51C3E3F622D}
2014-07-10 17:01 - 2012-04-09 10:53 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-07-10 17:01 - 2012-04-09 10:52 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-07-10 17:01 - 2012-04-09 10:52 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-06-30 04:09 - 2014-07-10 12:40 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-30 04:04 - 2014-07-10 12:40 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-27 22:18 - 2014-06-27 22:17 - 00000000 ____D () C:\b8c3bb21732e86870a
2014-06-26 22:58 - 2014-06-26 22:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-06-26 22:50 - 2014-06-26 22:50 - 00003948 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-26 22:50 - 2014-06-26 22:50 - 00003696 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-26 22:50 - 2014-04-14 09:35 - 00000000 ____D () C:\Program Files (x86)\Google
2014-06-26 22:38 - 2014-04-14 09:26 - 991548113 _____ () C:\Users\Datart\Documents\chrome_zaloha_Bazyl.gcb
2014-06-26 22:30 - 2014-04-14 08:37 - 00000000 ____D () C:\Users\Datart\AppData\Roaming\Google Chrome Backup
2014-06-25 23:49 - 2014-06-25 23:48 - 00000000 ____D () C:\7cc59729e7abbe1f5362dd5bdf
2014-06-25 15:08 - 2014-06-25 15:08 - 00000000 ____D () C:\ProgramData\Trymedia
2014-06-25 12:39 - 2014-06-25 12:39 - 00000000 ____D () C:\ProgramData\Airline Tycoon 2
2014-06-25 10:06 - 2014-06-25 10:06 - 00001856 _____ () C:\Users\Public\Desktop\The Settlers 3.lnk
2014-06-25 10:06 - 2013-07-28 15:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2014-06-25 10:05 - 2014-06-25 10:03 - 00000000 ____D () C:\781949fa9e67ab35a3
2014-06-25 10:02 - 2014-04-19 13:28 - 00000000 ____D () C:\GOG Games
2014-06-24 22:00 - 2014-06-24 22:00 - 00001861 _____ () C:\Users\Public\Desktop\Heroes of Might and Magic 3 Complete.lnk
2014-06-23 21:01 - 2014-06-23 21:01 - 00000000 ____D () C:\13e1c6c1bd2bcfc6589d5236
2014-06-23 03:01 - 2014-06-23 03:00 - 00000000 ____D () C:\6cbb09992be2d36291989fba45
2014-06-22 19:29 - 2014-06-22 19:29 - 00000221 _____ () C:\Users\Datart\Desktop\Burnout Paradise The Ultimate Box.url
2014-06-22 18:37 - 2014-06-22 18:36 - 00000000 ____D () C:\0f46885eb35c2778671c3f259f40149a
2014-06-20 22:14 - 2014-07-10 12:39 - 00266424 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-06-20 21:39 - 2014-07-10 12:39 - 00240824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-06-19 10:00 - 2014-06-19 10:00 - 00618496 _____ () C:\Users\Datart\Downloads\80B7.tmp
2014-06-19 03:39 - 2014-07-10 12:38 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-06-19 03:06 - 2014-07-10 12:39 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-06-19 03:06 - 2014-07-10 12:39 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-06-19 02:48 - 2014-07-10 12:38 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-06-19 02:42 - 2014-07-10 12:38 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-06-19 02:42 - 2014-07-10 12:38 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-06-19 02:41 - 2014-07-10 12:39 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-06-19 02:41 - 2014-07-10 12:38 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-06-19 02:32 - 2014-07-10 12:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-06-19 02:31 - 2014-07-10 12:39 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-06-19 02:26 - 2014-07-10 12:38 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-06-19 02:24 - 2014-07-10 12:39 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-06-19 02:24 - 2014-07-10 12:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-06-19 02:23 - 2014-07-10 12:38 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-06-19 02:16 - 2014-07-10 12:39 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-06-19 02:14 - 2014-07-10 12:38 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-06-19 02:09 - 2014-07-10 12:38 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-06-19 01:59 - 2014-07-10 12:39 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-06-19 01:56 - 2014-07-10 12:39 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-06-19 01:53 - 2014-07-10 12:38 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-06-19 01:51 - 2014-07-10 12:38 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-06-19 01:50 - 2014-07-10 12:38 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-06-19 01:48 - 2014-07-10 12:38 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-06-19 01:39 - 2014-07-10 12:38 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-06-19 01:38 - 2014-07-10 12:38 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-06-19 01:37 - 2014-07-10 12:39 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-06-19 01:36 - 2014-07-10 12:39 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-06-19 01:35 - 2014-07-10 12:38 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-06-19 01:33 - 2014-07-10 12:38 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-06-19 01:32 - 2014-07-10 12:39 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-06-19 01:28 - 2014-07-10 12:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-06-19 01:28 - 2014-07-10 12:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-06-19 01:27 - 2014-07-10 12:38 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-06-19 01:27 - 2014-07-10 12:38 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-06-19 01:25 - 2014-07-10 12:38 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-06-19 01:23 - 2014-07-10 12:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-06-19 01:22 - 2014-07-10 12:39 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-06-19 01:12 - 2014-07-10 12:39 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-06-19 01:06 - 2014-07-10 12:39 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-06-19 01:01 - 2014-07-10 12:38 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-06-19 00:59 - 2014-07-10 12:39 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-06-19 00:58 - 2014-07-10 12:38 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-06-19 00:58 - 2014-07-10 12:38 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-06-19 00:52 - 2014-07-10 12:38 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-06-19 00:51 - 2014-07-10 12:38 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-06-19 00:49 - 2014-07-10 12:39 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-06-19 00:46 - 2014-07-10 12:38 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-06-19 00:45 - 2014-07-10 12:39 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-06-19 00:35 - 2014-07-10 12:38 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-06-19 00:34 - 2014-07-10 12:39 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-06-19 00:15 - 2014-07-10 12:38 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-06-19 00:13 - 2014-07-10 12:38 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-06-19 00:09 - 2014-07-10 12:39 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-06-19 00:07 - 2014-07-10 12:38 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-06-18 19:07 - 2014-06-18 19:06 - 00000000 ____D () C:\5149c073c96b89cfb539
2014-06-18 11:27 - 2014-06-18 11:26 - 00000000 ____D () C:\df20b2e7d4db3cc507122a7c7a38d381
2014-06-18 04:18 - 2014-07-10 12:39 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-06-18 03:51 - 2014-07-10 12:39 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2014-06-18 03:10 - 2014-07-10 12:39 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-06-17 19:26 - 2014-06-17 19:25 - 00000000 ____D () C:\7cd4c641178b44127db26b8f67
2014-06-17 10:59 - 2014-06-17 10:58 - 00000000 ____D () C:\b1b0850b182402d540e5
2014-06-15 16:52 - 2014-06-15 16:51 - 00000000 ____D () C:\6e5146ba000af26ed08913816aa872
2014-06-14 10:55 - 2014-06-14 10:54 - 00000000 ____D () C:\608b6b688b39a1b358

Some content of TEMP:
====================
C:\Users\Datart\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpvo_zex.dll
C:\Users\Datart\AppData\Local\Temp\ExPromo.exe
C:\Users\Datart\AppData\Local\Temp\npp.6.6.4.Installer.exe
C:\Users\Datart\AppData\Local\Temp\npp.6.6.7.Installer.exe
C:\Users\Datart\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Datart\AppData\Local\Temp\Uninstall.exe
C:\Users\Datart\AppData\Local\Temp\xmlUpdater.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Datart\Desktop" je 159 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AthBtTray
"C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\N�stroj WD Drive Unlocker
C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\N�stroj WD Quick View
C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTTray.exe


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119543
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Samovolné vypínání notebooku

#2 Příspěvek od Rudy »

Zdravím!
NB se náhodou nepřehřívá? Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Filter: application/xhtml+xml - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
Filter: application/xhtml+xml; charset=iso-8859-1 - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
Filter: application/xhtml+xml; charset=utf-8 - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
Filter: text/xml; charset=iso-8859-1 - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
Filter: text/xml; charset=utf-8 - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
CHR Extension: (Angry Birds) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2014-04-14]
CHR Extension: (jQuery Debugger) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbhhnnnpaeobfddmlalhnehgclcmjimi [2014-07-10]
CHR Extension: (Papa's Pizzeria) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjaihmihhhgfofccgiboicjloaemhhfi [2014-07-10]
CHR Extension: (Dots) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\gliedaffibdnbhbiaolgkdhhfbjgmhgi [2014-04-14]
CHR Extension: (Cargo Bridge: Armor Games Edition) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\hlpiaibleklmjieibbnmkignbggodmmj [2014-04-14]
CHR Extension: (Cargo Bridge) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\keembkgclppcbilkekfgpobhldjjhpmn [2014-04-14]
CHR Extension: (Cracking Sands Racing) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnafpgbiiobelphegdbieldnmojicndb [2014-04-14]
C:\Users\Datart\Downloads\80B7.tmp
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Datart\AppData\Local\Temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

AbjCh
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 30 bře 2014 09:50

Re: Samovolné vypínání notebooku

#3 Příspěvek od AbjCh »

Jestli se přehřívá nevím. Normálně se nezdá být příliš horký, ale zkusím si na to najít nějakou utilitu, která by to ukazovala.
Zde je vygenerovaný log:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 14-07-2014
Ran by Datart at 2014-07-14 18:37:29 Run:1
Running from C:\Users\Datart\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Filter: application/xhtml+xml - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
Filter: application/xhtml+xml; charset=iso-8859-1 - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
Filter: application/xhtml+xml; charset=utf-8 - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
Filter: text/xml; charset=iso-8859-1 - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
Filter: text/xml; charset=utf-8 - {32F66A26-7614-11D4-BD11-00104BD3F987} - No File
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
CHR Extension: (Angry Birds) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2014-04-14]
CHR Extension: (jQuery Debugger) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbhhnnnpaeobfddmlalhnehgclcmjimi [2014-07-10]
CHR Extension: (Papa's Pizzeria) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjaihmihhhgfofccgiboicjloaemhhfi [2014-07-10]
CHR Extension: (Dots) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\gliedaffibdnbhbiaolgkdhhfbjgmhgi [2014-04-14]
CHR Extension: (Cargo Bridge: Armor Games Edition) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\hlpiaibleklmjieibbnmkignbggodmmj [2014-04-14]
CHR Extension: (Cargo Bridge) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\keembkgclppcbilkekfgpobhldjjhpmn [2014-04-14]
CHR Extension: (Cracking Sands Racing) - C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnafpgbiiobelphegdbieldnmojicndb [2014-04-14]
C:\Users\Datart\Downloads\80B7.tmp
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Datart\AppData\Local\Temp
End
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
'HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt1' => Key deleted successfully.
'HKLM\Software\Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}'=> Key not found.
'HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt2' => Key deleted successfully.
'HKLM\Software\Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}'=> Key not found.
'HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt3' => Key deleted successfully.
'HKLM\Software\Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}'=> Key not found.
'HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt4' => Key deleted successfully.
'HKLM\Software\Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}'=> Key not found.
'HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt1' => Key deleted successfully.
'HKLM\Software\Wow6432Node\Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}'=> Key not found.
'HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt2' => Key deleted successfully.
'HKLM\Software\Wow6432Node\Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}'=> Key not found.
'HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt3' => Key deleted successfully.
'HKLM\Software\Wow6432Node\Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}'=> Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
'HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}' => Key deleted successfully.
'HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}'=> Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
'HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}' => Error deleting key. The key could be protected.
'HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}'=> Key not found.
'HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}' => Key deleted successfully.
'HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}'=> Key not found.
'HKCR\PROTOCOLS\Filter\application/xhtml+xml' => Key deleted successfully.
'HKCR\CLSID\{32F66A26-7614-11D4-BD11-00104BD3F987}'=> Key not found.
'HKCR\PROTOCOLS\Filter\application/xhtml+xml; charset=iso-8859-1' => Key deleted successfully.
'HKCR\CLSID\{32F66A26-7614-11D4-BD11-00104BD3F987}'=> Key not found.
'HKCR\PROTOCOLS\Filter\application/xhtml+xml; charset=utf-8' => Key deleted successfully.
'HKCR\CLSID\{32F66A26-7614-11D4-BD11-00104BD3F987}'=> Key not found.
'HKCR\PROTOCOLS\Filter\text/xml; charset=iso-8859-1' => Key deleted successfully.
'HKCR\CLSID\{32F66A26-7614-11D4-BD11-00104BD3F987}'=> Key not found.
'HKCR\PROTOCOLS\Filter\text/xml; charset=utf-8' => Key deleted successfully.
'HKCR\CLSID\{32F66A26-7614-11D4-BD11-00104BD3F987}'=> Key not found.
'HKLM\Software\MozillaPlugins\FF Plugin: @microsoft.com/GENUINE - disabled No File'=> Key not found.
"FF Plugin: @microsoft.com/GENUINE - disabled No File" => not found.
'HKLM\Software\Wow6432Node\MozillaPlugins\FF Plugin-x32: @microsoft.com/GENUINE - disabled No File'=> Key not found.
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File not found.
C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj => Moved successfully.
C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbhhnnnpaeobfddmlalhnehgclcmjimi => Moved successfully.
C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjaihmihhhgfofccgiboicjloaemhhfi => Moved successfully.
C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\gliedaffibdnbhbiaolgkdhhfbjgmhgi => Moved successfully.
C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\hlpiaibleklmjieibbnmkignbggodmmj => Moved successfully.
C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\keembkgclppcbilkekfgpobhldjjhpmn => Moved successfully.
C:\Users\Datart\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnafpgbiiobelphegdbieldnmojicndb => Moved successfully.
C:\Users\Datart\Downloads\80B7.tmp => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.

"C:\Users\Datart\AppData\Local\Temp" directory move:

C:\Users\Datart\AppData\Local\Temp\5F457202-EECC-48FA-B120-AB663B229B13.Repair.1.etl => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\5F457202-EECC-48FA-B120-AB663B229B13.Verify.2.etl => Moved successfully.
Could not move "C:\Users\Datart\AppData\Local\Temp\aipflib.log" => Scheduled to move on reboot.
C:\Users\Datart\AppData\Local\Temp\amt3.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\AUCHECK_PARSER.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\BIT4612.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\CFG3FE2.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\CFGCC97.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\chrome_installer.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\config.model.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\configModel.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\configurations4474812702590479175.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\CVHLauncher(20140428095400480).log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\CVR5C68.tmp.cvr => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\CVR7A73.tmp.cvr => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\CVR87D5.tmp.cvr => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\CVRC92.tmp.cvr => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\CVRF6AB.tmp.cvr => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dbxlgjs8ot.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dd_dotNetFx40_Full_setup_decompression_log.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dd_NDP45-KB2931368-x64_decompression_log.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dd_vcredistMSI428B.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dd_vcredistUI428B.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache1084437717438018648.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache1103940820818133814.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache205406513082525080.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache2231756110688024429.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache2429858852536207372.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache2430152891660527831.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache2583176622882767639.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache280015039193096166.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache2896716085802995167.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache3539028015054291206.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache3621510371540087992.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache4355756022156572433.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache4445799061367868861.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache4453308466309191290.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache4508615026469662720.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache4517427882777503103.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache4555882728425799015.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache4746040241179253942.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache4929554670101054116.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache5045683025945495301.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache5154056832700246476.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache5252800161378753881.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache5447349397396068121.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache5534869213670313256.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache6314392329101995727.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache6314566564820395987.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache6323679879792438245.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache6746423883278812686.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache6903657722930683438.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache7100472106295084239.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache712444523203911854.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache7138306474011838082.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache7160110424732403278.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache7182389414209819736.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache7196516736664156673.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache7409976099595345461.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache7497385021334675093.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache7875339544039221437.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache8197912960665970707.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache846151171508777614.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache8475218766261341344.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache8808850255232242435.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache8990185419009080948.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dict_cache9170009877209184036.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\DMI472.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\DMI6BCE.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\DMIA776.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpvo_zex.dll => Moved successfully.
Could not move "C:\Users\Datart\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpvo_zex.lck" => Scheduled to move on reboot.
C:\Users\Datart\AppData\Local\Temp\EscapeGoat_DebugLog.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\ExPromo.exe => Moved successfully.
Could not move "C:\Users\Datart\AppData\Local\Temp\FXSAPIDebugLogFile.txt" => Scheduled to move on reboot.
C:\Users\Datart\AppData\Local\Temp\FXSTIFFDebugLogFile.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds1382349425057137683.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds1490329005348904432.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds1794983749038335207.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds222126413926760663.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds3557622550921290850.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds3735765230204292885.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds3876305388590554113.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds4340255921695837771.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds4930211698330102112.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds5757524889614581147.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds6283556417447859891.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds6988905605135425365.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds7652129156692883406.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds8314299136750727034.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds8338377095274547070.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds8970361453604377555.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\gdb-cmds9038164832873760869.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\hs_err_pid4540.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\JAUReg.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\JavaDeployReg.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\java_install.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\java_install_reg.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\jusched.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\KB2931368_20140527_211547700-Microsoft .NET Framework 4.5-MSP0.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\KB2931368_20140527_211547700.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\langs.model.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\langsModel.xml => Moved successfully.
Could not move "C:\Users\Datart\AppData\Local\Temp\LManager.log" => Scheduled to move on reboot.
Could not move "C:\Users\Datart\AppData\Local\Temp\LMworker.log" => Scheduled to move on reboot.
C:\Users\Datart\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_20140712_175703766.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\Microsoft Visual C++ 2010 x64 Redistributable Setup_20140712_175317035-MSI_vc_red.msi.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\Microsoft Visual C++ 2010 x64 Redistributable Setup_20140712_175317035.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20140712_175309812-MSI_vc_red.msi.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20140712_175309812.html => Moved successfully.
Could not move "C:\Users\Datart\AppData\Local\Temp\MMDUtl.log" => Scheduled to move on reboot.
C:\Users\Datart\AppData\Local\Temp\MSI140f8.LOG => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\MSI88313.LOG => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\MSIe2a43.LOG => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\MSIf1106.LOG => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\MSIf7a3f.LOG => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\npp.6.6.4.Installer.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\npp.6.6.7.Installer.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\OOBE(2014041608105718D4).log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\OOBE(20140416082106121C).log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\OOBE(201405181926071170).log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\OOBE(201406051240351F30).log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\OOBE(201406081116111EE4).log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\OOBE(201406081116341178).log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\output1397554257861 => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\output1400230752680 => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\output1400598204242 => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\output1401315349038 => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\PDApp.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\RD4691.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\RD85A3.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\RDC8E9.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\RDE9D1.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\Setup Log 2014-04-19 #001.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\Setup Log 2014-05-03 #001.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\Setup Log 2014-06-24 #001.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\Setup Log 2014-06-25 #001.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\SkypeSetup.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\StructuredQuery.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\stylers.model.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\stylers_remove.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\stylesGlobalModel.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\stylesLexerModel.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\swtag.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture1435095193995130825.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture1484663283877455974.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture1646808024017183501.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture2074412541318147967.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture2529544422794284909.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture2551608735531837023.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture2854030525072904230.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture287093683695121955.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture3980550832616697442.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture4768165084765281867.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture5168412834920140368.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture5230515582081920952.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture7272136094229366084.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture7583065146368881509.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\uigesture808132127334364955.html => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\Uninstall.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\WER4633.tmp.resp.erc.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\wmplog00.sqm => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\wmplog01.sqm => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\wmplog02.sqm => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\wmplog03.sqm => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\wmplog04.sqm => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\wmplog05.sqm => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\wmplog06.sqm => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\wmplog07.sqm => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\wmsetup.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\xmlUpdater.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\xyz1837889567745500686.c => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\xyz3121998004213356235.c => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\xyz3843015183671248877.c => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\xyz39138130982466159.c => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\xyz3929054073802933957.c => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\xyz4630542343569130433.c => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\xyz4927699417291497707.c => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\xyz6035524119504947334.c => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\xyz6117188744489762.c => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\xyz6385403219199224792.c => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\xyz7009558414022228511.c => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\xyz8300463787415481327.c => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\~A6FA.bat => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\~A6FA.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\~C773.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\{31F2BFF0-20EF-406B-99E7-89564FBF5834}\Disk1\setup.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_tc\zaklad.tar => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_avast_\unp18482625.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_avast_\unp18574815.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_avast_\unp18588756.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_avast_\unp20220788.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_avast_\unp214999100.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_avast_\unp215463928.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_avast_\unp221440313.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_avast_\unp226415308.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_avast_\unp322389.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_avast_\unp36731071.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_avast_\unp36737451.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_avast_\unp36960554.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_avast_\unp37486686.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\_avast_\unp37588999.tmp => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\Word8.0\MSForms.exd => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\TCDF558.tmp\CleanGradient.thmx => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\TCDA8B0.tmp\CleanGradient.thmx => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\TCD91F.tmp\CleanGradient.thmx => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\TCD787E.tmp\CleanGradient.thmx => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\TCD476E.tmp\CleanGradient.thmx => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\TCD1D51.tmp\CleanGradient.thmx => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\Skype\gilasterr.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\setup.cfg => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\setup.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Update.Core\NvBackend.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Update.Core\NvBackendAPI32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Update.Core\NvBackendAPI64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Update.Core\nvupdt32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Update.Core\nvupdt64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Update.Core\nvupdtr32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Update.Core\nvupdtr64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Update.Core\nvupdtrXP32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Update.Core\nvupdtrXP64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Update.Core\nvupdtXP32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Update.Core\nvupdtXP64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Update.Core\UpdateCore.nvi => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Update.Core\UpdateCoreExt.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Update.Core\WLMerger.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\cudart32_55.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\cudart64_55.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\DSETUP.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\dsetup32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\DXSETUP.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\dxupdate.cab => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\gamecaster32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\gamecaster64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\Jun2010_d3dx10_43_x64.cab => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\Jun2010_d3dx10_43_x86.cab => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\Jun2010_d3dx11_43_x64.cab => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\Jun2010_d3dx11_43_x86.cab => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\Jun2010_d3dx9_43_x64.cab => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\Jun2010_d3dx9_43_x86.cab => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\nvspbridge.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\nvspbridge64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\nvspcap.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\nvspcap64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\nvspcaps.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\nvspcaps64.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\ShadowPlay.nvi => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\ShadowPlayExt.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\twitchsdk32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\ShadowPlay\twitchsdk64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NvVAD\nvaudcap32v.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NvVAD\nvaudcap64v.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NvVAD\nvgenco32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NvVAD\nvgenco64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NvVAD\nvvad.cat => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NvVAD\nvvad.inf => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NvVAD\nvvad.nvi => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NvVAD\nvvad32v.sys => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NvVAD\nvvad64v.sys => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0000.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0000.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0401.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0401.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0404.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0404.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0405.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0405.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0406.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0406.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0407.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0407.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0408.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0408.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0409.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0409.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\040a.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\040a.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\040b.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\040b.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\040c.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\040c.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\040d.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\040d.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\040e.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\040e.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0410.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0410.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0411.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0411.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0412.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0412.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0413.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0413.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0414.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0414.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0415.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0415.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0416.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0416.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0419.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0419.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\041b.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\041b.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\041d.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\041d.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\041e.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\041e.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\041f.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\041f.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0424.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0424.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0804.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0809.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\080a.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0816.ui.forms => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\0816.ui.strings => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\box_checked_disabled.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\box_checked_enabled.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\box_unchecked_disabled.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\box_unchecked_enabled.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_disable_135.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_disable_180.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_disable_90.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_primary_135.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_primary_180.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_primary_90.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_primary_focus_135.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_primary_focus_180.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_primary_focus_90.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_primary_pressed_135.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_primary_pressed_180.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_primary_pressed_90.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_secondary_135.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_secondary_180.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_secondary_90.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_secondary_focus_135.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_secondary_focus_180.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_secondary_focus_90.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_secondary_pressed_135.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_secondary_pressed_180.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\btn_secondary_pressed_90.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\check.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\checkmark.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\circled_checkmark.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\error.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\GFExperience.ico => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\info.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\install_bg.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\install_bg_rtl.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\NVI2.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\NVI2SystemService32.sys => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\NVI2SystemService64.sys => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\NVI2UI.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\NVPrxy32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\NVPrxy64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\presentations_bg.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\radio_btn_selected.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\radio_btn_unselected.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\ReleaseHighlights.cfg => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\ReleaseHighlights.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\releasehighlights.htm => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\splash.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\splash_rtl.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\SU_Install_bg.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\SU_Install_bg_rtl.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\theme.cfg => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\uninstall_bg.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\uninstall_bg_rtl.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\NVI2\warning.png => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Network.Service\NetworkService.nvi => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Network.Service\NVNetworkService.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Network.Service\NVNetworkServiceAPI.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Network.Service\NVNetworkServiceAPI64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\MS.NET\dotNetFx40_Full_setup.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\MS.NET\MSNet.nvi => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\MS.NET\MSNetExt.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\LEDVisualizer.nvi => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\msvcp100.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\msvcr100.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\NvDashBoardControls.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\NvGpuInterface.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\NvLedServiceHost.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\NvLedServiceHost.exe.config => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\NvLedServiceLib.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\NvLedServiceLib.dll.config => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\NvLedVisualizer.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\NvLedVisualizer.exe.config => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\NvLedVisualizerControl.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\zh-CHT\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\zh-CHS\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\tr-TR\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\th-TH\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\sv-SE\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\sl-SI\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\sk-SK\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\ru-RU\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\pt-PT\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\pt-BR\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\pl-PL\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\nl-NL\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\nb-NO\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\ko-KR\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\ja-JP\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\it-IT\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\hu-HU\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\he-IL\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\fr-FR\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\fi-FI\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\es-MX\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\es-ES\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\en-US\NvLedVisualizer.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\en-US\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\en-GB\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\el-GR\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\de-DE\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\da-DK\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\cs-CZ\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\LEDVisualizer\ar-SA\NvLedVisualizerControl.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\GFExperience.NvStreamSrv.nvi => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\NvStreamSrvExt.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\x86\server\cudart32_41_0.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\x86\server\detoured.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\x86\server\nvFBC.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\x86\server\NvGfeServiceBridge.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\x86\server\nvsteamsupport.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\x86\server\nvstreamer.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\x86\server\NvStreamKms.pdb => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\x86\server\NvStreamKms.sys => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\x86\server\nvstreamsvc.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\x86\server\protobuf-net.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\x86\server\rxinput.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\x86\server\steam_api.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\x86\server\steam_appid.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\SteamLauncher\NVIDIA.SteamLauncher.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\SteamLauncher\NVIDIA.SteamLauncher.ini => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\SteamLauncher\steam_appid.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\amd64\server\cudart64_41_0.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\amd64\server\detoured.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\amd64\server\nvFBC.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\amd64\server\NvGfeServiceBridge.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\amd64\server\nvsteamsupport.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\amd64\server\nvstreamer.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\amd64\server\NvStreamKms.pdb => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\amd64\server\NvStreamKms.sys => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\amd64\server\nvstreamsvc.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\amd64\server\rxinput.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\amd64\server\steam_api64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience.NvStreamSrv\amd64\server\steam_appid.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\7z.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\dbghelp.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\DisplayCplExt.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\EULA.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\ExtensionLoader.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\flame.Accounts.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\flame.core.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\GalaSoft.MvvmLight.Extras.WPF4.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\GalaSoft.MvvmLight.WPF4.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\GFExperience.exe => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\GFExperience.exe.config => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\GFExperience.nvi => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\GFExperience.WebService.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\GFExperienceControls.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\GFExperienceCore.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\GFExperienceExt.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\GridService.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\InstallerService.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\InstallerUIExtension.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Interop.Shell32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Licenses.txt => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\log4net.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\log4net.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Microsoft.Practices.EnterpriseLibrary.Logging.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Microsoft.Practices.EnterpriseLibrary.Validation.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Microsoft.Practices.EnterpriseLibrary.Validation.Integration.WPF.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Microsoft.Practices.Prism.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Microsoft.Practices.Prism.Interactivity.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Microsoft.Practices.Prism.MefExtensions.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Microsoft.Practices.Prism.UnityExtensions.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Microsoft.Practices.ServiceLocation.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Microsoft.Practices.Unity.Configuration.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Microsoft.Practices.Unity.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Microsoft.Practices.Unity.Interception.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Microsoft.WindowsAPICodePack.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Microsoft.WindowsAPICodePack.Shell.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Newtonsoft.Json.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\NvGFTrayPlugin32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\NvGFTrayPlugin64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\NvGFTrayPluginr32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\NvGFTrayPluginr64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\NvGFTrayPluginrXP32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\NvGFTrayPluginrXP64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\NvGFTrayPluginXP32.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\NvGFTrayPluginXP64.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\NVIDIA.GFExperience.Resources.Localization.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\NVIDIA.Settings.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\NVIDIA.Settings.Properties.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\NVIDIA.UpdateService.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\NVIDIA.Win32Api.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\ReactiveUI.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\ShadowPlay.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\System.ComponentModel.Composition.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\System.ComponentModel.Composition.Registration.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\System.Reactive.Core.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\System.Reactive.Interfaces.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\System.Reactive.Linq.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\System.Reactive.PlatformServices.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\System.Reactive.Providers.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\System.Reactive.Runtime.Remoting.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\System.Reactive.Windows.Threading.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\System.Reflection.Context.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\System.Runtime.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\System.Threading.Tasks.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\System.Windows.Interactivity.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Touchstone.Resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Xml.Schema.Linq.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\Yeast.Core.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\zh-CHT\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\zh-CHS\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\tr-TR\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\th-TH\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\sv-SE\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\sl-SI\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\sk-SK\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\ru-RU\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\pt-PT\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\pt-BR\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\pl-PL\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\nl-NL\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\nb-NO\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\ko-KR\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\ja-JP\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\it-IT\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\hu-HU\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\he-IL\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\fr-FR\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\fi-FI\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\es-MX\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\es-ES\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\en-US\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\en-GB\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\el-GR\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\de-DE\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\da-DK\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\cs-CZ\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\GFExperience\ar-AE\NVIDIA.GFExperience.Resources.Localization.resources.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Display.Update\DisplayUpdate.nvi => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Display.Update\DisplayUpdateExt.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Display.Optimus\acpigold.mof => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Display.Optimus\OptimusUpdate.nvi => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\NVIDIA\GeForceExperienceSelfUpdate\14.6.22.1\Display.Optimus\OptimusUpdateExt.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nss2924.tmp\DropboxNSISTools.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nss2924.tmp\UAC.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nsg63C4.tmp\DropboxNSISTools.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nsg63C4.tmp\UAC.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nscED9A.tmp\DropboxNSISTools.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nscED9A.tmp\UAC.dll => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\afrikaans.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\albanian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\arabic.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\aragonese.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\aranese.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\azerbaijani.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\basque.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\belarusian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\bengali.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\bosnian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\brazilian_portuguese.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\bulgarian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\catalan.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\chinese.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\chineseSimplified.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\croatian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\czech.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\danish.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\dutch.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\english.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\english_customizable.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\esperanto.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\extremaduran.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\farsi.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\finnish.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\french.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\friulian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\galician.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\georgian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\german.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\greek.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\hebrew.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\hindi.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\hungarian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\indonesian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\italian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\japanese.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\kabyle.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\kazakh.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\korean.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\kyrgyz.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\latvian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\ligurian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\lithuanian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\luxembourgish.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\macedonian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\malay.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\marathi.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\norwegian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\nynorsk.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\occitan.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\polish.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\portuguese.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\romanian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\russian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\samogitian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\sardinian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\serbian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\serbianCyrillic.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\sinhala.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\slovak.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\slovenian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\spanish.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\spanish.xml.bak => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\spanish_ar.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\swedish.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\tagalog.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\tamil.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\telugu.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\thai.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\turkish.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\ukrainian.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\uyghur.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\uzbek.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\uzbekCyrillic.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\nppLocalization\vietnamese.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\msohtmlclip1\01\clip_colorschememapping.xml => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\msohtmlclip1\01\clip_themedata.thmx => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\Low\JavaDeployReg.log => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\fontconfig\cache\95129672cb136f754e405c74b6a041e5-le32d8.cache-3 => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\fontconfig\cache\d031bbba323fd9e5b47e0ee5a0353f11-le32d8.cache-3 => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dlight_Datart\420bf047\env => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dlight_Datart\420bf047\854224174\pty_open => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dlight_Datart\420bf047\685766580\pty => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\dlight_Datart\420bf047\0750884241\pty => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\avastBCLTMP\chrome\Default\Web Data => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\940_25817\crl-set => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\940_25817\manifest.fingerprint => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\940_25817\manifest.json => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\940_21561\crl-set => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\940_21561\manifest.fingerprint => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\940_21561\manifest.json => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\5708_28773\crl-set => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\5708_28773\manifest.fingerprint => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\5708_28773\manifest.json => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\5332_23823\crl-set => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\5332_23823\manifest.fingerprint => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\5332_23823\manifest.json => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\4896_25669\crl-set => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\4896_25669\manifest.fingerprint => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\4896_25669\manifest.json => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\4216_20968\crl-set => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\4216_20968\manifest.fingerprint => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\4216_20968\manifest.json => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\4048_19751\crl-set => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\4048_19751\manifest.fingerprint => Moved successfully.
C:\Users\Datart\AppData\Local\Temp\4048_19751\manifest.json => Moved successfully.
Could not move "C:\Users\Datart\AppData\Local\Temp" directory. => Scheduled to move on reboot.


=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-07-14 18:42:41)<=

C:\Users\Datart\AppData\Local\Temp\aipflib.log => Is moved successfully.
C:\Users\Datart\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpvo_zex.lck => Is moved successfully.
C:\Users\Datart\AppData\Local\Temp\FXSAPIDebugLogFile.txt => Is moved successfully.
C:\Users\Datart\AppData\Local\Temp\LManager.log => Is moved successfully.
"C:\Users\Datart\AppData\Local\Temp\LMworker.log" => File could not move.
C:\Users\Datart\AppData\Local\Temp\MMDUtl.log => Is moved successfully.
"C:\Users\Datart\AppData\Local\Temp" => Directory could not move.

==== End of Fixlog ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119543
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Samovolné vypínání notebooku

#4 Příspěvek od Rudy »

Utilita na měření teploty: http://www.stahuj.centrum.cz/utility_a_ ... /speedfan/. Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

AbjCh
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 30 bře 2014 09:50

Re: Samovolné vypínání notebooku

#5 Příspěvek od AbjCh »

Díky za tip na utilitu. Budu sledovat teplotní chování.
Co se týče jakékoliv změny, nic se nezměnilo. (Aktualizace stále nejdou nainstalovat.)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119543
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Samovolné vypínání notebooku

#6 Příspěvek od Rudy »

Dejte ještě log ComboFix:
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

AbjCh
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 30 bře 2014 09:50

Re: Samovolné vypínání notebooku

#7 Příspěvek od AbjCh »

ComboFix 14-07-14.01 - Datart 14.07.2014 23:13:15.4.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3948.2322 [GMT 2:00]
Spuštěný z: c:\users\Datart\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Datart\AppData\Local\Temp\sfamcc00001.dll
c:\users\Datart\AppData\Local\Temp\sfareca00001.dll
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-06-14 do 2014-07-14 )))))))))))))))))))))))))))))))
.
.
2014-07-14 21:28 . 2014-07-14 21:28 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2014-07-14 21:28 . 2014-07-14 21:28 -------- d-----w- c:\users\Public\AppData\Local\temp
2014-07-14 17:18 . 2014-07-14 20:45 -------- d-----w- c:\program files (x86)\SpeedFan
2014-07-14 17:14 . 2014-07-14 17:15 -------- d-----w- C:\ddaaaa551c87cf945fbb1bf1c104
2014-07-14 16:39 . 2014-07-14 21:31 -------- d-----w- c:\users\Datart\AppData\Local\Temp
2014-07-14 15:16 . 2014-07-14 16:42 -------- d-----w- C:\FRST
2014-07-14 13:16 . 2014-07-14 13:16 -------- d-----w- c:\program files (x86)\Microsoft XNA
2014-07-13 19:37 . 2014-07-13 19:37 -------- d-----w- c:\users\Datart\AppData\Local\Chromium
2014-07-13 18:49 . 2014-07-13 19:30 -------- d-----w- c:\users\Datart\AppData\Local\Ubisoft Game Launcher
2014-07-13 18:49 . 2014-07-13 20:43 -------- d-----w- c:\users\Datart\AppData\Roaming\Might & Magic Heroes VI
2014-07-13 18:48 . 2014-07-13 18:48 -------- d-----w- c:\program files (x86)\Ubisoft
2014-07-13 11:31 . 2014-07-13 11:31 -------- d-----w- c:\users\Datart\AppData\Roaming\Ubisoft
2014-07-13 11:31 . 2014-07-13 11:31 -------- d-----w- c:\programdata\Ubisoft
2014-07-13 09:42 . 2014-07-13 09:42 43152 ----a-w- c:\windows\avastSS.scr
2014-07-12 13:57 . 2014-07-12 13:59 -------- d-----w- C:\8ed2cf780012421d087559514dd234
2014-07-11 01:02 . 2014-07-11 01:02 -------- d-----w- C:\ac38929bc4ba3b929fc2d37ded
2014-07-10 10:40 . 2014-06-03 10:02 1719296 ----a-w- c:\program files\Windows Journal\NBDoc.DLL
2014-07-10 10:40 . 2014-06-03 10:02 1380864 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll
2014-07-10 10:40 . 2014-06-03 10:02 1389568 ----a-w- c:\program files\Windows Journal\JNWDRV.dll
2014-07-10 10:40 . 2014-06-03 10:02 1354240 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll
2014-07-10 10:40 . 2014-06-03 09:29 936960 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\ink\journal.dll
2014-07-10 10:40 . 2014-06-30 02:09 519168 ----a-w- c:\windows\system32\aepdu.dll
2014-07-10 10:40 . 2014-06-30 02:04 424448 ----a-w- c:\windows\system32\aeinv.dll
2014-07-10 10:38 . 2014-06-19 00:09 452608 ----a-w- c:\windows\system32\dxtmsft.dll
2014-07-10 10:37 . 2014-06-05 14:45 1460736 ----a-w- c:\windows\system32\lsasrv.dll
2014-07-10 10:37 . 2014-06-05 14:26 22016 ----a-w- c:\windows\SysWow64\secur32.dll
2014-07-10 10:37 . 2014-06-05 14:25 96768 ----a-w- c:\windows\SysWow64\sspicli.dll
2014-06-27 20:17 . 2014-06-27 20:18 -------- d-----w- C:\b8c3bb21732e86870a
2014-06-25 21:48 . 2014-06-25 21:49 -------- d-----w- C:\7cc59729e7abbe1f5362dd5bdf
2014-06-25 13:08 . 2014-06-25 13:08 -------- d-----w- c:\programdata\Trymedia
2014-06-25 10:39 . 2014-06-25 10:39 -------- d-----w- c:\programdata\Airline Tycoon 2
2014-06-25 08:03 . 2014-06-25 08:05 -------- d-----w- C:\781949fa9e67ab35a3
2014-06-23 19:01 . 2014-06-23 19:01 -------- d-----w- C:\13e1c6c1bd2bcfc6589d5236
2014-06-23 01:00 . 2014-06-23 01:01 -------- d-----w- C:\6cbb09992be2d36291989fba45
2014-06-22 16:36 . 2014-06-22 16:37 -------- d-----w- C:\0f46885eb35c2778671c3f259f40149a
2014-06-18 17:06 . 2014-06-18 17:07 -------- d-----w- C:\5149c073c96b89cfb539
2014-06-18 09:26 . 2014-06-18 09:27 -------- d-----w- C:\df20b2e7d4db3cc507122a7c7a38d381
2014-06-17 17:25 . 2014-06-17 17:26 -------- d-----w- C:\7cd4c641178b44127db26b8f67
2014-06-17 08:58 . 2014-06-17 08:59 -------- d-----w- C:\b1b0850b182402d540e5
2014-06-15 14:51 . 2014-06-15 14:52 -------- d-----w- C:\6e5146ba000af26ed08913816aa872
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-07-13 09:42 . 2013-04-22 13:33 427360 ----a-w- c:\windows\system32\drivers\aswsp.sys
2014-07-13 09:42 . 2014-01-04 16:50 92008 ----a-w- c:\windows\system32\drivers\aswstm.sys
2014-07-13 09:42 . 2013-04-22 13:33 224896 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-07-13 09:42 . 2013-04-22 13:33 1041168 ----a-w- c:\windows\system32\drivers\aswsnx.sys
2014-07-13 09:42 . 2014-05-02 14:54 29208 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2014-07-13 09:42 . 2013-04-22 13:33 93568 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2014-07-13 09:42 . 2013-04-22 13:33 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-07-13 09:42 . 2013-04-22 13:33 79184 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-07-13 09:42 . 2013-04-22 13:33 307344 ----a-w- c:\windows\system32\aswBoot.exe
2014-07-11 01:04 . 2012-02-28 17:17 96441528 ----a-w- c:\windows\system32\MRT.exe
2014-07-10 15:01 . 2012-04-09 08:52 71344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-07-10 15:01 . 2012-04-09 08:52 699056 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-06-06 07:02 . 2014-06-06 07:02 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2014-06-06 07:00 . 2014-06-06 07:00 108968 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll
2014-06-06 07:00 . 2014-06-06 07:00 313256 ----a-w- c:\windows\system32\javaws.exe
2014-06-06 07:00 . 2014-06-06 07:00 189352 ----a-w- c:\windows\system32\javaw.exe
2014-06-06 07:00 . 2014-06-06 07:00 189352 ----a-w- c:\windows\system32\java.exe
2014-05-30 07:52 . 2014-07-10 10:39 247808 ----a-w- c:\windows\SysWow64\schannel.dll
2014-05-29 23:07 . 2014-06-06 07:07 1291232 ----a-w- c:\windows\SysWow64\nvspbridge.dll
2014-05-29 23:07 . 2014-04-18 15:57 1122312 ----a-w- c:\windows\SysWow64\nvspcap.dll
2014-05-29 23:07 . 2014-06-06 07:07 1715176 ----a-w- c:\windows\system32\nvspbridge64.dll
2014-05-29 23:07 . 2014-04-18 15:57 1279480 ----a-w- c:\windows\system32\nvspcap64.dll
2014-05-08 09:32 . 2014-06-11 18:57 3178496 ----a-w- c:\windows\system32\rdpcorets.dll
2014-05-08 09:32 . 2014-06-11 18:57 16384 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2014-04-25 02:34 . 2014-06-11 18:58 801280 ----a-w- c:\windows\system32\usp10.dll
2014-04-25 02:06 . 2014-06-11 18:58 626688 ----a-w- c:\windows\SysWow64\usp10.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-02-13 3481408]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-07-13 4086432]
"NUSB3MON"="c:\program files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-04-27 113288]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2011-03-14 1081424]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-02-18 283160]
"BackupManagerTray"="c:\program files (x86)\NTI\Packard Bell MyBackup\BackupManagerTray.exe" [2011-02-15 295744]
.
c:\users\Datart\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Datart\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-5-20 33322312]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer4"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [x]
R3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x]
R3 BTWAMPFL;BTWAMPFL;c:\windows\system32\DRIVERS\btwampfl.sys;c:\windows\SYSNATIVE\DRIVERS\btwampfl.sys [x]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys;c:\windows\SYSNATIVE\DRIVERS\btwl2cap.sys [x]
R3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys;c:\windows\SYSNATIVE\DRIVERS\ETD.sys [x]
R3 GamesAppIntegrationService;GamesAppIntegrationService;c:\program files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe;c:\program files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [x]
R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 PcaSp60;Rawether NDIS 6.X SPR Protocol Driver;c:\windows\system32\DRIVERS\PcaSp60.sys;c:\windows\SYSNATIVE\DRIVERS\PcaSp60.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys;c:\windows\SYSNATIVE\DRIVERS\wdcsam64.sys [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x]
S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys;c:\windows\SYSNATIVE\Drivers\PxHlpa64.sys [x]
S1 aswKbd;aswKbd; [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 VBoxDrv;VirtualBox Service;c:\windows\system32\DRIVERS\VBoxDrv.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxDrv.sys [x]
S1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\DRIVERS\VBoxUSBMon.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxUSBMon.sys [x]
S2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9;c:\program files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe;c:\program files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [x]
S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Bluetooth Suite\adminservice.exe [x]
S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe;c:\program files (x86)\Launch Manager\dsiwmis.exe [x]
S2 ePowerSvc;Acer ePower Service;c:\program files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe;c:\program files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [x]
S2 GREGService;GREGService;c:\program files (x86)\Packard Bell\Registration\GREGsvc.exe;c:\program files (x86)\Packard Bell\Registration\GREGsvc.exe [x]
S2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 Live Updater Service;Live Updater Service;c:\program files\Packard Bell\Packard Bell Updater\UpdaterService.exe;c:\program files\Packard Bell\Packard Bell Updater\UpdaterService.exe [x]
S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NTI\Packard Bell MyBackup\IScheduleSvc.exe;c:\program files (x86)\NTI\Packard Bell MyBackup\IScheduleSvc.exe [x]
S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x]
S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [x]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
S2 WDBackup;WD Backup;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [x]
S2 WDDriveService;WD Drive Manager;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [x]
S2 WDRulesService;WD Rules;c:\program files (x86)\Western Digital\WD SmartWare\WDRulesEngine.exe;c:\program files (x86)\Western Digital\WD SmartWare\WDRulesEngine.exe [x]
S3 b57xdbd;Broadcom xD Picture Bus Driver Service;c:\windows\system32\DRIVERS\b57xdbd.sys;c:\windows\SYSNATIVE\DRIVERS\b57xdbd.sys [x]
S3 b57xdmp;Broadcom xD Picture vstorp client drv;c:\windows\system32\DRIVERS\b57xdmp.sys;c:\windows\SYSNATIVE\DRIVERS\b57xdmp.sys [x]
S3 bScsiMSa;bScsiMSa;c:\windows\system32\DRIVERS\bScsiMSa.sys;c:\windows\SYSNATIVE\DRIVERS\bScsiMSa.sys [x]
S3 bScsiSDa;bScsiSDa;c:\windows\system32\DRIVERS\bScsiSDa.sys;c:\windows\SYSNATIVE\DRIVERS\bScsiSDa.sys [x]
S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys;c:\windows\SYSNATIVE\DRIVERS\k57nd60a.sys [x]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3hub.sys [x]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3xhc.sys [x]
S3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [x]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftfslh.sys [x]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftplaylh.sys [x]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftredirlh.sys [x]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftvollh.sys [x]
S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [x]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetAdp.sys [x]
S3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetFlt.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-06-26 20:58 1091912 ----a-w- c:\program files (x86)\Google\Chrome\Application\35.0.1916.153\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-07-14 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-09 15:01]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-07-13 09:42 634872 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-03-03 11786344]
"Power Management"="c:\program files\Packard Bell\Packard Bell Power Management\ePowerTray.exe" [2011-02-23 1796200]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-03-30 418840]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-03-30 167960]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-03-30 391704]
"AtherosBtStack"="c:\program files (x86)\Bluetooth Suite\BtvStack.exe" [2011-01-20 615584]
"NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-05-29 2352072]
"ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2014-05-29 1279480]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page =
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~4\Office14\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: Se&nd to OneNote - c:\progra~2\MICROS~4\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Datart\AppData\Roaming\Mozilla\Firefox\Profiles\6t4ynq8x.default\
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKCU-Run-RESTART_STICKY_NOTES - c:\windows\System32\StikyNot.exe
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
HKLM-Run-Nvtmru - c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2737083 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2742613 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2750147 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2789648 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2804582 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2805221 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2805226 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2833957 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2840642 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2840642v2 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2861208 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_14_0_0_145_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_14_0_0_145_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_14_0_0_145_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_14_0_0_145_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_14_0_0_145.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.14"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_14_0_0_145.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_14_0_0_145.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_14_0_0_145.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
@DACL=(02 0000)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\Launch Manager\LMworker.exe
c:\program files (x86)\Launch Manager\LMutilps32.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
.
**************************************************************************
.
Celkový čas: 2014-07-14 23:39:46 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-07-14 21:39
.
Před spuštěním: 120000954368
Po spuštění: 119664447488
.
- - End Of File - - 0E105C9479E77D00CC1B5312BDA73FC8

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119543
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Samovolné vypínání notebooku

#8 Příspěvek od Rudy »

Ještě dočistíme. Otevřte poznámkový blok a zkopírujte do něj:
RegLock::
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]

Reboot::
Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.

Obrázek
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

AbjCh
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 30 bře 2014 09:50

Re: Samovolné vypínání notebooku

#9 Příspěvek od AbjCh »

Zde je log z ComboFixu po čištění:

ComboFix 14-07-16.01 - Datart 16.07.2014 13:12:59.5.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3948.2172 [GMT 2:00]
Spuštěný z: c:\users\Datart\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Datart\Desktop\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Datart\AppData\Local\Temp\sfamcc00001.dll
c:\users\Datart\AppData\Local\Temp\sfareca00001.dll
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-06-16 do 2014-07-16 )))))))))))))))))))))))))))))))
.
.
2014-07-16 11:26 . 2014-07-16 11:26 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2014-07-16 11:26 . 2014-07-16 11:26 -------- d-----w- c:\users\Public\AppData\Local\temp
2014-07-16 11:26 . 2014-07-16 11:26 -------- d-----w- c:\users\Guest\AppData\Local\temp
2014-07-16 11:26 . 2014-07-16 11:26 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-07-14 21:43 . 2014-07-14 21:44 -------- d-----w- C:\7752123d10e26fc82526b1c3e9ed4e7c
2014-07-14 17:18 . 2014-07-16 10:40 -------- d-----w- c:\program files (x86)\SpeedFan
2014-07-14 17:14 . 2014-07-14 17:15 -------- d-----w- C:\ddaaaa551c87cf945fbb1bf1c104
2014-07-14 16:39 . 2014-07-16 11:30 -------- d-----w- c:\users\Datart\AppData\Local\Temp
2014-07-14 15:16 . 2014-07-14 16:42 -------- d-----w- C:\FRST
2014-07-14 13:16 . 2014-07-14 13:16 -------- d-----w- c:\program files (x86)\Microsoft XNA
2014-07-13 19:37 . 2014-07-13 19:37 -------- d-----w- c:\users\Datart\AppData\Local\Chromium
2014-07-13 18:49 . 2014-07-13 19:30 -------- d-----w- c:\users\Datart\AppData\Local\Ubisoft Game Launcher
2014-07-13 18:49 . 2014-07-13 20:43 -------- d-----w- c:\users\Datart\AppData\Roaming\Might & Magic Heroes VI
2014-07-13 18:48 . 2014-07-13 18:48 -------- d-----w- c:\program files (x86)\Ubisoft
2014-07-13 11:31 . 2014-07-13 11:31 -------- d-----w- c:\users\Datart\AppData\Roaming\Ubisoft
2014-07-13 11:31 . 2014-07-13 11:31 -------- d-----w- c:\programdata\Ubisoft
2014-07-13 09:42 . 2014-07-13 09:42 43152 ----a-w- c:\windows\avastSS.scr
2014-07-12 13:57 . 2014-07-12 13:59 -------- d-----w- C:\8ed2cf780012421d087559514dd234
2014-07-11 01:02 . 2014-07-11 01:02 -------- d-----w- C:\ac38929bc4ba3b929fc2d37ded
2014-07-10 10:40 . 2014-06-03 10:02 1719296 ----a-w- c:\program files\Windows Journal\NBDoc.DLL
2014-07-10 10:40 . 2014-06-03 10:02 1380864 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll
2014-07-10 10:40 . 2014-06-03 10:02 1389568 ----a-w- c:\program files\Windows Journal\JNWDRV.dll
2014-07-10 10:40 . 2014-06-03 10:02 1354240 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll
2014-07-10 10:40 . 2014-06-03 09:29 936960 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\ink\journal.dll
2014-07-10 10:40 . 2014-06-30 02:09 519168 ----a-w- c:\windows\system32\aepdu.dll
2014-07-10 10:40 . 2014-06-30 02:04 424448 ----a-w- c:\windows\system32\aeinv.dll
2014-07-10 10:38 . 2014-06-19 00:09 452608 ----a-w- c:\windows\system32\dxtmsft.dll
2014-07-10 10:37 . 2014-06-05 14:45 1460736 ----a-w- c:\windows\system32\lsasrv.dll
2014-07-10 10:37 . 2014-06-05 14:26 22016 ----a-w- c:\windows\SysWow64\secur32.dll
2014-07-10 10:37 . 2014-06-05 14:25 96768 ----a-w- c:\windows\SysWow64\sspicli.dll
2014-06-27 20:17 . 2014-06-27 20:18 -------- d-----w- C:\b8c3bb21732e86870a
2014-06-25 21:48 . 2014-06-25 21:49 -------- d-----w- C:\7cc59729e7abbe1f5362dd5bdf
2014-06-25 13:08 . 2014-06-25 13:08 -------- d-----w- c:\programdata\Trymedia
2014-06-25 10:39 . 2014-06-25 10:39 -------- d-----w- c:\programdata\Airline Tycoon 2
2014-06-25 08:03 . 2014-06-25 08:05 -------- d-----w- C:\781949fa9e67ab35a3
2014-06-23 19:01 . 2014-06-23 19:01 -------- d-----w- C:\13e1c6c1bd2bcfc6589d5236
2014-06-23 01:00 . 2014-06-23 01:01 -------- d-----w- C:\6cbb09992be2d36291989fba45
2014-06-22 16:36 . 2014-06-22 16:37 -------- d-----w- C:\0f46885eb35c2778671c3f259f40149a
2014-06-18 17:06 . 2014-06-18 17:07 -------- d-----w- C:\5149c073c96b89cfb539
2014-06-18 09:26 . 2014-06-18 09:27 -------- d-----w- C:\df20b2e7d4db3cc507122a7c7a38d381
2014-06-17 17:25 . 2014-06-17 17:26 -------- d-----w- C:\7cd4c641178b44127db26b8f67
2014-06-17 08:58 . 2014-06-17 08:59 -------- d-----w- C:\b1b0850b182402d540e5
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-07-13 09:42 . 2013-04-22 13:33 427360 ----a-w- c:\windows\system32\drivers\aswsp.sys
2014-07-13 09:42 . 2014-01-04 16:50 92008 ----a-w- c:\windows\system32\drivers\aswstm.sys
2014-07-13 09:42 . 2013-04-22 13:33 224896 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-07-13 09:42 . 2013-04-22 13:33 1041168 ----a-w- c:\windows\system32\drivers\aswsnx.sys
2014-07-13 09:42 . 2014-05-02 14:54 29208 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2014-07-13 09:42 . 2013-04-22 13:33 93568 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2014-07-13 09:42 . 2013-04-22 13:33 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-07-13 09:42 . 2013-04-22 13:33 79184 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-07-13 09:42 . 2013-04-22 13:33 307344 ----a-w- c:\windows\system32\aswBoot.exe
2014-07-11 01:04 . 2012-02-28 17:17 96441528 ----a-w- c:\windows\system32\MRT.exe
2014-07-10 15:01 . 2012-04-09 08:52 71344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-07-10 15:01 . 2012-04-09 08:52 699056 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-06-06 07:02 . 2014-06-06 07:02 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2014-06-06 07:00 . 2014-06-06 07:00 108968 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll
2014-06-06 07:00 . 2014-06-06 07:00 313256 ----a-w- c:\windows\system32\javaws.exe
2014-06-06 07:00 . 2014-06-06 07:00 189352 ----a-w- c:\windows\system32\javaw.exe
2014-06-06 07:00 . 2014-06-06 07:00 189352 ----a-w- c:\windows\system32\java.exe
2014-05-30 07:52 . 2014-07-10 10:39 247808 ----a-w- c:\windows\SysWow64\schannel.dll
2014-05-29 23:07 . 2014-06-06 07:07 1291232 ----a-w- c:\windows\SysWow64\nvspbridge.dll
2014-05-29 23:07 . 2014-04-18 15:57 1122312 ----a-w- c:\windows\SysWow64\nvspcap.dll
2014-05-29 23:07 . 2014-06-06 07:07 1715176 ----a-w- c:\windows\system32\nvspbridge64.dll
2014-05-29 23:07 . 2014-04-18 15:57 1279480 ----a-w- c:\windows\system32\nvspcap64.dll
2014-05-08 09:32 . 2014-06-11 18:57 3178496 ----a-w- c:\windows\system32\rdpcorets.dll
2014-05-08 09:32 . 2014-06-11 18:57 16384 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2014-04-25 02:34 . 2014-06-11 18:58 801280 ----a-w- c:\windows\system32\usp10.dll
2014-04-25 02:06 . 2014-06-11 18:58 626688 ----a-w- c:\windows\SysWow64\usp10.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-02-13 3481408]
"RESTART_STICKY_NOTES"="c:\windows\system32\StikyNot.exe" [BU]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-07-13 4086432]
"NUSB3MON"="c:\program files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-04-27 113288]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2011-03-14 1081424]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-02-18 283160]
"BackupManagerTray"="c:\program files (x86)\NTI\Packard Bell MyBackup\BackupManagerTray.exe" [2011-02-15 295744]
.
c:\users\Datart\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Datart\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-5-20 33322312]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer4"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x]
R3 BTWAMPFL;BTWAMPFL;c:\windows\system32\DRIVERS\btwampfl.sys;c:\windows\SYSNATIVE\DRIVERS\btwampfl.sys [x]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys;c:\windows\SYSNATIVE\DRIVERS\btwl2cap.sys [x]
R3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys;c:\windows\SYSNATIVE\DRIVERS\ETD.sys [x]
R3 GamesAppIntegrationService;GamesAppIntegrationService;c:\program files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe;c:\program files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [x]
R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 PcaSp60;Rawether NDIS 6.X SPR Protocol Driver;c:\windows\system32\DRIVERS\PcaSp60.sys;c:\windows\SYSNATIVE\DRIVERS\PcaSp60.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys;c:\windows\SYSNATIVE\DRIVERS\wdcsam64.sys [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x]
S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys;c:\windows\SYSNATIVE\Drivers\PxHlpa64.sys [x]
S1 aswKbd;aswKbd; [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 VBoxDrv;VirtualBox Service;c:\windows\system32\DRIVERS\VBoxDrv.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxDrv.sys [x]
S1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\DRIVERS\VBoxUSBMon.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxUSBMon.sys [x]
S2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9;c:\program files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe;c:\program files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [x]
S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Bluetooth Suite\adminservice.exe [x]
S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [x]
S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe;c:\program files (x86)\Launch Manager\dsiwmis.exe [x]
S2 ePowerSvc;Acer ePower Service;c:\program files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe;c:\program files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [x]
S2 GREGService;GREGService;c:\program files (x86)\Packard Bell\Registration\GREGsvc.exe;c:\program files (x86)\Packard Bell\Registration\GREGsvc.exe [x]
S2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 Live Updater Service;Live Updater Service;c:\program files\Packard Bell\Packard Bell Updater\UpdaterService.exe;c:\program files\Packard Bell\Packard Bell Updater\UpdaterService.exe [x]
S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NTI\Packard Bell MyBackup\IScheduleSvc.exe;c:\program files (x86)\NTI\Packard Bell MyBackup\IScheduleSvc.exe [x]
S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x]
S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [x]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
S2 WDBackup;WD Backup;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [x]
S2 WDDriveService;WD Drive Manager;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [x]
S2 WDRulesService;WD Rules;c:\program files (x86)\Western Digital\WD SmartWare\WDRulesEngine.exe;c:\program files (x86)\Western Digital\WD SmartWare\WDRulesEngine.exe [x]
S3 b57xdbd;Broadcom xD Picture Bus Driver Service;c:\windows\system32\DRIVERS\b57xdbd.sys;c:\windows\SYSNATIVE\DRIVERS\b57xdbd.sys [x]
S3 b57xdmp;Broadcom xD Picture vstorp client drv;c:\windows\system32\DRIVERS\b57xdmp.sys;c:\windows\SYSNATIVE\DRIVERS\b57xdmp.sys [x]
S3 bScsiMSa;bScsiMSa;c:\windows\system32\DRIVERS\bScsiMSa.sys;c:\windows\SYSNATIVE\DRIVERS\bScsiMSa.sys [x]
S3 bScsiSDa;bScsiSDa;c:\windows\system32\DRIVERS\bScsiSDa.sys;c:\windows\SYSNATIVE\DRIVERS\bScsiSDa.sys [x]
S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys;c:\windows\SYSNATIVE\DRIVERS\k57nd60a.sys [x]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3hub.sys [x]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3xhc.sys [x]
S3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [x]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftfslh.sys [x]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftplaylh.sys [x]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftredirlh.sys [x]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftvollh.sys [x]
S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [x]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetAdp.sys [x]
S3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetFlt.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-06-26 20:58 1091912 ----a-w- c:\program files (x86)\Google\Chrome\Application\35.0.1916.153\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-07-16 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-09 15:01]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-07-13 09:42 634872 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-03-03 11786344]
"Power Management"="c:\program files\Packard Bell\Packard Bell Power Management\ePowerTray.exe" [2011-02-23 1796200]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-03-30 418840]
"Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [BU]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-03-30 167960]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-03-30 391704]
"AtherosBtStack"="c:\program files (x86)\Bluetooth Suite\BtvStack.exe" [2011-01-20 615584]
"NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-05-29 2352072]
"ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2014-05-29 1279480]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~4\Office14\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: Se&nd to OneNote - c:\progra~2\MICROS~4\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Datart\AppData\Roaming\Mozilla\Firefox\Profiles\6t4ynq8x.default\
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2737083 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2742613 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2750147 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2789648 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2804582 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2805221 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2805226 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2833957 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2840642 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2840642v2 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
AddRemove-{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2861208 - c:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_14_0_0_145_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_14_0_0_145_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\Launch Manager\LMworker.exe
c:\program files (x86)\Launch Manager\LMutilps32.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
.
**************************************************************************
.
Celkový čas: 2014-07-16 13:37:57 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-07-16 11:37
ComboFix2.txt 2014-07-14 21:39
.
Před spuštěním: 119157563392
Po spuštění: 118785720320
.
- - End Of File - - AB00CF135124E3F934EB2C1EF132A3F8

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119543
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Samovolné vypínání notebooku

#10 Příspěvek od Rudy »

Smazáno. CF odinstalujte pomocí T-Cleaneru: http://vyosek.ic.cz/pro_usery/T-Cleaner.exe . Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

AbjCh
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 30 bře 2014 09:50

Re: Samovolné vypínání notebooku

#11 Příspěvek od AbjCh »

Bohužel, žádná změna nenastala. Aktualizace nadále nejde nainstalovat.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119543
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Samovolné vypínání notebooku

#12 Příspěvek od Rudy »

Která je to aktualizace?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

AbjCh
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 30 bře 2014 09:50

Re: Samovolné vypínání notebooku

#13 Příspěvek od AbjCh »

Z automatických aktualizací Windows je to Aktualizace zabezpečení pro rozhraní Microsoft .NET Framework 4.5 a 4.5.1 v systému Windows 7, Vista, Server 2008, Server 2008 R2 x64. Ale nelze mi nainstalovat třeba ani aktualizace Adobe Photoshop Elements 9, nebo aktualizace ovladače grafické karty. Nepomáhá ani aktualizace stáhnout a nainstalovat zvlášť, mimo aktualizační programy.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119543
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Samovolné vypínání notebooku

#14 Příspěvek od Rudy »

Zkuste použít utiltu FixIt: http://support.microsoft.com/fixit/cs-cz . Pokud to nepomůže udělejte obnovu systému k datu, kdy korektně fugoval. Pokud datum neznáte, pak k nejstaršímu bodu obnovy.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

AbjCh
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 30 bře 2014 09:50

Re: Samovolné vypínání notebooku

#15 Příspěvek od AbjCh »

Obávám se, že ani jedno řešení neuspělo. Nástroj Microsoft FixIt neprovedl žádné změny a poslední bod obnovení, který je dosažitelný, je 12.7., kdy již problémy s aktualizací byly.
Je tedy ještě nějaké jiné řešení?

Odpovědět