Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Problem s win 8.1

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Murtagh
Návštěvník
Návštěvník
Příspěvky: 55
Registrován: 27 pro 2008 11:01
Bydliště: Liesek city
Kontaktovat uživatele:

Problem s win 8.1

#1 Příspěvek od Murtagh »

Caute... stahoval som jeden program a asi sa s nim stiahli aj nejake viry a zasrali mi PC... mam win 8.1, Avast mi hlasi furt nejake chyby, presunutia do karanteny, vytvorili sa mi nove subory vo windowse, chrome sa mi stale zatvara a ked otvorim novu kartu, vzdy sa mi otvori aj nejaka reklamna stranka... mohli by ste mi poradit??

Logfile of random's system information tool 1.10 (written by random/random)
Run by Murtagh at 2014-11-29 08:32:48
Microsoft Windows 8.1 Pro
System drive C: has 51 GB (45%) free of 114 GB
Total RAM: 8093 MB (72% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:32:54, on 29.11.2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Murtagh\AppData\Roaming\uTorrent\utorrent.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Murtagh.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... XXZ1D6ZVJW
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hp&t ... XXZ1D6ZVJW
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... XXZ1D6ZVJW
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hp&t ... XXZ1D6ZVJW
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: edccb4a004ec01329fbb0fbe6070a3f60063285 - {11111111-1111-1111-1111-110611321185} - C:\Program Files (x86)\TotalPlusHD-3.1V29.11\TotalPlusHD-3.1V29.11-bho.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe Creative Cloud] "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
O4 - HKLM\..\Run: [IR_SERVER] C:\PROGRA~2\Realtek\REALTE~1\IR_SERVER.exe
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HDD Regenerator] "C:\Program Files (x86)\HDD Regenerator\Shell.exe" /1
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [RGSC] E:\Hry\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
O4 - Global Startup: TMMonitor.lnk = C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync Volanie kliknutím - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Volanie kliknutím - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: DTSAudioSvc - DTS, Inc - C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: hddrsrv - Unknown owner - C:\Program Files (x86)\HDD Regenerator\hrsrv.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Service KMSELDI - Unknown owner - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: Torntv Downloader (trntv) - Unknown owner - C:\Users\Murtagh\AppData\Roaming\TornTV.com\TornTVSvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: wampapache64 - Apache Software Foundation - c:\wamp\bin\apache\apache2.4.9\bin\httpd.exe
O23 - Service: wampmysqld64 - Unknown owner - c:\wamp\bin\mysql\mysql5.6.17\bin\mysqld.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) - Fuyu LIMITED - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11901 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe -service
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe"
dashost.exe {af9b73c3-a411-4bf0-829c98cac1991111}
"C:\Program Files (x86)\HDD Regenerator\hrsrv.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-5ae6816e-32e7-446f-8a27-b215ee2b7760 -SystemEventPortName:HostProcess-69803768-b08f-4c58-ba97-064c087eddf4 -IoCancelEventPortName:HostProcess-8dcc5ed7-6580-4e73-9768-bd5d5c50707e -NonStateChangingEventPortName:HostProcess-06a8fade-84fd-47d1-b571-04d2edaeb376 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:202786bc-364a-480e-9c80-bfde3bf3f06d -DeviceGroupId:WpdFsGroup
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
taskeng.exe {0FCD148B-7A96-47C4-95A9-2F7E468338FC}
taskhostex.exe
ngservice.exe pipeserver
"C:\Program Files (x86)\TotalPlusHD-3.1V29.11\37133fa4-a99c-4592-b3ac-b2c099629ff3.exe" /agentregpath='TotalPlusHD-3.1V29.11' /appid=63285 /srcid='002173' /subid='0' /zdata='0' /bic=731EE7529FD04C1F9F47799A1D7C9927IE /verifier=81355038cd62e5fdeb3de00be8e9412c /installerversion=1_35_11_26 /installationtime=1417245325 /statsdomain=http://stats.newstaticclientstack.com /errorsdomain=http://errors.newstaticclientstack.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http://logs.newstaticclientstack.com /runfrom='task' /externallog=''
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /DTSU2P
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe"
ArcCon.ac 66258 0
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
"HDD Regenerator.exe"
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe" "-launchedbyvulcan"
"HDD Regenerator.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe"
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe" --type=renderer --no-sandbox --lang=en-US --lang=en-US --locales-dir-path="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\locales" --log-severity=disable --channel="5304.0.1724631830\1405654164" /prefetch:673131151
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe" --type=renderer --no-sandbox --lang=en-US --lang=en-US --locales-dir-path="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\locales" --log-severity=disable --channel="5304.1.1037254458\128946327" /prefetch:673131151
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe" --type=gpu-process --channel="5304.2.992060695\1495668603" --no-sandbox --lang=en-US --locales-dir-path="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\locales" --log-severity=disable --supports-dual-gpus=false --gpu-vendor-id=0x10de --gpu-device-id=0x1184 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.4052 --lang=en-US --locales-dir-path="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\locales" --log-severity=disable /prefetch:822062411
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\WINDOWS\system32\vssvc.exe
C:\WINDOWS\System32\svchost.exe -k swprv
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.mystartsearch.com/?type=sc&t ... XXZ1D6ZVJW
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="508.0.148913685\643769393" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,17,38,46 --gpu-vendor-id=0x10de --gpu-device-id=0x1184 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.4052 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/NewProfileManagement/OldAvatarMenu/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="508.1.196613328\140635049" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="508.2.442812800\160616080" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="508.4.1120166181\1296799283" /prefetch:673131151
"C:\Users\Murtagh\AppData\Roaming\uTorrent\utorrent.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="508.9.1168373110\1585399162" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="508.10.20992235\605203871" --ppapi-flash-args=enable_hw_video_decode=1 --lang=sk --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="508.11.718707109\1393418969" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="508.12.1642823028\1996512858" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="508.14.936749123\337543174" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="508.15.1319096361\2047057198" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="508.17.1022138477\1646445336" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="508.19.675181746\315872093" /prefetch:673131151
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="508.20.1726901184\168896981" /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 568 572 580 65536 576

"C:\Users\Murtagh\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\37133fa4-a99c-4592-b3ac-b2c099629ff3.job - C:\Program Files (x86)\TotalPlusHD-3.1V29.11\37133fa4-a99c-4592-b3ac-b2c099629ff3.exe /agentregpath='TotalPlusHD-3.1V29.11' /appid=63285 /srcid='002173' /subid='0' /zdata='0' /bic=731EE7529FD04C1F9F47799A1D7C9927IE /verifier=81355038cd62e5fdeb3de00be8e9412c /installerversion=1_35_11_26 /installationtime=1417245325 /statsdomain=http://stats.newstaticclientstack.com /errorsdomain=http://errors.newstaticclientstack.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http://logs.newstaticclientstack.com /runfrom='task' /externallog=''
C:\WINDOWS\tasks\cefb22c8-e565-4d64-bff1-e4b9e39b7399.job - C:\Program Files (x86)\TotalPlusHD-3.1V29.11\cefb22c8-e565-4d64-bff1-e4b9e39b7399.exe 002173 731EE7529FD04C1F9F47799A1D7C9927IE 63285 1417245325 93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 TotalPlusHD-3.1V29.11
C:\WINDOWS\tasks\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-1.job - C:\Program Files (x86)\TotalPlusHD-3.1V29.11\TotalPlusHD-3.1V29.11-codedownloader.exe /rawdata=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
C:\WINDOWS\tasks\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-11.job - C:\Program Files (x86)\TotalPlusHD-3.1V29.11\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-11.exe /rawdata=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
C:\WINDOWS\tasks\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-2.job - C:\Program Files (x86)\TotalPlusHD-3.1V29.11\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-2.exe /rawdata=op79hj9+y6nT0He6BnGE4RS91knrYXtFolsFIdCXLuLv+P+WKS+PS5yxfXUBkkjBJHgpSw9WsGBlOFW6UP6bgIaM4InM90Wq0geTsQq/441UuG0uzxPx+Nb9/K+LfYlU7B1hGeUlcwSowyXZT5JhGKpxKDUaJ+Oj43D9qk1CFKMNQo50oNZxWZCAH68fEQgRAeJebLXHxYCN6dZEKNXFWHrU8eyUimhD9O8USJ5evbfM3fhSbnAPemqnUv3XM3BWwOp9DM+c5ZJiOvyXWYfD9Mv/QCn74kC8pGM+MwJL/RcOEZmMaHo3aTrpQ4oIVbXw8ugpg72w9mbkeqS10+eji2S+tY8Wh5KH17pTR0wq8szYBzJVbjX0eY2eGmKOecBqVWVK9jZ1T8eDrMPK+nugK1379PTgJ3DSl/hJgrIELibPx9nJ3jbrJ+pnkcHuUNgnEW0IhauvQIfSLxlnKhzGEPg2itLCohlYnsnSe136Ba0tjJvPi8oG1K7zWbH7R4HqqhzOHpAZ8qDoK8ju5kfFUbHnZBR9f5z9wtwnbGFMsDb06Y+5UHhMLhZabKXXCkrQp/HAjoRJMsNXpwcM6SSjeMEM05FflteXy84MeGbztQbQxRz5rGb1T0ZdKXKP7ZmSR4zsnOgNOCiC4HLZYTsj7Ij/4ZnyiO6y+IBZKu0BhnfFkKkUg8maVFaS3+tXoeW4quexKMNfBH/RQ1j7eVPX55ENOQVMwAbwriJrdAMu0gc9YBh5KKiWJXP8pttffE9lB3jZrbFFvJhPC7WqaOT80zfH2SBL5hubfAqHd/mdmHmvKwGBtum48Mixle+cLVyD18fKhNzrRa9qFgXPBYoAfA==
C:\WINDOWS\tasks\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-3.job - C:\Program Files (x86)\TotalPlusHD-3.1V29.11\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-3.exe /rawdata=hIylXR8kAQBpjIhxhB+zjKyKGwTXtI7hChC+QLyEX+jiOb5dAGpbY7uasGBKVElNxysxvkCs/yX8whmfVD7clv32ca5ue6lJUdS7uNp2+Wnifunsuekl4o70BgsOD+lvqkSwgiRX8yGx1qpsADdPTYZPmU34fSKFyc2U7Vq5m9C0oTg22yj2Q0SGWzcNabBmBzjbOfoGe3zPr7e21HffHd9XnQ+PQ0CXrd/vPDRWGwu5AsaFOWwjfgvAvYLyDmELAcUB3jtAqBVA66yR7JJHL5Il6gIIzwaBTyepXAVR+rdIj8Tw9WTLNOVaJ3XHEPkULvSQdX50LIooIV/LGjKxqp6hc7rh/hPQhB6fp2UEOryoS8O4SyCiasANjXuWzPF4VgxQL5qg6mm4TCM0rWmuotWLS1DV2sl1ZB4OpAa+qwVNtP8NaQ5hCoB2UZKjAkvGuIc3F3fq6tA3gp+srQRCrd8MXk2IBMugOEe5KkIGuuv4kwR2yMMnQXl1F2IIEn19SZQlFPm+46Cbon6CMnrqetRnlpunrNJXXLhOAjx8P51OhsBW6PttReoVJUwPgwvg9z4zl4O8MZ4+NK1yYN0SXjwt7F6LQlWu1xjxAch0mf/0hM5Z/pFwv15TAPpEnKF8lJcicYUQXZKIhYPc9/LAmfNgsdcrIPiYSFpa509qIm08B8gNPGWeNCtercCjDrQgB4O2p1eCFfmxsVSW9+cvQbeAMmJnkTMO97n83VpEXBk3NpQMaUMDfRxe2N9gwaAmm09+PNLIdQLye1jcKJ575UHuOx48Gs3Zl9wTR0BdIy+6j+ZL2KDH9qAg5Wh+kp85QaxDWHKgIuusCoHcV01o/n+8afCKv1V5B3IUmvRrpmnf6WOuvL9QGbShVoCjcvaTmR4jiEbnLvDTvVNzIC65BDtFfmEgdmTF2kCtMt9NWLSfkW2c5Zd4Q2c1DODqTQhrurOsz9h/kWmnuGD7bL9WjvBaRiJ/2udfBgb9UTokcOcHa7ggTXWW+SxEiuyISqUneHskDm9qfvz8XBdAaP4a+nG2k87qfd2SZhO8UVSR40iV0cgFBPt6AtXYgLsGL6HxIB0HWIIDkWab4bKgfxIB3+xCa6BEIwMgfZvpWrYkHJxj7LZah34SLOJbKf85dBaWTVaC9kQ1bbLieHQK1DxamQztdW1ZbAQye9sMHA3rzZVoSxQttyA+qRtT0xaG4ey2YvhEttbYaMThAx0oB5m426SE27gYg73iPia53Ax6HHN/vb08Dl9pv3QYjckU0ByE4K8r0HfGaysSWYtFR6mMz+34AZPSV7rIDlF+KlzFcVGnQ6WUU4D/4tmKZSWrRGdj9KEttAA6yfKLDPx8Bs2dqLVADd37qkwW5L7Hmk9hMsz0GQiKLDE/g875k9rJELEEUXl9gPEblLd4Fo6tkyFaEVV1QVgyZ/tznETGIQN4NeT5zQr+Fs6PhMheIhZplJ2/ZKncnT4r5e7Ny2pNUjdd4u+PvooOu8GSe/abVwKsdJxtAo/gZ0rDhyJzf3eQ/Bf/UQVBn6GhgxQMGKMpZ10piplhUdtAqaQnsdL+x5R6zhLPSpWzddQEuKQBa8+jgRkWdlVAK8/KbybqpZE/qi6mIWTp3PaxiL+nbZVhzb6wVCKX0SvXBeHZQhbhTXEATMcmcxFlVwEl3Xu8bJM5EBbuibkJRxYZI2BwIYSXqwZgzPMogYb9R6zmb9lzD0ZX3lU3lFyWhgZcoXecxem1bFGF8kOM888ZCGJ/AZUGzgsLyoGBQ/t+AbXYQoTu7jU6qzP3LmtMWxmzJ6L9UE6Iz/eSiT4EsL2F1d7OuLomKEC2658jiL17I5Vqe89RoAwJ3ou1OYBt38AN1AzEnZThDFZLX7kMroA7nsWzVRKKTwcpReYcG8uy1VeUumS9gQMyTOc7ReAwfWRUmjEBJtdzbS9T/J9hKrJku9u9APBbnMvVr7BB31hvoWIJSZ8icuNVm4RtEOnHKk/vdH6ROIhakY4spu8y+WAiDrzz6ebT++PK0jr4wleo5cFsHkk/7oKTv2Gg
C:\WINDOWS\tasks\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-4.job - C:\Program Files (x86)\TotalPlusHD-3.1V29.11\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-4.exe /rawdata=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
C:\WINDOWS\tasks\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-5.job - C:\Program Files (x86)\TotalPlusHD-3.1V29.11\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-5.exe /rawdata=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
C:\WINDOWS\tasks\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-5_user.job - C:\Program Files (x86)\TotalPlusHD-3.1V29.11\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-5.exe /rawdata=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
C:\WINDOWS\tasks\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-6.job - C:\Program Files (x86)\TotalPlusHD-3.1V29.11\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-6.exe /rawdata=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
C:\WINDOWS\tasks\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-7.job - C:\Program Files (x86)\TotalPlusHD-3.1V29.11\d9d39d52-08ac-497e-be3d-dabd7a3d38b7-7.exe /rawdata=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
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\NNZAKKJ.job - C:\Users\Murtagh\AppData\Roaming\NNZAKKJ.exe /infocmdline=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
C:\WINDOWS\tasks\RPWFJSMA.job - C:\Users\Murtagh\AppData\Roaming\RPWFJSMA.exe /infocmdline=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

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611321185}]
TotalPlusHD-3.1V29.11 - C:\Program Files (x86)\TotalPlusHD-3.1V29.11\TotalPlusHD-3.1V29.11-bho64.dll [2014-11-29 965592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-10-22 218776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-11-14 705448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2014-10-14 2334928]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611321185}]
TotalPlusHD-3.1V29.11 - C:\Program Files (x86)\TotalPlusHD-3.1V29.11\TotalPlusHD-3.1V29.11-bho.dll [2014-11-29 631256]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-10-22 153248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-14 586968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2014-10-14 1729752]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 3933496]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-10-14 557768]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-08-07 6827664]
"RtHDVBg_DTS"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-08-06 1215632]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"RGSC"=E:\Hry\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-11-20 5226600]
"Adobe Creative Cloud"=C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2014-10-15 2694320]
"IR_SERVER"=C:\PROGRA~2\Realtek\REALTE~1\IR_SERVER.exe []
"ArcSoft Connection Service"=C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27 207424]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-10-15 157480]
"HDD Regenerator"=C:\Program Files (x86)\HDD Regenerator\Shell.exe [2013-05-08 90336]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
TMMonitor.lnk - C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - %SystemRoot%\SysWow64\CScript.exe "%1" %*
.vbs - open - %SystemRoot%\SysWow64\CScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-11-29 08:32:48 ----D---- C:\rsit
2014-11-29 08:32:48 ----D---- C:\Program Files\trend micro
2014-11-29 08:16:03 ----A---- C:\Users\Murtagh\AppData\Roaming\NNZAKKJ.exe
2014-11-29 08:15:49 ----D---- C:\Program Files (x86)\3ed0d997-e9f3-46a5-9dd0-994a206e6088
2014-11-29 08:15:32 ----A---- C:\Users\Murtagh\AppData\Roaming\RPWFJSMA.exe
2014-11-29 08:15:30 ----D---- C:\Program Files (x86)\globalUpdate
2014-11-29 08:15:29 ----D---- C:\Program Files (x86)\TotalPlusHD-3.1V29.11
2014-11-29 08:14:26 ----D---- C:\ProgramData\WindowsMangerProtect
2014-11-29 08:13:48 ----D---- C:\Users\Murtagh\AppData\Roaming\TornTV.com
2014-11-18 20:36:45 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2014-11-18 20:36:45 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2014-11-18 20:36:45 ----A---- C:\WINDOWS\system32\pku2u.dll
2014-11-18 20:36:45 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-11-15 23:41:02 ----D---- C:\WINDOWS\SYSWOW64\vbox
2014-11-15 23:41:02 ----D---- C:\WINDOWS\system32\vbox
2014-11-14 06:41:31 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2014-11-14 06:40:24 ----A---- C:\WINDOWS\system32\aswBoot.exe
2014-11-14 06:40:22 ----A---- C:\WINDOWS\avastSS.scr
2014-11-12 08:33:21 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-11-12 08:33:21 ----A---- C:\WINDOWS\system32\schannel.dll
2014-11-12 08:33:20 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2014-11-12 08:33:20 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-11-12 08:33:20 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-11-12 08:33:00 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-11-12 08:33:00 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-11-12 08:32:59 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-11-12 08:32:59 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-11-12 08:32:59 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-11-12 08:32:59 ----A---- C:\WINDOWS\system32\certcli.dll
2014-11-12 08:32:58 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2014-11-12 08:32:58 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-11-12 08:32:58 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-11-12 08:32:58 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-11-12 08:32:58 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-11-12 08:32:58 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-11-12 08:32:58 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-11-12 08:32:16 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-11-12 08:32:16 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-11-12 08:32:15 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-11-12 08:32:15 ----A---- C:\WINDOWS\system32\msi.dll
2014-11-12 08:32:15 ----A---- C:\WINDOWS\system32\authui.dll
2014-11-12 08:32:14 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2014-11-12 08:32:14 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-11-12 08:32:14 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-11-12 08:32:14 ----A---- C:\WINDOWS\system32\consent.exe
2014-11-12 08:32:14 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-11-12 08:32:11 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-11-12 08:32:10 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2014-11-12 08:32:10 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-11-12 08:32:10 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-11-12 08:32:10 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-11-12 08:32:10 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-11-12 08:32:10 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-11-12 08:32:09 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2014-11-12 08:32:09 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2014-11-12 08:32:09 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-11-12 08:32:09 ----A---- C:\WINDOWS\system32\wups2.dll
2014-11-12 08:32:09 ----A---- C:\WINDOWS\system32\wups.dll
2014-11-12 08:32:09 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-11-12 08:32:09 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-11-12 08:32:09 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-11-12 08:32:09 ----A---- C:\WINDOWS\system32\wuaext.dll
2014-11-12 08:31:34 ----A---- C:\WINDOWS\system32\user32.dll
2014-11-12 08:31:33 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-11-12 08:31:33 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-11-12 08:31:32 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-11-12 08:31:32 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-11-12 08:31:31 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2014-11-12 08:31:30 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-11-12 08:31:02 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-11-12 08:31:01 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-11-12 08:30:30 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-11-12 08:30:26 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-11-12 08:30:22 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-11-12 08:30:20 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-11-12 08:30:19 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-11-12 08:30:19 ----A---- C:\WINDOWS\system32\wininet.dll
2014-11-12 08:30:19 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-11-12 08:30:18 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-11-12 08:30:18 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-11-12 08:30:18 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-11-12 08:30:18 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-11-12 08:30:18 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-11-12 08:30:18 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-11-12 08:30:17 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-11-12 08:30:17 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-11-12 08:30:17 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-11-12 08:30:17 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-11-12 08:30:17 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2014-11-12 08:30:17 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-11-12 08:30:17 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-11-12 08:30:17 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-11-12 08:30:17 ----A---- C:\WINDOWS\system32\jscript.dll
2014-11-12 08:30:17 ----A---- C:\WINDOWS\system32\ieui.dll
2014-11-12 08:30:16 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-11-12 08:30:16 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-11-12 08:30:16 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-11-12 08:30:16 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2014-11-12 08:30:16 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-11-12 08:30:16 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-11-12 08:30:16 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-11-12 08:30:16 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-11-12 08:30:16 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-11-12 08:30:16 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-11-12 08:30:16 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-11-12 08:30:16 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-11-12 08:30:16 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-11-12 08:30:16 ----A---- C:\WINDOWS\system32\hlink.dll
2014-11-12 08:30:16 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-11-12 08:30:16 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\wextract.exe
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\url.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\pngfilt.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\occache.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\mshta.exe
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\msfeedssync.exe
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\msfeedsbs.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\licmgr10.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\inseng.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\imgutil.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\iexpress.exe
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\iesysprep.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\IEAdvpack.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\wextract.exe
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\url.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\occache.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\msrating.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\mshta.exe
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\inseng.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-11-12 08:30:15 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-11-12 08:30:05 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-11-12 08:30:05 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-11-12 08:30:04 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-11-12 08:30:04 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-11-12 08:30:04 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-11-12 08:30:04 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-11-12 08:30:04 ----A---- C:\WINDOWS\system32\win32k.sys
2014-11-12 08:30:04 ----A---- C:\WINDOWS\system32\packager.dll
2014-11-12 08:30:04 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-11-12 08:30:04 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-11-12 08:30:04 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-11-12 08:30:04 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-11-12 08:30:04 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-11-12 08:30:04 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-11-12 08:30:04 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-11-01 18:16:18 ----A---- C:\WINDOWS\SYSWOW64\vp6vfw.dll
2014-11-01 15:26:58 ----AD---- C:\ProgramData\TEMP
2014-11-01 15:26:56 ----D---- C:\Program Files (x86)\HDD Regenerator
2014-10-31 15:04:20 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_7.dll
2014-10-31 15:04:20 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_5.dll
2014-10-31 15:04:20 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2014-10-31 15:04:20 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2014-10-31 15:04:20 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2014-10-31 15:04:20 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2014-10-31 15:04:19 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_43.dll
2014-10-31 15:04:19 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2014-10-31 15:04:19 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_43.dll
2014-10-31 15:04:19 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2014-10-31 15:04:19 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2014-10-31 15:04:19 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2014-10-31 15:04:18 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_6.dll
2014-10-31 15:04:18 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_4.dll
2014-10-31 15:04:18 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_6.dll
2014-10-31 15:04:18 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2014-10-31 15:04:18 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2014-10-31 15:04:18 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2014-10-31 15:04:18 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2014-10-31 15:04:18 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2014-10-31 15:04:18 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2014-10-31 15:04:18 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2014-10-31 15:04:17 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_5.dll
2014-10-31 15:04:17 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_5.dll
2014-10-31 15:04:17 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_7.dll
2014-10-31 15:04:17 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_42.dll
2014-10-31 15:04:17 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2014-10-31 15:04:17 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2014-10-31 15:04:17 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2014-10-31 15:04:17 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2014-10-31 15:04:16 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_42.dll
2014-10-31 15:04:16 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_42.dll
2014-10-31 15:04:16 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2014-10-31 15:04:16 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2014-10-31 15:04:15 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_42.dll
2014-10-31 15:04:15 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_42.dll
2014-10-31 15:04:15 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_41.dll
2014-10-31 15:04:15 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_41.dll
2014-10-31 15:04:15 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2014-10-31 15:04:15 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2014-10-31 15:04:15 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2014-10-31 15:04:15 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2014-10-31 15:04:14 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_4.dll
2014-10-31 15:04:14 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_3.dll
2014-10-31 15:04:14 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_4.dll
2014-10-31 15:04:14 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_41.dll
2014-10-31 15:04:14 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2014-10-31 15:04:14 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2014-10-31 15:04:14 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2014-10-31 15:04:14 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2014-10-31 15:04:13 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_6.dll
2014-10-31 15:04:13 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_40.dll
2014-10-31 15:04:13 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_40.dll
2014-10-31 15:04:13 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2014-10-31 15:04:13 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2014-10-31 15:04:13 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2014-10-31 15:04:12 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_3.dll
2014-10-31 15:04:12 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_2.dll
2014-10-31 15:04:12 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_3.dll
2014-10-31 15:04:12 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_5.dll
2014-10-31 15:04:12 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_40.dll
2014-10-31 15:04:12 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2014-10-31 15:04:12 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2014-10-31 15:04:12 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2014-10-31 15:04:12 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2014-10-31 15:04:12 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2014-10-31 15:04:11 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_2.dll
2014-10-31 15:04:11 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_1.dll
2014-10-31 15:04:11 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_2.dll
2014-10-31 15:04:11 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2014-10-31 15:04:11 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2014-10-31 15:04:11 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2014-10-31 15:04:11 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2014-10-31 15:04:11 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2014-10-31 15:04:11 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2014-10-31 15:04:11 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2014-10-31 15:04:10 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_1.dll
2014-10-31 15:04:10 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_0.dll
2014-10-31 15:04:10 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_1.dll
2014-10-31 15:04:10 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_4.dll
2014-10-31 15:04:10 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2014-10-31 15:04:10 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2014-10-31 15:04:10 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2014-10-31 15:04:10 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2014-10-31 15:04:10 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2014-10-31 15:04:10 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2014-10-31 15:04:09 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_38.dll
2014-10-31 15:04:09 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_38.dll
2014-10-31 15:04:09 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2014-10-31 15:04:09 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2014-10-31 15:04:08 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_0.dll
2014-10-31 15:04:08 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_0.dll
2014-10-31 15:04:08 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_3.dll
2014-10-31 15:04:08 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_38.dll
2014-10-31 15:04:08 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2014-10-31 15:04:08 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2014-10-31 15:04:08 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2014-10-31 15:04:08 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2014-10-31 15:04:07 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_10.dll
2014-10-31 15:04:07 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_37.dll
2014-10-31 15:04:07 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_37.dll
2014-10-31 15:04:07 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_37.dll
2014-10-31 15:04:07 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2014-10-31 15:04:07 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2014-10-31 15:04:07 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2014-10-31 15:04:07 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2014-10-31 15:04:06 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_36.dll
2014-10-31 15:04:06 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_36.dll
2014-10-31 15:04:06 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_36.dll
2014-10-31 15:04:06 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2014-10-31 15:04:06 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2014-10-31 15:04:06 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2014-10-31 15:04:05 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_9.dll
2014-10-31 15:04:05 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_35.dll
2014-10-31 15:04:05 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_35.dll
2014-10-31 15:04:05 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2014-10-31 15:04:05 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2014-10-31 15:04:05 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2014-10-31 15:04:04 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_8.dll
2014-10-31 15:04:04 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_2.dll
2014-10-31 15:04:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_35.dll
2014-10-31 15:04:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_34.dll
2014-10-31 15:04:04 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_34.dll
2014-10-31 15:04:04 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2014-10-31 15:04:04 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2014-10-31 15:04:04 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2014-10-31 15:04:04 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2014-10-31 15:04:04 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2014-10-31 15:04:03 ----A---- C:\WINDOWS\SYSWOW64\xinput1_3.dll
2014-10-31 15:04:03 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_7.dll
2014-10-31 15:04:03 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_34.dll
2014-10-31 15:04:03 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2014-10-31 15:04:03 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2014-10-31 15:04:03 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2014-10-31 15:04:02 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_6.dll
2014-10-31 15:04:02 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_33.dll
2014-10-31 15:04:02 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_33.dll
2014-10-31 15:04:02 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_33.dll
2014-10-31 15:04:02 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2014-10-31 15:04:02 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2014-10-31 15:04:02 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2014-10-31 15:04:02 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2014-10-31 15:04:01 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_5.dll
2014-10-31 15:04:01 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_32.dll
2014-10-31 15:04:01 ----A---- C:\WINDOWS\SYSWOW64\d3dx10.dll
2014-10-31 15:04:01 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2014-10-31 15:04:01 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2014-10-31 15:04:01 ----A---- C:\WINDOWS\system32\d3dx10.dll
2014-10-31 15:04:00 ----A---- C:\WINDOWS\SYSWOW64\xinput1_2.dll
2014-10-31 15:04:00 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_4.dll
2014-10-31 15:04:00 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_3.dll
2014-10-31 15:04:00 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_1.dll
2014-10-31 15:04:00 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_31.dll
2014-10-31 15:04:00 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2014-10-31 15:04:00 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2014-10-31 15:04:00 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2014-10-31 15:04:00 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2014-10-31 15:04:00 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2014-10-31 15:03:59 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll
2014-10-31 15:03:59 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_2.dll
2014-10-31 15:03:59 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll
2014-10-31 15:03:59 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2014-10-31 15:03:59 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2014-10-31 15:03:59 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2014-10-31 15:03:57 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2014-10-31 15:03:57 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2014-10-31 15:03:56 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_0.dll
2014-10-31 15:03:56 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll
2014-10-31 15:03:56 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_29.dll
2014-10-31 15:03:56 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2014-10-31 15:03:56 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2014-10-31 15:03:56 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2014-10-31 15:03:55 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_28.dll
2014-10-31 15:03:55 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_27.dll
2014-10-31 15:03:55 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2014-10-31 15:03:55 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2014-10-31 15:03:54 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_26.dll
2014-10-31 15:03:54 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_25.dll
2014-10-31 15:03:54 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2014-10-31 15:03:54 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2014-10-31 15:03:53 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_24.dll
2014-10-31 15:03:53 ----A---- C:\WINDOWS\system32\d3dx9_24.dll

======List of files/folders modified in the last 1 month======

2014-11-29 08:32:54 ----D---- C:\WINDOWS\Prefetch
2014-11-29 08:32:48 ----RD---- C:\Program Files
2014-11-29 08:31:31 ----D---- C:\WINDOWS\Temp
2014-11-29 08:27:33 ----D---- C:\Users\Murtagh\AppData\Roaming\uTorrent
2014-11-29 08:23:15 ----D---- C:\WINDOWS\system32\config
2014-11-29 08:22:36 ----RD---- C:\WINDOWS\System32
2014-11-29 08:22:36 ----D---- C:\WINDOWS\Inf
2014-11-29 08:22:36 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-11-29 08:18:25 ----D---- C:\WINDOWS\WinSxS
2014-11-29 08:18:23 ----D---- C:\ProgramData\NVIDIA
2014-11-29 08:18:17 ----D---- C:\WINDOWS\system32\drivers
2014-11-29 08:17:28 ----D---- C:\WINDOWS\SysWOW64
2014-11-29 08:16:21 ----D---- C:\WINDOWS\Tasks
2014-11-29 08:16:21 ----D---- C:\WINDOWS\system32\Tasks
2014-11-29 08:15:53 ----D---- C:\Program Files (x86)\AMD APP
2014-11-29 08:15:49 ----RD---- C:\Program Files (x86)
2014-11-29 08:15:31 ----SHD---- C:\WINDOWS\Installer
2014-11-29 08:14:26 ----HD---- C:\ProgramData
2014-11-29 08:00:00 ----D---- C:\WINDOWS\system32\sru
2014-11-29 02:50:19 ----D---- C:\WINDOWS\Microsoft.NET
2014-11-28 15:39:50 ----D---- C:\WINDOWS\AppReadiness
2014-11-28 05:34:27 ----SHD---- C:\System Volume Information
2014-11-27 17:15:13 ----D---- C:\Users\Murtagh\AppData\Roaming\vlc
2014-11-27 02:14:10 ----D---- C:\WINDOWS\CbsTemp
2014-11-26 14:38:09 ----D---- C:\Program Files (x86)\Steam
2014-11-25 15:51:41 ----HD---- C:\Program Files\WindowsApps
2014-11-24 23:43:17 ----D---- C:\Program Files\Common Files\Adobe
2014-11-24 20:16:26 ----D---- C:\Users\Murtagh\AppData\Roaming\Mumble
2014-11-20 21:51:37 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-11-16 12:56:31 ----RSD---- C:\WINDOWS\assembly
2014-11-16 03:11:49 ----D---- C:\WINDOWS\rescache
2014-11-16 02:57:21 ----D---- C:\ProgramData\Microsoft Help
2014-11-16 00:17:26 ----D---- C:\WINDOWS\Logs
2014-11-15 23:33:00 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-11-15 23:33:00 ----D---- C:\WINDOWS\SYSWOW64\en-US
2014-11-15 23:33:00 ----D---- C:\WINDOWS\system32\sk-SK
2014-11-15 23:33:00 ----D---- C:\WINDOWS\system32\migration
2014-11-15 23:33:00 ----D---- C:\WINDOWS\system32\en-US
2014-11-15 23:33:00 ----D---- C:\Program Files\Internet Explorer
2014-11-15 23:33:00 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-15 23:32:59 ----D---- C:\Program Files\Windows Defender
2014-11-15 23:32:59 ----D---- C:\Program Files (x86)\Windows Defender
2014-11-14 06:40:28 ----D---- C:\WINDOWS\system32\DriverStore
2014-11-14 06:40:23 ----D---- C:\Windows
2014-11-13 11:26:45 ----D---- C:\WINDOWS\system32\wbem
2014-11-13 11:25:14 ----A---- C:\WINDOWS\win.ini
2014-11-13 11:22:05 ----D---- C:\WINDOWS\system32\MRT
2014-11-13 11:22:05 ----A---- C:\WINDOWS\system32\MRT.exe
2014-11-12 08:28:03 ----D---- C:\WINDOWS\system32\catroot2
2014-11-02 12:25:26 ----D---- C:\WINDOWS\system32\drivers\UMDF
2014-11-01 18:23:37 ----D---- C:\Program Files (x86)\Common Files
2014-11-01 18:16:17 ----D---- C:\ProgramData\Package Cache
2014-11-01 16:08:34 ----D---- C:\WINDOWS\system32\wdi
2014-10-31 18:37:25 ----D---- C:\WINDOWS\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-09-16 80552]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-09-16 26280]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-11-14 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-11-14 267632]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-11-14 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-11-22 1050432]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-11-14 436624]
R1 dtsoftbus01;@oem15.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-10-17 283064]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-11-14 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-11-14 83280]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-11-14 116728]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2014-11-14 271752]
R3 Afc;PPdus ASPI Shell; C:\WINDOWS\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-10-03 33240]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-08-07 4102928]
R3 NVHDA;@oem7.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2014-08-19 197408]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2014-08-19 12866008]
R3 RTL2832U_IRHID;@oem24.inf,%RTL2832U_IRHID%;HID Infrared Remote Receiver; C:\WINDOWS\System32\drivers\RTL2832U_IRHID.sys [2009-10-05 44320]
R3 RTL2832UBDA;@oem10.inf,%RTLUSBDEV.BDA_Desc%;REALTEK 2832U BDA Driver; C:\WINDOWS\system32\drivers\RTL2832UBDA.sys [2010-07-01 224488]
R3 RTL2832UUSB;@oem10.inf,%RTLUSBDEV.USB_Desc%;REALTEK 2832U USB Driver; C:\WINDOWS\System32\Drivers\RTL2832UUSB.sys [2010-07-01 39016]
R3 RTL8168;@oem19.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2012-07-30 690832]
R3 usbfilter;AMD USB Filter Driver; C:\WINDOWS\system32\DRIVERS\usbfilter.sys [2012-08-28 58536]
S3 USBAAPL64;@oem26.inf,%USBAAPL64.SvcDesc%;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl64.sys [2014-08-15 54784]
S3 WinUsb;@wpdmtp.inf,%WinUsb.SvcDesc%;WinUsb; C:\WINDOWS\system32\DRIVERS\WinUsb.sys [2013-08-22 78848]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-10-07 60744]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-11-14 50344]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 DTSAudioSvc;DTSAudioSvc; C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [2012-01-23 233328]
R2 hddrsrv;hddrsrv; C:\Program Files (x86)\HDD Regenerator\hrsrv.exe [2013-05-08 82144]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2014-07-02 935368]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-07-02 411936]
R2 WindowsMangerProtect;WindowsMangerProtect Service; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [2014-11-29 484352]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2014-11-14 4012248]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-10-15 643880]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-11-29 68608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-17 107912]
S2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2014-03-02 977088]
S2 trntv;Torntv Downloader; C:\Users\Murtagh\AppData\Roaming\TornTV.com\TornTVSvc.exe []
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-11-29 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-17 107912]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2013-01-25 178760]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-11-18 833728]
S3 wampapache64;wampapache64; c:\wamp\bin\apache\apache2.4.9\bin\httpd.exe [2014-05-01 24576]
S3 wampmysqld64;wampmysqld64; c:\wamp\bin\mysql\mysql5.6.17\bin\mysqld.exe [2014-05-01 12942848]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Problem s win 8.1

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Po spusteni probehne stazeni databaze
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Murtagh
Návštěvník
Návštěvník
Příspěvky: 55
Registrován: 27 pro 2008 11:01
Bydliště: Liesek city
Kontaktovat uživatele:

Re: Problem s win 8.1

#3 Příspěvek od Murtagh »

# AdwCleaner v4.102 - Report created 29/11/2014 at 12:47:34
# Updated 23/11/2014 by Xplode
# Database : 2014-11-27.1 [Live]
# Operating System : Windows 8.1 Pro (64 bits)
# Username : Murtagh - MURTAGH-PC
# Running from : C:\Users\Murtagh\Desktop\adwcleaner_4.102.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : globalUpdate
[#] Service Deleted : globalUpdatem
Service Deleted : WindowsMangerProtect
[#] Service Deleted : trntv

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\WindowsMangerProtect
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\TotalPlusHD-3.1V29.11
Folder Deleted : C:\Users\Murtagh\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Murtagh\AppData\Roaming\TornTV.com
Folder Deleted : C:\Users\Murtagh\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com
Folder Deleted : C:\Users\Murtagh\Documents\Optimizer Pro
Folder Deleted : C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb
File Deleted : C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Deleted : C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
File Deleted : C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
File Deleted : C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
File Deleted : C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ljefoakgfhcoeobgicjgejglnpfpemgb_0.localstorage
File Deleted : C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ljefoakgfhcoeobgicjgejglnpfpemgb_0.localstorage-journal

***** [ Scheduled Tasks ] *****

Task Deleted : globalUpdateUpdateTaskMachineCore
Task Deleted : globalUpdateUpdateTaskMachineUA
Task Deleted : 37133fa4-a99c-4592-b3ac-b2c099629ff3
Task Deleted : cefb22c8-e565-4d64-bff1-e4b9e39b7399
Task Deleted : d9d39d52-08ac-497e-be3d-dabd7a3d38b7-1
Task Deleted : d9d39d52-08ac-497e-be3d-dabd7a3d38b7-11
Task Deleted : d9d39d52-08ac-497e-be3d-dabd7a3d38b7-2
Task Deleted : d9d39d52-08ac-497e-be3d-dabd7a3d38b7-3
Task Deleted : d9d39d52-08ac-497e-be3d-dabd7a3d38b7-4
Task Deleted : d9d39d52-08ac-497e-be3d-dabd7a3d38b7-5
Task Deleted : d9d39d52-08ac-497e-be3d-dabd7a3d38b7-5_user
Task Deleted : d9d39d52-08ac-497e-be3d-dabd7a3d38b7-6
Task Deleted : d9d39d52-08ac-497e-be3d-dabd7a3d38b7-7

***** [ Shortcuts ] *****

Shortcut Disinfected : C:\Users\Public\Desktop\Google Chrome.lnk
Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
Shortcut Disinfected : C:\Users\Murtagh\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Shortcut Disinfected : C:\Users\Murtagh\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
Shortcut Disinfected : C:\Users\Murtagh\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Shortcut Disinfected : C:\Users\Murtagh\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk

***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611321185}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622322285}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655325585}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666326685}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644324485}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611321185}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611321185}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622322285}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655325585}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666326685}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611321185}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Data Restored : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Data Restored : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKCU\Software\1ClickDownload
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\powerpack
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\TornTv Downloader
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\TotalPlusHD-3.1V29.11
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\supWindowsMangerProtect
Key Deleted : HKLM\SOFTWARE\mystartsearchSoftware
Key Deleted : HKLM\SOFTWARE\TotalPlusHD-3.1V29.11
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WindowsMangerProtect
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TotalPlusHD-3.1V29.11
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17416

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Google Chrome v39.0.2171.71

[C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.simplesearches.info/?l=1&q={searchTerms}&pid=576&r=2013/08/15&hid=4267313552&lg=EN&cc=SK&unqvl=31
[C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1 ... earchTerms}
[C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1 ... earchTerms}
[C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1 ... earchTerms}
[C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1 ... earchTerms}

*************************

AdwCleaner[R0].txt - [14610 octets] - [29/11/2014 12:45:53]
AdwCleaner[S0].txt - [13116 octets] - [29/11/2014 12:47:34]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [13177 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Problem s win 8.1

#4 Příspěvek od vyosek »

Pokracujte Zoekem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Murtagh
Návštěvník
Návštěvník
Příspěvky: 55
Registrován: 27 pro 2008 11:01
Bydliště: Liesek city
Kontaktovat uživatele:

Re: Problem s win 8.1

#5 Příspěvek od Murtagh »

Zoek.exe v5.0.0.0 Updated 28-11-2014
Tool run by Murtagh on so 29.11.2014 at 12:50:32,04.
Microsoft Windows 8.1 Pro 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Murtagh\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

29.11.2014 12:51:02 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\Burn4Free deleted successfully
C:\Program Files\ATI Technologies deleted successfully
C:\Users\Murtagh\AppData\Roaming\HDDHealth deleted successfully
C:\Users\Murtagh\AppData\Local\GHISLER deleted successfully
C:\Users\Murtagh\AppData\Local\VirtualStore deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{64B27EFF-54D4-4CA1-8C73-4B55FA12CA3} deleted successfully
HKEY_USERS\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8397ff7d-90d4-4de8-9b95-4fb83018899b} deleted successfully
HKEY_USERS\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{964EF2F5-BBCB-461E-AA1B-CF90895CEF4} deleted successfully
HKEY_USERS\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9CE8E4EB-F01-4AF7-B170-113199CCE112} deleted successfully
HKEY_USERS\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AB2EA3EE-8B2D-4185-BF37-B582CD7B3C7E} deleted successfully
HKEY_USERS\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC2754FA-7483-420C-B983-14EE9D40C826} deleted successfully
HKEY_USERS\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE73003F-BD19-4D6B-8E69-DE8DEA789D80} deleted successfully
HKEY_USERS\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BA3980B5-6795-4969-AFE0-E71352F6D385} deleted successfully
HKEY_USERS\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d2067cff-acb0-48d4-96f9-1d405c171d59} deleted successfully
HKEY_USERS\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E38CAC22-6F87-4B81-8FB1-46C39FA61F46} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8397ff7d-90d4-4de8-9b95-4fb83018899b} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d2067cff-acb0-48d4-96f9-1d405c171d59} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\PROGRA~2\3ed0d997-e9f3-46a5-9dd0-994a206e6088 deleted
C:\PROGRA~3\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\WINDOWS\tasks\NNZAKKJ.job deleted
C:\windows\SysNative\tasks\NNZAKKJ deleted
C:\WINDOWS\tasks\RPWFJSMA.job deleted
C:\windows\SysNative\tasks\RPWFJSMA deleted
C:\Users\Murtagh\Desktop\Torntv Downloader.lnk deleted
C:\Users\Murtagh\AppData\Roaming\NNZAKKJ.exe deleted
C:\Users\Murtagh\AppData\Roaming\RPWFJSMA.exe deleted
"C:\Users\Murtagh\AppData\Roaming\NNZAKKJ" deleted
"C:\Users\Murtagh\AppData\Roaming\RPWFJSMA" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [14.11.2014 06:40]

==== Chromium Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[14.11.2014 06:40]

Avast Online Security - Murtagh\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{33BB0A4E-99AF-4226-BDF6-49120163DE86}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}] not found

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IESR02"

==== Reset Google Chrome ======================

C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Empty IE Cache ======================

C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Murtagh\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Murtagh\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Murtagh\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Murtagh\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=36 folders=30 31911481 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Murtagh\AppData\Local\Temp will be emptied at reboot
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\Users\Murtagh\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on so 29.11.2014 at 13:04:13,08 ======================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Problem s win 8.1

#6 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Murtagh
Návštěvník
Návštěvník
Příspěvky: 55
Registrován: 27 pro 2008 11:01
Bydliště: Liesek city
Kontaktovat uživatele:

Re: Problem s win 8.1

#7 Příspěvek od Murtagh »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-11-2014 01
Ran by Murtagh (administrator) on MURTAGH-PC on 29-11-2014 13:44:54
Running from C:\Users\Murtagh\Desktop
Loaded Profile: Murtagh (Available profiles: Murtagh)
Platform: Windows 8.1 Pro (X64) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(DTS, Inc) C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
() C:\Program Files (x86)\HDD Regenerator\hrsrv.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(ArcSoft, Inc.) C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
() C:\Program Files (x86)\HDD Regenerator\HDD Regenerator.exe
() C:\Program Files (x86)\HDD Regenerator\HDD Regenerator.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
() C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(BitTorrent, Inc.) C:\Users\Murtagh\AppData\Roaming\uTorrent\utorrent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Murtagh\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [557768 2014-10-14] (Adobe Systems Incorporated)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6827664 2012-08-07] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_DTS] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-06] (Realtek Semiconductor)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-11-20] (AVAST Software)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2694320 2014-10-15] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [IR_SERVER] => C:\PROGRA~2\Realtek\REALTE~1\IR_SERVER.exe
HKLM-x32\...\Run: [ArcSoft Connection Service] => C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)
HKLM-x32\...\Run: [HDD Regenerator] => C:\Program Files (x86)\HDD Regenerator\Shell.exe [90336 2013-05-08] ()
HKU\S-1-5-21-3659170310-2728207892-1926422612-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-3659170310-2728207892-1926422612-1000\...\Run: [RGSC] => E:\Hry\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
HKU\S-1-5-21-3659170310-2728207892-1926422612-1000\...\MountPoints2: {13a5e11b-4729-11e3-889e-ac220b4ccac8} - "F:\setup.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TMMonitor.lnk
ShortcutTarget: TMMonitor.lnk -> C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe (ArcSoft, Inc.)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
HKU\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x6CB942EAB607D001
HKU\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = sk
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKU\S-1-5-21-3659170310-2728207892-1926422612-1000 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3659170310-2728207892-1926422612-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File
FF Plugin: adobe.com/AdobeAAMDetect_x86_64 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-10-17]

Chrome:
=======
CHR HomePage: Default -> https://www.google.sk/
CHR StartupUrls: Default -> "hxxp://google.sk/", "hxxp://www.mystartsearch.com/?type=hp&ts=14172 ... XXZ1D6ZVJW"
CHR DefaultSearchKeyword: Default -> https://www.google.sk/
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentácie Google) - C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-10-17]
CHR Extension: (Dokumenty Google) - C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-10-17]
CHR Extension: (Disk Google) - C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-10-17]
CHR Extension: (YouTube) - C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-10-17]
CHR Extension: (Hľadať v Google) - C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-10-17]
CHR Extension: (Tabuľky Google) - C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-10-17]
CHR Extension: (Avast Online Security) - C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-10-18]
CHR Extension: (Peňaženka Google) - C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-10-17]
CHR Extension: (Gmail) - C:\Users\Murtagh\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-10-17]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-14]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-14] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2014-11-14] (Avast Software)
R2 DTSAudioSvc; C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [233328 2012-01-23] (DTS, Inc)
R2 hddrsrv; C:\Program Files (x86)\HDD Regenerator\hrsrv.exe [82144 2013-05-08] ()
S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [977088 2014-03-02] () [File not signed]
S3 wampapache64; c:\wamp\bin\apache\apache2.4.9\bin\httpd.exe [24576 2014-05-01] (Apache Software Foundation) [File not signed]
S3 wampmysqld64; c:\wamp\bin\mysql\mysql5.6.17\bin\mysqld.exe [12942848 2014-05-01] () [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-14] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-14] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-14] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-14] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-14] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-14] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-14] ()
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-10-17] (Disc Soft Ltd)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2014-11-14] (Avast Software)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-29 13:44 - 2014-11-29 13:45 - 00017341 _____ () C:\Users\Murtagh\Desktop\FRST.txt
2014-11-29 13:44 - 2014-11-29 13:44 - 00112640 _____ (forum.viry.cz) C:\Users\Murtagh\Desktop\FRSTLauncher.exe
2014-11-29 13:44 - 2014-11-29 13:44 - 00000000 ____D () C:\FRST
2014-11-29 13:38 - 2014-11-29 13:38 - 02117632 _____ (Farbar) C:\Users\Murtagh\Desktop\FRST64.exe
2014-11-29 13:06 - 2014-11-29 13:06 - 00000197 _____ () C:\WINDOWS\system32\2014-11-29-12-06-07.057-AvastVBoxSVC.exe-2888.log
2014-11-29 13:04 - 2014-11-29 13:04 - 00000000 ____D () C:\Users\Murtagh\AppData\Local\VirtualStore
2014-11-29 13:00 - 2014-11-29 12:50 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-11-29 12:50 - 2014-11-29 13:04 - 00009953 _____ () C:\zoek-results.log
2014-11-29 12:50 - 2014-11-29 12:58 - 00000000 ____D () C:\zoek_backup
2014-11-29 12:50 - 2014-11-29 12:50 - 01294848 _____ () C:\Users\Murtagh\Desktop\zoek.exe
2014-11-29 12:50 - 2014-11-29 12:50 - 00000197 _____ () C:\WINDOWS\system32\2014-11-29-11-50-50.082-AvastVBoxSVC.exe-3644.log
2014-11-29 12:45 - 2014-11-29 12:47 - 00000000 ____D () C:\AdwCleaner
2014-11-29 12:44 - 2014-11-29 12:44 - 02148864 _____ () C:\Users\Murtagh\Desktop\adwcleaner_4.102.exe
2014-11-29 08:32 - 2014-11-29 08:32 - 01222144 _____ () C:\Users\Murtagh\Desktop\RSITx64.exe
2014-11-29 08:32 - 2014-11-29 08:32 - 00000000 ____D () C:\rsit
2014-11-29 08:32 - 2014-11-29 08:32 - 00000000 ____D () C:\Program Files\trend micro
2014-11-29 08:20 - 2014-11-29 08:20 - 00000197 _____ () C:\WINDOWS\system32\2014-11-29-07-20-27.076-AvastVBoxSVC.exe-3248.log
2014-11-18 20:36 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2014-11-18 20:36 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2014-11-18 20:36 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2014-11-18 20:36 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2014-11-16 13:04 - 2014-11-16 13:04 - 00000000 __SHD () C:\Users\Murtagh\AppData\Local\EmieBrowserModeList
2014-11-15 23:55 - 2014-11-15 23:55 - 00000219 _____ () C:\Users\Murtagh\Desktop\Counter-Strike Global Offensive.url
2014-11-15 23:45 - 2014-11-15 23:45 - 00000247 _____ () C:\WINDOWS\system32\2014-11-15-22-45-36.013-aswFe.exe-7820.log
2014-11-15 23:43 - 2014-11-15 23:45 - 00000247 _____ () C:\WINDOWS\system32\2014-11-15-22-43-01.066-aswFe.exe-7240.log
2014-11-15 23:43 - 2014-11-15 23:43 - 00000197 _____ () C:\WINDOWS\system32\2014-11-15-22-43-00.003-AvastVBoxSVC.exe-6348.log
2014-11-15 23:41 - 2014-11-15 23:41 - 00000000 ____D () C:\WINDOWS\SysWOW64\vbox
2014-11-15 23:41 - 2014-11-15 23:41 - 00000000 ____D () C:\WINDOWS\system32\vbox
2014-11-14 06:41 - 2014-10-30 12:25 - 00275080 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2014-11-14 06:40 - 2014-11-14 06:40 - 00364512 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2014-11-14 06:40 - 2014-11-14 06:40 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-11-14 06:40 - 2014-11-14 06:40 - 00001980 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2014-11-13 15:37 - 2014-11-13 15:37 - 00000218 _____ () C:\Users\Murtagh\Desktop\Counter-Strike.url
2014-11-12 18:21 - 2014-11-12 18:21 - 00048465 _____ () C:\Users\Murtagh\Desktop\37307.zip
2014-11-12 08:33 - 2014-10-10 02:58 - 00177472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2014-11-12 08:33 - 2014-10-08 07:18 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2014-11-12 08:33 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2014-11-12 08:33 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2014-11-12 08:33 - 2014-09-27 04:38 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2014-11-12 08:33 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2014-11-12 08:33 - 2014-09-27 04:17 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2014-11-12 08:32 - 2014-10-18 10:55 - 00055776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-11-12 08:32 - 2014-10-18 09:09 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2014-11-12 08:32 - 2014-10-18 09:09 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2014-11-12 08:32 - 2014-10-18 08:25 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2014-11-12 08:32 - 2014-10-18 07:50 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
2014-11-12 08:32 - 2014-10-18 07:38 - 03557376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-11-12 08:32 - 2014-10-18 07:27 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2014-11-12 08:32 - 2014-10-18 07:26 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2014-11-12 08:32 - 2014-10-18 07:23 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2014-11-12 08:32 - 2014-10-18 07:23 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-11-12 08:32 - 2014-10-18 07:21 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-11-12 08:32 - 2014-10-18 07:20 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2014-11-12 08:32 - 2014-10-18 07:14 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2014-11-12 08:32 - 2014-10-18 07:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2014-11-12 08:32 - 2014-10-18 07:12 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-11-12 08:32 - 2014-10-18 07:11 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-11-12 08:32 - 2014-10-17 08:01 - 00789184 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2014-11-12 08:32 - 2014-10-17 07:58 - 00602768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2014-11-12 08:32 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2014-11-12 08:32 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2014-11-12 08:32 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2014-11-12 08:32 - 2014-10-10 02:58 - 00027456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2014-11-12 08:32 - 2014-10-10 02:44 - 00563976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-11-12 08:32 - 2014-10-08 08:37 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2014-11-12 08:32 - 2014-10-08 08:37 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll
2014-11-12 08:32 - 2014-10-08 08:34 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2014-11-12 08:32 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2014-11-12 08:32 - 2014-10-08 08:24 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rfxvmt.dll
2014-11-12 08:32 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\msihnd.dll
2014-11-12 08:32 - 2014-10-08 07:56 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2014-11-12 08:32 - 2014-10-08 07:51 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2014-11-12 08:32 - 2014-10-08 07:51 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaudite.dll
2014-11-12 08:32 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msihnd.dll
2014-11-12 08:32 - 2014-10-08 07:17 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-11-12 08:32 - 2014-10-08 06:32 - 02773504 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2014-11-12 08:32 - 2014-10-08 06:23 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2014-11-12 08:32 - 2014-10-08 06:19 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2014-11-12 08:31 - 2014-10-31 06:28 - 25110016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-11-12 08:31 - 2014-10-31 04:42 - 19781632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-11-12 08:31 - 2014-09-22 05:38 - 01519488 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2014-11-12 08:31 - 2014-09-22 04:06 - 00258368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2014-11-12 08:31 - 2014-09-22 04:06 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2014-11-12 08:31 - 2014-09-22 03:49 - 00035320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2014-11-12 08:31 - 2014-09-19 01:16 - 01346048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2014-11-12 08:31 - 2014-09-02 23:08 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2014-11-12 08:31 - 2014-09-02 23:08 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
2014-11-12 08:30 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wextract.exe
2014-11-12 08:30 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshta.exe
2014-11-12 08:30 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iexpress.exe
2014-11-12 08:30 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pngfilt.dll
2014-11-12 08:30 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedssync.exe
2014-11-12 08:30 - 2014-10-31 06:06 - 00580096 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2014-11-12 08:30 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll
2014-11-12 08:30 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-11-12 08:30 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-11-12 08:30 - 2014-10-31 06:05 - 02884096 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-11-12 08:30 - 2014-10-31 06:05 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2014-11-12 08:30 - 2014-10-31 06:04 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2014-11-12 08:30 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-11-12 08:30 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-11-12 08:30 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\IEAdvpack.dll
2014-11-12 08:30 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2014-11-12 08:30 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2014-11-12 08:30 - 2014-10-31 05:51 - 00812544 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2014-11-12 08:30 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-11-12 08:30 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-11-12 08:30 - 2014-10-31 05:50 - 06040064 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-11-12 08:30 - 2014-10-31 05:50 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-11-12 08:30 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll
2014-11-12 08:30 - 2014-10-31 05:38 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-11-12 08:30 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-11-12 08:30 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesysprep.dll
2014-11-12 08:30 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2014-11-12 08:30 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\inseng.dll
2014-11-12 08:30 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-11-12 08:30 - 2014-10-31 05:24 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-11-12 08:30 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2014-11-12 08:30 - 2014-10-31 05:23 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2014-11-12 08:30 - 2014-10-31 05:21 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-11-12 08:30 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\occache.dll
2014-11-12 08:30 - 2014-10-31 05:15 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2014-11-12 08:30 - 2014-10-31 05:08 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2014-11-12 08:30 - 2014-10-31 05:06 - 00372736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-11-12 08:30 - 2014-10-31 05:05 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-11-12 08:30 - 2014-10-31 05:05 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-11-12 08:30 - 2014-10-31 05:03 - 02124288 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-11-12 08:30 - 2014-10-31 04:59 - 14390272 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-11-12 08:30 - 2014-10-31 04:45 - 02365440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-11-12 08:30 - 2014-10-31 04:44 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2014-11-12 08:30 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\imgutil.dll
2014-11-12 08:30 - 2014-10-31 04:32 - 01550336 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-11-12 08:30 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wextract.exe
2014-11-12 08:30 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshta.exe
2014-11-12 08:30 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iexpress.exe
2014-11-12 08:30 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pngfilt.dll
2014-11-12 08:30 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedssync.exe
2014-11-12 08:30 - 2014-10-31 04:24 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2014-11-12 08:30 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\url.dll
2014-11-12 08:30 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-11-12 08:30 - 2014-10-31 04:23 - 00340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2014-11-12 08:30 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-11-12 08:30 - 2014-10-31 04:22 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2014-11-12 08:30 - 2014-10-31 04:20 - 00799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-11-12 08:30 - 2014-10-31 04:18 - 02277376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-11-12 08:30 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-11-12 08:30 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-11-12 08:30 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IEAdvpack.dll
2014-11-12 08:30 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2014-11-12 08:30 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2014-11-12 08:30 - 2014-10-31 04:12 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2014-11-12 08:30 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-11-12 08:30 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-11-12 08:30 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licmgr10.dll
2014-11-12 08:30 - 2014-10-31 04:02 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-11-12 08:30 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-12 08:30 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inseng.dll
2014-11-12 08:30 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesysprep.dll
2014-11-12 08:30 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2014-11-12 08:30 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-11-12 08:30 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedsbs.dll
2014-11-12 08:30 - 2014-10-31 03:52 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-11-12 08:30 - 2014-10-31 03:51 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2014-11-12 08:30 - 2014-10-31 03:50 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-11-12 08:30 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\occache.dll
2014-11-12 08:30 - 2014-10-31 03:46 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-11-12 08:30 - 2014-10-31 03:46 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2014-11-12 08:30 - 2014-10-31 03:42 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2014-11-12 08:30 - 2014-10-31 03:40 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-11-12 08:30 - 2014-10-31 03:40 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-11-12 08:30 - 2014-10-31 03:39 - 02051072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-11-12 08:30 - 2014-10-31 03:30 - 12819456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-11-12 08:30 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2014-11-12 08:30 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imgutil.dll
2014-11-12 08:30 - 2014-10-31 03:17 - 01892864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-11-12 08:30 - 2014-10-31 03:13 - 01310208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-11-12 08:30 - 2014-10-31 03:11 - 00708096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-11-12 08:30 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll
2014-11-12 08:30 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll
2014-11-12 08:30 - 2014-10-07 07:28 - 00500016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2014-11-12 08:30 - 2014-10-07 07:27 - 00482872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2014-11-12 08:30 - 2014-10-07 07:27 - 00394120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2014-11-12 08:30 - 2014-10-07 07:27 - 00272248 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2014-11-12 08:30 - 2014-10-07 07:27 - 00108432 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2014-11-12 08:30 - 2014-10-07 04:34 - 00370424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2014-11-12 08:30 - 2014-10-07 04:34 - 00344536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-11-12 08:30 - 2014-10-07 04:33 - 00424544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2014-11-12 08:30 - 2014-10-07 04:30 - 04182016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-11-12 08:30 - 2014-10-07 02:54 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-11-12 08:30 - 2014-10-07 02:46 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-11-12 08:30 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2014-11-12 08:30 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2014-11-02 12:25 - 2014-11-02 12:25 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2014-11-01 18:25 - 2014-11-01 18:25 - 00000000 ____D () C:\Users\Murtagh\Documents\Electronic Arts
2014-11-01 18:20 - 2014-11-01 18:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-11-01 18:16 - 2014-11-01 18:23 - 00000818 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4.lnk
2014-11-01 18:16 - 2014-10-19 15:54 - 00447752 _____ (On2.com) C:\WINDOWS\SysWOW64\vp6vfw.dll
2014-11-01 15:26 - 2014-11-29 13:45 - 00000000 ____D () C:\ProgramData\TEMP
2014-11-01 15:26 - 2014-11-02 10:56 - 00000000 ____D () C:\Program Files (x86)\HDD Regenerator
2014-11-01 15:26 - 2014-11-01 15:26 - 00001987 _____ () C:\Users\Public\Desktop\HDD Regenerator.lnk
2014-11-01 15:26 - 2014-11-01 15:26 - 00000000 ____D () C:\Users\Murtagh\AppData\Local\Downloaded Installations
2014-11-01 15:26 - 2014-11-01 15:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HDD Regenerator
2014-10-31 15:04 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll
2014-10-31 15:04 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll
2014-10-31 15:04 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll
2014-10-31 15:04 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll
2014-10-31 15:04 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll
2014-10-31 15:04 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2014-10-31 15:04 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll
2014-10-31 15:04 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2014-10-31 15:04 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
2014-10-31 15:04 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2014-10-31 15:04 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll
2014-10-31 15:04 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2014-10-31 15:04 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2014-10-31 15:04 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2014-10-31 15:04 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2014-10-31 15:04 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll
2014-10-31 15:04 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll
2014-10-31 15:04 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll
2014-10-31 15:04 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll
2014-10-31 15:04 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll
2014-10-31 15:04 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll
2014-10-31 15:04 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2014-10-31 15:04 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll
2014-10-31 15:04 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2014-10-31 15:04 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll
2014-10-31 15:04 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll
2014-10-31 15:04 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll
2014-10-31 15:04 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll
2014-10-31 15:04 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll
2014-10-31 15:04 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2014-10-31 15:04 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll
2014-10-31 15:04 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2014-10-31 15:04 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll
2014-10-31 15:04 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll
2014-10-31 15:04 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2014-10-31 15:04 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll
2014-10-31 15:04 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll
2014-10-31 15:04 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll
2014-10-31 15:04 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll
2014-10-31 15:04 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll
2014-10-31 15:04 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll
2014-10-31 15:04 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll
2014-10-31 15:04 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll
2014-10-31 15:04 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll
2014-10-31 15:04 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll
2014-10-31 15:04 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2014-10-31 15:04 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll
2014-10-31 15:04 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll
2014-10-31 15:04 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll
2014-10-31 15:04 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2014-10-31 15:04 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll
2014-10-31 15:04 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll
2014-10-31 15:04 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll
2014-10-31 15:04 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll
2014-10-31 15:04 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll
2014-10-31 15:04 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll
2014-10-31 15:04 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll
2014-10-31 15:04 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2014-10-31 15:04 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll
2014-10-31 15:04 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2014-10-31 15:04 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll
2014-10-31 15:04 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll
2014-10-31 15:04 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll
2014-10-31 15:04 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2014-10-31 15:04 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll
2014-10-31 15:04 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll
2014-10-31 15:04 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll
2014-10-31 15:04 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll
2014-10-31 15:04 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll
2014-10-31 15:04 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2014-10-31 15:04 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll
2014-10-31 15:04 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll
2014-10-31 15:04 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll
2014-10-31 15:04 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll
2014-10-31 15:04 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll
2014-10-31 15:04 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll
2014-10-31 15:04 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2014-10-31 15:04 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll
2014-10-31 15:04 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll
2014-10-31 15:04 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll
2014-10-31 15:04 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll
2014-10-31 15:04 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll
2014-10-31 15:04 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll
2014-10-31 15:04 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2014-10-31 15:04 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2014-10-31 15:04 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll
2014-10-31 15:04 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll
2014-10-31 15:04 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll
2014-10-31 15:04 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll
2014-10-31 15:04 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2014-10-31 15:04 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll
2014-10-31 15:04 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll
2014-10-31 15:04 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll
2014-10-31 15:04 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll
2014-10-31 15:04 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll
2014-10-31 15:04 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll
2014-10-31 15:04 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll
2014-10-31 15:04 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2014-10-31 15:04 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll
2014-10-31 15:04 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll
2014-10-31 15:04 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll
2014-10-31 15:04 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2014-10-31 15:04 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll
2014-10-31 15:04 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll
2014-10-31 15:04 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll
2014-10-31 15:04 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll
2014-10-31 15:04 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll
2014-10-31 15:04 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2014-10-31 15:04 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll
2014-10-31 15:04 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll
2014-10-31 15:04 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll
2014-10-31 15:04 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2014-10-31 15:04 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll
2014-10-31 15:04 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll
2014-10-31 15:04 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll
2014-10-31 15:04 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll
2014-10-31 15:04 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll
2014-10-31 15:04 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll
2014-10-31 15:04 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll
2014-10-31 15:04 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2014-10-31 15:04 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll
2014-10-31 15:04 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll
2014-10-31 15:04 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll
2014-10-31 15:04 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll
2014-10-31 15:04 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll
2014-10-31 15:04 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll
2014-10-31 15:04 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll
2014-10-31 15:04 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2014-10-31 15:04 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll
2014-10-31 15:04 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll
2014-10-31 15:04 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll
2014-10-31 15:04 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll
2014-10-31 15:04 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll
2014-10-31 15:04 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll
2014-10-31 15:04 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll
2014-10-31 15:04 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll
2014-10-31 15:04 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll
2014-10-31 15:04 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll
2014-10-31 15:04 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll
2014-10-31 15:04 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2014-10-31 15:04 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll
2014-10-31 15:04 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2014-10-31 15:04 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll
2014-10-31 15:04 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll
2014-10-31 15:04 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll
2014-10-31 15:04 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll
2014-10-31 15:04 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll
2014-10-31 15:04 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll
2014-10-31 15:04 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll
2014-10-31 15:04 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll
2014-10-31 15:04 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll
2014-10-31 15:04 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll
2014-10-31 15:04 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll
2014-10-31 15:04 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll
2014-10-31 15:04 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll
2014-10-31 15:04 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll
2014-10-31 15:04 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll
2014-10-31 15:04 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll
2014-10-31 15:03 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll
2014-10-31 15:03 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll
2014-10-31 15:03 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll
2014-10-31 15:03 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll
2014-10-31 15:03 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll
2014-10-31 15:03 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll
2014-10-31 15:03 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll
2014-10-31 15:03 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll
2014-10-31 15:03 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll
2014-10-31 15:03 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll
2014-10-31 15:03 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll
2014-10-31 15:03 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll
2014-10-31 15:03 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll
2014-10-31 15:03 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2014-10-31 15:03 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll
2014-10-31 15:03 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll
2014-10-31 15:03 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll
2014-10-31 15:03 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll
2014-10-31 15:03 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll
2014-10-31 15:03 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll
2014-10-31 15:03 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll
2014-10-31 15:03 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll
2014-10-31 15:03 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll
2014-10-31 15:03 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-29 13:44 - 2014-10-17 23:18 - 00000000 ____D () C:\Users\Murtagh\AppData\Roaming\uTorrent
2014-11-29 13:09 - 2014-10-17 23:41 - 00047512 _____ () C:\WINDOWS\system32\perfh01B.dat
2014-11-29 13:09 - 2014-10-17 23:41 - 00011800 _____ () C:\WINDOWS\system32\perfc01B.dat
2014-11-29 13:09 - 2014-10-17 22:43 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3659170310-2728207892-1926422612-1000
2014-11-29 13:09 - 2014-03-18 11:08 - 00907186 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-11-29 13:05 - 2014-10-18 04:49 - 00000000 ____D () C:\Users\Murtagh\AppData\Local\Adobe
2014-11-29 13:04 - 2014-10-17 22:49 - 00000962 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-11-29 13:04 - 2014-10-17 22:43 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-11-29 13:04 - 2014-03-18 02:57 - 00047012 _____ () C:\WINDOWS\PFRO.log
2014-11-29 13:04 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-11-29 13:00 - 2014-10-17 22:49 - 00000966 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-11-29 13:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-11-29 12:47 - 2014-10-17 22:49 - 00001322 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-11-29 12:47 - 2014-10-17 22:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-11-29 12:47 - 2014-10-17 22:38 - 00001003 _____ () C:\Users\Murtagh\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-29 12:47 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-11-29 12:43 - 2014-10-18 05:32 - 00000000 ____D () C:\Users\Murtagh\AppData\Roaming\vlc
2014-11-29 08:33 - 2014-10-17 22:34 - 01535267 _____ () C:\WINDOWS\WindowsUpdate.log
2014-11-29 08:15 - 2014-10-18 11:31 - 00000000 ____D () C:\Program Files (x86)\AMD APP
2014-11-28 15:39 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-11-27 02:14 - 2013-08-22 16:20 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-11-26 14:38 - 2014-10-17 23:32 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-11-24 23:43 - 2014-10-18 10:46 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-11-24 20:16 - 2014-10-18 13:56 - 00000000 ____D () C:\Users\Murtagh\AppData\Roaming\Mumble
2014-11-24 08:54 - 2014-10-18 04:28 - 00152576 ___SH () C:\Users\Murtagh\Desktop\Thumbs.db
2014-11-22 06:40 - 2014-10-17 22:53 - 01050432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2014-11-20 21:51 - 2013-08-22 16:38 - 00714208 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-11-20 21:51 - 2013-08-22 16:38 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-16 14:58 - 2013-08-22 15:46 - 00040540 _____ () C:\WINDOWS\setupact.log
2014-11-16 12:56 - 2014-10-18 12:01 - 00045713 _____ () C:\WINDOWS\DirectX.log
2014-11-16 03:11 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-11-16 02:57 - 2014-10-18 04:41 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-11-16 02:57 - 2014-10-18 04:15 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-15 23:38 - 2013-08-22 15:44 - 00482224 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-11-15 23:33 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sk-SK
2014-11-15 23:32 - 2014-10-17 22:33 - 00000000 ____D () C:\Users\Murtagh
2014-11-15 23:32 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-15 23:32 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-15 23:32 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2014-11-15 23:32 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-11-14 13:27 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-11-14 06:40 - 2014-10-17 22:53 - 00436624 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2014-11-14 06:40 - 2014-10-17 22:53 - 00267632 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2014-11-14 06:40 - 2014-10-17 22:53 - 00116728 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2014-11-14 06:40 - 2014-10-17 22:53 - 00093568 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2014-11-14 06:40 - 2014-10-17 22:53 - 00083280 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2014-11-14 06:40 - 2014-10-17 22:53 - 00065776 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2014-11-14 06:40 - 2014-10-17 22:53 - 00029208 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2014-11-14 06:40 - 2014-10-17 22:53 - 00003924 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2014-11-13 11:25 - 2013-08-22 14:25 - 00000167 _____ () C:\WINDOWS\win.ini
2014-11-13 11:24 - 2014-10-18 02:18 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-11-13 11:22 - 2014-10-18 02:18 - 103374192 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-11-13 02:55 - 2014-10-17 22:49 - 00003938 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2014-11-13 02:55 - 2014-10-17 22:49 - 00003702 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2014-11-12 18:22 - 2014-06-11 07:59 - 00000000 ____D () C:\Users\Murtagh\Desktop\37307
2014-11-12 18:19 - 2014-05-30 07:03 - 00000000 ____D () C:\Users\Murtagh\Desktop\Výplata
2014-10-31 18:37 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-26 03:42




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:111.79 GB) (Free:50.7 GB) NTFS
Drive e: (Lokálny disk) (Fixed) (Total:931.41 GB) (Free:16.26 GB) NTFS
Drive f: (The Sims 4) (CDROM) (Total:8.8 GB) (Free:0 GB) CDFS
Drive k: (Transcend) (Fixed) (Total:1397.26 GB) (Free:8.76 GB) NTFS

Available physical RAM: 5919.5 MB
Total physical RAM: 8092.96 MB
Percentage of memory in use: 26%

==================== MBR and Partition Table ==================

Disk: 3 (MBR Code: Windows 7 or 8) (Size: 1397.3 GB) (Disk ID: 0035051C)
Partition 1: (Active) - (Size=1397.3 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\ProgramData\TEMP:B755D674

==================== Security Center ==================

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Murtagh\Desktop" je 5570 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Problem s win 8.1

#8 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    CloseProcesses:
    
    HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)
    
    HKU\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x6CB942EAB607D001
    SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = 
    SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = 
    
    2014-11-29 13:44 - 2014-11-29 13:45 - 00017341 _____ () C:\Users\Murtagh\Desktop\FRST.txt
    2014-11-29 13:44 - 2014-11-29 13:44 - 00112640 _____ (forum.viry.cz) C:\Users\Murtagh\Desktop\FRSTLauncher.exe
    2014-11-29 13:06 - 2014-11-29 13:06 - 00000197 _____ () C:\WINDOWS\system32\2014-11-29-12-06-07.057-AvastVBoxSVC.exe-2888.log
    2014-11-29 13:00 - 2014-11-29 12:50 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
    2014-11-29 12:50 - 2014-11-29 13:04 - 00009953 _____ () C:\zoek-results.log
    2014-11-29 12:50 - 2014-11-29 12:58 - 00000000 ____D () C:\zoek_backup
    2014-11-29 12:50 - 2014-11-29 12:50 - 01294848 _____ () C:\Users\Murtagh\Desktop\zoek.exe
    2014-11-29 12:50 - 2014-11-29 12:50 - 00000197 _____ () C:\WINDOWS\system32\2014-11-29-11-50-50.082-AvastVBoxSVC.exe-3644.log
    2014-11-29 12:45 - 2014-11-29 12:47 - 00000000 ____D () C:\AdwCleaner
    2014-11-29 12:44 - 2014-11-29 12:44 - 02148864 _____ () C:\Users\Murtagh\Desktop\adwcleaner_4.102.exe
    2014-11-29 08:32 - 2014-11-29 08:32 - 01222144 _____ () C:\Users\Murtagh\Desktop\RSITx64.exe
    2014-11-29 08:32 - 2014-11-29 08:32 - 00000000 ____D () C:\rsit
    2014-11-29 08:32 - 2014-11-29 08:32 - 00000000 ____D () C:\Program Files\trend micro
    2014-11-29 08:20 - 2014-11-29 08:20 - 00000197 _____ () C:\WINDOWS\system32\2014-11-29-07-20-27.076-AvastVBoxSVC.exe-3248.log
    2014-11-15 23:45 - 2014-11-15 23:45 - 00000247 _____ () C:\WINDOWS\system32\2014-11-15-22-45-36.013-aswFe.exe-7820.log
    2014-11-15 23:43 - 2014-11-15 23:45 - 00000247 _____ () C:\WINDOWS\system32\2014-11-15-22-43-01.066-aswFe.exe-7240.log
    2014-11-15 23:43 - 2014-11-15 23:43 - 00000197 _____ () C:\WINDOWS\system32\2014-11-15-22-43-00.003-AvastVBoxSVC.exe-6348.log
    
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    
    AlternateDataStreams: C:\ProgramData\TEMP:B755D674
    
    Hosts:
    EmptyTemp:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Murtagh
Návštěvník
Návštěvník
Příspěvky: 55
Registrován: 27 pro 2008 11:01
Bydliště: Liesek city
Kontaktovat uživatele:

Re: Problem s win 8.1

#9 Příspěvek od Murtagh »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-11-2014 01
Ran by Murtagh at 2014-11-29 14:30:02 Run:1
Running from C:\Users\Murtagh\Desktop
Loaded Profile: Murtagh (Available profiles: Murtagh)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:

HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)

HKU\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x6CB942EAB607D001
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =

2014-11-29 13:44 - 2014-11-29 13:45 - 00017341 _____ () C:\Users\Murtagh\Desktop\FRST.txt
2014-11-29 13:44 - 2014-11-29 13:44 - 00112640 _____ (forum.viry.cz) C:\Users\Murtagh\Desktop\FRSTLauncher.exe
2014-11-29 13:06 - 2014-11-29 13:06 - 00000197 _____ () C:\WINDOWS\system32\2014-11-29-12-06-07.057-AvastVBoxSVC.exe-2888.log
2014-11-29 13:00 - 2014-11-29 12:50 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-11-29 12:50 - 2014-11-29 13:04 - 00009953 _____ () C:\zoek-results.log
2014-11-29 12:50 - 2014-11-29 12:58 - 00000000 ____D () C:\zoek_backup
2014-11-29 12:50 - 2014-11-29 12:50 - 01294848 _____ () C:\Users\Murtagh\Desktop\zoek.exe
2014-11-29 12:50 - 2014-11-29 12:50 - 00000197 _____ () C:\WINDOWS\system32\2014-11-29-11-50-50.082-AvastVBoxSVC.exe-3644.log
2014-11-29 12:45 - 2014-11-29 12:47 - 00000000 ____D () C:\AdwCleaner
2014-11-29 12:44 - 2014-11-29 12:44 - 02148864 _____ () C:\Users\Murtagh\Desktop\adwcleaner_4.102.exe
2014-11-29 08:32 - 2014-11-29 08:32 - 01222144 _____ () C:\Users\Murtagh\Desktop\RSITx64.exe
2014-11-29 08:32 - 2014-11-29 08:32 - 00000000 ____D () C:\rsit
2014-11-29 08:32 - 2014-11-29 08:32 - 00000000 ____D () C:\Program Files\trend micro
2014-11-29 08:20 - 2014-11-29 08:20 - 00000197 _____ () C:\WINDOWS\system32\2014-11-29-07-20-27.076-AvastVBoxSVC.exe-3248.log
2014-11-15 23:45 - 2014-11-15 23:45 - 00000247 _____ () C:\WINDOWS\system32\2014-11-15-22-45-36.013-aswFe.exe-7820.log
2014-11-15 23:43 - 2014-11-15 23:45 - 00000247 _____ () C:\WINDOWS\system32\2014-11-15-22-43-01.066-aswFe.exe-7240.log
2014-11-15 23:43 - 2014-11-15 23:43 - 00000197 _____ () C:\WINDOWS\system32\2014-11-15-22-43-00.003-AvastVBoxSVC.exe-6348.log

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

AlternateDataStreams: C:\ProgramData\TEMP:B755D674

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper => value deleted successfully.
HKU\S-1-5-21-3659170310-2728207892-1926422612-1000\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache_TIMESTAMP => value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
C:\Users\Murtagh\Desktop\FRST.txt => Moved successfully.
C:\Users\Murtagh\Desktop\FRSTLauncher.exe => Moved successfully.
Could not move "C:\WINDOWS\system32\2014-11-29-12-06-07.057-AvastVBoxSVC.exe-2888.log" => Scheduled to move on reboot.
C:\WINDOWS\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Murtagh\Desktop\zoek.exe => Moved successfully.
C:\WINDOWS\system32\2014-11-29-11-50-50.082-AvastVBoxSVC.exe-3644.log => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Murtagh\Desktop\adwcleaner_4.102.exe => Moved successfully.
C:\Users\Murtagh\Desktop\RSITx64.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\WINDOWS\system32\2014-11-29-07-20-27.076-AvastVBoxSVC.exe-3248.log => Moved successfully.
C:\WINDOWS\system32\2014-11-15-22-45-36.013-aswFe.exe-7820.log => Moved successfully.
C:\WINDOWS\system32\2014-11-15-22-43-01.066-aswFe.exe-7240.log => Moved successfully.
C:\WINDOWS\system32\2014-11-15-22-43-00.003-AvastVBoxSVC.exe-6348.log => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\ProgramData\TEMP => ":B755D674" ADS removed successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 75.7 MB temporary data.

=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-11-29 14:32:04)<=

C:\WINDOWS\system32\2014-11-29-12-06-07.057-AvastVBoxSVC.exe-2888.log => Is moved successfully.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Problem s win 8.1

#10 Příspěvek od vyosek »

Jak se chova PC???
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Murtagh
Návštěvník
Návštěvník
Příspěvky: 55
Registrován: 27 pro 2008 11:01
Bydliště: Liesek city
Kontaktovat uživatele:

Re: Problem s win 8.1

#11 Příspěvek od Murtagh »

omnoho lepsie... tak ako predtym... diky :thumbsup:

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Problem s win 8.1

#12 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: DelFix https://toolslib.net/downloads/finish/2/
  • Stahnete a spustte
  • Ponechte zatrzitkou pouze u volby Remote disinfection tools
  • Kliknete na Run
:arrow: Stahnete Ccleaner https://www.piriform.com/ccleaner/download/standard
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět