
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prosím o kontrolu
Ahoj,
Prosím o kontrolu logu. Mám pocit, že je ntb mierne spomalený a sem tam mi pri bežných stránkach robí taký bug, že tam zostane ako keby časť nejakého okna.
Logfile of random's system information tool 1.08 (written by random/random)
Run by Tomi at 2014-12-21 01:16:00
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 89 GB (32%) free of 278 GB
Total RAM: 4010 MB (78% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 1:16:09, on 21. 12. 2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17496)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe
C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe
C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe
C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe
C:\Program Files (x86)\Samsung\Easy Support Center\SSCKbdHk.exe
C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
C:\Program Files\trend micro\Tomi.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://samsung.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKCU\..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: Bluetooth Device Monitor - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Foxit Cloud Safe Update Service (FoxitCloudUpdateService) - Foxit Corporation - C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11473 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
winlogon.exe
C:\windows\system32\svchost.exe -k DcomLaunch
"C:\windows\system32\nvvsvc.exe"
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\windows\system32\nvvsvc.exe -session -first
C:\windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
"C:\windows\system32\Dwm.exe"
"taskhost.exe"
C:\windows\Explorer.EXE
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {DCE49C71-6964-4BC7-A83E-EFCEBDE79541}
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\windows\system32\svchost.exe -k bthsvcs
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 86729009-3bcc-4765-a43a-791c9ed5d5a6 1
\??\C:\windows\system32\conhost.exe "-1021919566-2088608970-22023142119376932691256300718-843922837172947238-665894129
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\windows\system32\conhost.exe "-235931950-1198336085-1188351733-154049993016537119851303370625959625863-939164673
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe"
taskeng.exe {DE2D76F0-1849-4A2D-92DC-60D7CF7F6512}
"C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe"
"C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe"
"C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe"
C:\windows\system32\igfxext.exe -Embedding
C:\windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000500
C:\windows\system32\hkcmd.exe
C:\windows\system32\igfxtray.exe
C:\windows\system32\igfxpers.exe
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe" -Embedding
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\windows\System32\svchost.exe -k LocalServicePeerNet
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 824
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Samsung\Easy Support Center\SSCKbdHk.exe"
"C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
C:\windows\system32\wbem\wmiprvse.exe
"C:\Users\Tomi\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-12-11 460712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-12-11 172968]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-07-12 12558440]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2011-03-30 10372368]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2011-06-17 2721576]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-11-17 2465088]
"ShadowPlay"=C:\windows\system32\nvspcap64.dll [2014-11-17 2800296]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"EADM"=C:\Program Files (x86)\Origin\Origin.exe [2014-12-18 3618648]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-12-12 7394584]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2014-12-16 702768]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-08-01 152392]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-10-07 507776]
"Avira Systray"=C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [2014-11-20 126200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2010-12-16 384000]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2014-12-20 00:24:16 ----D---- C:\Program Files (x86)\Steam
2014-12-20 00:06:25 ----SHD---- C:\Config.Msi
2014-12-18 10:27:00 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2014-12-18 10:27:00 ----A---- C:\windows\system32\ieUnatt.exe
2014-12-17 19:19:46 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-12-17 16:16:37 ----D---- C:\Users\Tomi\AppData\Roaming\Publish Providers
2014-12-17 16:12:41 ----D---- C:\Program Files\Sony
2014-12-17 16:10:41 ----D---- C:\Users\Tomi\AppData\Roaming\Sony
2014-12-15 00:28:06 ----D---- C:\Users\Tomi\AppData\Roaming\VideoScribeDesktop
2014-12-14 19:57:01 ----A---- C:\windows\SYSWOW64\ASIW32N50.dll
2014-12-14 19:57:00 ----A---- C:\windows\SYSWOW64\ASINDIS5.sys
2014-12-11 18:08:36 ----D---- C:\Users\Tomi\AppData\Roaming\VitySoft
2014-12-11 18:08:12 ----D---- C:\ProgramData\Sun
2014-12-11 18:08:06 ----A---- C:\windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-12-11 18:07:27 ----D---- C:\ProgramData\Oracle
2014-12-11 18:07:17 ----D---- C:\Program Files (x86)\Java
2014-12-11 04:31:15 ----D---- C:\windows\system32\appraiser
2014-12-11 03:07:08 ----A---- C:\windows\SYSWOW64\mf.dll
2014-12-11 03:07:08 ----A---- C:\windows\system32\mf.dll
2014-12-10 23:37:14 ----D---- C:\Users\Tomi\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
2014-12-10 09:14:32 ----A---- C:\windows\system32\appraiser.dll
2014-12-10 09:14:32 ----A---- C:\windows\system32\aitstatic.exe
2014-12-10 09:14:32 ----A---- C:\windows\system32\aepic.dll
2014-12-10 09:14:31 ----A---- C:\windows\system32\invagent.dll
2014-12-10 09:14:31 ----A---- C:\windows\system32\generaltel.dll
2014-12-10 09:14:31 ----A---- C:\windows\system32\devinv.dll
2014-12-10 09:14:31 ----A---- C:\windows\system32\aeinv.dll
2014-12-10 09:14:30 ----A---- C:\windows\system32\aepdu.dll
2014-12-10 09:14:21 ----A---- C:\windows\SYSWOW64\WsmWmiPl.dll
2014-12-10 09:14:21 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2014-12-10 09:14:21 ----A---- C:\windows\SYSWOW64\WSManMigrationPlugin.dll
2014-12-10 09:14:21 ----A---- C:\windows\SYSWOW64\WSManHTTPConfig.exe
2014-12-10 09:14:21 ----A---- C:\windows\system32\WsmWmiPl.dll
2014-12-10 09:14:21 ----A---- C:\windows\system32\WsmSvc.dll
2014-12-10 09:14:21 ----A---- C:\windows\system32\WsmAuto.dll
2014-12-10 09:14:21 ----A---- C:\windows\system32\WSManMigrationPlugin.dll
2014-12-10 09:14:21 ----A---- C:\windows\system32\WSManHTTPConfig.exe
2014-12-10 09:14:20 ----A---- C:\windows\SYSWOW64\WsmAuto.dll
2014-12-10 09:14:20 ----A---- C:\windows\SYSWOW64\WindowsCodecs.dll
2014-12-10 09:14:20 ----A---- C:\windows\system32\WindowsCodecs.dll
2014-12-10 09:14:20 ----A---- C:\windows\system32\drivers\tdx.sys
2014-12-10 09:14:19 ----A---- C:\windows\SYSWOW64\charmap.exe
2014-12-10 09:14:19 ----A---- C:\windows\system32\charmap.exe
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\urlmon.dll
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\iernonce.dll
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2014-12-10 09:14:16 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2014-12-10 09:14:16 ----A---- C:\windows\system32\iernonce.dll
2014-12-10 09:14:16 ----A---- C:\windows\system32\ieetwproxystub.dll
2014-12-10 09:14:16 ----A---- C:\windows\system32\ieetwcollector.exe
2014-12-10 09:14:16 ----A---- C:\windows\system32\ie4uinit.exe
2014-12-10 09:14:15 ----A---- C:\windows\SYSWOW64\mshtml.dll
2014-12-10 09:14:14 ----A---- C:\windows\SYSWOW64\iesetup.dll
2014-12-10 09:14:14 ----A---- C:\windows\SYSWOW64\iertutil.dll
2014-12-10 09:14:14 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2014-12-10 09:14:14 ----A---- C:\windows\system32\urlmon.dll
2014-12-10 09:14:14 ----A---- C:\windows\system32\iedkcs32.dll
2014-12-10 09:14:13 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2014-12-10 09:14:13 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2014-12-10 09:14:13 ----A---- C:\windows\system32\ieetwcollectorres.dll
2014-12-10 09:14:12 ----A---- C:\windows\SYSWOW64\ieui.dll
2014-12-10 09:14:12 ----A---- C:\windows\SYSWOW64\ieframe.dll
2014-12-10 09:14:12 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2014-12-10 09:14:12 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2014-12-10 09:14:12 ----A---- C:\windows\system32\msfeeds.dll
2014-12-10 09:14:12 ----A---- C:\windows\system32\dxtrans.dll
2014-12-10 09:14:10 ----A---- C:\windows\system32\iesetup.dll
2014-12-10 09:14:10 ----A---- C:\windows\system32\ieapfltr.dll
2014-12-10 09:14:09 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2014-12-10 09:14:09 ----A---- C:\windows\SYSWOW64\jscript9.dll
2014-12-10 09:14:09 ----A---- C:\windows\system32\iertutil.dll
2014-12-10 09:14:08 ----A---- C:\windows\SYSWOW64\wininet.dll
2014-12-10 09:14:08 ----A---- C:\windows\SYSWOW64\vbscript.dll
2014-12-10 09:14:08 ----A---- C:\windows\SYSWOW64\msrating.dll
2014-12-10 09:14:08 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2014-12-10 09:14:08 ----A---- C:\windows\system32\jsproxy.dll
2014-12-10 09:14:07 ----A---- C:\windows\system32\ieui.dll
2014-12-10 09:14:07 ----A---- C:\windows\system32\ieframe.dll
2014-12-10 09:14:07 ----A---- C:\windows\system32\dxtmsft.dll
2014-12-10 09:14:06 ----A---- C:\windows\system32\mshtmlmedia.dll
2014-12-10 09:14:06 ----A---- C:\windows\system32\mshtmled.dll
2014-12-10 09:14:06 ----A---- C:\windows\system32\jscript9diag.dll
2014-12-10 09:14:06 ----A---- C:\windows\system32\jscript9.dll
2014-12-10 09:14:05 ----A---- C:\windows\system32\wininet.dll
2014-12-10 09:14:05 ----A---- C:\windows\system32\vbscript.dll
2014-12-10 09:14:04 ----A---- C:\windows\system32\msrating.dll
2014-12-10 09:14:04 ----A---- C:\windows\system32\MshtmlDac.dll
2014-12-10 09:14:03 ----A---- C:\windows\system32\mshtml.dll
2014-12-10 09:13:50 ----A---- C:\windows\SYSWOW64\tzres.dll
2014-12-10 09:13:50 ----A---- C:\windows\system32\tzres.dll
2014-12-05 22:42:11 ----D---- C:\windows\SYSWOW64\NV
2014-12-05 22:42:11 ----D---- C:\windows\system32\NV
2014-12-05 22:40:20 ----A---- C:\windows\SYSWOW64\d3dx11_43.dll
2014-12-05 22:40:20 ----A---- C:\windows\system32\d3dx11_43.dll
2014-12-05 22:40:19 ----A---- C:\windows\SYSWOW64\d3dx10_43.dll
2014-12-05 22:40:19 ----A---- C:\windows\system32\d3dx10_43.dll
2014-12-05 22:40:17 ----A---- C:\windows\SYSWOW64\D3DX9_43.dll
2014-12-05 22:40:17 ----A---- C:\windows\system32\D3DX9_43.dll
2014-12-05 22:38:41 ----A---- C:\windows\system32\nv3dappshextr.dll
2014-12-05 22:38:40 ----A---- C:\windows\system32\nvshext.dll
2014-12-05 22:38:40 ----A---- C:\windows\system32\nv3dappshext.dll
2014-12-05 22:38:39 ----A---- C:\windows\system32\nvvsvc.exe
2014-12-05 22:38:39 ----A---- C:\windows\system32\nvsvc64.dll
2014-12-05 22:38:38 ----A---- C:\windows\system32\nvsvcr.dll
2014-12-05 22:38:38 ----A---- C:\windows\system32\nvmctray.dll
2014-12-05 22:38:38 ----A---- C:\windows\system32\nvcpl.dll
2014-12-05 22:38:21 ----A---- C:\windows\SYSWOW64\OpenCL.dll
2014-12-05 22:38:21 ----A---- C:\windows\system32\OpenCL.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvwgf2um.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvumdshim.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvopencl.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvoglv32.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvoglshim32.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvinit.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\NvIFR.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\NvFBC.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvd3dum.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvcuvid.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvcuda.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvcompiler.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvaudcap32v.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvapi.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvwgf2umx.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvumdshimx.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvopencl.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvoglv64.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvoglshim64.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvinitx.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\NvIFR64.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\NvFBC64.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvdispgenco6434475.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvdispco6434475.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvd3dumx.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvcuvid.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvcuda.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvcompiler.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvapi64.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\drivers\nvvad64v.sys
2014-12-05 22:31:15 ----A---- C:\windows\system32\drivers\nvpciflt.sys
2014-12-05 22:31:15 ----A---- C:\windows\system32\drivers\nvlddmkm.sys
2014-12-05 00:30:24 ----D---- C:\ProgramData\IObit
2014-12-05 00:30:24 ----D---- C:\Program Files (x86)\IObit
2014-12-05 00:07:59 ----D---- C:\ProgramData\Orbit
2014-12-04 17:26:53 ----D---- C:\windows\SYSWOW64\IPM
2014-12-02 01:47:18 ----A---- C:\windows\system32\drivers\ggsomc.sys
2014-12-02 01:47:18 ----A---- C:\windows\system32\drivers\ggflt.sys
2014-12-02 01:46:21 ----D---- C:\ProgramData\Sony Mobile
2014-12-02 01:46:21 ----D---- C:\Program Files (x86)\Sony Mobile
2014-12-02 01:43:36 ----D---- C:\ProgramData\Sony
2014-12-02 01:43:36 ----D---- C:\Program Files (x86)\Sony
======List of files/folders modified in the last 1 months======
2014-12-21 01:16:09 ----D---- C:\windows\Prefetch
2014-12-21 01:16:07 ----D---- C:\windows\Temp
2014-12-21 01:16:04 ----D---- C:\Program Files\trend micro
2014-12-20 20:29:27 ----D---- C:\windows\system32\config
2014-12-20 19:03:04 ----D---- C:\The KMPlayer
2014-12-20 18:53:22 ----D---- C:\ProgramData\Origin
2014-12-20 18:53:12 ----A---- C:\windows\SYSWOW64\log.txt
2014-12-20 18:50:37 ----D---- C:\Program Files (x86)\Origin
2014-12-20 18:49:58 ----D---- C:\Windows
2014-12-20 00:35:47 ----D---- C:\Users\Tomi\AppData\Roaming\AIMP3
2014-12-20 00:24:16 ----RD---- C:\Program Files (x86)
2014-12-20 00:22:06 ----D---- C:\Program Files (x86)\Adobe
2014-12-20 00:20:56 ----SHD---- C:\windows\Installer
2014-12-20 00:20:55 ----HD---- C:\ProgramData
2014-12-20 00:20:45 ----SHD---- C:\System Volume Information
2014-12-20 00:13:21 ----D---- C:\Program Files\Common Files
2014-12-20 00:06:44 ----D---- C:\Users\Tomi\AppData\Roaming\Corel
2014-12-20 00:06:21 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-12-20 00:06:07 ----D---- C:\ProgramData\Corel
2014-12-20 00:02:53 ----RSD---- C:\windows\assembly
2014-12-20 00:02:43 ----D---- C:\windows\SysWOW64
2014-12-20 00:02:43 ----D---- C:\windows\System32
2014-12-20 00:02:03 ----D---- C:\Program Files\Corel
2014-12-19 23:57:35 ----D---- C:\ProgramData\Adobe
2014-12-19 23:51:33 ----D---- C:\Users\Tomi\AppData\Roaming\Adobe
2014-12-19 23:44:24 ----D---- C:\Program Files\Adobe
2014-12-19 21:51:28 ----D---- C:\windows\inf
2014-12-19 21:36:25 ----D---- C:\Users\Tomi\AppData\Roaming\uTorrent
2014-12-19 21:34:11 ----D---- C:\Program Files\CCleaner
2014-12-18 19:49:08 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-18 19:08:59 ----D---- C:\windows\winsxs
2014-12-18 14:08:12 ----D---- C:\Users\Tomi\AppData\Roaming\Mp3tag
2014-12-17 20:30:36 ----A---- C:\windows\system32\PerfStringBackup.INI
2014-12-17 16:16:49 ----D---- C:\Users\Tomi\AppData\Roaming\NVIDIA
2014-12-17 16:12:41 ----RD---- C:\Program Files
2014-12-14 20:25:43 ----D---- C:\windows\SYSWOW64\drivers
2014-12-14 19:56:49 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-12-13 20:14:22 ----D---- C:\Program Files\Microsoft Silverlight
2014-12-13 20:14:20 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-12-13 00:27:45 ----D---- C:\windows\system32\drivers
2014-12-13 00:27:24 ----SD---- C:\ProgramData\Microsoft
2014-12-13 00:27:14 ----D---- C:\Program Files (x86)\Microsoft Office
2014-12-12 23:58:08 ----D---- C:\Users\Tomi\AppData\Roaming\DAEMON Tools Lite
2014-12-12 23:57:43 ----D---- C:\windows\Logs
2014-12-12 23:57:43 ----D---- C:\windows\debug
2014-12-12 11:42:08 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2014-12-12 11:39:18 ----D---- C:\ProgramData\Package Cache
2014-12-12 11:39:07 ----D---- C:\Program Files (x86)\Avira
2014-12-11 19:50:10 ----D---- C:\windows\rescache
2014-12-11 18:08:11 ----D---- C:\Program Files (x86)\Common Files
2014-12-11 04:31:16 ----SD---- C:\windows\system32\CompatTel
2014-12-11 04:31:16 ----D---- C:\windows\AppCompat
2014-12-11 04:31:14 ----D---- C:\Program Files\Internet Explorer
2014-12-11 04:31:12 ----D---- C:\windows\SYSWOW64\cs-CZ
2014-12-11 04:31:12 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-11 04:31:11 ----D---- C:\windows\SYSWOW64\sk-SK
2014-12-11 04:31:11 ----D---- C:\windows\SYSWOW64\hu-HU
2014-12-11 04:31:11 ----D---- C:\windows\SYSWOW64\en-US
2014-12-11 04:31:09 ----D---- C:\windows\system32\sk-SK
2014-12-11 04:31:09 ----D---- C:\windows\system32\hu-HU
2014-12-11 04:31:09 ----D---- C:\windows\system32\en-US
2014-12-11 04:31:09 ----D---- C:\windows\system32\cs-CZ
2014-12-11 04:31:09 ----D---- C:\windows\PolicyDefinitions
2014-12-11 03:18:50 ----D---- C:\ProgramData\Microsoft Help
2014-12-11 03:16:54 ----D---- C:\windows\system32\MRT
2014-12-11 03:08:47 ----A---- C:\windows\system32\MRT.exe
2014-12-10 09:13:30 ----D---- C:\windows\system32\catroot2
2014-12-08 07:03:13 ----D---- C:\Users\Tomi\AppData\Roaming\Skype
2014-12-05 22:42:07 ----D---- C:\ProgramData\NVIDIA
2014-12-05 22:40:30 ----D---- C:\windows\system32\DriverStore
2014-12-05 22:38:38 ----D---- C:\windows\Help
2014-12-05 22:38:38 ----D---- C:\Program Files\NVIDIA Corporation
2014-12-05 22:38:16 ----D---- C:\ProgramData\NVIDIA Corporation
2014-12-05 22:38:08 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-12-05 00:30:38 ----D---- C:\windows\system32\Tasks
2014-11-28 13:52:08 ----D---- C:\Users\Tomi\AppData\Roaming\Apple Computer
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-02-18 439320]
R0 nvpciflt;nvpciflt; C:\windows\system32\DRIVERS\nvpciflt.sys [2014-11-13 31560]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 avipbb;avipbb; C:\windows\system32\DRIVERS\avipbb.sys [2014-10-14 131608]
R1 avkmgr;avkmgr; C:\windows\system32\DRIVERS\avkmgr.sys [2014-06-24 28600]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\windows\system32\DRIVERS\dtsoftbus01.sys [2014-07-07 283200]
R1 SABI;SAMSUNG Kernel Driver For Windows 7; \??\C:\windows\system32\Drivers\SABI.sys [2011-07-29 13824]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2011-01-25 60416]
R2 avgntflt;avgntflt; C:\windows\system32\DRIVERS\avgntflt.sys [2014-10-14 119272]
R2 SGDrv;SGDrv; C:\windows\system32\DRIVERS\SGdrv64.sys [2011-04-11 7680]
R3 BthEnum;Bluetooth Request Block Driver; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 btmaux;Intel Bluetooth Auxiliary Service; C:\windows\system32\DRIVERS\btmaux.sys [2011-03-08 51712]
R3 btmhsf;btmhsf; C:\windows\system32\DRIVERS\btmhsf.sys [2011-03-08 274944]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\windows\system32\DRIVERS\clwvd.sys [2011-08-17 31216]
R3 ETD;ELAN PS/2 Port Input Device; C:\windows\system32\DRIVERS\ETD.sys [2011-06-17 186152]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 iBtFltCoex;iBtFltCoex; C:\windows\system32\DRIVERS\iBtFltCoex.sys [2011-03-22 59904]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2010-12-16 12256512]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHD64.sys [2011-07-12 2917096]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\windows\system32\DRIVERS\NETwNs64.sys [2011-05-01 8593920]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-11-17 20800]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\windows\system32\drivers\nvvad64v.sys [2014-10-03 38216]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2011-04-22 471144]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2011-01-25 18432]
S3 BTHPORT;Bluetooth Port Driver; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 ggflt;SOMC USB Flash Driver Filter; C:\windows\system32\DRIVERS\ggflt.sys [2014-12-02 16088]
S3 ggsomc;SOMC USB Flash Driver; C:\windows\system32\DRIVERS\ggsomc.sys [2014-12-02 30424]
S3 PcaSp60;Rawether NDIS 6.X SPR Protocol Driver; C:\windows\system32\DRIVERS\PcaSp60.sys [2010-09-07 38912]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 USBAAPL64;Apple Mobile USB Driver; C:\windows\System32\Drivers\usbaapl64.sys [2014-06-10 54784]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [2010-11-01 14544]
S3 WinUsb;WinUsb; C:\windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2014-12-16 431920]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2014-12-16 431920]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-06-12 43336]
R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [2014-11-20 166192]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2011-03-30 923984]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2011-03-30 1001808]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 FoxitCloudUpdateService;Foxit Cloud Safe Update Service; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [2014-06-17 242216]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2014-11-17 1149760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-05-05 326424]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-11-17 1796928]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-11-17 19821376]
R2 nvsvc;NVIDIA Display Driver Service; C:\windows\system32\nvvsvc.exe [2014-11-12 934032]
R2 PnkBstrA;PnkBstrA; C:\windows\syswow64\PnkBstrA.exe [2014-08-04 75136]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2009-12-01 244904]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-05-05 2656536]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
R3 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2011-03-30 1321296]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-08-01 641352]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-08-27 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-12 267440]
S3 GameConsoleService;GameConsoleService; C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe [2010-06-03 246520]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-08-27 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2014-11-22 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-12-17 114800]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-11-18 833728]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2014-07-06 1255736]
S4 aspnet_state;ASP.NET State Service; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
-----------------EOF-----------------
Prosím o kontrolu logu. Mám pocit, že je ntb mierne spomalený a sem tam mi pri bežných stránkach robí taký bug, že tam zostane ako keby časť nejakého okna.
Logfile of random's system information tool 1.08 (written by random/random)
Run by Tomi at 2014-12-21 01:16:00
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 89 GB (32%) free of 278 GB
Total RAM: 4010 MB (78% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 1:16:09, on 21. 12. 2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17496)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe
C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe
C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe
C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe
C:\Program Files (x86)\Samsung\Easy Support Center\SSCKbdHk.exe
C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
C:\Program Files\trend micro\Tomi.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://samsung.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKCU\..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: Bluetooth Device Monitor - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Foxit Cloud Safe Update Service (FoxitCloudUpdateService) - Foxit Corporation - C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11473 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
winlogon.exe
C:\windows\system32\svchost.exe -k DcomLaunch
"C:\windows\system32\nvvsvc.exe"
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\windows\system32\nvvsvc.exe -session -first
C:\windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
"C:\windows\system32\Dwm.exe"
"taskhost.exe"
C:\windows\Explorer.EXE
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {DCE49C71-6964-4BC7-A83E-EFCEBDE79541}
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\windows\system32\svchost.exe -k bthsvcs
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 86729009-3bcc-4765-a43a-791c9ed5d5a6 1
\??\C:\windows\system32\conhost.exe "-1021919566-2088608970-22023142119376932691256300718-843922837172947238-665894129
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\windows\system32\conhost.exe "-235931950-1198336085-1188351733-154049993016537119851303370625959625863-939164673
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe"
taskeng.exe {DE2D76F0-1849-4A2D-92DC-60D7CF7F6512}
"C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe"
"C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe"
"C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe"
C:\windows\system32\igfxext.exe -Embedding
C:\windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000500
C:\windows\system32\hkcmd.exe
C:\windows\system32\igfxtray.exe
C:\windows\system32\igfxpers.exe
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe" -Embedding
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\windows\System32\svchost.exe -k LocalServicePeerNet
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 824
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Samsung\Easy Support Center\SSCKbdHk.exe"
"C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
C:\windows\system32\wbem\wmiprvse.exe
"C:\Users\Tomi\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-12-11 460712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-12-11 172968]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-07-12 12558440]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2011-03-30 10372368]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2011-06-17 2721576]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-11-17 2465088]
"ShadowPlay"=C:\windows\system32\nvspcap64.dll [2014-11-17 2800296]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"EADM"=C:\Program Files (x86)\Origin\Origin.exe [2014-12-18 3618648]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-12-12 7394584]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2014-12-16 702768]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-08-01 152392]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-10-07 507776]
"Avira Systray"=C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [2014-11-20 126200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2010-12-16 384000]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2014-12-20 00:24:16 ----D---- C:\Program Files (x86)\Steam
2014-12-20 00:06:25 ----SHD---- C:\Config.Msi
2014-12-18 10:27:00 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2014-12-18 10:27:00 ----A---- C:\windows\system32\ieUnatt.exe
2014-12-17 19:19:46 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-12-17 16:16:37 ----D---- C:\Users\Tomi\AppData\Roaming\Publish Providers
2014-12-17 16:12:41 ----D---- C:\Program Files\Sony
2014-12-17 16:10:41 ----D---- C:\Users\Tomi\AppData\Roaming\Sony
2014-12-15 00:28:06 ----D---- C:\Users\Tomi\AppData\Roaming\VideoScribeDesktop
2014-12-14 19:57:01 ----A---- C:\windows\SYSWOW64\ASIW32N50.dll
2014-12-14 19:57:00 ----A---- C:\windows\SYSWOW64\ASINDIS5.sys
2014-12-11 18:08:36 ----D---- C:\Users\Tomi\AppData\Roaming\VitySoft
2014-12-11 18:08:12 ----D---- C:\ProgramData\Sun
2014-12-11 18:08:06 ----A---- C:\windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-12-11 18:07:27 ----D---- C:\ProgramData\Oracle
2014-12-11 18:07:17 ----D---- C:\Program Files (x86)\Java
2014-12-11 04:31:15 ----D---- C:\windows\system32\appraiser
2014-12-11 03:07:08 ----A---- C:\windows\SYSWOW64\mf.dll
2014-12-11 03:07:08 ----A---- C:\windows\system32\mf.dll
2014-12-10 23:37:14 ----D---- C:\Users\Tomi\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
2014-12-10 09:14:32 ----A---- C:\windows\system32\appraiser.dll
2014-12-10 09:14:32 ----A---- C:\windows\system32\aitstatic.exe
2014-12-10 09:14:32 ----A---- C:\windows\system32\aepic.dll
2014-12-10 09:14:31 ----A---- C:\windows\system32\invagent.dll
2014-12-10 09:14:31 ----A---- C:\windows\system32\generaltel.dll
2014-12-10 09:14:31 ----A---- C:\windows\system32\devinv.dll
2014-12-10 09:14:31 ----A---- C:\windows\system32\aeinv.dll
2014-12-10 09:14:30 ----A---- C:\windows\system32\aepdu.dll
2014-12-10 09:14:21 ----A---- C:\windows\SYSWOW64\WsmWmiPl.dll
2014-12-10 09:14:21 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2014-12-10 09:14:21 ----A---- C:\windows\SYSWOW64\WSManMigrationPlugin.dll
2014-12-10 09:14:21 ----A---- C:\windows\SYSWOW64\WSManHTTPConfig.exe
2014-12-10 09:14:21 ----A---- C:\windows\system32\WsmWmiPl.dll
2014-12-10 09:14:21 ----A---- C:\windows\system32\WsmSvc.dll
2014-12-10 09:14:21 ----A---- C:\windows\system32\WsmAuto.dll
2014-12-10 09:14:21 ----A---- C:\windows\system32\WSManMigrationPlugin.dll
2014-12-10 09:14:21 ----A---- C:\windows\system32\WSManHTTPConfig.exe
2014-12-10 09:14:20 ----A---- C:\windows\SYSWOW64\WsmAuto.dll
2014-12-10 09:14:20 ----A---- C:\windows\SYSWOW64\WindowsCodecs.dll
2014-12-10 09:14:20 ----A---- C:\windows\system32\WindowsCodecs.dll
2014-12-10 09:14:20 ----A---- C:\windows\system32\drivers\tdx.sys
2014-12-10 09:14:19 ----A---- C:\windows\SYSWOW64\charmap.exe
2014-12-10 09:14:19 ----A---- C:\windows\system32\charmap.exe
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\urlmon.dll
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\iernonce.dll
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2014-12-10 09:14:16 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2014-12-10 09:14:16 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2014-12-10 09:14:16 ----A---- C:\windows\system32\iernonce.dll
2014-12-10 09:14:16 ----A---- C:\windows\system32\ieetwproxystub.dll
2014-12-10 09:14:16 ----A---- C:\windows\system32\ieetwcollector.exe
2014-12-10 09:14:16 ----A---- C:\windows\system32\ie4uinit.exe
2014-12-10 09:14:15 ----A---- C:\windows\SYSWOW64\mshtml.dll
2014-12-10 09:14:14 ----A---- C:\windows\SYSWOW64\iesetup.dll
2014-12-10 09:14:14 ----A---- C:\windows\SYSWOW64\iertutil.dll
2014-12-10 09:14:14 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2014-12-10 09:14:14 ----A---- C:\windows\system32\urlmon.dll
2014-12-10 09:14:14 ----A---- C:\windows\system32\iedkcs32.dll
2014-12-10 09:14:13 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2014-12-10 09:14:13 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2014-12-10 09:14:13 ----A---- C:\windows\system32\ieetwcollectorres.dll
2014-12-10 09:14:12 ----A---- C:\windows\SYSWOW64\ieui.dll
2014-12-10 09:14:12 ----A---- C:\windows\SYSWOW64\ieframe.dll
2014-12-10 09:14:12 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2014-12-10 09:14:12 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2014-12-10 09:14:12 ----A---- C:\windows\system32\msfeeds.dll
2014-12-10 09:14:12 ----A---- C:\windows\system32\dxtrans.dll
2014-12-10 09:14:10 ----A---- C:\windows\system32\iesetup.dll
2014-12-10 09:14:10 ----A---- C:\windows\system32\ieapfltr.dll
2014-12-10 09:14:09 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2014-12-10 09:14:09 ----A---- C:\windows\SYSWOW64\jscript9.dll
2014-12-10 09:14:09 ----A---- C:\windows\system32\iertutil.dll
2014-12-10 09:14:08 ----A---- C:\windows\SYSWOW64\wininet.dll
2014-12-10 09:14:08 ----A---- C:\windows\SYSWOW64\vbscript.dll
2014-12-10 09:14:08 ----A---- C:\windows\SYSWOW64\msrating.dll
2014-12-10 09:14:08 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2014-12-10 09:14:08 ----A---- C:\windows\system32\jsproxy.dll
2014-12-10 09:14:07 ----A---- C:\windows\system32\ieui.dll
2014-12-10 09:14:07 ----A---- C:\windows\system32\ieframe.dll
2014-12-10 09:14:07 ----A---- C:\windows\system32\dxtmsft.dll
2014-12-10 09:14:06 ----A---- C:\windows\system32\mshtmlmedia.dll
2014-12-10 09:14:06 ----A---- C:\windows\system32\mshtmled.dll
2014-12-10 09:14:06 ----A---- C:\windows\system32\jscript9diag.dll
2014-12-10 09:14:06 ----A---- C:\windows\system32\jscript9.dll
2014-12-10 09:14:05 ----A---- C:\windows\system32\wininet.dll
2014-12-10 09:14:05 ----A---- C:\windows\system32\vbscript.dll
2014-12-10 09:14:04 ----A---- C:\windows\system32\msrating.dll
2014-12-10 09:14:04 ----A---- C:\windows\system32\MshtmlDac.dll
2014-12-10 09:14:03 ----A---- C:\windows\system32\mshtml.dll
2014-12-10 09:13:50 ----A---- C:\windows\SYSWOW64\tzres.dll
2014-12-10 09:13:50 ----A---- C:\windows\system32\tzres.dll
2014-12-05 22:42:11 ----D---- C:\windows\SYSWOW64\NV
2014-12-05 22:42:11 ----D---- C:\windows\system32\NV
2014-12-05 22:40:20 ----A---- C:\windows\SYSWOW64\d3dx11_43.dll
2014-12-05 22:40:20 ----A---- C:\windows\system32\d3dx11_43.dll
2014-12-05 22:40:19 ----A---- C:\windows\SYSWOW64\d3dx10_43.dll
2014-12-05 22:40:19 ----A---- C:\windows\system32\d3dx10_43.dll
2014-12-05 22:40:17 ----A---- C:\windows\SYSWOW64\D3DX9_43.dll
2014-12-05 22:40:17 ----A---- C:\windows\system32\D3DX9_43.dll
2014-12-05 22:38:41 ----A---- C:\windows\system32\nv3dappshextr.dll
2014-12-05 22:38:40 ----A---- C:\windows\system32\nvshext.dll
2014-12-05 22:38:40 ----A---- C:\windows\system32\nv3dappshext.dll
2014-12-05 22:38:39 ----A---- C:\windows\system32\nvvsvc.exe
2014-12-05 22:38:39 ----A---- C:\windows\system32\nvsvc64.dll
2014-12-05 22:38:38 ----A---- C:\windows\system32\nvsvcr.dll
2014-12-05 22:38:38 ----A---- C:\windows\system32\nvmctray.dll
2014-12-05 22:38:38 ----A---- C:\windows\system32\nvcpl.dll
2014-12-05 22:38:21 ----A---- C:\windows\SYSWOW64\OpenCL.dll
2014-12-05 22:38:21 ----A---- C:\windows\system32\OpenCL.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvwgf2um.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvumdshim.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvopencl.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvoglv32.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvoglshim32.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvinit.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\NvIFR.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\NvFBC.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvd3dum.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvcuvid.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvcuda.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvcompiler.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvaudcap32v.dll
2014-12-05 22:31:15 ----A---- C:\windows\SYSWOW64\nvapi.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvwgf2umx.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvumdshimx.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvopencl.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvoglv64.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvoglshim64.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvinitx.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\NvIFR64.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\NvFBC64.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvdispgenco6434475.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvdispco6434475.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvd3dumx.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvcuvid.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvcuda.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvcompiler.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\nvapi64.dll
2014-12-05 22:31:15 ----A---- C:\windows\system32\drivers\nvvad64v.sys
2014-12-05 22:31:15 ----A---- C:\windows\system32\drivers\nvpciflt.sys
2014-12-05 22:31:15 ----A---- C:\windows\system32\drivers\nvlddmkm.sys
2014-12-05 00:30:24 ----D---- C:\ProgramData\IObit
2014-12-05 00:30:24 ----D---- C:\Program Files (x86)\IObit
2014-12-05 00:07:59 ----D---- C:\ProgramData\Orbit
2014-12-04 17:26:53 ----D---- C:\windows\SYSWOW64\IPM
2014-12-02 01:47:18 ----A---- C:\windows\system32\drivers\ggsomc.sys
2014-12-02 01:47:18 ----A---- C:\windows\system32\drivers\ggflt.sys
2014-12-02 01:46:21 ----D---- C:\ProgramData\Sony Mobile
2014-12-02 01:46:21 ----D---- C:\Program Files (x86)\Sony Mobile
2014-12-02 01:43:36 ----D---- C:\ProgramData\Sony
2014-12-02 01:43:36 ----D---- C:\Program Files (x86)\Sony
======List of files/folders modified in the last 1 months======
2014-12-21 01:16:09 ----D---- C:\windows\Prefetch
2014-12-21 01:16:07 ----D---- C:\windows\Temp
2014-12-21 01:16:04 ----D---- C:\Program Files\trend micro
2014-12-20 20:29:27 ----D---- C:\windows\system32\config
2014-12-20 19:03:04 ----D---- C:\The KMPlayer
2014-12-20 18:53:22 ----D---- C:\ProgramData\Origin
2014-12-20 18:53:12 ----A---- C:\windows\SYSWOW64\log.txt
2014-12-20 18:50:37 ----D---- C:\Program Files (x86)\Origin
2014-12-20 18:49:58 ----D---- C:\Windows
2014-12-20 00:35:47 ----D---- C:\Users\Tomi\AppData\Roaming\AIMP3
2014-12-20 00:24:16 ----RD---- C:\Program Files (x86)
2014-12-20 00:22:06 ----D---- C:\Program Files (x86)\Adobe
2014-12-20 00:20:56 ----SHD---- C:\windows\Installer
2014-12-20 00:20:55 ----HD---- C:\ProgramData
2014-12-20 00:20:45 ----SHD---- C:\System Volume Information
2014-12-20 00:13:21 ----D---- C:\Program Files\Common Files
2014-12-20 00:06:44 ----D---- C:\Users\Tomi\AppData\Roaming\Corel
2014-12-20 00:06:21 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-12-20 00:06:07 ----D---- C:\ProgramData\Corel
2014-12-20 00:02:53 ----RSD---- C:\windows\assembly
2014-12-20 00:02:43 ----D---- C:\windows\SysWOW64
2014-12-20 00:02:43 ----D---- C:\windows\System32
2014-12-20 00:02:03 ----D---- C:\Program Files\Corel
2014-12-19 23:57:35 ----D---- C:\ProgramData\Adobe
2014-12-19 23:51:33 ----D---- C:\Users\Tomi\AppData\Roaming\Adobe
2014-12-19 23:44:24 ----D---- C:\Program Files\Adobe
2014-12-19 21:51:28 ----D---- C:\windows\inf
2014-12-19 21:36:25 ----D---- C:\Users\Tomi\AppData\Roaming\uTorrent
2014-12-19 21:34:11 ----D---- C:\Program Files\CCleaner
2014-12-18 19:49:08 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-18 19:08:59 ----D---- C:\windows\winsxs
2014-12-18 14:08:12 ----D---- C:\Users\Tomi\AppData\Roaming\Mp3tag
2014-12-17 20:30:36 ----A---- C:\windows\system32\PerfStringBackup.INI
2014-12-17 16:16:49 ----D---- C:\Users\Tomi\AppData\Roaming\NVIDIA
2014-12-17 16:12:41 ----RD---- C:\Program Files
2014-12-14 20:25:43 ----D---- C:\windows\SYSWOW64\drivers
2014-12-14 19:56:49 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-12-13 20:14:22 ----D---- C:\Program Files\Microsoft Silverlight
2014-12-13 20:14:20 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-12-13 00:27:45 ----D---- C:\windows\system32\drivers
2014-12-13 00:27:24 ----SD---- C:\ProgramData\Microsoft
2014-12-13 00:27:14 ----D---- C:\Program Files (x86)\Microsoft Office
2014-12-12 23:58:08 ----D---- C:\Users\Tomi\AppData\Roaming\DAEMON Tools Lite
2014-12-12 23:57:43 ----D---- C:\windows\Logs
2014-12-12 23:57:43 ----D---- C:\windows\debug
2014-12-12 11:42:08 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2014-12-12 11:39:18 ----D---- C:\ProgramData\Package Cache
2014-12-12 11:39:07 ----D---- C:\Program Files (x86)\Avira
2014-12-11 19:50:10 ----D---- C:\windows\rescache
2014-12-11 18:08:11 ----D---- C:\Program Files (x86)\Common Files
2014-12-11 04:31:16 ----SD---- C:\windows\system32\CompatTel
2014-12-11 04:31:16 ----D---- C:\windows\AppCompat
2014-12-11 04:31:14 ----D---- C:\Program Files\Internet Explorer
2014-12-11 04:31:12 ----D---- C:\windows\SYSWOW64\cs-CZ
2014-12-11 04:31:12 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-11 04:31:11 ----D---- C:\windows\SYSWOW64\sk-SK
2014-12-11 04:31:11 ----D---- C:\windows\SYSWOW64\hu-HU
2014-12-11 04:31:11 ----D---- C:\windows\SYSWOW64\en-US
2014-12-11 04:31:09 ----D---- C:\windows\system32\sk-SK
2014-12-11 04:31:09 ----D---- C:\windows\system32\hu-HU
2014-12-11 04:31:09 ----D---- C:\windows\system32\en-US
2014-12-11 04:31:09 ----D---- C:\windows\system32\cs-CZ
2014-12-11 04:31:09 ----D---- C:\windows\PolicyDefinitions
2014-12-11 03:18:50 ----D---- C:\ProgramData\Microsoft Help
2014-12-11 03:16:54 ----D---- C:\windows\system32\MRT
2014-12-11 03:08:47 ----A---- C:\windows\system32\MRT.exe
2014-12-10 09:13:30 ----D---- C:\windows\system32\catroot2
2014-12-08 07:03:13 ----D---- C:\Users\Tomi\AppData\Roaming\Skype
2014-12-05 22:42:07 ----D---- C:\ProgramData\NVIDIA
2014-12-05 22:40:30 ----D---- C:\windows\system32\DriverStore
2014-12-05 22:38:38 ----D---- C:\windows\Help
2014-12-05 22:38:38 ----D---- C:\Program Files\NVIDIA Corporation
2014-12-05 22:38:16 ----D---- C:\ProgramData\NVIDIA Corporation
2014-12-05 22:38:08 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-12-05 00:30:38 ----D---- C:\windows\system32\Tasks
2014-11-28 13:52:08 ----D---- C:\Users\Tomi\AppData\Roaming\Apple Computer
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-02-18 439320]
R0 nvpciflt;nvpciflt; C:\windows\system32\DRIVERS\nvpciflt.sys [2014-11-13 31560]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 avipbb;avipbb; C:\windows\system32\DRIVERS\avipbb.sys [2014-10-14 131608]
R1 avkmgr;avkmgr; C:\windows\system32\DRIVERS\avkmgr.sys [2014-06-24 28600]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\windows\system32\DRIVERS\dtsoftbus01.sys [2014-07-07 283200]
R1 SABI;SAMSUNG Kernel Driver For Windows 7; \??\C:\windows\system32\Drivers\SABI.sys [2011-07-29 13824]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2011-01-25 60416]
R2 avgntflt;avgntflt; C:\windows\system32\DRIVERS\avgntflt.sys [2014-10-14 119272]
R2 SGDrv;SGDrv; C:\windows\system32\DRIVERS\SGdrv64.sys [2011-04-11 7680]
R3 BthEnum;Bluetooth Request Block Driver; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 btmaux;Intel Bluetooth Auxiliary Service; C:\windows\system32\DRIVERS\btmaux.sys [2011-03-08 51712]
R3 btmhsf;btmhsf; C:\windows\system32\DRIVERS\btmhsf.sys [2011-03-08 274944]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\windows\system32\DRIVERS\clwvd.sys [2011-08-17 31216]
R3 ETD;ELAN PS/2 Port Input Device; C:\windows\system32\DRIVERS\ETD.sys [2011-06-17 186152]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 iBtFltCoex;iBtFltCoex; C:\windows\system32\DRIVERS\iBtFltCoex.sys [2011-03-22 59904]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2010-12-16 12256512]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHD64.sys [2011-07-12 2917096]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\windows\system32\DRIVERS\NETwNs64.sys [2011-05-01 8593920]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-11-17 20800]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\windows\system32\drivers\nvvad64v.sys [2014-10-03 38216]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2011-04-22 471144]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2011-01-25 18432]
S3 BTHPORT;Bluetooth Port Driver; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 ggflt;SOMC USB Flash Driver Filter; C:\windows\system32\DRIVERS\ggflt.sys [2014-12-02 16088]
S3 ggsomc;SOMC USB Flash Driver; C:\windows\system32\DRIVERS\ggsomc.sys [2014-12-02 30424]
S3 PcaSp60;Rawether NDIS 6.X SPR Protocol Driver; C:\windows\system32\DRIVERS\PcaSp60.sys [2010-09-07 38912]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 USBAAPL64;Apple Mobile USB Driver; C:\windows\System32\Drivers\usbaapl64.sys [2014-06-10 54784]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [2010-11-01 14544]
S3 WinUsb;WinUsb; C:\windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2014-12-16 431920]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2014-12-16 431920]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-06-12 43336]
R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [2014-11-20 166192]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2011-03-30 923984]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2011-03-30 1001808]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 FoxitCloudUpdateService;Foxit Cloud Safe Update Service; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [2014-06-17 242216]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2014-11-17 1149760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-05-05 326424]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-11-17 1796928]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-11-17 19821376]
R2 nvsvc;NVIDIA Display Driver Service; C:\windows\system32\nvvsvc.exe [2014-11-12 934032]
R2 PnkBstrA;PnkBstrA; C:\windows\syswow64\PnkBstrA.exe [2014-08-04 75136]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2009-12-01 244904]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-05-05 2656536]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
R3 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2011-03-30 1321296]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-08-01 641352]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-08-27 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-12 267440]
S3 GameConsoleService;GameConsoleService; C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe [2010-06-03 246520]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-08-27 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2014-11-22 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-12-17 114800]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-11-18 833728]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2014-07-06 1255736]
S4 aspnet_state;ASP.NET State Service; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
-----------------EOF-----------------
Re: Prosím o kontrolu
Zdravim 
Dokoncite to tentokrat?
Stahnete AdwCleaner https://toolslib.net/downloads/finish/1/ a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Clean
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.
Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu http://forum.viry.cz/viewtopic.php?f=29&t=137928 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce

Dokoncite to tentokrat?


Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Clean
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu
# AdwCleaner v4.105 - Report created 21/12/2014 at 13:04:00
# Updated 08/12/2014 by Xplode
# Database : 2014-12-21.1 [Live]
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Tomi - TOMI-PC
# Running from : C:\Users\Tomi\Desktop\adwcleaner_4.105.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
[#] Folder Deleted : C:\Program Files (x86)\common files\system
Folder Deleted : C:\Program Files\common files\system
Folder Deleted : C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaadgepjkdffhjbkfjgnnffnfcffbg
File Deleted : C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage
File Deleted : C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage-journal
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaadgepjkdffhjbkfjgnnffnfcffbg
Key Deleted : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaadgepjkdffhjbkfjgnnffnfcffbg
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}]
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17496
-\\ Mozilla Firefox v34.0.5 (x86 sk)
-\\ Google Chrome v39.0.2171.95
[C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.aartemis.com/web/?type=dspp&ts=1398 ... earchTerms}
[C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=AVR-3&o=APN10401&locale=en_SK&apn_uid=2b2a0d97-51c4-4f10-b13b-0a95633cb59c&apn_ptnrs=%5EABZ&apn_sauid=6F256DAC-5A60-43DC-8BBD-AF888BD722F0&apn_dtid=%5EYYYYYY%5EYY%5ESK&q={searchTerms}
[C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=AVR-3&o=APN10401&locale=en_SK&apn_uid=2b2a0d97-51c4-4f10-b13b-0a95633cb59c&apn_ptnrs=%5EABZ&apn_sauid=6F256DAC-5A60-43DC-8BBD-AF888BD722F0&apn_dtid=%5EYYYYYY%5EYY%5ESK&q={searchTerms}
[C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.zonealarm.com/search?src=sp&tbid=HFA5&Lan=EN&q={searchTerms}&gu=4933cb967155421483f671c24f556b1d&tu=10G9y00E22D13P0&sku=&tstsId=&ver=&
[C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.search.ask.com/web?tpid=KMPV7-SP&o= ... earchTerms}
[C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
*************************
AdwCleaner[R0].txt - [1283 octets] - [23/10/2014 16:23:28]
AdwCleaner[R1].txt - [3616 octets] - [21/12/2014 13:01:41]
AdwCleaner[S0].txt - [1304 octets] - [23/10/2014 16:25:11]
AdwCleaner[S1].txt - [3561 octets] - [21/12/2014 13:04:00]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [3621 octets] ##########
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 21. 12. 2014
Čas skenování: 16:54:08
Protokol: mam.txt
Správce: Ano
Verze: 2.00.4.1028
Databáze malwaru: v2014.12.21.02
Databáze rootkitů: v2014.12.14.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Sebeobrany: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: Tomi
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 573133
Uplynulý čas: 2 hod, 57 min, 49 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Žádné zákerné zjištěny položek)
Moduly: 0
(Žádné zákerné zjištěny položek)
Klíče registru: 0
(Žádné zákerné zjištěny položek)
Hodnoty registru: 0
(Žádné zákerné zjištěny položek)
Data registru: 0
(Žádné zákerné zjištěny položek)
Složky: 0
(Žádné zákerné zjištěny položek)
Soubory: 7
PUP.Optional.Somoto.A, C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000000, , [166089dc97e5c86e19c66e585ba6bd43],
PUP.Optional.Somoto, C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000001, , [0a6c3e277408de58f65c2b393ec7cd33],
PUP.Optional.Somoto, C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000002, , [4135b5b0ceae092d5b2274f1aa5bc937],
PUP.Optional.Somoto, C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000003, , [db9b6afb5824ea4c0479f76ef114847c],
PUP.Optional.Somoto, C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\File System\003\t\00\00000001, , [81f5a7bed0acee484736570e36cfc53b],
PUP.Optional.AZLyrics.A, C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.azlyrics.com_0.localstorage, , [3a3c76ef47352511e8398acffb0809f7],
PUP.Optional.AZLyrics.A, C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.azlyrics.com_0.localstorage-journal, , [bcbaa8bd423a86b0c75ae77236cd817f],
Fyzické sektory: 0
(Žádné zákerné zjištěny položek)
(end)
# Updated 08/12/2014 by Xplode
# Database : 2014-12-21.1 [Live]
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Tomi - TOMI-PC
# Running from : C:\Users\Tomi\Desktop\adwcleaner_4.105.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
[#] Folder Deleted : C:\Program Files (x86)\common files\system
Folder Deleted : C:\Program Files\common files\system
Folder Deleted : C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaadgepjkdffhjbkfjgnnffnfcffbg
File Deleted : C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage
File Deleted : C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage-journal
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaadgepjkdffhjbkfjgnnffnfcffbg
Key Deleted : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaadgepjkdffhjbkfjgnnffnfcffbg
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}]
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17496
-\\ Mozilla Firefox v34.0.5 (x86 sk)
-\\ Google Chrome v39.0.2171.95
[C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.aartemis.com/web/?type=dspp&ts=1398 ... earchTerms}
[C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=AVR-3&o=APN10401&locale=en_SK&apn_uid=2b2a0d97-51c4-4f10-b13b-0a95633cb59c&apn_ptnrs=%5EABZ&apn_sauid=6F256DAC-5A60-43DC-8BBD-AF888BD722F0&apn_dtid=%5EYYYYYY%5EYY%5ESK&q={searchTerms}
[C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=AVR-3&o=APN10401&locale=en_SK&apn_uid=2b2a0d97-51c4-4f10-b13b-0a95633cb59c&apn_ptnrs=%5EABZ&apn_sauid=6F256DAC-5A60-43DC-8BBD-AF888BD722F0&apn_dtid=%5EYYYYYY%5EYY%5ESK&q={searchTerms}
[C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.zonealarm.com/search?src=sp&tbid=HFA5&Lan=EN&q={searchTerms}&gu=4933cb967155421483f671c24f556b1d&tu=10G9y00E22D13P0&sku=&tstsId=&ver=&
[C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.search.ask.com/web?tpid=KMPV7-SP&o= ... earchTerms}
[C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
*************************
AdwCleaner[R0].txt - [1283 octets] - [23/10/2014 16:23:28]
AdwCleaner[R1].txt - [3616 octets] - [21/12/2014 13:01:41]
AdwCleaner[S0].txt - [1304 octets] - [23/10/2014 16:25:11]
AdwCleaner[S1].txt - [3561 octets] - [21/12/2014 13:04:00]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [3621 octets] ##########
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 21. 12. 2014
Čas skenování: 16:54:08
Protokol: mam.txt
Správce: Ano
Verze: 2.00.4.1028
Databáze malwaru: v2014.12.21.02
Databáze rootkitů: v2014.12.14.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Sebeobrany: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: Tomi
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 573133
Uplynulý čas: 2 hod, 57 min, 49 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Žádné zákerné zjištěny položek)
Moduly: 0
(Žádné zákerné zjištěny položek)
Klíče registru: 0
(Žádné zákerné zjištěny položek)
Hodnoty registru: 0
(Žádné zákerné zjištěny položek)
Data registru: 0
(Žádné zákerné zjištěny položek)
Složky: 0
(Žádné zákerné zjištěny položek)
Soubory: 7
PUP.Optional.Somoto.A, C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000000, , [166089dc97e5c86e19c66e585ba6bd43],
PUP.Optional.Somoto, C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000001, , [0a6c3e277408de58f65c2b393ec7cd33],
PUP.Optional.Somoto, C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000002, , [4135b5b0ceae092d5b2274f1aa5bc937],
PUP.Optional.Somoto, C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000003, , [db9b6afb5824ea4c0479f76ef114847c],
PUP.Optional.Somoto, C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\File System\003\t\00\00000001, , [81f5a7bed0acee484736570e36cfc53b],
PUP.Optional.AZLyrics.A, C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.azlyrics.com_0.localstorage, , [3a3c76ef47352511e8398acffb0809f7],
PUP.Optional.AZLyrics.A, C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.azlyrics.com_0.localstorage-journal, , [bcbaa8bd423a86b0c75ae77236cd817f],
Fyzické sektory: 0
(Žádné zákerné zjištěny položek)
(end)
Re: Prosím o kontrolu
Nalezy MBAM hodte do karanteny. Po restartu pc test zopakujte, at vime, jestli se to nevraci. Napiste vysledek testu a podle nej zvolim dalsi postup.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu
"Prohledávaní bylo úspěšně dokončeno. Nebyly detekovány žádné hrozby!"
Re: Prosím o kontrolu
MBAM muzete odinstalovat.
Dejte log podle tohoto navodu http://forum.viry.cz/viewtopic.php?f=30&t=133101
Dejte log podle tohoto navodu http://forum.viry.cz/viewtopic.php?f=30&t=133101
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-12-2014 01
Ran by Tomi (administrator) on TOMI-PC on 22-12-2014 19:11:07
Running from C:\Users\Tomi\Desktop
Loaded Profiles: Tomi & (Available profiles: Tomi)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Foxit Corporation) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Samsung Electronics) C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(SEC) C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(SAMSUNG Electronics) C:\Program Files (x86)\Samsung\Easy Support Center\SSCKbdHk.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Tomi\Desktop\FRSTLauncher (3).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12558440 2011-07-12] (Realtek Semiconductor)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2721576 2011-06-17] (ELAN Microelectronics Corp.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2465088 2014-11-17] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\windows\system32\rundll32.exe C:\windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [702768 2014-12-16] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-08-01] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [126200 2014-11-20] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\...\MountPoints2: {aa3189b6-05b8-11e4-b9de-dca97157fb51} - F:\setup.exe
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {aa3189b6-05b8-11e4-b9de-dca97157fb51} - F:\setup.exe
AppInit_DLLs: C:\windows\system32\nvinitx.dll => C:\windows\system32\nvinitx.dll [174856 2014-11-13] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\windows\SysWOW64\nvinit.dll => C:\windows\SysWOW64\nvinit.dll [156840 2014-11-13] (NVIDIA Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Internet Explorer\Main,Start Page = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 195.34.133.21 212.186.211.21
FireFox:
========
FF ProfilePath: C:\Users\Tomi\AppData\Roaming\Mozilla\Firefox\Profiles\6nxbds5h.default
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-1571869238-3936240484-2151935606-1002: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF Plugin HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF Extension: Adblock Plus - C:\Users\Tomi\AppData\Roaming\Mozilla\Firefox\Profiles\6nxbds5h.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-07]
Chrome:
=======
CHR HomePage: Default -> https://www.google.sk/ncr
CHR StartupUrls: Default -> "hxxp://google.sk/"
CHR Profile: C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-07-06]
CHR Extension: (Disk Google) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-07-06]
CHR Extension: (YouTube) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-07-06]
CHR Extension: (Hľadať v Google) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-07-06]
CHR Extension: (Tampermonkey) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2014-07-06]
CHR Extension: (AdBlock) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-07-06]
CHR Extension: (Peňaženka Google) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-07-06]
CHR Extension: (Gmail) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-07-06]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-12-16] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-12-16] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [166192 2014-11-20] (Avira Operations GmbH & Co. KG)
R2 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [242216 2014-06-17] (Foxit Corporation)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1149760 2014-11-17] (NVIDIA Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1796928 2014-11-17] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19821376 2014-11-17] (NVIDIA Corporation)
R2 PnkBstrA; C:\windows\SysWOW64\PnkBstrA.exe [75136 2014-08-04] ()
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2009-12-01] () [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-14] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-10-14] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-06-24] (Avira Operations GmbH & Co. KG)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2014-07-07] (DT Soft Ltd)
S3 ggsomc; C:\Windows\System32\DRIVERS\ggsomc.sys [30424 2014-12-02] (Sony Mobile Communications)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20800 2014-11-17] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38216 2014-10-03] (NVIDIA Corporation)
S3 PcaSp60; C:\Windows\SysWOW64\DRIVERS\PcaSp60.sys [38912 2010-09-07] (Printing Communications Assoc., Inc. (PCAUSA))
R2 SGDrv; C:\Windows\System32\DRIVERS\SGdrv64.sys [7680 2011-04-11] (Phoenix Technologies Ltd.)
S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-22 19:11 - 2014-12-22 19:11 - 00018148 _____ () C:\Users\Tomi\Desktop\FRST.txt
2014-12-22 19:02 - 2014-12-22 19:11 - 00000000 ____D () C:\FRST
2014-12-22 19:01 - 2014-12-22 19:01 - 00112640 _____ (forum.viry.cz) C:\Users\Tomi\Desktop\FRSTLauncher (3).exe
2014-12-22 18:58 - 2014-12-22 18:58 - 02122240 _____ (Farbar) C:\Users\Tomi\Desktop\FRST64.exe
2014-12-22 01:44 - 2014-12-22 01:47 - 00000000 ____D () C:\Users\Tomi\Downloads\2014 Forest Hills Drive
2014-12-21 13:09 - 2014-12-21 13:09 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Tomi\Downloads\mbam-setup-2.0.4.1028.exe
2014-12-21 13:01 - 2014-12-21 13:01 - 02166272 _____ () C:\Users\Tomi\Desktop\adwcleaner_4.105.exe
2014-12-21 01:31 - 2014-12-21 01:32 - 168943615 _____ () C:\Users\Tomi\Downloads\thm1208lol.rar
2014-12-20 18:49 - 2014-12-22 14:56 - 00001685 _____ () C:\windows\setupact.log
2014-12-20 18:49 - 2014-12-22 12:52 - 00004582 _____ () C:\windows\PFRO.log
2014-12-20 18:49 - 2014-12-20 18:49 - 00000000 _____ () C:\windows\setuperr.log
2014-12-20 00:35 - 2014-12-21 03:29 - 00000000 ____D () C:\Users\Tomi\Documents\Euro Truck Simulator 2
2014-12-20 00:24 - 2014-12-21 12:18 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-12-20 00:24 - 2014-12-20 00:24 - 01142392 _____ () C:\Users\Tomi\Downloads\SteamSetup (1).exe
2014-12-20 00:24 - 2014-12-20 00:24 - 00000967 _____ () C:\Users\Public\Desktop\Steam.lnk
2014-12-20 00:24 - 2014-12-20 00:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-19 23:35 - 2014-12-20 00:19 - 00000000 ____D () C:\Users\Tomi\AppData\Local\Tomahawk
2014-12-19 21:33 - 2014-12-19 21:33 - 05317104 _____ (Piriform Ltd) C:\Users\Tomi\Downloads\ccsetup501.exe
2014-12-18 14:05 - 2014-12-18 14:19 - 00000000 ____D () C:\Users\Tomi\Downloads\Supa - Čierne dni (2014)
2014-12-18 10:27 - 2014-12-13 06:09 - 00144384 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-12-18 10:27 - 2014-12-13 04:33 - 00115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-12-18 00:31 - 2014-12-18 00:42 - 00000000 ____D () C:\Users\Tomi\Downloads\TRSOCNSHPCMPNPTP
2014-12-18 00:27 - 2014-12-18 00:37 - 00000000 ____D () C:\Users\Tomi\Downloads\HAHA Crew - Vlna (2014)
2014-12-17 21:06 - 2014-12-17 21:08 - 00000000 ____D () C:\Users\Tomi\Downloads\Charli XCX – SUCKER
2014-12-17 21:05 - 2014-12-17 21:08 - 00000000 ____D () C:\Users\Tomi\Downloads\James Blunt - Smoke Signals EP (2014)
2014-12-17 21:01 - 2014-12-15 10:23 - 08524133 _____ () C:\Users\Tomi\Downloads\24 Miracles.m4a
2014-12-17 20:45 - 2014-12-22 03:47 - 00000000 ____D () C:\Users\Tomi\Downloads\Majer
2014-12-17 20:11 - 2014-12-17 20:11 - 00000000 ____D () C:\Users\Tomi\Downloads\Moby - Hotel Ambient (2014)
2014-12-17 19:19 - 2014-12-17 19:19 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-17 18:26 - 2014-12-17 18:26 - 00000000 ____D () C:\Users\Tomi\Downloads\Chase And Status - Brand New Machine (2013)
2014-12-17 16:16 - 2014-12-17 16:16 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\Publish Providers
2014-12-17 16:12 - 2014-12-20 00:09 - 00000000 ____D () C:\Users\Tomi\AppData\Local\Sony
2014-12-17 16:12 - 2014-12-17 16:12 - 00000000 ____D () C:\Program Files\Sony
2014-12-17 16:10 - 2014-12-19 21:36 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\Sony
2014-12-17 15:40 - 2014-12-17 15:41 - 00000000 ____D () C:\Users\Tomi\Downloads\Sony Vegas Pro 12 Build 367 (64 bit patch-KHG) [ChingLiu]
2014-12-17 14:51 - 2014-12-17 14:52 - 00000000 ____D () C:\Users\Tomi\AppData\Local\{AB0ECF1B-CCB1-4E08-83F5-6C4096ECB98E}
2014-12-17 14:48 - 2014-12-17 14:48 - 51790011 _____ () C:\Users\Tomi\Desktop\ahoj.wmv
2014-12-17 12:28 - 2014-12-17 12:28 - 00000000 ____D () C:\Users\Tomi\AppData\Local\Samsung
2014-12-17 01:30 - 2014-12-17 01:39 - 00000000 ____D () C:\Users\Tomi\Downloads\Zlokot - Slowakische genius (2014)
2014-12-15 13:28 - 2014-12-15 13:33 - 00000000 ____D () C:\Users\Tomi\Downloads\Mumford and Sons Sigh No More-2009
2014-12-15 13:27 - 2014-12-15 13:29 - 00000000 ____D () C:\Users\Tomi\Downloads\Mumford & Sons - Babel [2012] [320kbps]-[Frost]
2014-12-15 00:22 - 2014-12-15 00:22 - 00000000 ____D () C:\Users\Tomi\Downloads\Sparkol VideoScribe PRO 2.0 Final - SceneDL
2014-12-14 19:57 - 2003-04-21 21:46 - 00061440 _____ (Printing Communications Assoc., Inc. (PCAUSA)) C:\windows\SysWOW64\ASIW32N50.dll
2014-12-14 19:57 - 2002-09-10 19:35 - 00016302 _____ (Printing Communications Assoc., Inc. (PCAUSA)) C:\windows\SysWOW64\ASINDIS5.sys
2014-12-14 19:57 - 2001-04-16 05:48 - 00015577 _____ () C:\windows\SysWOW64\ASINDIS3.vxd
2014-12-14 12:13 - 2014-12-14 12:13 - 00000000 ____D () C:\Users\Tomi\Downloads\Indila - Mini World (Deluxe)
2014-12-14 00:09 - 2014-12-14 00:09 - 00042482 _____ () C:\Users\Tomi\Downloads\Arrow-S03E09.srt
2014-12-14 00:09 - 2014-12-14 00:09 - 00038150 _____ () C:\Users\Tomi\Downloads\The-Flash-S01E09.srt
2014-12-14 00:08 - 2014-12-14 00:08 - 00034651 _____ () C:\Users\Tomi\Downloads\Two-and-a-Half-Men-S12E07.srt
2014-12-14 00:08 - 2014-12-14 00:08 - 00025750 _____ () C:\Users\Tomi\Downloads\The-Big-Bang-Theory-S08E11.srt
2014-12-14 00:05 - 2014-12-12 08:50 - 137818021 _____ () C:\Users\Tomi\Downloads\The-Big-Bang-Theory-S08E11.mp4
2014-12-14 00:05 - 2014-12-11 08:00 - 237906054 _____ () C:\Users\Tomi\Downloads\Arrow-S03E09.mp4
2014-12-14 00:05 - 2014-12-10 07:34 - 252780494 _____ () C:\Users\Tomi\Downloads\The-Flash-S01E09.mp4
2014-12-14 00:04 - 2014-12-12 09:18 - 148242930 _____ () C:\Users\Tomi\Downloads\Two-and-a-Half-Men-S12E07.mp4
2014-12-13 23:35 - 2014-12-13 23:35 - 00000000 ____D () C:\Users\Tomi\Downloads\Piano Tribute to Miley Cyrus
2014-12-13 23:12 - 2014-12-13 23:12 - 00000000 ____D () C:\Users\Tomi\Downloads\Modre Hory - Bigbeat
2014-12-13 23:08 - 2014-12-13 23:16 - 00000000 ____D () C:\Users\Tomi\Downloads\Tu v dome - Protichodné chute (2014)
2014-12-13 22:39 - 2014-12-13 23:05 - 00000000 ____D () C:\Users\Tomi\Downloads\Banda - hraBanda (2014)
2014-12-13 22:39 - 2014-12-13 23:00 - 00000000 ____D () C:\Users\Tomi\Downloads\Banda - Jedna (2011)
2014-12-13 22:18 - 2014-12-13 22:19 - 00000000 ____D () C:\Users\Tomi\Downloads\TINA - Unplugged CD 2004-2014 (SK 2014)[MP3.CBR.256]
2014-12-13 21:58 - 2014-12-13 22:27 - 00000000 ____D () C:\Users\Tomi\Downloads\Katarína Koščová - Oknom (2014)
2014-12-13 21:54 - 2014-12-13 22:19 - 00000000 ____D () C:\Users\Tomi\Downloads\Tina - Unplugged CD 2004 - 2014 (2014)
2014-12-13 21:33 - 2014-12-13 21:42 - 00000000 ____D () C:\Users\Tomi\Downloads\Markéta Irglová - Muna (2014)
2014-12-13 18:03 - 2014-12-13 18:03 - 00000000 ____D () C:\Users\Tomi\Downloads\Media INFO
2014-12-13 02:59 - 2014-12-19 14:51 - 00000000 ____D () C:\Users\Tomi\Downloads\Gone.Girl.2014.1080p.WEB-DL.DD5.1.H264-RARBG
2014-12-13 02:26 - 2014-12-13 02:35 - 00000000 ____D () C:\Users\Tomi\Downloads\Elán - Živých nás nedostanú (2014)
2014-12-12 15:22 - 2014-12-12 15:24 - 00000000 ____D () C:\Users\Tomi\Downloads\Bastille - VS. (Other People's Heartache, Pt. III)
2014-12-11 23:16 - 2014-12-19 12:44 - 00000000 ____D () C:\Users\Tomi\Downloads\I.Origins.2014.720p.WEB-DL.DD5.1.H264-RARBG
2014-12-11 23:07 - 2014-12-11 23:34 - 00000000 ____D () C:\Users\Tomi\Downloads\Frank Sinatra & Elvis Presley - Christmas Gold Collection - 2014 (MP3)
2014-12-11 23:07 - 2014-12-11 23:28 - 00000000 ____D () C:\Users\Tomi\Downloads\The Who - Who's Next Deluxe Edition (2014)
2014-12-11 19:01 - 2014-12-11 19:04 - 00000000 ____D () C:\Users\Tomi\Downloads\Nicki Minaj - The Pinkprint (Deluxe Edition) (2014)
2014-12-11 18:45 - 2014-12-11 18:48 - 00000000 ____D () C:\Users\Tomi\Downloads\James Bay – The Dark of the Morning – EP
2014-12-11 18:33 - 2014-12-11 18:56 - 00000000 ____D () C:\Users\Tomi\Downloads\James Bay - Hold Back the River - EP
2014-12-11 18:15 - 2014-12-11 18:27 - 00000000 ____D () C:\Users\Tomi\Downloads\Smashing Pumpkins - Monuments to an Elegy (2014)
2014-12-11 18:08 - 2014-12-11 18:08 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\VitySoft
2014-12-11 18:08 - 2014-12-11 18:08 - 00000000 ____D () C:\Users\Tomi\.objectdb
2014-12-11 18:08 - 2014-12-11 18:08 - 00000000 ____D () C:\ProgramData\Sun
2014-12-11 18:08 - 2014-12-11 18:07 - 00098216 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2014-12-11 18:07 - 2014-12-11 18:07 - 00000000 ____D () C:\ProgramData\Oracle
2014-12-11 18:07 - 2014-12-11 18:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-12-11 18:07 - 2014-12-11 18:07 - 00000000 ____D () C:\Program Files (x86)\Java
2014-12-11 18:06 - 2014-12-11 18:08 - 00000000 ____D () C:\Users\Tomi\Downloads\FreeRapid-0.9u4
2014-12-11 18:06 - 2014-12-11 18:06 - 00638888 _____ (Oracle Corporation) C:\Users\Tomi\Downloads\chromeinstall-8u25.exe
2014-12-11 04:31 - 2014-12-11 04:31 - 00000000 ____D () C:\windows\system32\appraiser
2014-12-11 03:07 - 2014-10-18 03:05 - 04121600 _____ (Microsoft Corporation) C:\windows\system32\mf.dll
2014-12-11 03:07 - 2014-10-18 02:33 - 03209728 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf.dll
2014-12-10 23:37 - 2014-12-10 23:37 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
2014-12-10 22:33 - 2014-12-09 10:12 - 00000000 ____D () C:\Users\Tomi\Downloads\Angels & Airwaves
2014-12-10 09:14 - 2014-12-04 03:50 - 00830976 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2014-12-10 09:14 - 2014-12-04 03:50 - 00741376 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2014-12-10 09:14 - 2014-12-04 03:50 - 00413184 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2014-12-10 09:14 - 2014-12-04 03:50 - 00396800 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2014-12-10 09:14 - 2014-12-04 03:50 - 00227328 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-12-10 09:14 - 2014-12-04 03:50 - 00192000 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2014-12-10 09:14 - 2014-12-04 03:44 - 01083392 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-12-10 09:14 - 2014-12-02 00:28 - 01232040 _____ (Microsoft Corporation) C:\windows\system32\aitstatic.exe
2014-12-10 09:14 - 2014-11-27 02:43 - 00389296 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-12-10 09:14 - 2014-11-27 02:10 - 00342200 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-12-10 09:14 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-12-10 09:14 - 2014-11-22 04:06 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-12-10 09:14 - 2014-11-22 04:06 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-12-10 09:14 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-12-10 09:14 - 2014-11-22 03:50 - 00066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-12-10 09:14 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-12-10 09:14 - 2014-11-22 03:49 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-12-10 09:14 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-12-10 09:14 - 2014-11-22 03:41 - 00054784 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-12-10 09:14 - 2014-11-22 03:40 - 00034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-12-10 09:14 - 2014-11-22 03:37 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-12-10 09:14 - 2014-11-22 03:35 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-12-10 09:14 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-12-10 09:14 - 2014-11-22 03:34 - 00814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-12-10 09:14 - 2014-11-22 03:26 - 00968704 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-12-10 09:14 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-12-10 09:14 - 2014-11-22 03:22 - 00490496 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-12-10 09:14 - 2014-11-22 03:20 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-12-10 09:14 - 2014-11-22 03:14 - 00077824 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-12-10 09:14 - 2014-11-22 03:09 - 00199680 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-12-10 09:14 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-12-10 09:14 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-12-10 09:14 - 2014-11-22 03:07 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-12-10 09:14 - 2014-11-22 03:06 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-12-10 09:14 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-12-10 09:14 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-12-10 09:14 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-12-10 09:14 - 2014-11-22 02:59 - 00047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-12-10 09:14 - 2014-11-22 02:58 - 00030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-12-10 09:14 - 2014-11-22 02:56 - 00478208 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-12-10 09:14 - 2014-11-22 02:54 - 00620032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-12-10 09:14 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-12-10 09:14 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-12-10 09:14 - 2014-11-22 02:47 - 01359360 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-12-10 09:14 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-12-10 09:14 - 2014-11-22 02:45 - 00418304 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-12-10 09:14 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-12-10 09:14 - 2014-11-22 02:40 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-12-10 09:14 - 2014-11-22 02:36 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-12-10 09:14 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-12-10 09:14 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-12-10 09:14 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-12-10 09:14 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-12-10 09:14 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-12-10 09:14 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-12-10 09:14 - 2014-11-22 02:21 - 01155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-12-10 09:14 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-12-10 09:14 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-12-10 09:14 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-12-10 09:14 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-12-10 09:14 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-12-10 09:14 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-12-10 09:14 - 2014-11-11 04:09 - 01424384 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2014-12-10 09:14 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2014-12-10 09:14 - 2014-11-11 02:46 - 00119296 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tdx.sys
2014-12-10 09:14 - 2014-10-30 03:03 - 00165888 _____ (Microsoft Corporation) C:\windows\system32\charmap.exe
2014-12-10 09:14 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\windows\SysWOW64\charmap.exe
2014-12-10 09:14 - 2014-10-03 03:12 - 02020352 _____ (Microsoft Corporation) C:\windows\system32\WsmSvc.dll
2014-12-10 09:14 - 2014-10-03 03:12 - 00346624 _____ (Microsoft Corporation) C:\windows\system32\WSManMigrationPlugin.dll
2014-12-10 09:14 - 2014-10-03 03:12 - 00310272 _____ (Microsoft Corporation) C:\windows\system32\WsmWmiPl.dll
2014-12-10 09:14 - 2014-10-03 03:12 - 00181248 _____ (Microsoft Corporation) C:\windows\system32\WsmAuto.dll
2014-12-10 09:14 - 2014-10-03 03:11 - 00266240 _____ (Microsoft Corporation) C:\windows\system32\WSManHTTPConfig.exe
2014-12-10 09:14 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmSvc.dll
2014-12-10 09:14 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\WSManMigrationPlugin.dll
2014-12-10 09:14 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmWmiPl.dll
2014-12-10 09:14 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmAuto.dll
2014-12-10 09:14 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\windows\SysWOW64\WSManHTTPConfig.exe
2014-12-10 09:13 - 2014-11-08 04:16 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-12-10 09:13 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2014-12-09 23:00 - 2014-12-09 23:13 - 00000000 ____D () C:\Users\Tomi\Downloads\The Hobbit - The Battle of the Five Armies (Original Motion Picture Soundtrack) [Special Edition]
2014-12-09 22:48 - 2014-12-09 22:54 - 18583640 _____ (Daum) C:\Users\Tomi\Downloads\PotPlayerSetup64.exe
2014-12-09 17:11 - 2014-12-09 17:11 - 02042441 _____ () C:\Users\Tomi\Downloads\Blažeková, Javorská ,Mokoš _ EVENT MARKETING (1).pptx
2014-12-09 16:48 - 2014-12-09 16:48 - 03975680 _____ () C:\Users\Tomi\Downloads\Starbucks EDITA upravený.ppt
2014-12-09 13:41 - 2014-12-09 13:42 - 00000000 ____D () C:\Users\Tomi\Downloads\Michael Buble - Crazy Love (Bonus Track Version)
2014-12-07 18:13 - 2014-12-07 18:13 - 00255843 _____ () C:\Users\Tomi\Downloads\Kampaň Voda pre život.pptx
2014-12-07 02:09 - 2014-10-02 20:59 - 00000000 ____D () C:\Users\Tomi\Downloads\Kris Allen - Horizons (iTunes)
2014-12-06 13:34 - 2014-12-04 11:21 - 260519446 _____ () C:\Users\Tomi\Downloads\Arrow.S03E08.HDTV.x264-LOL.mp4
2014-12-06 13:27 - 2014-11-28 09:17 - 148330339 _____ () C:\Users\Tomi\Downloads\Two.and.a.Half.Men.S12E05.HDTV.x264-LOL.mp4
2014-12-06 13:26 - 2014-12-06 13:26 - 00032324 _____ () C:\Users\Tomi\Downloads\Two.and.a.Half.Men.S12E06.HDTV.x264-LOL.srt
2014-12-06 13:24 - 2014-12-06 13:25 - 00033807 _____ () C:\Users\Tomi\Downloads\Two.and.a.Half.Men.S12E05.HDTV.x264-LOL.srt
2014-12-06 13:24 - 2014-12-06 13:24 - 00034565 _____ () C:\Users\Tomi\Downloads\Two.and.a.Half.Men.S12E04.HDTV.x264-LOL.srt
2014-12-06 13:22 - 2014-12-06 13:22 - 00044909 _____ () C:\Users\Tomi\Downloads\The.Flash.2014.S01E08.HDTV.x264-LOL.srt
2014-12-06 13:22 - 2014-12-05 08:20 - 171993213 _____ () C:\Users\Tomi\Downloads\Two.and.a.Half.Men.S12E06.HDTV.x264-LOL.mp4
2014-12-06 13:21 - 2014-12-06 13:21 - 00041653 _____ () C:\Users\Tomi\Downloads\Arrow.S03E08.HDTV.x264-LOL.srt
2014-12-06 13:21 - 2014-12-03 07:47 - 266540648 _____ () C:\Users\Tomi\Downloads\The.Flash.2014.S01E08.HDTV.x264-LOL.mp4
2014-12-05 22:42 - 2014-12-05 22:42 - 00000000 ____D () C:\windows\SysWOW64\NV
2014-12-05 22:42 - 2014-12-05 22:42 - 00000000 ____D () C:\windows\system32\NV
2014-12-05 22:40 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\windows\system32\D3DX9_43.dll
2014-12-05 22:40 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DX9_43.dll
2014-12-05 22:40 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\windows\system32\d3dx10_43.dll
2014-12-05 22:40 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_43.dll
2014-12-05 22:40 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\windows\system32\d3dx11_43.dll
2014-12-05 22:40 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx11_43.dll
2014-12-05 22:38 - 2014-11-13 01:20 - 00074056 _____ (Khronos Group) C:\windows\system32\OpenCL.dll
2014-12-05 22:38 - 2014-11-13 01:20 - 00059592 _____ (Khronos Group) C:\windows\SysWOW64\OpenCL.dll
2014-12-05 22:38 - 2014-11-12 22:56 - 06897352 _____ (NVIDIA Corporation) C:\windows\system32\nvcpl.dll
2014-12-05 22:38 - 2014-11-12 22:56 - 03534152 _____ (NVIDIA Corporation) C:\windows\system32\nvsvc64.dll
2014-12-05 22:38 - 2014-11-12 22:56 - 02559808 _____ (NVIDIA Corporation) C:\windows\system32\nvsvcr.dll
2014-12-05 22:38 - 2014-11-12 22:56 - 01092752 _____ (NVIDIA Corporation) C:\windows\system32\nv3dappshext.dll
2014-12-05 22:38 - 2014-11-12 22:56 - 00934032 _____ (NVIDIA Corporation) C:\windows\system32\nvvsvc.exe
2014-12-05 22:38 - 2014-11-12 22:56 - 00386368 _____ (NVIDIA Corporation) C:\windows\system32\nvmctray.dll
2014-12-05 22:38 - 2014-11-12 22:56 - 00067072 _____ (NVIDIA Corporation) C:\windows\system32\nv3dappshextr.dll
2014-12-05 22:38 - 2014-11-12 22:56 - 00062608 _____ (NVIDIA Corporation) C:\windows\system32\nvshext.dll
2014-12-05 22:38 - 2014-11-11 11:29 - 04100776 _____ () C:\windows\system32\nvcoproc.bin
2014-12-05 22:31 - 2014-11-13 01:20 - 31893136 _____ (NVIDIA Corporation) C:\windows\system32\nvoglv64.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 24557712 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvoglv32.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 20986592 _____ (NVIDIA Corporation) C:\windows\system32\nvwgf2umx.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 20922512 _____ (NVIDIA Corporation) C:\windows\system32\nvcompiler.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 19966344 _____ (NVIDIA Corporation) C:\windows\system32\nvd3dumx.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 18514616 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvwgf2um.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 17259664 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvcompiler.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 16884632 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvd3dum.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 14032984 _____ (NVIDIA Corporation) C:\windows\system32\nvopencl.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 13944952 _____ (NVIDIA Corporation) C:\windows\system32\nvcuda.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 13213512 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvlddmkm.sys
2014-12-05 22:31 - 2014-11-13 01:20 - 11397744 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvopencl.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 11336432 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvcuda.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 04292416 _____ (NVIDIA Corporation) C:\windows\system32\nvcuvid.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 04011208 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvcuvid.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 03262784 _____ (NVIDIA Corporation) C:\windows\system32\nvapi64.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 02874456 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvapi.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 01876296 _____ (NVIDIA Corporation) C:\windows\system32\nvdispco6434475.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 01540424 _____ (NVIDIA Corporation) C:\windows\system32\nvdispgenco6434475.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00989056 _____ (NVIDIA Corporation) C:\windows\system32\nvumdshimx.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00964928 _____ (NVIDIA Corporation) C:\windows\system32\NvIFR64.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00935240 _____ (NVIDIA Corporation) C:\windows\system32\NvFBC64.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00923792 _____ (NVIDIA Corporation) C:\windows\SysWOW64\NvIFR.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00900928 _____ (NVIDIA Corporation) C:\windows\SysWOW64\NvFBC.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00871648 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvumdshim.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00352016 _____ (NVIDIA Corporation) C:\windows\system32\nvoglshim64.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00303600 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvoglshim32.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00174856 _____ (NVIDIA Corporation) C:\windows\system32\nvinitx.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00156840 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvinit.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00031560 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvpciflt.sys
2014-12-05 22:31 - 2014-11-13 01:20 - 00027094 _____ () C:\windows\system32\nvinfo.pb
2014-12-05 22:31 - 2014-10-03 20:23 - 00038216 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvvad64v.sys
2014-12-05 22:31 - 2014-10-03 20:23 - 00032584 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvaudcap32v.dll
2014-12-05 22:28 - 2014-12-05 22:29 - 308364224 _____ (NVIDIA Corporation) C:\Users\Tomi\Downloads\344.75-notebook-win8-win7-64bit-international-whql.exe
2014-12-05 14:21 - 2014-12-22 00:29 - 00000000 ____D () C:\Users\Tomi\Downloads\The Newsroom 3
2014-12-05 13:21 - 2014-12-05 13:35 - 00000000 ____D () C:\Users\Tomi\Downloads\BEYONCÉ [Platinum Edition]
2014-12-05 12:48 - 2014-12-05 13:01 - 00000000 ____D () C:\Users\Tomi\Downloads\Wonder Where We Land (Deluxe Version)
2014-12-05 12:35 - 2014-12-05 12:38 - 1625555329 _____ () C:\Users\Tomi\Downloads\UAMV.zip
2014-12-05 00:30 - 2014-12-05 00:30 - 04359432 _____ (IObit ) C:\Users\Tomi\Downloads\gb3.4-setup.exe
2014-12-05 00:30 - 2014-12-05 00:30 - 00003158 _____ () C:\windows\System32\Tasks\Game_Booster_AutoUpdate
2014-12-05 00:30 - 2014-12-05 00:30 - 00001186 _____ () C:\Users\Public\Desktop\Switch to Gaming Mode.lnk
2014-12-05 00:30 - 2014-12-05 00:30 - 00001174 _____ () C:\Users\Public\Desktop\Game Booster 3.lnk
2014-12-05 00:30 - 2014-12-05 00:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Booster 3
2014-12-05 00:30 - 2014-12-05 00:30 - 00000000 ____D () C:\ProgramData\IObit
2014-12-05 00:30 - 2014-12-05 00:30 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-12-05 00:07 - 2014-12-05 00:07 - 00000000 ____D () C:\ProgramData\Orbit
2014-12-05 00:02 - 2014-11-25 14:09 - 00000000 ____D () C:\Users\Tomi\Downloads\Far Cry 4 Update v1.4-RELOADED
2014-12-05 00:01 - 2014-11-25 19:59 - 00000000 ____D () C:\Users\Tomi\Downloads\Far Cry 4 - CPU Fix
2014-12-04 23:32 - 2014-12-05 00:02 - 00000613 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Far Cry 4.lnk
2014-12-04 19:08 - 2014-11-18 22:56 - 3427958784 _____ () C:\Users\Tomi\Downloads\Far Cry 4 + Crack.iso
2014-12-04 17:26 - 2014-12-04 17:26 - 00000000 ____D () C:\windows\SysWOW64\IPM
2014-12-02 02:22 - 2014-12-02 02:22 - 00000000 ____H () C:\windows\system32\Drivers\Msft_Kernel_ggsomc_01009.Wdf
2014-12-02 02:22 - 2014-12-02 02:22 - 00000000 ____H () C:\windows\system32\Drivers\Msft_Kernel_ggflt_01009.Wdf
2014-12-02 01:47 - 2014-12-02 01:47 - 00030424 _____ (Sony Mobile Communications) C:\windows\system32\Drivers\ggsomc.sys
2014-12-02 01:47 - 2014-12-02 01:47 - 00016088 _____ (Sony Mobile Communications) C:\windows\system32\Drivers\ggflt.sys
2014-12-02 01:46 - 2014-12-02 01:46 - 00000000 ____D () C:\ProgramData\Sony Mobile
2014-12-02 01:46 - 2014-12-02 01:46 - 00000000 ____D () C:\Program Files (x86)\Sony Mobile
2014-12-02 01:43 - 2014-12-20 00:09 - 00000000 ____D () C:\ProgramData\Sony
2014-12-02 01:43 - 2014-12-20 00:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2014-12-02 01:43 - 2014-12-20 00:09 - 00000000 ____D () C:\Program Files (x86)\Sony
2014-12-02 01:43 - 2014-12-02 13:45 - 00002026 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2014-12-02 01:41 - 2014-12-02 01:42 - 28112224 _____ (Sony Mobile Communications ) C:\Users\Tomi\Downloads\Sony PC Companion_Web.exe
2014-12-01 19:47 - 2014-12-05 13:17 - 00000000 ____D () C:\Users\Tomi\Downloads\Selah Sue - Alone - EP
2014-11-30 16:09 - 2014-11-30 11:52 - 00000000 ____D () C:\Users\Tomi\Downloads\Aneta Langerová-Na radosti (2014)
2014-11-26 20:37 - 2014-11-26 20:47 - 00000000 ____D () C:\Users\Tomi\Downloads\Mňága a Žďorp - Made in China (2014)
2014-11-25 17:09 - 2014-11-25 17:09 - 11449893 _____ () C:\Users\Tomi\Downloads\Praktický návrh EM stratégie.pptx
2014-11-24 14:40 - 2014-11-24 14:40 - 00030704 _____ () C:\Users\Tomi\Downloads\Two-and-a-Half-Men-S12E03.srt
2014-11-24 14:39 - 2014-11-24 14:39 - 00030605 _____ () C:\Users\Tomi\Downloads\Two-and-a-Half-Men-S12E02.srt
2014-11-24 14:39 - 2014-11-24 14:39 - 00027085 _____ () C:\Users\Tomi\Downloads\The-Big-Bang-Theory-S08E10.srt
2014-11-24 14:38 - 2014-11-24 14:38 - 00027615 _____ () C:\Users\Tomi\Downloads\The-Big-Bang-Theory-S08E08.srt
2014-11-24 14:38 - 2014-11-24 14:38 - 00027007 _____ () C:\Users\Tomi\Downloads\The-Big-Bang-Theory-S08E09.srt
2014-11-24 14:36 - 2014-11-24 14:36 - 00042865 _____ () C:\Users\Tomi\Downloads\the.flash.2014.s01e06.hdtv.x264-lol.srt
2014-11-24 14:36 - 2014-11-24 14:36 - 00041935 _____ () C:\Users\Tomi\Downloads\the.flash.2014.s01.e05.hdtv.x264-lol.srt
2014-11-24 14:36 - 2014-11-21 07:37 - 146877652 _____ () C:\Users\Tomi\Downloads\The-Big-Bang-Theory-S08E10.mp4
2014-11-24 14:36 - 2014-11-14 07:25 - 131724432 _____ () C:\Users\Tomi\Downloads\The-Big-Bang-Theory-S08E09.mp4
2014-11-24 14:35 - 2014-11-21 08:01 - 155682742 _____ () C:\Users\Tomi\Downloads\Two.and.a.Half.Men.S12E04.HDTV.x264-LOL.mp4
2014-11-24 14:35 - 2014-11-19 08:05 - 230917489 _____ () C:\Users\Tomi\Downloads\the.flash.2014.s01e06.hdtv.x264-lol.mp4
2014-11-24 14:35 - 2014-11-14 08:56 - 161877033 _____ () C:\Users\Tomi\Downloads\Two-and-a-Half-Men-S12E03.mp4
2014-11-24 14:35 - 2014-11-12 08:08 - 230692300 _____ () C:\Users\Tomi\Downloads\the.flash.2014.s01.e05.hdtv.x264-lol.mp4
2014-11-24 14:34 - 2014-11-24 14:34 - 00045925 _____ () C:\Users\Tomi\Downloads\Arrow.s03e06.hdtv.x264-lol.srt
2014-11-24 14:34 - 2014-11-24 14:34 - 00042256 _____ () C:\Users\Tomi\Downloads\Arrow.s03e07.hdtv.x264-lol.srt
2014-11-24 14:33 - 2014-11-20 07:45 - 241928411 _____ () C:\Users\Tomi\Downloads\Arrow.s03e07.hdtv.x264-lol.mp4
2014-11-24 14:33 - 2014-11-13 07:44 - 247068553 _____ () C:\Users\Tomi\Downloads\Arrow.s03e06.hdtv.x264-lol.mp4
2014-11-23 01:22 - 2014-11-22 23:37 - 00000000 ____D () C:\Users\Tomi\Downloads\Robert Burian - (2014)
2014-11-23 00:22 - 2014-11-23 00:28 - 106968919 _____ () C:\Users\Tomi\Downloads\Robert-Burian---(2014).rar
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-22 19:08 - 2014-07-06 19:58 - 00000830 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-12-22 19:07 - 2014-07-10 22:41 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\AIMP3
2014-12-22 18:34 - 2014-08-27 11:13 - 00000936 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-22 17:10 - 2011-09-07 01:18 - 01781363 _____ () C:\windows\WindowsUpdate.log
2014-12-22 15:00 - 2009-07-14 06:13 - 00781298 _____ () C:\windows\system32\PerfStringBackup.INI
2014-12-22 13:00 - 2014-07-06 19:20 - 00000000 ____D () C:\Users\Tomi\AppData\Local\CrashDumps
2014-12-22 13:00 - 2009-07-14 05:45 - 00028848 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-22 13:00 - 2009-07-14 05:45 - 00028848 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-22 12:54 - 2014-07-23 22:34 - 00000000 ____D () C:\ProgramData\Origin
2014-12-22 12:53 - 2014-07-23 22:33 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-12-22 12:52 - 2014-08-27 11:13 - 00000932 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-22 12:52 - 2009-07-14 06:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-12-22 12:41 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\Globalization
2014-12-22 00:35 - 2014-07-07 09:49 - 00000000 ____D () C:\The KMPlayer
2014-12-21 13:04 - 2014-10-23 16:23 - 00000000 ____D () C:\AdwCleaner
2014-12-21 01:35 - 2014-07-06 20:20 - 00000000 ____D () C:\ProgramData\Package Cache
2014-12-21 01:16 - 2014-10-22 11:25 - 00000000 ____D () C:\Program Files\trend micro
2014-12-20 00:22 - 2014-10-23 11:22 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-12-20 00:06 - 2014-10-17 12:33 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\Corel
2014-12-20 00:06 - 2014-10-17 12:23 - 00000000 ____D () C:\ProgramData\Corel
2014-12-20 00:06 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-12-20 00:02 - 2014-10-17 12:23 - 00000000 ____D () C:\Program Files\Corel
2014-12-19 23:57 - 2014-10-23 11:18 - 00000000 ____D () C:\ProgramData\Adobe
2014-12-19 23:51 - 2014-07-06 19:16 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\Adobe
2014-12-19 23:44 - 2014-10-23 11:25 - 00000000 ____D () C:\Program Files\Adobe
2014-12-19 21:36 - 2014-07-11 12:01 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\uTorrent
2014-12-19 21:34 - 2014-07-06 19:54 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-12-19 21:34 - 2014-07-06 19:54 - 00000000 ____D () C:\Program Files\CCleaner
2014-12-18 19:49 - 2014-07-07 08:27 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-18 14:08 - 2014-07-11 12:08 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\Mp3tag
2014-12-17 16:16 - 2014-11-04 11:35 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\NVIDIA
2014-12-14 20:25 - 2011-09-06 09:22 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-12-13 20:14 - 2014-07-19 15:59 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-12-13 20:14 - 2014-07-19 15:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-12-13 19:07 - 2014-07-19 15:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-12-13 18:32 - 2014-10-17 13:40 - 00000000 ____D () C:\Users\Tomi\Downloads\GOF1214-RLD
2014-12-13 00:27 - 2011-09-06 09:56 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-12-12 23:58 - 2014-07-07 10:37 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\DAEMON Tools Lite
2014-12-12 22:37 - 2014-08-27 11:14 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-12-12 11:42 - 2014-10-23 11:18 - 00000000 ____D () C:\Users\Tomi\AppData\Local\Adobe
2014-12-12 11:42 - 2014-07-06 19:58 - 00701616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2014-12-12 11:42 - 2014-07-06 19:58 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-12 11:42 - 2014-07-06 19:58 - 00003768 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2014-12-12 11:39 - 2014-07-17 18:59 - 00001133 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-12-12 11:39 - 2014-07-06 20:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-12-12 11:39 - 2014-07-06 20:21 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-12-11 19:50 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\rescache
2014-12-11 18:53 - 2014-10-16 11:17 - 00000000 ____D () C:\Users\Tomi\Downloads\James Bay - Let It Go - EP
2014-12-11 18:08 - 2014-07-06 18:55 - 00000000 ____D () C:\Users\Tomi\AppData\Local\VirtualStore
2014-12-11 18:08 - 2014-07-06 18:54 - 00000000 ____D () C:\Users\Tomi
2014-12-11 04:31 - 2014-07-06 22:05 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-12-11 04:31 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\SysWOW64\sk-SK
2014-12-11 04:31 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\system32\sk-SK
2014-12-11 04:31 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-12-11 04:31 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\AppCompat
2014-12-11 03:18 - 2014-07-19 18:10 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-11 03:16 - 2014-07-06 21:41 - 00000000 ____D () C:\windows\system32\MRT
2014-12-11 03:08 - 2014-07-06 21:41 - 112710672 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-12-08 07:03 - 2014-07-07 18:09 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\Skype
2014-12-06 13:34 - 2014-07-09 23:52 - 00000000 ____D () C:\Users\Tomi\AppData\Local\JDownloader v2.0
2014-12-05 22:42 - 2011-09-06 09:25 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-12-05 22:41 - 2014-10-01 10:10 - 00001351 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2014-12-05 22:38 - 2014-07-20 16:51 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-12-05 22:38 - 2011-09-06 09:24 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-12-05 22:38 - 2011-09-06 09:23 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-12-05 22:38 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\Help
2014-12-05 00:08 - 2014-10-17 21:22 - 00000000 ____D () C:\Users\Tomi\Documents\My Games
2014-12-02 15:51 - 2014-07-19 18:10 - 00000000 ____D () C:\Users\Tomi\AppData\Local\Microsoft Help
2014-11-28 13:52 - 2014-09-09 22:53 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\Apple Computer
Some content of TEMP:
====================
C:\Users\Tomi\AppData\Local\Temp\avgnt.exe
C:\Users\Tomi\AppData\Local\Temp\Quarantine.exe
C:\Users\Tomi\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-12-15 11:46
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:271 GB) (Free:101.66 GB) NTFS
Drive d: () (Fixed) (Total:405.4 GB) (Free:42.71 GB) NTFS
Available physical RAM: 2004.35 MB
Total physical RAM: 4009.55 MB
Percentage of memory in use: 50%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 698.6 GB) (Disk ID: C742B000)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=271 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=405.4 GB) - (Type=OF Extended)
Partition 4: (Not Active) - (Size=22.1 GB) - (Type=27)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Avira Desktop (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Tomi\Desktop" je 286 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Ran by Tomi (administrator) on TOMI-PC on 22-12-2014 19:11:07
Running from C:\Users\Tomi\Desktop
Loaded Profiles: Tomi & (Available profiles: Tomi)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Foxit Corporation) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Samsung Electronics) C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(SEC) C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(SAMSUNG Electronics) C:\Program Files (x86)\Samsung\Easy Support Center\SSCKbdHk.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Tomi\Desktop\FRSTLauncher (3).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12558440 2011-07-12] (Realtek Semiconductor)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2721576 2011-06-17] (ELAN Microelectronics Corp.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2465088 2014-11-17] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\windows\system32\rundll32.exe C:\windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [702768 2014-12-16] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-08-01] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [126200 2014-11-20] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\...\MountPoints2: {aa3189b6-05b8-11e4-b9de-dca97157fb51} - F:\setup.exe
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {aa3189b6-05b8-11e4-b9de-dca97157fb51} - F:\setup.exe
AppInit_DLLs: C:\windows\system32\nvinitx.dll => C:\windows\system32\nvinitx.dll [174856 2014-11-13] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\windows\SysWOW64\nvinit.dll => C:\windows\SysWOW64\nvinit.dll [156840 2014-11-13] (NVIDIA Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Internet Explorer\Main,Start Page = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 195.34.133.21 212.186.211.21
FireFox:
========
FF ProfilePath: C:\Users\Tomi\AppData\Roaming\Mozilla\Firefox\Profiles\6nxbds5h.default
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-1571869238-3936240484-2151935606-1002: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF Plugin HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF Extension: Adblock Plus - C:\Users\Tomi\AppData\Roaming\Mozilla\Firefox\Profiles\6nxbds5h.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-07]
Chrome:
=======
CHR HomePage: Default -> https://www.google.sk/ncr
CHR StartupUrls: Default -> "hxxp://google.sk/"
CHR Profile: C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-07-06]
CHR Extension: (Disk Google) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-07-06]
CHR Extension: (YouTube) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-07-06]
CHR Extension: (Hľadať v Google) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-07-06]
CHR Extension: (Tampermonkey) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2014-07-06]
CHR Extension: (AdBlock) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-07-06]
CHR Extension: (Peňaženka Google) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-07-06]
CHR Extension: (Gmail) - C:\Users\Tomi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-07-06]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-12-16] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-12-16] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [166192 2014-11-20] (Avira Operations GmbH & Co. KG)
R2 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [242216 2014-06-17] (Foxit Corporation)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1149760 2014-11-17] (NVIDIA Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1796928 2014-11-17] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19821376 2014-11-17] (NVIDIA Corporation)
R2 PnkBstrA; C:\windows\SysWOW64\PnkBstrA.exe [75136 2014-08-04] ()
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2009-12-01] () [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-14] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-10-14] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-06-24] (Avira Operations GmbH & Co. KG)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2014-07-07] (DT Soft Ltd)
S3 ggsomc; C:\Windows\System32\DRIVERS\ggsomc.sys [30424 2014-12-02] (Sony Mobile Communications)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20800 2014-11-17] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38216 2014-10-03] (NVIDIA Corporation)
S3 PcaSp60; C:\Windows\SysWOW64\DRIVERS\PcaSp60.sys [38912 2010-09-07] (Printing Communications Assoc., Inc. (PCAUSA))
R2 SGDrv; C:\Windows\System32\DRIVERS\SGdrv64.sys [7680 2011-04-11] (Phoenix Technologies Ltd.)
S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-22 19:11 - 2014-12-22 19:11 - 00018148 _____ () C:\Users\Tomi\Desktop\FRST.txt
2014-12-22 19:02 - 2014-12-22 19:11 - 00000000 ____D () C:\FRST
2014-12-22 19:01 - 2014-12-22 19:01 - 00112640 _____ (forum.viry.cz) C:\Users\Tomi\Desktop\FRSTLauncher (3).exe
2014-12-22 18:58 - 2014-12-22 18:58 - 02122240 _____ (Farbar) C:\Users\Tomi\Desktop\FRST64.exe
2014-12-22 01:44 - 2014-12-22 01:47 - 00000000 ____D () C:\Users\Tomi\Downloads\2014 Forest Hills Drive
2014-12-21 13:09 - 2014-12-21 13:09 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Tomi\Downloads\mbam-setup-2.0.4.1028.exe
2014-12-21 13:01 - 2014-12-21 13:01 - 02166272 _____ () C:\Users\Tomi\Desktop\adwcleaner_4.105.exe
2014-12-21 01:31 - 2014-12-21 01:32 - 168943615 _____ () C:\Users\Tomi\Downloads\thm1208lol.rar
2014-12-20 18:49 - 2014-12-22 14:56 - 00001685 _____ () C:\windows\setupact.log
2014-12-20 18:49 - 2014-12-22 12:52 - 00004582 _____ () C:\windows\PFRO.log
2014-12-20 18:49 - 2014-12-20 18:49 - 00000000 _____ () C:\windows\setuperr.log
2014-12-20 00:35 - 2014-12-21 03:29 - 00000000 ____D () C:\Users\Tomi\Documents\Euro Truck Simulator 2
2014-12-20 00:24 - 2014-12-21 12:18 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-12-20 00:24 - 2014-12-20 00:24 - 01142392 _____ () C:\Users\Tomi\Downloads\SteamSetup (1).exe
2014-12-20 00:24 - 2014-12-20 00:24 - 00000967 _____ () C:\Users\Public\Desktop\Steam.lnk
2014-12-20 00:24 - 2014-12-20 00:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-19 23:35 - 2014-12-20 00:19 - 00000000 ____D () C:\Users\Tomi\AppData\Local\Tomahawk
2014-12-19 21:33 - 2014-12-19 21:33 - 05317104 _____ (Piriform Ltd) C:\Users\Tomi\Downloads\ccsetup501.exe
2014-12-18 14:05 - 2014-12-18 14:19 - 00000000 ____D () C:\Users\Tomi\Downloads\Supa - Čierne dni (2014)
2014-12-18 10:27 - 2014-12-13 06:09 - 00144384 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-12-18 10:27 - 2014-12-13 04:33 - 00115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-12-18 00:31 - 2014-12-18 00:42 - 00000000 ____D () C:\Users\Tomi\Downloads\TRSOCNSHPCMPNPTP
2014-12-18 00:27 - 2014-12-18 00:37 - 00000000 ____D () C:\Users\Tomi\Downloads\HAHA Crew - Vlna (2014)
2014-12-17 21:06 - 2014-12-17 21:08 - 00000000 ____D () C:\Users\Tomi\Downloads\Charli XCX – SUCKER
2014-12-17 21:05 - 2014-12-17 21:08 - 00000000 ____D () C:\Users\Tomi\Downloads\James Blunt - Smoke Signals EP (2014)
2014-12-17 21:01 - 2014-12-15 10:23 - 08524133 _____ () C:\Users\Tomi\Downloads\24 Miracles.m4a
2014-12-17 20:45 - 2014-12-22 03:47 - 00000000 ____D () C:\Users\Tomi\Downloads\Majer
2014-12-17 20:11 - 2014-12-17 20:11 - 00000000 ____D () C:\Users\Tomi\Downloads\Moby - Hotel Ambient (2014)
2014-12-17 19:19 - 2014-12-17 19:19 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-17 18:26 - 2014-12-17 18:26 - 00000000 ____D () C:\Users\Tomi\Downloads\Chase And Status - Brand New Machine (2013)
2014-12-17 16:16 - 2014-12-17 16:16 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\Publish Providers
2014-12-17 16:12 - 2014-12-20 00:09 - 00000000 ____D () C:\Users\Tomi\AppData\Local\Sony
2014-12-17 16:12 - 2014-12-17 16:12 - 00000000 ____D () C:\Program Files\Sony
2014-12-17 16:10 - 2014-12-19 21:36 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\Sony
2014-12-17 15:40 - 2014-12-17 15:41 - 00000000 ____D () C:\Users\Tomi\Downloads\Sony Vegas Pro 12 Build 367 (64 bit patch-KHG) [ChingLiu]
2014-12-17 14:51 - 2014-12-17 14:52 - 00000000 ____D () C:\Users\Tomi\AppData\Local\{AB0ECF1B-CCB1-4E08-83F5-6C4096ECB98E}
2014-12-17 14:48 - 2014-12-17 14:48 - 51790011 _____ () C:\Users\Tomi\Desktop\ahoj.wmv
2014-12-17 12:28 - 2014-12-17 12:28 - 00000000 ____D () C:\Users\Tomi\AppData\Local\Samsung
2014-12-17 01:30 - 2014-12-17 01:39 - 00000000 ____D () C:\Users\Tomi\Downloads\Zlokot - Slowakische genius (2014)
2014-12-15 13:28 - 2014-12-15 13:33 - 00000000 ____D () C:\Users\Tomi\Downloads\Mumford and Sons Sigh No More-2009
2014-12-15 13:27 - 2014-12-15 13:29 - 00000000 ____D () C:\Users\Tomi\Downloads\Mumford & Sons - Babel [2012] [320kbps]-[Frost]
2014-12-15 00:22 - 2014-12-15 00:22 - 00000000 ____D () C:\Users\Tomi\Downloads\Sparkol VideoScribe PRO 2.0 Final - SceneDL
2014-12-14 19:57 - 2003-04-21 21:46 - 00061440 _____ (Printing Communications Assoc., Inc. (PCAUSA)) C:\windows\SysWOW64\ASIW32N50.dll
2014-12-14 19:57 - 2002-09-10 19:35 - 00016302 _____ (Printing Communications Assoc., Inc. (PCAUSA)) C:\windows\SysWOW64\ASINDIS5.sys
2014-12-14 19:57 - 2001-04-16 05:48 - 00015577 _____ () C:\windows\SysWOW64\ASINDIS3.vxd
2014-12-14 12:13 - 2014-12-14 12:13 - 00000000 ____D () C:\Users\Tomi\Downloads\Indila - Mini World (Deluxe)
2014-12-14 00:09 - 2014-12-14 00:09 - 00042482 _____ () C:\Users\Tomi\Downloads\Arrow-S03E09.srt
2014-12-14 00:09 - 2014-12-14 00:09 - 00038150 _____ () C:\Users\Tomi\Downloads\The-Flash-S01E09.srt
2014-12-14 00:08 - 2014-12-14 00:08 - 00034651 _____ () C:\Users\Tomi\Downloads\Two-and-a-Half-Men-S12E07.srt
2014-12-14 00:08 - 2014-12-14 00:08 - 00025750 _____ () C:\Users\Tomi\Downloads\The-Big-Bang-Theory-S08E11.srt
2014-12-14 00:05 - 2014-12-12 08:50 - 137818021 _____ () C:\Users\Tomi\Downloads\The-Big-Bang-Theory-S08E11.mp4
2014-12-14 00:05 - 2014-12-11 08:00 - 237906054 _____ () C:\Users\Tomi\Downloads\Arrow-S03E09.mp4
2014-12-14 00:05 - 2014-12-10 07:34 - 252780494 _____ () C:\Users\Tomi\Downloads\The-Flash-S01E09.mp4
2014-12-14 00:04 - 2014-12-12 09:18 - 148242930 _____ () C:\Users\Tomi\Downloads\Two-and-a-Half-Men-S12E07.mp4
2014-12-13 23:35 - 2014-12-13 23:35 - 00000000 ____D () C:\Users\Tomi\Downloads\Piano Tribute to Miley Cyrus
2014-12-13 23:12 - 2014-12-13 23:12 - 00000000 ____D () C:\Users\Tomi\Downloads\Modre Hory - Bigbeat
2014-12-13 23:08 - 2014-12-13 23:16 - 00000000 ____D () C:\Users\Tomi\Downloads\Tu v dome - Protichodné chute (2014)
2014-12-13 22:39 - 2014-12-13 23:05 - 00000000 ____D () C:\Users\Tomi\Downloads\Banda - hraBanda (2014)
2014-12-13 22:39 - 2014-12-13 23:00 - 00000000 ____D () C:\Users\Tomi\Downloads\Banda - Jedna (2011)
2014-12-13 22:18 - 2014-12-13 22:19 - 00000000 ____D () C:\Users\Tomi\Downloads\TINA - Unplugged CD 2004-2014 (SK 2014)[MP3.CBR.256]
2014-12-13 21:58 - 2014-12-13 22:27 - 00000000 ____D () C:\Users\Tomi\Downloads\Katarína Koščová - Oknom (2014)
2014-12-13 21:54 - 2014-12-13 22:19 - 00000000 ____D () C:\Users\Tomi\Downloads\Tina - Unplugged CD 2004 - 2014 (2014)
2014-12-13 21:33 - 2014-12-13 21:42 - 00000000 ____D () C:\Users\Tomi\Downloads\Markéta Irglová - Muna (2014)
2014-12-13 18:03 - 2014-12-13 18:03 - 00000000 ____D () C:\Users\Tomi\Downloads\Media INFO
2014-12-13 02:59 - 2014-12-19 14:51 - 00000000 ____D () C:\Users\Tomi\Downloads\Gone.Girl.2014.1080p.WEB-DL.DD5.1.H264-RARBG
2014-12-13 02:26 - 2014-12-13 02:35 - 00000000 ____D () C:\Users\Tomi\Downloads\Elán - Živých nás nedostanú (2014)
2014-12-12 15:22 - 2014-12-12 15:24 - 00000000 ____D () C:\Users\Tomi\Downloads\Bastille - VS. (Other People's Heartache, Pt. III)
2014-12-11 23:16 - 2014-12-19 12:44 - 00000000 ____D () C:\Users\Tomi\Downloads\I.Origins.2014.720p.WEB-DL.DD5.1.H264-RARBG
2014-12-11 23:07 - 2014-12-11 23:34 - 00000000 ____D () C:\Users\Tomi\Downloads\Frank Sinatra & Elvis Presley - Christmas Gold Collection - 2014 (MP3)
2014-12-11 23:07 - 2014-12-11 23:28 - 00000000 ____D () C:\Users\Tomi\Downloads\The Who - Who's Next Deluxe Edition (2014)
2014-12-11 19:01 - 2014-12-11 19:04 - 00000000 ____D () C:\Users\Tomi\Downloads\Nicki Minaj - The Pinkprint (Deluxe Edition) (2014)
2014-12-11 18:45 - 2014-12-11 18:48 - 00000000 ____D () C:\Users\Tomi\Downloads\James Bay – The Dark of the Morning – EP
2014-12-11 18:33 - 2014-12-11 18:56 - 00000000 ____D () C:\Users\Tomi\Downloads\James Bay - Hold Back the River - EP
2014-12-11 18:15 - 2014-12-11 18:27 - 00000000 ____D () C:\Users\Tomi\Downloads\Smashing Pumpkins - Monuments to an Elegy (2014)
2014-12-11 18:08 - 2014-12-11 18:08 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\VitySoft
2014-12-11 18:08 - 2014-12-11 18:08 - 00000000 ____D () C:\Users\Tomi\.objectdb
2014-12-11 18:08 - 2014-12-11 18:08 - 00000000 ____D () C:\ProgramData\Sun
2014-12-11 18:08 - 2014-12-11 18:07 - 00098216 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2014-12-11 18:07 - 2014-12-11 18:07 - 00000000 ____D () C:\ProgramData\Oracle
2014-12-11 18:07 - 2014-12-11 18:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-12-11 18:07 - 2014-12-11 18:07 - 00000000 ____D () C:\Program Files (x86)\Java
2014-12-11 18:06 - 2014-12-11 18:08 - 00000000 ____D () C:\Users\Tomi\Downloads\FreeRapid-0.9u4
2014-12-11 18:06 - 2014-12-11 18:06 - 00638888 _____ (Oracle Corporation) C:\Users\Tomi\Downloads\chromeinstall-8u25.exe
2014-12-11 04:31 - 2014-12-11 04:31 - 00000000 ____D () C:\windows\system32\appraiser
2014-12-11 03:07 - 2014-10-18 03:05 - 04121600 _____ (Microsoft Corporation) C:\windows\system32\mf.dll
2014-12-11 03:07 - 2014-10-18 02:33 - 03209728 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf.dll
2014-12-10 23:37 - 2014-12-10 23:37 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
2014-12-10 22:33 - 2014-12-09 10:12 - 00000000 ____D () C:\Users\Tomi\Downloads\Angels & Airwaves
2014-12-10 09:14 - 2014-12-04 03:50 - 00830976 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2014-12-10 09:14 - 2014-12-04 03:50 - 00741376 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2014-12-10 09:14 - 2014-12-04 03:50 - 00413184 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2014-12-10 09:14 - 2014-12-04 03:50 - 00396800 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2014-12-10 09:14 - 2014-12-04 03:50 - 00227328 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-12-10 09:14 - 2014-12-04 03:50 - 00192000 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2014-12-10 09:14 - 2014-12-04 03:44 - 01083392 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-12-10 09:14 - 2014-12-02 00:28 - 01232040 _____ (Microsoft Corporation) C:\windows\system32\aitstatic.exe
2014-12-10 09:14 - 2014-11-27 02:43 - 00389296 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-12-10 09:14 - 2014-11-27 02:10 - 00342200 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-12-10 09:14 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-12-10 09:14 - 2014-11-22 04:06 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-12-10 09:14 - 2014-11-22 04:06 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-12-10 09:14 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-12-10 09:14 - 2014-11-22 03:50 - 00066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-12-10 09:14 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-12-10 09:14 - 2014-11-22 03:49 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-12-10 09:14 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-12-10 09:14 - 2014-11-22 03:41 - 00054784 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-12-10 09:14 - 2014-11-22 03:40 - 00034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-12-10 09:14 - 2014-11-22 03:37 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-12-10 09:14 - 2014-11-22 03:35 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-12-10 09:14 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-12-10 09:14 - 2014-11-22 03:34 - 00814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-12-10 09:14 - 2014-11-22 03:26 - 00968704 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-12-10 09:14 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-12-10 09:14 - 2014-11-22 03:22 - 00490496 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-12-10 09:14 - 2014-11-22 03:20 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-12-10 09:14 - 2014-11-22 03:14 - 00077824 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-12-10 09:14 - 2014-11-22 03:09 - 00199680 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-12-10 09:14 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-12-10 09:14 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-12-10 09:14 - 2014-11-22 03:07 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-12-10 09:14 - 2014-11-22 03:06 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-12-10 09:14 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-12-10 09:14 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-12-10 09:14 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-12-10 09:14 - 2014-11-22 02:59 - 00047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-12-10 09:14 - 2014-11-22 02:58 - 00030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-12-10 09:14 - 2014-11-22 02:56 - 00478208 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-12-10 09:14 - 2014-11-22 02:54 - 00620032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-12-10 09:14 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-12-10 09:14 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-12-10 09:14 - 2014-11-22 02:47 - 01359360 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-12-10 09:14 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-12-10 09:14 - 2014-11-22 02:45 - 00418304 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-12-10 09:14 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-12-10 09:14 - 2014-11-22 02:40 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-12-10 09:14 - 2014-11-22 02:36 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-12-10 09:14 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-12-10 09:14 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-12-10 09:14 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-12-10 09:14 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-12-10 09:14 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-12-10 09:14 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-12-10 09:14 - 2014-11-22 02:21 - 01155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-12-10 09:14 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-12-10 09:14 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-12-10 09:14 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-12-10 09:14 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-12-10 09:14 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-12-10 09:14 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-12-10 09:14 - 2014-11-11 04:09 - 01424384 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2014-12-10 09:14 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2014-12-10 09:14 - 2014-11-11 02:46 - 00119296 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tdx.sys
2014-12-10 09:14 - 2014-10-30 03:03 - 00165888 _____ (Microsoft Corporation) C:\windows\system32\charmap.exe
2014-12-10 09:14 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\windows\SysWOW64\charmap.exe
2014-12-10 09:14 - 2014-10-03 03:12 - 02020352 _____ (Microsoft Corporation) C:\windows\system32\WsmSvc.dll
2014-12-10 09:14 - 2014-10-03 03:12 - 00346624 _____ (Microsoft Corporation) C:\windows\system32\WSManMigrationPlugin.dll
2014-12-10 09:14 - 2014-10-03 03:12 - 00310272 _____ (Microsoft Corporation) C:\windows\system32\WsmWmiPl.dll
2014-12-10 09:14 - 2014-10-03 03:12 - 00181248 _____ (Microsoft Corporation) C:\windows\system32\WsmAuto.dll
2014-12-10 09:14 - 2014-10-03 03:11 - 00266240 _____ (Microsoft Corporation) C:\windows\system32\WSManHTTPConfig.exe
2014-12-10 09:14 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmSvc.dll
2014-12-10 09:14 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\WSManMigrationPlugin.dll
2014-12-10 09:14 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmWmiPl.dll
2014-12-10 09:14 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmAuto.dll
2014-12-10 09:14 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\windows\SysWOW64\WSManHTTPConfig.exe
2014-12-10 09:13 - 2014-11-08 04:16 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-12-10 09:13 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2014-12-09 23:00 - 2014-12-09 23:13 - 00000000 ____D () C:\Users\Tomi\Downloads\The Hobbit - The Battle of the Five Armies (Original Motion Picture Soundtrack) [Special Edition]
2014-12-09 22:48 - 2014-12-09 22:54 - 18583640 _____ (Daum) C:\Users\Tomi\Downloads\PotPlayerSetup64.exe
2014-12-09 17:11 - 2014-12-09 17:11 - 02042441 _____ () C:\Users\Tomi\Downloads\Blažeková, Javorská ,Mokoš _ EVENT MARKETING (1).pptx
2014-12-09 16:48 - 2014-12-09 16:48 - 03975680 _____ () C:\Users\Tomi\Downloads\Starbucks EDITA upravený.ppt
2014-12-09 13:41 - 2014-12-09 13:42 - 00000000 ____D () C:\Users\Tomi\Downloads\Michael Buble - Crazy Love (Bonus Track Version)
2014-12-07 18:13 - 2014-12-07 18:13 - 00255843 _____ () C:\Users\Tomi\Downloads\Kampaň Voda pre život.pptx
2014-12-07 02:09 - 2014-10-02 20:59 - 00000000 ____D () C:\Users\Tomi\Downloads\Kris Allen - Horizons (iTunes)
2014-12-06 13:34 - 2014-12-04 11:21 - 260519446 _____ () C:\Users\Tomi\Downloads\Arrow.S03E08.HDTV.x264-LOL.mp4
2014-12-06 13:27 - 2014-11-28 09:17 - 148330339 _____ () C:\Users\Tomi\Downloads\Two.and.a.Half.Men.S12E05.HDTV.x264-LOL.mp4
2014-12-06 13:26 - 2014-12-06 13:26 - 00032324 _____ () C:\Users\Tomi\Downloads\Two.and.a.Half.Men.S12E06.HDTV.x264-LOL.srt
2014-12-06 13:24 - 2014-12-06 13:25 - 00033807 _____ () C:\Users\Tomi\Downloads\Two.and.a.Half.Men.S12E05.HDTV.x264-LOL.srt
2014-12-06 13:24 - 2014-12-06 13:24 - 00034565 _____ () C:\Users\Tomi\Downloads\Two.and.a.Half.Men.S12E04.HDTV.x264-LOL.srt
2014-12-06 13:22 - 2014-12-06 13:22 - 00044909 _____ () C:\Users\Tomi\Downloads\The.Flash.2014.S01E08.HDTV.x264-LOL.srt
2014-12-06 13:22 - 2014-12-05 08:20 - 171993213 _____ () C:\Users\Tomi\Downloads\Two.and.a.Half.Men.S12E06.HDTV.x264-LOL.mp4
2014-12-06 13:21 - 2014-12-06 13:21 - 00041653 _____ () C:\Users\Tomi\Downloads\Arrow.S03E08.HDTV.x264-LOL.srt
2014-12-06 13:21 - 2014-12-03 07:47 - 266540648 _____ () C:\Users\Tomi\Downloads\The.Flash.2014.S01E08.HDTV.x264-LOL.mp4
2014-12-05 22:42 - 2014-12-05 22:42 - 00000000 ____D () C:\windows\SysWOW64\NV
2014-12-05 22:42 - 2014-12-05 22:42 - 00000000 ____D () C:\windows\system32\NV
2014-12-05 22:40 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\windows\system32\D3DX9_43.dll
2014-12-05 22:40 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DX9_43.dll
2014-12-05 22:40 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\windows\system32\d3dx10_43.dll
2014-12-05 22:40 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_43.dll
2014-12-05 22:40 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\windows\system32\d3dx11_43.dll
2014-12-05 22:40 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx11_43.dll
2014-12-05 22:38 - 2014-11-13 01:20 - 00074056 _____ (Khronos Group) C:\windows\system32\OpenCL.dll
2014-12-05 22:38 - 2014-11-13 01:20 - 00059592 _____ (Khronos Group) C:\windows\SysWOW64\OpenCL.dll
2014-12-05 22:38 - 2014-11-12 22:56 - 06897352 _____ (NVIDIA Corporation) C:\windows\system32\nvcpl.dll
2014-12-05 22:38 - 2014-11-12 22:56 - 03534152 _____ (NVIDIA Corporation) C:\windows\system32\nvsvc64.dll
2014-12-05 22:38 - 2014-11-12 22:56 - 02559808 _____ (NVIDIA Corporation) C:\windows\system32\nvsvcr.dll
2014-12-05 22:38 - 2014-11-12 22:56 - 01092752 _____ (NVIDIA Corporation) C:\windows\system32\nv3dappshext.dll
2014-12-05 22:38 - 2014-11-12 22:56 - 00934032 _____ (NVIDIA Corporation) C:\windows\system32\nvvsvc.exe
2014-12-05 22:38 - 2014-11-12 22:56 - 00386368 _____ (NVIDIA Corporation) C:\windows\system32\nvmctray.dll
2014-12-05 22:38 - 2014-11-12 22:56 - 00067072 _____ (NVIDIA Corporation) C:\windows\system32\nv3dappshextr.dll
2014-12-05 22:38 - 2014-11-12 22:56 - 00062608 _____ (NVIDIA Corporation) C:\windows\system32\nvshext.dll
2014-12-05 22:38 - 2014-11-11 11:29 - 04100776 _____ () C:\windows\system32\nvcoproc.bin
2014-12-05 22:31 - 2014-11-13 01:20 - 31893136 _____ (NVIDIA Corporation) C:\windows\system32\nvoglv64.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 24557712 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvoglv32.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 20986592 _____ (NVIDIA Corporation) C:\windows\system32\nvwgf2umx.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 20922512 _____ (NVIDIA Corporation) C:\windows\system32\nvcompiler.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 19966344 _____ (NVIDIA Corporation) C:\windows\system32\nvd3dumx.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 18514616 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvwgf2um.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 17259664 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvcompiler.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 16884632 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvd3dum.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 14032984 _____ (NVIDIA Corporation) C:\windows\system32\nvopencl.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 13944952 _____ (NVIDIA Corporation) C:\windows\system32\nvcuda.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 13213512 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvlddmkm.sys
2014-12-05 22:31 - 2014-11-13 01:20 - 11397744 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvopencl.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 11336432 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvcuda.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 04292416 _____ (NVIDIA Corporation) C:\windows\system32\nvcuvid.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 04011208 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvcuvid.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 03262784 _____ (NVIDIA Corporation) C:\windows\system32\nvapi64.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 02874456 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvapi.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 01876296 _____ (NVIDIA Corporation) C:\windows\system32\nvdispco6434475.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 01540424 _____ (NVIDIA Corporation) C:\windows\system32\nvdispgenco6434475.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00989056 _____ (NVIDIA Corporation) C:\windows\system32\nvumdshimx.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00964928 _____ (NVIDIA Corporation) C:\windows\system32\NvIFR64.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00935240 _____ (NVIDIA Corporation) C:\windows\system32\NvFBC64.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00923792 _____ (NVIDIA Corporation) C:\windows\SysWOW64\NvIFR.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00900928 _____ (NVIDIA Corporation) C:\windows\SysWOW64\NvFBC.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00871648 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvumdshim.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00352016 _____ (NVIDIA Corporation) C:\windows\system32\nvoglshim64.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00303600 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvoglshim32.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00174856 _____ (NVIDIA Corporation) C:\windows\system32\nvinitx.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00156840 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvinit.dll
2014-12-05 22:31 - 2014-11-13 01:20 - 00031560 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvpciflt.sys
2014-12-05 22:31 - 2014-11-13 01:20 - 00027094 _____ () C:\windows\system32\nvinfo.pb
2014-12-05 22:31 - 2014-10-03 20:23 - 00038216 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvvad64v.sys
2014-12-05 22:31 - 2014-10-03 20:23 - 00032584 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvaudcap32v.dll
2014-12-05 22:28 - 2014-12-05 22:29 - 308364224 _____ (NVIDIA Corporation) C:\Users\Tomi\Downloads\344.75-notebook-win8-win7-64bit-international-whql.exe
2014-12-05 14:21 - 2014-12-22 00:29 - 00000000 ____D () C:\Users\Tomi\Downloads\The Newsroom 3
2014-12-05 13:21 - 2014-12-05 13:35 - 00000000 ____D () C:\Users\Tomi\Downloads\BEYONCÉ [Platinum Edition]
2014-12-05 12:48 - 2014-12-05 13:01 - 00000000 ____D () C:\Users\Tomi\Downloads\Wonder Where We Land (Deluxe Version)
2014-12-05 12:35 - 2014-12-05 12:38 - 1625555329 _____ () C:\Users\Tomi\Downloads\UAMV.zip
2014-12-05 00:30 - 2014-12-05 00:30 - 04359432 _____ (IObit ) C:\Users\Tomi\Downloads\gb3.4-setup.exe
2014-12-05 00:30 - 2014-12-05 00:30 - 00003158 _____ () C:\windows\System32\Tasks\Game_Booster_AutoUpdate
2014-12-05 00:30 - 2014-12-05 00:30 - 00001186 _____ () C:\Users\Public\Desktop\Switch to Gaming Mode.lnk
2014-12-05 00:30 - 2014-12-05 00:30 - 00001174 _____ () C:\Users\Public\Desktop\Game Booster 3.lnk
2014-12-05 00:30 - 2014-12-05 00:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Booster 3
2014-12-05 00:30 - 2014-12-05 00:30 - 00000000 ____D () C:\ProgramData\IObit
2014-12-05 00:30 - 2014-12-05 00:30 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-12-05 00:07 - 2014-12-05 00:07 - 00000000 ____D () C:\ProgramData\Orbit
2014-12-05 00:02 - 2014-11-25 14:09 - 00000000 ____D () C:\Users\Tomi\Downloads\Far Cry 4 Update v1.4-RELOADED
2014-12-05 00:01 - 2014-11-25 19:59 - 00000000 ____D () C:\Users\Tomi\Downloads\Far Cry 4 - CPU Fix
2014-12-04 23:32 - 2014-12-05 00:02 - 00000613 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Far Cry 4.lnk
2014-12-04 19:08 - 2014-11-18 22:56 - 3427958784 _____ () C:\Users\Tomi\Downloads\Far Cry 4 + Crack.iso
2014-12-04 17:26 - 2014-12-04 17:26 - 00000000 ____D () C:\windows\SysWOW64\IPM
2014-12-02 02:22 - 2014-12-02 02:22 - 00000000 ____H () C:\windows\system32\Drivers\Msft_Kernel_ggsomc_01009.Wdf
2014-12-02 02:22 - 2014-12-02 02:22 - 00000000 ____H () C:\windows\system32\Drivers\Msft_Kernel_ggflt_01009.Wdf
2014-12-02 01:47 - 2014-12-02 01:47 - 00030424 _____ (Sony Mobile Communications) C:\windows\system32\Drivers\ggsomc.sys
2014-12-02 01:47 - 2014-12-02 01:47 - 00016088 _____ (Sony Mobile Communications) C:\windows\system32\Drivers\ggflt.sys
2014-12-02 01:46 - 2014-12-02 01:46 - 00000000 ____D () C:\ProgramData\Sony Mobile
2014-12-02 01:46 - 2014-12-02 01:46 - 00000000 ____D () C:\Program Files (x86)\Sony Mobile
2014-12-02 01:43 - 2014-12-20 00:09 - 00000000 ____D () C:\ProgramData\Sony
2014-12-02 01:43 - 2014-12-20 00:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2014-12-02 01:43 - 2014-12-20 00:09 - 00000000 ____D () C:\Program Files (x86)\Sony
2014-12-02 01:43 - 2014-12-02 13:45 - 00002026 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2014-12-02 01:41 - 2014-12-02 01:42 - 28112224 _____ (Sony Mobile Communications ) C:\Users\Tomi\Downloads\Sony PC Companion_Web.exe
2014-12-01 19:47 - 2014-12-05 13:17 - 00000000 ____D () C:\Users\Tomi\Downloads\Selah Sue - Alone - EP
2014-11-30 16:09 - 2014-11-30 11:52 - 00000000 ____D () C:\Users\Tomi\Downloads\Aneta Langerová-Na radosti (2014)
2014-11-26 20:37 - 2014-11-26 20:47 - 00000000 ____D () C:\Users\Tomi\Downloads\Mňága a Žďorp - Made in China (2014)
2014-11-25 17:09 - 2014-11-25 17:09 - 11449893 _____ () C:\Users\Tomi\Downloads\Praktický návrh EM stratégie.pptx
2014-11-24 14:40 - 2014-11-24 14:40 - 00030704 _____ () C:\Users\Tomi\Downloads\Two-and-a-Half-Men-S12E03.srt
2014-11-24 14:39 - 2014-11-24 14:39 - 00030605 _____ () C:\Users\Tomi\Downloads\Two-and-a-Half-Men-S12E02.srt
2014-11-24 14:39 - 2014-11-24 14:39 - 00027085 _____ () C:\Users\Tomi\Downloads\The-Big-Bang-Theory-S08E10.srt
2014-11-24 14:38 - 2014-11-24 14:38 - 00027615 _____ () C:\Users\Tomi\Downloads\The-Big-Bang-Theory-S08E08.srt
2014-11-24 14:38 - 2014-11-24 14:38 - 00027007 _____ () C:\Users\Tomi\Downloads\The-Big-Bang-Theory-S08E09.srt
2014-11-24 14:36 - 2014-11-24 14:36 - 00042865 _____ () C:\Users\Tomi\Downloads\the.flash.2014.s01e06.hdtv.x264-lol.srt
2014-11-24 14:36 - 2014-11-24 14:36 - 00041935 _____ () C:\Users\Tomi\Downloads\the.flash.2014.s01.e05.hdtv.x264-lol.srt
2014-11-24 14:36 - 2014-11-21 07:37 - 146877652 _____ () C:\Users\Tomi\Downloads\The-Big-Bang-Theory-S08E10.mp4
2014-11-24 14:36 - 2014-11-14 07:25 - 131724432 _____ () C:\Users\Tomi\Downloads\The-Big-Bang-Theory-S08E09.mp4
2014-11-24 14:35 - 2014-11-21 08:01 - 155682742 _____ () C:\Users\Tomi\Downloads\Two.and.a.Half.Men.S12E04.HDTV.x264-LOL.mp4
2014-11-24 14:35 - 2014-11-19 08:05 - 230917489 _____ () C:\Users\Tomi\Downloads\the.flash.2014.s01e06.hdtv.x264-lol.mp4
2014-11-24 14:35 - 2014-11-14 08:56 - 161877033 _____ () C:\Users\Tomi\Downloads\Two-and-a-Half-Men-S12E03.mp4
2014-11-24 14:35 - 2014-11-12 08:08 - 230692300 _____ () C:\Users\Tomi\Downloads\the.flash.2014.s01.e05.hdtv.x264-lol.mp4
2014-11-24 14:34 - 2014-11-24 14:34 - 00045925 _____ () C:\Users\Tomi\Downloads\Arrow.s03e06.hdtv.x264-lol.srt
2014-11-24 14:34 - 2014-11-24 14:34 - 00042256 _____ () C:\Users\Tomi\Downloads\Arrow.s03e07.hdtv.x264-lol.srt
2014-11-24 14:33 - 2014-11-20 07:45 - 241928411 _____ () C:\Users\Tomi\Downloads\Arrow.s03e07.hdtv.x264-lol.mp4
2014-11-24 14:33 - 2014-11-13 07:44 - 247068553 _____ () C:\Users\Tomi\Downloads\Arrow.s03e06.hdtv.x264-lol.mp4
2014-11-23 01:22 - 2014-11-22 23:37 - 00000000 ____D () C:\Users\Tomi\Downloads\Robert Burian - (2014)
2014-11-23 00:22 - 2014-11-23 00:28 - 106968919 _____ () C:\Users\Tomi\Downloads\Robert-Burian---(2014).rar
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-22 19:08 - 2014-07-06 19:58 - 00000830 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-12-22 19:07 - 2014-07-10 22:41 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\AIMP3
2014-12-22 18:34 - 2014-08-27 11:13 - 00000936 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-22 17:10 - 2011-09-07 01:18 - 01781363 _____ () C:\windows\WindowsUpdate.log
2014-12-22 15:00 - 2009-07-14 06:13 - 00781298 _____ () C:\windows\system32\PerfStringBackup.INI
2014-12-22 13:00 - 2014-07-06 19:20 - 00000000 ____D () C:\Users\Tomi\AppData\Local\CrashDumps
2014-12-22 13:00 - 2009-07-14 05:45 - 00028848 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-22 13:00 - 2009-07-14 05:45 - 00028848 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-22 12:54 - 2014-07-23 22:34 - 00000000 ____D () C:\ProgramData\Origin
2014-12-22 12:53 - 2014-07-23 22:33 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-12-22 12:52 - 2014-08-27 11:13 - 00000932 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-22 12:52 - 2009-07-14 06:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-12-22 12:41 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\Globalization
2014-12-22 00:35 - 2014-07-07 09:49 - 00000000 ____D () C:\The KMPlayer
2014-12-21 13:04 - 2014-10-23 16:23 - 00000000 ____D () C:\AdwCleaner
2014-12-21 01:35 - 2014-07-06 20:20 - 00000000 ____D () C:\ProgramData\Package Cache
2014-12-21 01:16 - 2014-10-22 11:25 - 00000000 ____D () C:\Program Files\trend micro
2014-12-20 00:22 - 2014-10-23 11:22 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-12-20 00:06 - 2014-10-17 12:33 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\Corel
2014-12-20 00:06 - 2014-10-17 12:23 - 00000000 ____D () C:\ProgramData\Corel
2014-12-20 00:06 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-12-20 00:02 - 2014-10-17 12:23 - 00000000 ____D () C:\Program Files\Corel
2014-12-19 23:57 - 2014-10-23 11:18 - 00000000 ____D () C:\ProgramData\Adobe
2014-12-19 23:51 - 2014-07-06 19:16 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\Adobe
2014-12-19 23:44 - 2014-10-23 11:25 - 00000000 ____D () C:\Program Files\Adobe
2014-12-19 21:36 - 2014-07-11 12:01 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\uTorrent
2014-12-19 21:34 - 2014-07-06 19:54 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-12-19 21:34 - 2014-07-06 19:54 - 00000000 ____D () C:\Program Files\CCleaner
2014-12-18 19:49 - 2014-07-07 08:27 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-18 14:08 - 2014-07-11 12:08 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\Mp3tag
2014-12-17 16:16 - 2014-11-04 11:35 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\NVIDIA
2014-12-14 20:25 - 2011-09-06 09:22 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-12-13 20:14 - 2014-07-19 15:59 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-12-13 20:14 - 2014-07-19 15:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-12-13 19:07 - 2014-07-19 15:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-12-13 18:32 - 2014-10-17 13:40 - 00000000 ____D () C:\Users\Tomi\Downloads\GOF1214-RLD
2014-12-13 00:27 - 2011-09-06 09:56 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-12-12 23:58 - 2014-07-07 10:37 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\DAEMON Tools Lite
2014-12-12 22:37 - 2014-08-27 11:14 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-12-12 11:42 - 2014-10-23 11:18 - 00000000 ____D () C:\Users\Tomi\AppData\Local\Adobe
2014-12-12 11:42 - 2014-07-06 19:58 - 00701616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2014-12-12 11:42 - 2014-07-06 19:58 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-12 11:42 - 2014-07-06 19:58 - 00003768 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2014-12-12 11:39 - 2014-07-17 18:59 - 00001133 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-12-12 11:39 - 2014-07-06 20:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-12-12 11:39 - 2014-07-06 20:21 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-12-11 19:50 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\rescache
2014-12-11 18:53 - 2014-10-16 11:17 - 00000000 ____D () C:\Users\Tomi\Downloads\James Bay - Let It Go - EP
2014-12-11 18:08 - 2014-07-06 18:55 - 00000000 ____D () C:\Users\Tomi\AppData\Local\VirtualStore
2014-12-11 18:08 - 2014-07-06 18:54 - 00000000 ____D () C:\Users\Tomi
2014-12-11 04:31 - 2014-07-06 22:05 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-12-11 04:31 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\SysWOW64\sk-SK
2014-12-11 04:31 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\system32\sk-SK
2014-12-11 04:31 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-12-11 04:31 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\AppCompat
2014-12-11 03:18 - 2014-07-19 18:10 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-11 03:16 - 2014-07-06 21:41 - 00000000 ____D () C:\windows\system32\MRT
2014-12-11 03:08 - 2014-07-06 21:41 - 112710672 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-12-08 07:03 - 2014-07-07 18:09 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\Skype
2014-12-06 13:34 - 2014-07-09 23:52 - 00000000 ____D () C:\Users\Tomi\AppData\Local\JDownloader v2.0
2014-12-05 22:42 - 2011-09-06 09:25 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-12-05 22:41 - 2014-10-01 10:10 - 00001351 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2014-12-05 22:38 - 2014-07-20 16:51 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-12-05 22:38 - 2011-09-06 09:24 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-12-05 22:38 - 2011-09-06 09:23 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-12-05 22:38 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\Help
2014-12-05 00:08 - 2014-10-17 21:22 - 00000000 ____D () C:\Users\Tomi\Documents\My Games
2014-12-02 15:51 - 2014-07-19 18:10 - 00000000 ____D () C:\Users\Tomi\AppData\Local\Microsoft Help
2014-11-28 13:52 - 2014-09-09 22:53 - 00000000 ____D () C:\Users\Tomi\AppData\Roaming\Apple Computer
Some content of TEMP:
====================
C:\Users\Tomi\AppData\Local\Temp\avgnt.exe
C:\Users\Tomi\AppData\Local\Temp\Quarantine.exe
C:\Users\Tomi\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-12-15 11:46
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:271 GB) (Free:101.66 GB) NTFS
Drive d: () (Fixed) (Total:405.4 GB) (Free:42.71 GB) NTFS
Available physical RAM: 2004.35 MB
Total physical RAM: 4009.55 MB
Percentage of memory in use: 50%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 698.6 GB) (Disk ID: C742B000)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=271 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=405.4 GB) - (Type=OF Extended)
Partition 4: (Not Active) - (Size=22.1 GB) - (Type=27)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Avira Desktop (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Tomi\Desktop" je 286 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Re: Prosím o kontrolu

Kód: Vybrat vše
Start
CloseProcesses:
CreateRestorePoint:
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-08-01] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Internet Explorer\Main,Start Page = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org)
2014-12-21 13:09 - 2014-12-21 13:09 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Tomi\Downloads\mbam-setup-2.0.4.1028.exe
2014-12-05 00:30 - 2014-12-05 00:30 - 04359432 _____ (IObit ) C:\Users\Tomi\Downloads\gb3.4-setup.exe
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
Reboot:
End
Kliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev fixlist a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Spustte FRST jako spravce, kliknete na napis Fix a program vykona prikazy.
Po restartu pc by se mel objevit novy log - s nazvem fixlog, ten mi sem zase zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu
celkom už aj cítiť zmenu
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 22-12-2014 01
Ran by Tomi at 2014-12-23 00:14:03 Run:1
Running from C:\Users\Tomi\Desktop
Loaded Profiles: Tomi & (Available profiles: Tomi)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
CreateRestorePoint:
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-08-01] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Internet Explorer\Main,Start Page = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org)
2014-12-21 13:09 - 2014-12-21 13:09 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Tomi\Downloads\mbam-setup-2.0.4.1028.exe
2014-12-05 00:30 - 2014-12-05 00:30 - 04359432 _____ (IObit ) C:\Users\Tomi\Downloads\gb3.4-setup.exe
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
Restore point was successfully created.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Windows\CurrentVersion\Run\\EADM => value deleted successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value deleted successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Run\\EADM => value deleted successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value deleted successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin" => Key deleted successfully.
WinRing0_1_2_0 => Service deleted successfully.
C:\Users\Tomi\Downloads\mbam-setup-2.0.4.1028.exe => Moved successfully.
C:\Users\Tomi\Downloads\gb3.4-setup.exe => Moved successfully.
C:\windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 814.4 MB temporary data.
The system needed a reboot.
==== End of Fixlog 00:16:15 ====
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 22-12-2014 01
Ran by Tomi at 2014-12-23 00:14:03 Run:1
Running from C:\Users\Tomi\Desktop
Loaded Profiles: Tomi & (Available profiles: Tomi)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
CreateRestorePoint:
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-08-01] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Internet Explorer\Main,Start Page = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = http://samsung.msn.com
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org)
2014-12-21 13:09 - 2014-12-21 13:09 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Tomi\Downloads\mbam-setup-2.0.4.1028.exe
2014-12-05 00:30 - 2014-12-05 00:30 - 04359432 _____ (IObit ) C:\Users\Tomi\Downloads\gb3.4-setup.exe
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
Restore point was successfully created.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Windows\CurrentVersion\Run\\EADM => value deleted successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value deleted successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Run\\EADM => value deleted successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value deleted successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKU\S-1-5-21-1571869238-3936240484-2151935606-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin" => Key deleted successfully.
WinRing0_1_2_0 => Service deleted successfully.
C:\Users\Tomi\Downloads\mbam-setup-2.0.4.1028.exe => Moved successfully.
C:\Users\Tomi\Downloads\gb3.4-setup.exe => Moved successfully.
C:\windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 814.4 MB temporary data.
The system needed a reboot.
==== End of Fixlog 00:16:15 ====
Re: Prosím o kontrolu


vyosek píše:T-Cleaner http://tharifas.sweb.cz/T-Cleaner.exe
- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry mohou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)

Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!
(Pokud je v pc vice uzivatelskych uctu, pouzijte program i v nich)

Stahnete program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar a dalsi nesmysly.
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu
no určite pomohlo ntb je oveľa viac fresh! ďakujem 

Re: Prosím o kontrolu
Nemate zac! 
Mejte se a treba zase nekdy


Mejte se a treba zase nekdy


Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).