Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Problém s virom (Adware) +video

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
zwrtron
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 16 čer 2015 13:22

Problém s virom (Adware) +video

#1 Příspěvek od zwrtron »

Dobrý deň, mám problém ktorý sa mi objavil zhruba pred 2 dňami. Ide o to, že na niektorých stránkach nedá prakticky nič robiť. Je to asi nezmysel popisovať, tak prikladám video nižšie.
Ešte zopár informácií:
Windows bol preinštalovaný (15.6.2015, včera)
Nástroje, ktoré som použil (odstránili zopár veci, ale stále bez zmeny):
Adwcleaner, Malwarebytes Anti-Malware, Full scan cez antivirus Advanced SystemCare ultimate a Rogue Killer.
Používam Google Chrome + Adblock Pro.

https://www.youtube.com/watch?v=EZkk4s7 ... e=youtu.be

Nikdy mi to nerobilo, nerobí to na všetkych stránkach (napríklad na tejto nie), no robí mi to aj na druhom notebooku a mobile (možno bol napadnutý router). Používam DLink ADSL 2641R, Internet Slovanet.

Ďakujem za všetky rady.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Problém s virom (Adware) +video

#2 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

zwrtron
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 16 čer 2015 13:22

Re: Problém s virom (Adware) +video

#3 Příspěvek od zwrtron »

FRST.txt
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:13-06-2015
Ran by TdoPC (administrator) on TDO_PC on 16-06-2015 14:38:06
Running from C:\Users\TdoPC\Desktop
Loaded Profiles: TdoPC (Available Profiles: TdoPC)
Platform: Windows 7 Ultimate (X64) OS Language: Angličtina (USA)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(IOBit) D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCAvSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(A-Volute) C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzSurroundVADStreamingService.exe
(Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(IObit) D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\Monitor.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(forum.viry.cz) C:\Users\TdoPC\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [590656 2015-05-15] (Razer Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-1859888411-670573774-4015804390-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> D:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2015-06-16] (IObit)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-06-15] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> D:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-06-15] (Oracle Corporation)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 5.104.175.150 8.8.8.8

FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2013-03-21] (Adobe Systems)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-11-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-11-06] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-06-15] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-06-15] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> D:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> D:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-06-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-06-15] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2013-03-21] (Adobe Systems)

Chrome:
=======
CHR Profile: C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-06-15]
CHR Extension: (YouTube) - C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-06-15]
CHR Extension: (Google Search) - C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-06-15]
CHR Extension: (Google Wallet) - C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-06-15]
CHR Extension: (Adblock Pro) - C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocifcklkibdehekfnmflempfgjhbedch [2015-06-15]
CHR Extension: (Gmail) - C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-15]
CHR Profile: C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Google Drive) - C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-06-16]
CHR Extension: (YouTube) - C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-06-16]
CHR Extension: (Google Search) - C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-06-16]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-06-16]
CHR Extension: (Google Wallet) - C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-06-16]
CHR Extension: (Adblock Pro) - C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ocifcklkibdehekfnmflempfgjhbedch [2015-06-16]
CHR Extension: (Gmail) - C:\Users\TdoPC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-16]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ASCAntivirusSrv; D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ascavsvc.exe [660768 2015-06-11] (IOBit)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-01-31] (Intel Corporation)
S4 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-11-06] (Intel Corporation)
S4 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2585376 2015-03-26] (IObit)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-04-18] ()
S4 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187072 2015-02-05] ()
R2 RzSurroundVADStreamingService; C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzSurroundVADStreamingService.exe [4250624 2015-02-03] (A-Volute) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
S4 Windows Media Licensing Console; C:\Windows\SysWOW64\mscl.exe [2460509 2015-06-15] () [File not signed]
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3388144 2013-04-18] (Intel® Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 bdfsfltr; C:\Windows\system32\Drivers\bdfsfltr.sys [431176 2011-03-24] (BitDefender)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28656 2013-01-31] (Intel Corporation)
R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [117912 2012-11-19] (Qualcomm Atheros Co., Ltd.)
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-02-05] (Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129600 2015-03-03] (Razer, Inc.)
R3 RZSURROUNDVADService; C:\Windows\System32\drivers\RzSurroundVAD.sys [40640 2015-02-09] (Windows (R) Win 7 DDK provider)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [35064 2015-06-16] ()
S3 Trufos; C:\Windows\System32\DRIVERS\TRUFOS.sys [329800 2011-11-21] (BitDefender S.R.L.)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-16 14:38 - 2015-06-16 14:38 - 00011231 _____ C:\Users\TdoPC\Desktop\FRST.txt
2015-06-16 14:36 - 2015-06-16 14:38 - 00000000 ____D C:\FRST
2015-06-16 14:36 - 2015-06-16 14:36 - 00112640 _____ (forum.viry.cz) C:\Users\TdoPC\Desktop\FRSTLauncher.exe
2015-06-16 14:35 - 2015-06-16 14:35 - 02109952 _____ (Farbar) C:\Users\TdoPC\Desktop\FRST64.exe
2015-06-16 14:33 - 2015-06-16 14:33 - 00000056 _____ C:\Windows\setupact.log
2015-06-16 14:33 - 2015-06-16 14:33 - 00000000 _____ C:\Windows\setuperr.log
2015-06-16 14:32 - 2015-06-16 14:32 - 00004020 _____ C:\Windows\PFRO.log
2015-06-16 14:30 - 2015-06-16 14:30 - 50593792 _____ C:\Windows\system32\config\SOFTWARE.iobit
2015-06-16 14:30 - 2015-06-16 14:30 - 00188416 _____ C:\Windows\system32\config\DEFAULT.iobit
2015-06-16 14:30 - 2015-06-16 14:30 - 00061440 _____ C:\Windows\system32\config\SAM.iobit
2015-06-16 14:30 - 2015-06-16 14:30 - 00024576 _____ C:\Windows\system32\config\SECURITY.iobit
2015-06-16 14:02 - 2015-06-16 14:02 - 08472669 _____ C:\Users\TdoPC\Desktop\Video_2015-06-16_140209.wmv
2015-06-16 12:47 - 2015-06-16 12:47 - 00000000 ____D C:\Users\TdoPC\AppData\Local\CrashDumps
2015-06-16 12:46 - 2015-06-16 12:46 - 00000000 ____D C:\Users\TdoPC\AppData\Local\NVIDIA
2015-06-16 12:46 - 2015-04-08 23:30 - 06841488 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-06-16 12:46 - 2015-04-08 23:30 - 03478344 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-06-16 12:46 - 2015-04-08 23:30 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-06-16 12:46 - 2015-04-08 23:30 - 01047696 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2015-06-16 12:46 - 2015-04-08 23:30 - 00936264 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-06-16 12:46 - 2015-04-08 23:30 - 00569160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\oemdspif.dll
2015-06-16 12:46 - 2015-04-08 23:30 - 00385168 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-06-16 12:46 - 2015-04-08 23:30 - 00075080 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2015-06-16 12:46 - 2015-04-08 23:30 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-06-16 12:46 - 2015-04-08 19:52 - 04336074 _____ C:\Windows\system32\nvcoproc.bin
2015-06-16 12:45 - 2015-06-16 12:46 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2015-06-16 12:45 - 2015-06-16 12:45 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-06-16 12:44 - 2015-04-09 02:58 - 31570064 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 30397072 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 25375048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 24053576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 17176128 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 15818528 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 15716232 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 14617288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 14006752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 12852784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 12689592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 11380728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 10423952 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-06-16 12:44 - 2015-04-09 02:58 - 03317344 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 02935416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 02896528 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 02573456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 01895568 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435012.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435012.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 01086424 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 01047368 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 01037640 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 00970568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 00962192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 00927440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 00175880 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 00154256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 00150648 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-06-16 12:44 - 2015-04-09 02:58 - 00031376 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2015-06-16 12:44 - 2015-04-09 02:58 - 00029329 _____ C:\Windows\system32\nvinfo.pb
2015-06-16 12:42 - 2015-06-16 12:46 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-06-16 12:41 - 2015-06-16 12:41 - 00000000 ____D C:\Users\TdoPC\Documents\Assetto Corsa
2015-06-16 12:41 - 2015-06-16 12:41 - 00000000 ____D C:\ProgramData\ALI213
2015-06-16 11:52 - 2015-03-03 19:47 - 00129600 _____ (Razer, Inc.) C:\Windows\system32\Drivers\rzpnk.sys
2015-06-16 11:51 - 2015-02-05 01:24 - 00037184 _____ (Razer, Inc.) C:\Windows\system32\Drivers\rzpmgrk.sys
2015-06-16 11:49 - 2015-06-16 11:49 - 00000000 ____D C:\ProgramData\RzSurroundVAD_1.1.60.0
2015-06-16 11:21 - 2015-06-16 11:52 - 00000000 ____D C:\Program Files (x86)\Razer
2015-06-16 11:21 - 2015-06-16 11:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2015-06-16 11:09 - 2015-06-16 11:53 - 00000000 ____D C:\ProgramData\Razer
2015-06-16 11:09 - 2015-06-16 11:09 - 00000000 ____D C:\Users\TdoPC\AppData\Local\Razer
2015-06-16 10:59 - 2015-06-16 11:09 - 28849904 _____ C:\Users\TdoPC\Downloads\vlc-2.2.1-win32.exe
2015-06-16 10:49 - 2015-06-16 10:49 - 00000000 ____D C:\Users\TdoPC\AppData\Roaming\ProductData
2015-06-16 10:43 - 2015-06-16 13:47 - 00002900 _____ C:\Windows\System32\Tasks\Uninstaller_SkipUac_TdoPC
2015-06-16 10:43 - 2015-06-16 13:47 - 00000000 ____D C:\ProgramData\ProductData
2015-06-16 10:43 - 2015-06-16 13:47 - 00000000 ____D C:\ProgramData\IObit
2015-06-16 10:43 - 2015-06-16 10:48 - 00003198 _____ C:\Windows\System32\Tasks\ASCU8_PerformanceMonitor
2015-06-16 10:43 - 2015-06-16 10:48 - 00002882 _____ C:\Windows\System32\Tasks\ASCU8_SkipUac_TdoPC
2015-06-16 10:43 - 2015-06-16 10:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare Ultimate 8
2015-06-16 10:43 - 2015-06-16 10:43 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled
2015-06-16 10:43 - 2015-06-16 10:43 - 00000000 ____D C:\Users\TdoPC\AppData\Roaming\Apple Computer
2015-06-16 10:43 - 2015-06-16 10:43 - 00000000 ____D C:\ProgramData\{D76294E6-03B8-4971-AF2E-3F846161A690}
2015-06-16 10:43 - 2015-06-16 10:43 - 00000000 ____D C:\ProgramData\{ACBCD40A-42A8-4FF9-BD42-ABCD14998CBA}
2015-06-16 10:43 - 2015-06-16 10:43 - 00000000 ____D C:\Program Files (x86)\IObit
2015-06-16 10:43 - 2011-11-21 18:59 - 00329800 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys
2015-06-16 10:43 - 2011-03-24 15:36 - 00431176 _____ (BitDefender) C:\Windows\system32\Drivers\bdfsfltr.sys
2015-06-16 10:41 - 2015-06-16 10:48 - 00000000 ____D C:\Users\TdoPC\AppData\Roaming\IObit
2015-06-16 10:40 - 2015-06-16 10:40 - 00000000 ____D C:\Users\TdoPC\Desktop\Advanced_SystemCare_Ultimate_8.0.1_[.CWs1990]
2015-06-16 10:30 - 2015-06-16 10:30 - 00000000 ____D C:\Users\TdoPC\Desktop\Fraps 3.5.99 with Full Licensed [Baba Servers
2015-06-16 10:29 - 2015-06-16 10:29 - 00035064 _____ C:\Windows\system32\Drivers\TrueSight.sys
2015-06-16 10:28 - 2015-06-16 10:29 - 00000000 ____D C:\ProgramData\RogueKiller
2015-06-16 10:19 - 2015-06-16 10:51 - 00003584 _____ C:\Windows\System32\Tasks\AutoKMS
2015-06-16 10:19 - 2015-06-16 10:19 - 00000000 ____D C:\Windows\AutoKMS
2015-06-16 03:10 - 2015-06-16 14:31 - 00000000 ____D C:\Windows\Panther
2015-06-16 02:45 - 2015-06-16 02:45 - 00000000 ____D C:\Windows.old.000
2015-06-15 23:42 - 2015-06-15 23:42 - 00000000 _____ C:\Windows\SysWOW64\64.dat
2015-06-15 23:29 - 2009-11-25 21:47 - 01942856 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2015-06-15 23:29 - 2009-11-25 21:47 - 01130824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2015-06-15 23:29 - 2009-11-25 21:47 - 00444752 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2015-06-15 23:29 - 2009-11-25 21:47 - 00320352 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2015-06-15 23:29 - 2009-11-25 21:47 - 00297808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscoree.dll
2015-06-15 23:29 - 2009-11-25 21:47 - 00295264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHost.exe
2015-06-15 23:29 - 2009-11-25 21:47 - 00109912 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2015-06-15 23:29 - 2009-11-25 21:47 - 00099176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHostProxy.dll
2015-06-15 23:29 - 2009-11-25 21:47 - 00049472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netfxperf.dll
2015-06-15 23:29 - 2009-11-25 21:47 - 00048960 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2015-06-15 23:27 - 2015-06-15 23:27 - 02460509 _____ C:\Windows\SysWOW64\mscl.exe
2015-06-15 23:27 - 2015-06-15 23:27 - 00000000 ____D C:\Windows\SysWOW64\shared
2015-06-15 23:27 - 2015-06-15 23:27 - 00000000 ____D C:\Windows\SysWOW64\64
2015-06-15 23:27 - 2015-06-15 23:27 - 00000000 ____D C:\Windows\SysWOW64\32
2015-06-15 23:24 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2015-06-15 23:24 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2015-06-15 23:24 - 2009-03-16 14:18 - 00069448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2015-06-15 23:24 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2015-06-15 23:24 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2015-06-15 23:24 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2015-06-15 23:24 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2015-06-15 23:23 - 2015-06-15 23:23 - 00000000 ____D C:\Windows\SysWOW64\Drivers\sk-SK
2015-06-15 23:23 - 2015-06-15 23:23 - 00000000 ____D C:\Program Files (x86)\Microsoft XNA
2015-06-15 23:22 - 2015-06-15 23:22 - 00000000 ____D C:\Windows\system32\Drivers\sk-SK
2015-06-15 23:22 - 2015-06-15 23:22 - 00000000 ____D C:\Windows\sk-SK
2015-06-15 23:22 - 2015-06-15 23:22 - 00000000 ____D C:\Users\TdoPC\AppData\Roaming\WinRAR
2015-06-15 23:22 - 2015-06-15 23:22 - 00000000 ____D C:\Users\TdoPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-06-15 23:22 - 2015-06-15 23:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-06-15 23:22 - 2015-06-15 23:22 - 00000000 ____D C:\Program Files\WinRAR
2015-06-15 23:20 - 2015-06-15 23:20 - 00000829 _____ C:\Users\TdoPC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2015-06-15 23:19 - 2015-06-16 12:36 - 00000000 ____D C:\Users\TdoPC\AppData\Roaming\uTorrent
2015-06-15 23:04 - 2015-06-16 13:41 - 00000024 _____ C:\Users\TdoPC\random.dat
2015-06-15 23:04 - 2015-06-16 13:29 - 00000044 _____ C:\Users\TdoPC\jagex_cl_runescape_LIVE.dat
2015-06-15 23:01 - 2015-06-16 13:31 - 00000024 _____ C:\Users\TdoPC\jagexappletviewer.preferences
2015-06-15 23:01 - 2015-06-15 23:03 - 00000000 ____D C:\Users\TdoPC\jagexcache
2015-06-15 23:01 - 2015-06-15 23:01 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-06-15 23:01 - 2015-06-15 23:01 - 00002082 _____ C:\Users\TdoPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneScape.lnk
2015-06-15 23:01 - 2015-06-15 23:01 - 00002052 _____ C:\Users\TdoPC\Desktop\RuneScape.lnk
2015-06-15 23:01 - 2015-06-15 23:01 - 00000000 ____D C:\Users\TdoPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneScape
2015-06-15 23:01 - 2015-06-15 23:01 - 00000000 ____D C:\ProgramData\Sun
2015-06-15 23:01 - 2015-06-15 23:01 - 00000000 ____D C:\ProgramData\Oracle
2015-06-15 23:01 - 2015-06-15 23:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-06-15 23:01 - 2015-06-15 23:01 - 00000000 ____D C:\Program Files (x86)\Java
2015-06-15 19:52 - 2015-06-16 10:51 - 00003500 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-Tdo_PC-TdoPC
2015-06-15 19:41 - 2015-06-15 19:41 - 00000765 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC (64 Bit).lnk
2015-06-15 19:39 - 2015-06-15 19:39 - 00000000 ____D C:\Users\TdoPC\AppData\Roaming\Autodesk
2015-06-15 19:39 - 2015-06-15 19:39 - 00000000 ____D C:\ProgramData\Autodesk
2015-06-15 19:36 - 2015-06-15 19:41 - 00000000 ____D C:\Program Files\Common Files\Adobe
2015-06-15 19:35 - 2015-06-15 19:35 - 00001530 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk
2015-06-15 19:34 - 2015-06-15 19:34 - 00000000 ____D C:\Users\TdoPC\AppData\Roaming\Macromedia
2015-06-15 19:33 - 2015-06-16 11:16 - 00000000 ____D C:\Users\TdoPC\AppData\Local\Adobe
2015-06-15 19:20 - 2015-06-15 19:52 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2015-06-15 19:14 - 2015-06-16 09:36 - 00000000 ____D C:\ProgramData\Adobe
2015-06-15 19:14 - 2015-06-15 19:52 - 00000000 ____D C:\Users\TdoPC\AppData\Roaming\Adobe
2015-06-15 19:09 - 2015-06-15 19:09 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2015-06-15 18:51 - 2015-06-15 18:51 - 00002267 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-06-15 18:51 - 2015-06-15 18:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-06-15 18:50 - 2015-06-15 18:50 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2015-06-15 18:50 - 2015-06-15 18:50 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-06-15 18:50 - 2015-06-15 18:50 - 00000000 ____D C:\Windows\PCHEALTH
2015-06-15 18:50 - 2015-06-15 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-06-15 18:50 - 2015-06-15 18:50 - 00000000 ____D C:\Program Files\Microsoft Office
2015-06-15 18:50 - 2015-06-15 18:50 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2015-06-15 18:49 - 2015-06-15 19:10 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-06-15 18:49 - 2015-06-15 18:49 - 00000000 ____D C:\Users\TdoPC\AppData\Local\Microsoft Help
2015-06-15 18:29 - 2015-06-16 13:27 - 00000000 ____D C:\Users\TdoPC\Desktop\RC234c
2015-06-15 18:29 - 2015-06-15 18:29 - 00000000 ____D C:\Users\TdoPC\Documents\RailClone
2015-06-15 18:29 - 2015-06-15 18:29 - 00000000 ____D C:\Users\TdoPC\Documents\Forest Pack
2015-06-15 18:29 - 2015-06-15 18:29 - 00000000 ____D C:\Users\TdoPC\Documents\Battlefield 3
2015-06-15 18:28 - 2015-06-15 18:29 - 00000000 ____D C:\Users\TdoPC\Documents\3dsMax
2015-06-15 18:21 - 2015-06-16 14:02 - 00000000 ____D C:\Users\TdoPC\AppData\Roaming\vlc
2015-06-15 18:06 - 2015-06-16 14:33 - 00000934 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-06-15 18:06 - 2015-06-16 14:33 - 00000930 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-06-15 18:06 - 2015-06-16 10:53 - 00003942 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-06-15 18:06 - 2015-06-16 10:53 - 00003690 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-06-15 17:47 - 2015-06-15 17:47 - 00018194 _____ C:\Windows\system32\results.xml
2015-06-15 17:43 - 2015-06-15 17:44 - 00000000 ____D C:\Users\TdoPC\Desktop\Audio
2015-06-15 17:43 - 2015-06-15 17:43 - 00785512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2015-06-15 17:43 - 2015-06-15 17:43 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2015-06-15 17:43 - 2015-06-15 17:43 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2015-06-15 17:43 - 2015-06-15 17:43 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2015-06-15 17:43 - 2015-06-15 17:43 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2015-06-15 17:43 - 2011-09-01 16:23 - 00447104 _____ (Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
2015-06-15 17:42 - 2015-06-15 17:44 - 00000000 ____D C:\Program Files\CONEXANT
2015-06-15 17:42 - 2012-12-04 02:27 - 00202400 _____ (Conexant Systems Inc.) C:\Windows\system32\CxAudMsg64.exe
2015-06-15 17:41 - 2015-06-15 17:42 - 00000000 ____D C:\ProgramData\Conexant
2015-06-15 17:41 - 2015-06-15 17:41 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
2015-06-15 17:41 - 2015-06-15 17:41 - 00000000 ____D C:\Users\TdoPC\AppData\Roaming\Intel
2015-06-15 17:41 - 2015-06-15 17:41 - 00000000 ____D C:\Program Files (x86)\Cisco
2015-06-15 17:40 - 2015-06-15 17:40 - 00000000 ____D C:\Users\TdoPC\Intel.sav
2015-06-15 17:40 - 2015-06-15 17:40 - 00000000 ____D C:\ProgramData\Package Cache
2015-06-15 17:40 - 2015-06-15 17:40 - 00000000 ____D C:\ProgramData\Intel.sav
2015-06-15 17:39 - 2015-06-15 17:39 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-06-15 17:39 - 2015-06-15 17:39 - 00000000 ____D C:\Windows\SysWOW64\Atheros_L1e
2015-06-15 17:38 - 2015-06-15 17:41 - 00000000 ____D C:\Program Files\Common Files\Intel
2015-06-15 17:37 - 2012-11-06 14:30 - 00015136 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll
2015-06-15 17:35 - 2015-06-16 14:33 - 00063440 _____ C:\Users\TdoPC\AppData\Local\GDIPFONTCACHEV1.DAT
2015-06-15 17:35 - 2015-06-15 23:32 - 00765942 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2015-06-15 17:35 - 2015-06-15 17:42 - 00000000 ____D C:\Program Files\Intel
2015-06-15 17:35 - 2015-06-15 17:41 - 00000000 ____D C:\ProgramData\Intel
2015-06-15 17:35 - 2015-06-15 17:35 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2015-06-15 17:35 - 2015-06-15 17:35 - 00000000 ____D C:\Users\TdoPC\AppData\Roaming\Intel Corporation
2015-06-15 17:34 - 2015-06-15 17:34 - 00000000 ____D C:\Users\TdoPC\Intel
2015-06-15 17:33 - 2015-06-15 17:41 - 00000000 ____D C:\Program Files (x86)\Intel
2015-06-15 17:33 - 2013-01-16 12:57 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2015-06-15 17:29 - 2015-06-15 18:52 - 00000000 ____D C:\Users\TdoPC\AppData\Local\Google
2015-06-15 17:29 - 2015-06-15 18:51 - 00000000 ____D C:\Program Files (x86)\Google
2015-06-15 17:26 - 2015-06-15 17:26 - 00001443 _____ C:\Users\TdoPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-06-15 17:26 - 2015-06-15 17:26 - 00001409 _____ C:\Users\TdoPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2015-06-15 17:26 - 2015-06-15 17:26 - 00000000 ____D C:\Users\TdoPC\AppData\Local\VirtualStore
2015-06-15 17:25 - 2015-06-15 23:04 - 00000000 ____D C:\Users\TdoPC
2015-06-15 17:25 - 2015-06-15 17:25 - 00000020 ___SH C:\Users\TdoPC\ntuser.ini
2015-06-15 17:25 - 2009-07-14 06:54 - 00000000 ___RD C:\Users\TdoPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-06-15 17:25 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\TdoPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-06-15 17:15 - 2015-06-16 14:32 - 00060856 _____ C:\Windows\WindowsUpdate.log
2015-06-15 17:15 - 2015-06-15 19:51 - 00000000 ____D C:\Windows\SDold
2015-06-15 17:15 - 2015-06-15 17:15 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2015-06-15 17:15 - 2015-06-15 17:15 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2015-05-26 17:44 - 2015-06-14 23:46 - 00000000 ____D C:\Users\TdoPC\Desktop\RuneScape

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-16 14:34 - 2009-07-14 06:45 - 04970792 _____ C:\Windows\system32\FNTCACHE.DAT
2015-06-16 14:33 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-06-16 14:32 - 2015-05-13 19:17 - 00000000 ____D C:\AdwCleaner
2015-06-16 12:46 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Help
2015-06-16 10:44 - 2014-01-18 15:48 - 00000375 _____ C:\Users\TdoPC\Desktop\notes.txt
2015-06-16 10:31 - 2009-07-14 07:13 - 00779966 _____ C:\Windows\system32\PerfStringBackup.INI
2015-06-16 09:34 - 2009-07-14 06:45 - 00016944 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-06-16 09:34 - 2009-07-14 06:45 - 00016944 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-06-16 03:10 - 2009-07-14 07:38 - 00025600 ___SH C:\Windows\system32\config\BCD-Template.LOG
2015-06-16 03:10 - 2009-07-14 07:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2015-06-15 23:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2015-06-15 23:23 - 2009-07-14 09:46 - 00000000 ____D C:\Program Files\Windows Journal
2015-06-15 23:23 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\SysWOW64\WCN
2015-06-15 23:23 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar
2015-06-15 23:23 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2015-06-15 23:23 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2015-06-15 23:23 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\DVD Maker
2015-06-15 23:23 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar
2015-06-15 23:23 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2015-06-15 23:23 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2015-06-15 23:23 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\sk-SK
2015-06-15 23:23 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\migwiz
2015-06-15 23:23 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\servicing
2015-06-15 23:23 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System
2015-06-15 23:22 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\system32\WCN
2015-06-15 23:22 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sysprep
2015-06-15 23:22 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sk-SK
2015-06-15 23:22 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\oobe
2015-06-15 23:22 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\migwiz
2015-06-15 23:22 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2015-06-15 19:09 - 2009-07-14 09:46 - 00000000 ____D C:\Windows\ShellNew
2015-06-15 19:09 - 2009-07-14 04:34 - 00000478 _____ C:\Windows\win.ini
2015-06-15 18:50 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2015-06-15 18:23 - 2014-02-02 00:38 - 00000000 ____D C:\Users\TdoPC\Desktop\Materials
2015-06-15 18:06 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Public\Libraries
2015-06-15 17:41 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Default
2015-06-15 17:34 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\restore
2015-06-15 17:24 - 2013-12-27 18:14 - 00000000 __SHD C:\Recovery
2015-06-15 17:15 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-06-15 17:15 - 2009-07-14 05:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-06-15 17:11 - 2009-07-14 09:46 - 00000000 ____D C:\Windows\CSC
2015-06-15 16:24 - 2015-03-29 22:51 - 00000000 ____D C:\.jagex_cache_32
2015-06-12 14:36 - 2014-07-04 13:56 - 00000000 ____D C:\Users\TdoPC\Desktop\render_materials
2015-06-04 19:48 - 2015-04-01 21:13 - 00000000 ____D C:\Program Files (x86)\Origin Games
2015-06-04 19:45 - 2015-04-01 21:05 - 00000000 ____D C:\Program Files (x86)\Origin
2015-05-29 10:55 - 2013-12-31 22:14 - 00000000 ___RD C:\Users\TdoPC\Desktop\Práca

==================== Files in the root of some directories =======

2015-06-15 17:43 - 2015-06-15 17:43 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-06-15 20:11




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:199.72 GB) (Free:90.15 GB) NTFS
Drive d: () (Fixed) (Total:731.69 GB) (Free:137.46 GB) NTFS
Drive f: (D32) (Removable) (Total:28.94 GB) (Free:21.58 GB) FAT32

Available physical RAM: 3928.41 MB
Total physical RAM: 6012.85 MB
Percentage of memory in use: 34%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: D9FA2484)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=199.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=731.7 GB) - (Type=07 NTFS)
Disk: 1 (Size: 29 GB) (Disk ID: 6F20736B)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\TdoPC\Desktop" je 20151 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare Ultimate
"D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCTray.exe" /Auto [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cAudioFilterAgent
C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds
C:\Windows\system32\hkcmd.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60 [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray
C:\Windows\system32\igfxtray.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence
C:\Windows\system32\igfxpers.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SmartAudio
C:\Program Files\CONEXANT\SAII\SACpl.exe /t [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================





Addition.txt
Additional scan result of Farbar Recovery Scan Tool (x64) Version:13-06-2015
Ran by TdoPC at 2015-06-16 14:39:01
Running from C:\Users\TdoPC\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1859888411-670573774-4015804390-500 - Administrator - Disabled)
Guest (S-1-5-21-1859888411-670573774-4015804390-501 - Limited - Disabled)
TdoPC (S-1-5-21-1859888411-670573774-4015804390-1000 - Administrator - Enabled) => C:\Users\TdoPC

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-1859888411-670573774-4015804390-1000\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.)
Adobe Photoshop CC (HKLM-x32\...\{2D99B50E-431D-4AA8-85C1-172A6F8BCF09}) (Version: 14.0 - Adobe Systems Incorporated)
Advanced SystemCare Ultimate 8 (HKLM-x32\...\Advanced SystemCare Ultimate_is1) (Version: 8.1.0 - IObit)
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.64.49.0 - Conexant)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.124 - Spoločnosť Google Inc.)
Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation)
Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2778 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.0.0.1083 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{e6d17d96-ddaa-476f-bb07-db601024ffb1}) (Version: 15.8.0 - Intel Corporation)
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 4.3.0.5 - IObit)
Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Office Language Pack 2010 - Slovak/Slovenčina (HKLM-x32\...\Office14.OMUI.sk-sk) (Version: 14.0.4763.1017 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
NVIDIA Grafický ovládač 350.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 350.12 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.15.0324 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0324 - NVIDIA Corporation)
Ovládací panel NVIDIA 350.12 (Version: 350.12 - NVIDIA Corporation) Hidden
PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden
Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.12 - Qualcomm Atheros Communications Inc.)
Razer Surround (HKLM-x32\...\Razer Surround) (Version: 1.05.14 - Razer Inc.)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.21.26027 - Razer Inc.)
RuneScape Launcher 1.2.5 (HKLM-x32\...\{BB1810FD-EB25-4A9D-ADDD-3543190D429A}) (Version: 1.2.5 - Jagex Ltd)
Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Restore Points =========================

15-06-2015 23:01:02 Installed RuneScape Launcher 1.2.5
15-06-2015 23:16:25 Language Pack Installation
15-06-2015 23:29:10 Windows Update
16-06-2015 11:48:14 Device Driver Package Install: Razer Sound, video and game controllers

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2015-06-15 19:34 - 00001132 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 activate.adobe.com
127.0.0.1 practivate.adobe.com
127.0.0.1 lmlicenses.wip4.adobe.com
127.0.0.1 lm.licenses.adobe.com
127.0.0.1 na1r.services.adobe.com
127.0.0.1 hlrcv.stage.adobe.com


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {17AF0BA5-2285-4562-A191-5AB6C535C503} - System32\Tasks\AdobeAAMUpdater-1.0-Tdo_PC-TdoPC => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-03-21] (Adobe Systems Incorporated)
Task: {55D901F0-2EE6-4C32-88D3-5DE5AC4DE174} - System32\Tasks\Uninstaller_SkipUac_TdoPC => D:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2015-05-20] (IObit)
Task: {71A249B8-A833-486E-B7B3-F24F4A7C7372} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-15] (Google Inc.)
Task: {7D024DA1-8C51-4CEC-B52A-D7EFBE97B35F} - System32\Tasks\ASCU8_SkipUac_TdoPC => D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASC.exe [2015-06-11] (IObit)
Task: {A5388952-5018-4A53-8A2B-6E20CDDDEA23} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-15] (Google Inc.)
Task: {B2112818-5B4F-4BE1-B0F5-AEB4AA9A4A15} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2015-06-16] ()
Task: {B6FBE3B8-417E-4EFE-B8FD-CEC0D84836D6} - System32\Tasks\ASCU8_PerformanceMonitor => D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\Monitor.exe [2015-05-14] (IObit)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (Whitelisted) ==============

2015-06-16 10:43 - 2013-11-14 16:02 - 00218944 _____ () D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\Antivirus\bdfltlib.dll
2015-06-16 10:43 - 2013-11-14 16:07 - 00225600 _____ () D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\Antivirus\smartscn.dll
2015-06-16 10:43 - 2013-01-15 18:48 - 00348992 _____ () D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\madExcept_.bpl
2015-06-16 10:43 - 2013-01-15 18:48 - 00183616 _____ () D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\madBasic_.bpl
2015-06-16 10:43 - 2013-01-15 18:48 - 00051008 _____ () D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\madDisAsm_.bpl
2015-05-20 04:29 - 2015-05-20 04:29 - 00137728 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2015-06-15 18:51 - 2015-06-05 20:22 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\libglesv2.dll
2015-06-15 18:51 - 2015-06-05 20:22 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1859888411-670573774-4015804390-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\TdoPC\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 5.104.175.150 - 8.8.8.8

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: AMPPALR3 => 2
MSCONFIG\Services: BTHSSecurityMgr => 2
MSCONFIG\Services: cphs => 3
MSCONFIG\Services: CxAudMsg => 2
MSCONFIG\Services: EvtEng => 2
MSCONFIG\Services: gupdate => 3
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: Intel(R) Capability Licensing Service Interface => 2
MSCONFIG\Services: jhi_service => 2
MSCONFIG\Services: LiveUpdateSvc => 2
MSCONFIG\Services: LMS => 2
MSCONFIG\Services: nvsvc => 2
MSCONFIG\Services: Razer Game Scanner Service => 2
MSCONFIG\Services: UNS => 2
MSCONFIG\Services: Windows Media Licensing Console => 3
MSCONFIG\startupreg: Advanced SystemCare Ultimate => "D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCTray.exe" /Auto
MSCONFIG\startupreg: cAudioFilterAgent => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe
MSCONFIG\startupreg: IAStorIcon => "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe
MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe
MSCONFIG\startupreg: SmartAudio => C:\Program Files\CONEXANT\SAII\SACpl.exe /t

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E5813BA7-F649-43E1-B67E-6908E46ACC33}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{5E1430B1-B3EC-4DCD-96EE-E9CE8714FB69}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{9D6180D9-3BBC-4477-BB1C-799D9F27ACFE}] => (Block) D:\Applications\_adobe\Adobe Photoshop CC (64 Bit)\Photoshop.exe
FirewallRules: [{42B4D03E-F34D-4F56-915E-7B5A65186C86}] => (Allow) C:\Users\TdoPC\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{A0C24BAE-C5B7-460A-A237-142048B2BD33}] => (Allow) C:\Users\TdoPC\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{AD6C4756-EC1D-4BDC-8D61-F227752AD3FC}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [UDP Query User{71633211-F9C0-4C78-A937-004CA8C9521A}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe

==================== Faulty Device Manager Devices =============

Name: USB2.0-CRW
Description: USB2.0-CRW
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Universal Serial Bus (USB) Controller
Description: Universal Serial Bus (USB) Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (06/16/2015 00:47:08 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybovej aplikácie: nvcplui.exe, verzia: 8.1.770.0, časová značka: 0x55259889
Názov chybového modulu: nvcplui.exe, verzia: 8.1.770.0, časová značka: 0x55259889
Kód výnimky: 0x40000015
Odstup chyby: 0x00000000001c9259
Identifikácia chybného procesu: 0x13bc
Čas spustenia chybnej aplikácie: 0xnvcplui.exe0
Cesta chybnej aplikácie: nvcplui.exe1
Cesta chybného modulu: nvcplui.exe2
Identifikácia hlásenia: nvcplui.exe3

Error: (06/15/2015 11:25:39 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll (672) SUS20ClientDataStore: Unable to read the header of logfile C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Error -546.

Error: (06/15/2015 11:25:39 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll (672) SUS20ClientDataStore: Unable to read the header of logfile C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Error -546.

Error: (06/15/2015 11:25:39 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll (672) SUS20ClientDataStore: Unable to read the header of logfile C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Error -546.

Error: (06/15/2015 11:25:39 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll (672) SUS20ClientDataStore: Unable to read the header of logfile C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Error -546.

Error: (06/15/2015 11:25:39 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll (672) SUS20ClientDataStore: Unable to read the header of logfile C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Error -546.

Error: (06/15/2015 11:25:39 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll (672) SUS20ClientDataStore: Unable to read the header of logfile C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Error -546.

Error: (06/15/2015 11:25:38 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll (672) SUS20ClientDataStore: Unable to read the header of logfile C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Error -546.

Error: (06/15/2015 11:25:38 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll (672) SUS20ClientDataStore: Unable to read the header of logfile C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Error -546.

Error: (06/15/2015 11:25:38 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll (672) SUS20ClientDataStore: Unable to read the header of logfile C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Error -546.


System errors:
=============
Error: (06/16/2015 02:32:19 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Modul WLAN Extensibility Module sa neočakávane zastavil.

Cesta k modulu: C:\Windows\System32\IWMSSvc.dll

Error: (06/16/2015 02:32:13 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správca riadenia služieb sa po neočakávanom ukončení služby Razer Game Scanner pokúsil vykonať opravnú akciu (Restart the service), ale táto činnosť zlyhala s nasledujúcou chybou:
%%1058

Error: (06/16/2015 02:32:09 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba NVIDIA Display Driver Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (06/16/2015 02:32:09 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Media Player Network Sharing Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 30000 ms bude vykonaná nasledujúca opravná akcia: Restart the service.

Error: (06/16/2015 02:32:08 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Razer Game Scanner sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 5000 ms bude vykonaná nasledujúca opravná akcia: Restart the service.

Error: (06/16/2015 02:32:08 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba RzSurroundVADStreamingService sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (06/16/2015 02:32:08 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Advanced SystemCare Service 8 sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 2-krát.

Error: (06/16/2015 02:32:08 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Office Software Protection Platform sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (06/16/2015 02:32:08 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Rapid Storage Technology sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (06/16/2015 02:32:08 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) PROSet/Wireless Zero Configuration Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.


Microsoft Office:
=========================
Error: (06/16/2015 00:47:08 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvcplui.exe8.1.770.055259889nvcplui.exe8.1.770.0552598894000001500000000001c925913bc01d0a821c8300248C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exeC:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exe08a4c7ee-1415-11e5-a0e1-0cd2925ef492

Error: (06/15/2015 11:25:39 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll672SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546

Error: (06/15/2015 11:25:39 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll672SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546

Error: (06/15/2015 11:25:39 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll672SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546

Error: (06/15/2015 11:25:39 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll672SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546

Error: (06/15/2015 11:25:39 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll672SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546

Error: (06/15/2015 11:25:39 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll672SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546

Error: (06/15/2015 11:25:38 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll672SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546

Error: (06/15/2015 11:25:38 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll672SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546

Error: (06/15/2015 11:25:38 PM) (Source: ESENT) (EventID: 412) (User: )
Description: wuaueng.dll672SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i7-3612QM CPU @ 2.10GHz
Percentage of memory in use: 34%
Total physical RAM: 6012.85 MB
Available physical RAM: 3928.41 MB
Total Pagefile: 12023.85 MB
Available Pagefile: 9651.55 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:199.72 GB) (Free:90.15 GB) NTFS
Drive d: () (Fixed) (Total:731.69 GB) (Free:137.46 GB) NTFS
Drive f: (D32) (Removable) (Total:28.94 GB) (Free:21.58 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: D9FA2484)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=199.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=731.7 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 29 GB) (Disk ID: 6F20736B)
No partition Table on disk 1.
Disk 1 is a removable device.

==================== End of log ============================
Naposledy upravil(a) vyosek dne 16 čer 2015 13:46, celkem upraveno 1 x.
Důvod: log odstranen z code

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Problém s virom (Adware) +video

#4 Příspěvek od vyosek »

:arrow: Jen se zeptam pouzivate legalni operacni system, nejvyssi licence (v hodnote nejake tisic) Ultimate zrovna neni bezna domaci verze :?:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

zwrtron
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 16 čer 2015 13:22

Re: Problém s virom (Adware) +video

#5 Příspěvek od zwrtron »

Originálny som mal k tomuto notebooku Windows 8, ale dal som si Win7 (ilegal).

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Problém s virom (Adware) +video

#6 Příspěvek od vyosek »

Tak to bylo opravdu "rozumne" rozhodnuti...

Jak vidno, s licencemi a dodrzovani zakona si hlavu nedelate - Win cinknuty, Office cinknute, cinsky kram od IOBit taky cinknuty...


Je mi lito, ale nase forum nelegalni systemy nepodporu - je to jasne popsano v pravidlech fora i charte mezinarodni aliance ASAP, jejiz jsme cleny. Bohuzel, pomoc z duvodu poruseni pravidel fora musim odmitnout...
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

zwrtron
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 16 čer 2015 13:22

Re: Problém s virom (Adware) +video

#7 Příspěvek od zwrtron »

Netuším čo ma licencia programov spoločné s riešením virov, a ospravedlnujem sa ze nemam dostatok peňazí na licencovanie všetkého.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Problém s virom (Adware) +video

#8 Příspěvek od vyosek »

Ma spolecneho tolik, ze my neposkytujeme podporu (lecbu) nelegalnim systemum. Me se omlouvat nemusite, ja pripadne problemy se zakonem (nelegalni system = poruseni autorskeho zakona = pachani trestneho cinu) mit nebudu...

Existuje spousta bezplatnych variant...

Vse bylo receno, tema uzaviram.

:closed:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno