
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prohlížeč blbne
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prohlížeč blbne
Zdravím, mám problém s prohlížečemm kdy mi jednou za cca 10 minut vyskočí nějaké okno a je to dost otravné a to mám Adblock nainstalovaný. Něco se mi musel do PC dostat. Přiložím log z FRST. Díky za pomoc
Re: Prohlížeč blbne
Log z AdvCleaneru
# AdwCleaner v6.044 - Log vytvořen 16/03/2017 v 08:19:25
# Aktualizováno dne 28/02/2017 z Malwarebytes
# Databáze : 2017-03-15.2 [Server]
# Operační systém : Windows 8.1 Pro (X64)
# Uživatelské jméno : Martin - MARTIN
# Spuštěno z : C:\Users\Martin\Desktop\adwcleaner_6.044.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support
***** [ Služby ] *****
***** [ Složky ] *****
***** [ Soubory ] *****
[-] Soubor smazán: C:\Users\Martin\Favorites\Mail.Ru.url
[-] Soubor smazán: C:\Users\Martin\Favorites\Mail.Ru Агент - используй для общения!.url
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupci ] *****
***** [ Naplánované úlohy ] *****
***** [ Registry ] *****
[-] Klíč smazán: HKLM\SOFTWARE\Classes\IESearchPlugin.MailRuBHO
[-] Klíč smazán: HKLM\SOFTWARE\Classes\IESearchPlugin.MailRuBHO.1
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\IESearchPlugin.MailRuBHO
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\IESearchPlugin.MailRuBHO.1
[-] Klíč smazán: HKLM\SOFTWARE\Classes\TypeLib\{C69276F0-9BC1-404F-8566-FCB14D0ED4B8}
***** [ Prohlížeče ] *****
*************************
:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno
:: Proxy nastavení vyčištěno
:: TCP/IP nastavení vyčištěno
:: Pravidla Firewallu vyčištěny
:: IPSec nastavení vyčištěno
:: BITS fronty vyčištěny
:: IE hodnoty smazány
:: Nastavení prohlížeče Chrome resetováno
:: Chrome předvolby resetovány: C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default
:: Hosts soubor vyčištěný
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [1919 Bajty] - [23/12/2016 20:43:15]
C:\AdwCleaner\AdwCleaner[C2].txt - [4331 Bajty] - [12/03/2017 09:57:52]
C:\AdwCleaner\AdwCleaner[C3].txt - [1873 Bajty] - [16/03/2017 08:19:25]
C:\AdwCleaner\AdwCleaner[S0].txt - [2075 Bajty] - [23/12/2016 20:42:45]
C:\AdwCleaner\AdwCleaner[S1].txt - [4274 Bajty] - [12/03/2017 09:56:54]
C:\AdwCleaner\AdwCleaner[S2].txt - [2076 Bajty] - [16/03/2017 08:18:36]
########## EOF - C:\AdwCleaner\AdwCleaner[C3].txt - [2165 Bajty] ##########
# AdwCleaner v6.044 - Log vytvořen 16/03/2017 v 08:19:25
# Aktualizováno dne 28/02/2017 z Malwarebytes
# Databáze : 2017-03-15.2 [Server]
# Operační systém : Windows 8.1 Pro (X64)
# Uživatelské jméno : Martin - MARTIN
# Spuštěno z : C:\Users\Martin\Desktop\adwcleaner_6.044.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support
***** [ Služby ] *****
***** [ Složky ] *****
***** [ Soubory ] *****
[-] Soubor smazán: C:\Users\Martin\Favorites\Mail.Ru.url
[-] Soubor smazán: C:\Users\Martin\Favorites\Mail.Ru Агент - используй для общения!.url
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupci ] *****
***** [ Naplánované úlohy ] *****
***** [ Registry ] *****
[-] Klíč smazán: HKLM\SOFTWARE\Classes\IESearchPlugin.MailRuBHO
[-] Klíč smazán: HKLM\SOFTWARE\Classes\IESearchPlugin.MailRuBHO.1
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\IESearchPlugin.MailRuBHO
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\IESearchPlugin.MailRuBHO.1
[-] Klíč smazán: HKLM\SOFTWARE\Classes\TypeLib\{C69276F0-9BC1-404F-8566-FCB14D0ED4B8}
***** [ Prohlížeče ] *****
*************************
:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno
:: Proxy nastavení vyčištěno
:: TCP/IP nastavení vyčištěno
:: Pravidla Firewallu vyčištěny
:: IPSec nastavení vyčištěno
:: BITS fronty vyčištěny
:: IE hodnoty smazány
:: Nastavení prohlížeče Chrome resetováno
:: Chrome předvolby resetovány: C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default
:: Hosts soubor vyčištěný
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [1919 Bajty] - [23/12/2016 20:43:15]
C:\AdwCleaner\AdwCleaner[C2].txt - [4331 Bajty] - [12/03/2017 09:57:52]
C:\AdwCleaner\AdwCleaner[C3].txt - [1873 Bajty] - [16/03/2017 08:19:25]
C:\AdwCleaner\AdwCleaner[S0].txt - [2075 Bajty] - [23/12/2016 20:42:45]
C:\AdwCleaner\AdwCleaner[S1].txt - [4274 Bajty] - [12/03/2017 09:56:54]
C:\AdwCleaner\AdwCleaner[S2].txt - [2076 Bajty] - [16/03/2017 08:18:36]
########## EOF - C:\AdwCleaner\AdwCleaner[C3].txt - [2165 Bajty] ##########
Re: Prohlížeč blbne
Log z FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-03-2017
Ran by Martin (administrator) on MARTIN (16-03-2017 08:26:28)
Running from C:\Users\Martin\Desktop
Loaded Profiles: Martin (Available Profiles: Martin)
Platform: Windows 8.1 Pro (Update) (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Valve Corporation) D:\Games\Steam\Steam.exe
(Valve Corporation) D:\Games\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera_crashreporter.exe
(Valve Corporation) D:\Games\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.18384_none_fa1d93c39b41b41a\TiWorker.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Microsoft Corporation) C:\Windows\WinStore\WSHost.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-05-09] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKU\S-1-5-21-711420153-2017975014-3052516532-1001\...\Run: [Steam] => D:\Games\Steam\steam.exe [3019552 2017-03-13] (Valve Corporation)
HKU\S-1-5-21-711420153-2017975014-3052516532-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4299968 2016-06-22] (Disc Soft Ltd)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 62.129.50.20 192.168.0.1
Tcpip\..\Interfaces\{893BD8AD-5F48-4031-9894-0F64A8F8C0B8}: [DhcpNameServer] 62.129.50.20 192.168.0.1
Tcpip\..\Interfaces\{AE5073CD-D11C-4E27-BCA1-A201D2E7F333}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-06-27] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-06-27] (Oracle Corporation)
FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2014-04-15] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2014-04-15] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-06-27] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-06-27] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-02-23] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-02-23] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-02-26] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-02-26] (Google Inc.)
Opera:
=======
OPR StartupUrls:
OPR Extension: (ZenMate VPN - Best Cyber Security & Unblock) - C:\Users\Martin\AppData\Roaming\Opera Software\Opera Stable\Extensions\cnhbkkedmelfmalgjpkngiaoifpdfcnl [2017-03-15]
OPR Extension: (LastPass: Free Password Manager) - C:\Users\Martin\AppData\Roaming\Opera Software\Opera Stable\Extensions\hnjalnkldgigidggphhmacmimbdlafdo [2017-02-16]
OPR Extension: (Adblock Plus) - C:\Users\Martin\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2017-03-15]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1467072 2016-06-22] (Disc Soft Ltd)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [520416 2014-01-28] (Futuremark)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-02-23] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-02-23] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462784 2017-02-23] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [425408 2017-02-23] (NVIDIA Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 athur; C:\Windows\system32\DRIVERS\athuwbx.sys [2702336 2013-11-20] (Qualcomm Atheros Communications, Inc.)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-06-29] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2016-06-29] (Disc Soft Ltd)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [27584 2017-02-23] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [46016 2017-01-20] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [57792 2017-01-20] (NVIDIA Corporation)
R1 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [131144 2017-01-16] (Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [205440 2017-01-16] (Oracle Corporation)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [34760 2013-08-22] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [265056 2013-08-22] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
S3 WinRing0_1_2_0; C:\DOWNLOAD\programy\CPU temperature\WinRing0x64.sys [14544 2008-07-26] (OpenLibSys.org)
S3 cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys [X]
S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X]
S3 GPUZ; \??\C:\Windows\TEMP\GPUZ.sys [X]
S3 TEAM; \SystemRoot\system32\DRIVERS\RtTeam60.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-03-16 08:26 - 2017-03-16 08:27 - 00010039 _____ C:\Users\Martin\Desktop\FRST.txt
2017-03-16 08:15 - 2017-03-16 08:15 - 04031440 _____ C:\Users\Martin\Desktop\adwcleaner_6.044.exe
2017-03-12 14:11 - 2017-03-12 14:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2017-03-12 14:10 - 2017-03-12 14:11 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-03-12 14:09 - 2017-03-12 14:09 - 01629144 _____ (Skype Technologies S.A.) C:\Users\Martin\Downloads\SkypeSetup.exe
2017-03-12 09:36 - 2017-03-12 09:36 - 00003632 _____ C:\Windows\System32\Tasks\blogcreativeorglrops
2017-03-11 18:03 - 2017-03-11 18:03 - 00000000 ____D C:\Users\Martin\AppData\Roaming\dvdcss
2017-03-11 11:53 - 2017-03-11 11:53 - 01201256 _____ (Adobe Systems Incorporated) C:\Users\Martin\Downloads\flashplayer24pp_fa_install.exe
2017-03-10 08:14 - 2017-03-10 08:14 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2017-03-10 08:14 - 2017-02-23 09:17 - 00136064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2017-03-10 08:14 - 2017-01-26 01:13 - 00103936 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2017-03-10 08:14 - 2017-01-26 01:12 - 00326656 _____ C:\Windows\SysWOW64\vulkan-1.dll
2017-03-10 08:14 - 2017-01-26 01:09 - 00322560 _____ C:\Windows\system32\vulkan-1.dll
2017-03-10 08:14 - 2017-01-26 01:09 - 00118272 _____ C:\Windows\system32\vulkaninfo.exe
2017-03-10 08:13 - 2017-03-10 08:14 - 00000000 ____D C:\Windows\LastGood.Tmp
2017-03-10 08:10 - 2017-02-23 23:56 - 00217528 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2017-03-10 08:10 - 2017-02-23 23:56 - 00047664 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 40192056 _____ C:\Windows\system32\nvcompiler.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 35272760 _____ C:\Windows\SysWOW64\nvcompiler.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 34950592 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 28223544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 19007344 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 16399408 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 14674712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 14429240 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2017-03-10 08:10 - 2017-02-23 11:34 - 13377072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 11122912 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 11019888 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 09306312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 08990256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 03625408 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 03185600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 01985080 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437878.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 01589696 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437878.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 01051584 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00989120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00959424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00912440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00895272 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcumd.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00687408 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00611384 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00576008 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00503920 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00500792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00425288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00408272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00170360 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00153184 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00148016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00131720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2017-03-08 22:37 - 2017-03-12 09:41 - 00000000 ____D C:\Windows\Minidump
2017-03-03 14:09 - 2017-03-03 14:09 - 00001428 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2017-03-01 18:16 - 2017-03-01 18:16 - 00000000 ____D C:\Users\Martin\AppData\Local\TeamSpeak 3
2017-03-01 18:16 - 2017-03-01 18:16 - 00000000 ____D C:\Users\Martin\.TeamSpeak 3
2017-03-01 18:16 - 2017-03-01 18:16 - 00000000 ____D C:\Users\Martin\.QtWebEngineProcess
2017-03-01 18:15 - 2017-03-01 20:16 - 00000000 ____D C:\Users\Martin\AppData\Roaming\TS3Client
2017-03-01 18:09 - 2017-03-01 18:09 - 00001254 _____ C:\Users\Martin\Desktop\TeamSpeak 3 Client.lnk
2017-03-01 18:09 - 2017-03-01 18:09 - 00001212 _____ C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2017-03-01 18:09 - 2017-03-01 18:09 - 00000000 ____D C:\Users\Martin\AppData\Local\TeamSpeak 3 Client
2017-02-27 18:55 - 2017-03-10 08:25 - 00000000 ____D C:\Users\Martin\VirtualBox VMs
2017-02-26 22:55 - 2017-02-26 22:55 - 00000000 ____D C:\Windows\system32\appmgmt
2017-02-26 22:46 - 2017-02-26 22:46 - 00002287 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-02-26 22:45 - 2017-02-26 22:53 - 00000000 ____D C:\Users\Martin\AppData\Local\Google
2017-02-26 22:45 - 2017-02-26 22:46 - 00000000 ____D C:\Program Files (x86)\Google
2017-02-26 22:45 - 2017-02-26 22:45 - 00003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2017-02-26 22:45 - 2017-02-26 22:45 - 00003256 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2017-02-26 22:26 - 2017-02-26 22:56 - 00000000 ____D C:\ProgramData\Ashampoo
2017-02-26 22:26 - 2017-02-26 22:26 - 00001333 _____ C:\Users\Martin\Desktop\Ashampoo Burning Studio 6 FREE.lnk
2017-02-26 22:26 - 2017-02-26 22:26 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ashampoo
2017-02-26 22:26 - 2017-02-26 22:26 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Ashampoo
2017-02-26 22:26 - 2017-02-26 22:26 - 00000000 ____D C:\Users\Martin\AppData\Local\ashampoo
2017-02-26 22:26 - 2017-02-26 22:26 - 00000000 ____D C:\Program Files (x86)\Ashampoo
2017-02-26 21:23 - 2017-03-10 08:25 - 00000000 ____D C:\Users\Martin\.VirtualBox
2017-02-26 21:23 - 2017-02-26 21:23 - 00000781 _____ C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk
2017-02-26 21:23 - 2017-02-26 21:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2017-02-26 21:23 - 2017-01-16 17:38 - 00959720 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
2017-02-26 21:22 - 2017-01-16 17:38 - 00149304 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys
2017-02-25 08:21 - 2017-02-25 08:21 - 00000000 ____D C:\Users\Martin\Documents\WB Games
2017-02-25 07:22 - 2017-02-03 18:37 - 00093360 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2017-02-25 07:22 - 2017-02-02 15:37 - 00650752 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2017-02-25 07:22 - 2017-01-18 15:35 - 01609216 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2017-02-25 07:22 - 2017-01-18 15:35 - 01286144 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2017-02-25 07:22 - 2017-01-18 15:35 - 00556544 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2017-02-25 07:22 - 2017-01-18 15:35 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2017-02-25 07:22 - 2017-01-18 15:35 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2017-02-25 07:22 - 2017-01-18 15:35 - 00233984 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2017-02-25 07:22 - 2017-01-18 15:35 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2017-02-21 22:40 - 2017-02-21 22:40 - 00002005 _____ C:\Users\Martin\Desktop\Vypínač na dobrou noc.lnk
2017-02-21 22:40 - 2017-02-21 22:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vypínač na dobrou noc
2017-02-21 22:40 - 2017-02-21 22:40 - 00000000 ____D C:\Program Files (x86)\Vypínač na dobrou noc
2017-02-21 17:36 - 2017-02-21 17:37 - 00000000 ____D C:\Users\Martin\Documents\Shadow Warrior DX11
2017-02-21 16:52 - 2017-01-20 19:39 - 00156608 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2017-02-21 16:52 - 2017-01-20 19:39 - 00124352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2017-02-21 16:52 - 2017-01-20 19:39 - 00057792 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
2017-02-21 16:52 - 2017-01-20 19:39 - 00046016 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2017-02-20 19:06 - 2017-02-20 19:06 - 00000000 ____D C:\Users\Martin\Documents\Shadow Warrior
2017-02-16 21:29 - 2017-02-10 01:52 - 01983424 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437866.dll
2017-02-16 21:29 - 2017-02-10 01:52 - 01589696 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437866.dll
2017-02-16 21:29 - 2017-02-10 01:52 - 00000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2017-02-16 21:29 - 2017-02-10 01:52 - 00000669 _____ C:\Windows\system32\nv-vk64.json
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-03-16 08:26 - 2016-12-23 18:54 - 00000000 ____D C:\FRST
2017-03-16 08:26 - 2016-06-27 22:16 - 00000000 ____D C:\ProgramData\NVIDIA
2017-03-16 08:25 - 2016-12-23 18:45 - 02424832 _____ (Farbar) C:\Users\Martin\Desktop\FRST64.exe
2017-03-16 08:23 - 2016-06-27 17:14 - 00000000 ___DO C:\Users\Martin\SkyDrive
2017-03-16 08:21 - 2016-12-23 20:44 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-03-16 08:19 - 2016-12-30 14:28 - 00000008 __RSH C:\ProgramData\ntuser.pol
2017-03-16 08:19 - 2016-12-23 20:40 - 00000000 ____D C:\AdwCleaner
2017-03-16 08:18 - 2013-09-30 05:20 - 01745984 _____ C:\Windows\system32\PerfStringBackup.INI
2017-03-16 08:18 - 2013-09-30 04:57 - 00738682 _____ C:\Windows\system32\perfh005.dat
2017-03-16 08:18 - 2013-09-30 04:57 - 00151404 _____ C:\Windows\system32\perfc005.dat
2017-03-16 08:18 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\Inf
2017-03-15 23:39 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2017-03-14 18:02 - 2016-06-27 17:16 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-711420153-2017975014-3052516532-1001
2017-03-13 19:17 - 2016-06-27 22:22 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Skype
2017-03-12 16:11 - 2016-07-13 11:03 - 00000000 ____D C:\Users\Martin\AppData\Roaming\vlc
2017-03-12 16:10 - 2016-07-13 10:48 - 00000000 ____D C:\KMPlayer
2017-03-12 14:11 - 2016-06-27 22:22 - 00002747 _____ C:\Users\Public\Desktop\Skype.lnk
2017-03-12 14:11 - 2016-06-27 22:22 - 00000000 ____D C:\ProgramData\Skype
2017-03-12 14:10 - 2016-06-27 22:22 - 00000000 ____D C:\Users\Martin\AppData\Local\Skype
2017-03-12 09:58 - 2016-06-29 11:19 - 00000958 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2017-03-12 09:54 - 2016-12-23 19:18 - 00000000 ____D C:\Program Files\trend micro
2017-03-12 09:41 - 2016-12-23 18:22 - 00000000 ____D C:\Users\Martin\AppData\Local\CrashDumps
2017-03-11 11:54 - 2016-06-29 11:19 - 00003922 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2017-03-11 11:54 - 2016-06-29 11:16 - 00000000 ____D C:\Users\Martin\AppData\Local\Adobe
2017-03-11 11:53 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-03-11 11:53 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\Macromed
2017-03-10 08:37 - 2016-07-13 10:10 - 00000000 ____D C:\Users\Martin\AppData\Roaming\uTorrent
2017-03-10 08:24 - 2016-06-28 14:30 - 00000000 ___RD C:\Users\Martin\Desktop\Games
2017-03-10 08:15 - 2016-06-27 22:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2017-03-10 08:15 - 2016-06-27 22:16 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2017-03-09 21:08 - 2016-06-27 17:10 - 00000000 ____D C:\Users\Martin
2017-03-03 14:09 - 2016-12-30 14:18 - 00004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-03-03 14:09 - 2016-10-29 14:24 - 00003852 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-03-03 14:09 - 2016-10-29 14:23 - 00003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-03-03 14:09 - 2016-10-29 14:23 - 00003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-03-03 14:09 - 2016-10-29 14:23 - 00003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-03-03 14:09 - 2016-10-29 14:23 - 00003554 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-03-03 14:09 - 2016-10-29 14:23 - 00003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-03-03 14:09 - 2016-06-27 17:16 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2017-03-03 14:09 - 2016-06-27 17:16 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-03-01 18:10 - 2016-06-27 22:14 - 00000000 ____D C:\ProgramData\Package Cache
2017-03-01 17:23 - 2016-06-27 17:19 - 00004050 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1467044360
2017-03-01 17:23 - 2016-06-27 17:19 - 00001328 _____ C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2017-02-25 07:32 - 2016-06-28 13:26 - 00000000 ____D C:\Windows\system32\appraiser
2017-02-25 07:25 - 2013-08-22 16:20 - 00000000 ____D C:\Windows\CbsTemp
2017-02-25 07:24 - 2016-06-27 21:42 - 00000000 ____D C:\Windows\system32\MRT
2017-02-25 07:23 - 2016-06-27 21:42 - 138020592 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-02-23 23:56 - 2016-07-10 22:00 - 01600056 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2017-02-23 19:35 - 2016-10-29 14:24 - 01880512 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2017-02-23 19:35 - 2016-10-29 14:24 - 01755072 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2017-02-23 19:35 - 2016-10-29 14:24 - 01468864 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2017-02-23 19:35 - 2016-10-29 14:24 - 01317312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2017-02-23 19:35 - 2016-10-29 14:24 - 00120256 _____ C:\Windows\system32\NvRtmpStreamer64.dll
2017-02-23 15:30 - 2016-12-30 14:17 - 00001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2017-02-23 11:34 - 2016-11-19 16:30 - 17281112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2017-02-23 11:34 - 2016-10-30 16:23 - 00492744 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2017-02-23 11:34 - 2016-06-27 22:12 - 19883088 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2017-02-23 11:34 - 2016-06-27 22:12 - 04064088 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2017-02-23 11:34 - 2016-06-27 22:12 - 03583744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2017-02-23 11:34 - 2016-06-27 22:12 - 00042616 _____ C:\Windows\system32\nvinfo.pb
2017-02-23 09:43 - 2016-10-29 14:23 - 00001951 _____ C:\Windows\NvContainerRecovery.bat
2017-02-23 09:28 - 2016-06-27 22:16 - 06401984 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2017-02-23 09:28 - 2016-06-27 22:16 - 02479160 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2017-02-23 09:28 - 2016-06-27 22:16 - 01764408 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2017-02-23 09:28 - 2016-06-27 22:16 - 00548288 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2017-02-23 09:28 - 2016-06-27 22:16 - 00392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2017-02-23 09:28 - 2016-06-27 22:16 - 00083512 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2017-02-23 09:28 - 2016-06-27 22:16 - 00069568 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2017-02-23 07:38 - 2016-06-27 22:16 - 07807027 _____ C:\Windows\system32\nvcoproc.bin
2017-02-21 22:41 - 2016-06-27 17:10 - 00000000 ____D C:\Users\Martin\AppData\Local\VirtualStore
2017-02-17 11:52 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\rescache
==================== Files in the root of some directories =======
2016-06-27 21:54 - 2016-06-27 21:54 - 0000017 _____ () C:\Users\Martin\AppData\Local\resmon.resmoncfg
2016-12-30 14:19 - 2017-02-21 16:53 - 0016198 _____ () C:\ProgramData\NvTelemetryContainer.log
2016-12-30 14:19 - 2017-01-08 10:38 - 0008200 _____ () C:\ProgramData\NvTelemetryContainer.log_backup1
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-03-16 07:38
==================== End of FRST.txt ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-03-2017
Ran by Martin (administrator) on MARTIN (16-03-2017 08:26:28)
Running from C:\Users\Martin\Desktop
Loaded Profiles: Martin (Available Profiles: Martin)
Platform: Windows 8.1 Pro (Update) (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Valve Corporation) D:\Games\Steam\Steam.exe
(Valve Corporation) D:\Games\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera_crashreporter.exe
(Valve Corporation) D:\Games\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.18384_none_fa1d93c39b41b41a\TiWorker.exe
(Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe
(Microsoft Corporation) C:\Windows\WinStore\WSHost.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-05-09] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKU\S-1-5-21-711420153-2017975014-3052516532-1001\...\Run: [Steam] => D:\Games\Steam\steam.exe [3019552 2017-03-13] (Valve Corporation)
HKU\S-1-5-21-711420153-2017975014-3052516532-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4299968 2016-06-22] (Disc Soft Ltd)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 62.129.50.20 192.168.0.1
Tcpip\..\Interfaces\{893BD8AD-5F48-4031-9894-0F64A8F8C0B8}: [DhcpNameServer] 62.129.50.20 192.168.0.1
Tcpip\..\Interfaces\{AE5073CD-D11C-4E27-BCA1-A201D2E7F333}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-06-27] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-06-27] (Oracle Corporation)
FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2014-04-15] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2014-04-15] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-06-27] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-06-27] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-02-23] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-02-23] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-02-26] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-02-26] (Google Inc.)
Opera:
=======
OPR StartupUrls:
OPR Extension: (ZenMate VPN - Best Cyber Security & Unblock) - C:\Users\Martin\AppData\Roaming\Opera Software\Opera Stable\Extensions\cnhbkkedmelfmalgjpkngiaoifpdfcnl [2017-03-15]
OPR Extension: (LastPass: Free Password Manager) - C:\Users\Martin\AppData\Roaming\Opera Software\Opera Stable\Extensions\hnjalnkldgigidggphhmacmimbdlafdo [2017-02-16]
OPR Extension: (Adblock Plus) - C:\Users\Martin\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2017-03-15]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1467072 2016-06-22] (Disc Soft Ltd)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [520416 2014-01-28] (Futuremark)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-02-23] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-02-23] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462784 2017-02-23] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [425408 2017-02-23] (NVIDIA Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 athur; C:\Windows\system32\DRIVERS\athuwbx.sys [2702336 2013-11-20] (Qualcomm Atheros Communications, Inc.)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-06-29] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2016-06-29] (Disc Soft Ltd)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [27584 2017-02-23] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [46016 2017-01-20] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [57792 2017-01-20] (NVIDIA Corporation)
R1 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [131144 2017-01-16] (Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [205440 2017-01-16] (Oracle Corporation)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [34760 2013-08-22] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [265056 2013-08-22] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
S3 WinRing0_1_2_0; C:\DOWNLOAD\programy\CPU temperature\WinRing0x64.sys [14544 2008-07-26] (OpenLibSys.org)
S3 cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys [X]
S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X]
S3 GPUZ; \??\C:\Windows\TEMP\GPUZ.sys [X]
S3 TEAM; \SystemRoot\system32\DRIVERS\RtTeam60.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-03-16 08:26 - 2017-03-16 08:27 - 00010039 _____ C:\Users\Martin\Desktop\FRST.txt
2017-03-16 08:15 - 2017-03-16 08:15 - 04031440 _____ C:\Users\Martin\Desktop\adwcleaner_6.044.exe
2017-03-12 14:11 - 2017-03-12 14:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2017-03-12 14:10 - 2017-03-12 14:11 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-03-12 14:09 - 2017-03-12 14:09 - 01629144 _____ (Skype Technologies S.A.) C:\Users\Martin\Downloads\SkypeSetup.exe
2017-03-12 09:36 - 2017-03-12 09:36 - 00003632 _____ C:\Windows\System32\Tasks\blogcreativeorglrops
2017-03-11 18:03 - 2017-03-11 18:03 - 00000000 ____D C:\Users\Martin\AppData\Roaming\dvdcss
2017-03-11 11:53 - 2017-03-11 11:53 - 01201256 _____ (Adobe Systems Incorporated) C:\Users\Martin\Downloads\flashplayer24pp_fa_install.exe
2017-03-10 08:14 - 2017-03-10 08:14 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2017-03-10 08:14 - 2017-02-23 09:17 - 00136064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2017-03-10 08:14 - 2017-01-26 01:13 - 00103936 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2017-03-10 08:14 - 2017-01-26 01:12 - 00326656 _____ C:\Windows\SysWOW64\vulkan-1.dll
2017-03-10 08:14 - 2017-01-26 01:09 - 00322560 _____ C:\Windows\system32\vulkan-1.dll
2017-03-10 08:14 - 2017-01-26 01:09 - 00118272 _____ C:\Windows\system32\vulkaninfo.exe
2017-03-10 08:13 - 2017-03-10 08:14 - 00000000 ____D C:\Windows\LastGood.Tmp
2017-03-10 08:10 - 2017-02-23 23:56 - 00217528 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2017-03-10 08:10 - 2017-02-23 23:56 - 00047664 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 40192056 _____ C:\Windows\system32\nvcompiler.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 35272760 _____ C:\Windows\SysWOW64\nvcompiler.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 34950592 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 28223544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 19007344 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 16399408 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 14674712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 14429240 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2017-03-10 08:10 - 2017-02-23 11:34 - 13377072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 11122912 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 11019888 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 09306312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 08990256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 03625408 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 03185600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 01985080 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437878.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 01589696 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437878.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 01051584 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00989120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00959424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00912440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00895272 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcumd.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00687408 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00611384 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00576008 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00503920 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00500792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00425288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00408272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00170360 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00153184 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00148016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2017-03-10 08:10 - 2017-02-23 11:34 - 00131720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2017-03-08 22:37 - 2017-03-12 09:41 - 00000000 ____D C:\Windows\Minidump
2017-03-03 14:09 - 2017-03-03 14:09 - 00001428 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2017-03-01 18:16 - 2017-03-01 18:16 - 00000000 ____D C:\Users\Martin\AppData\Local\TeamSpeak 3
2017-03-01 18:16 - 2017-03-01 18:16 - 00000000 ____D C:\Users\Martin\.TeamSpeak 3
2017-03-01 18:16 - 2017-03-01 18:16 - 00000000 ____D C:\Users\Martin\.QtWebEngineProcess
2017-03-01 18:15 - 2017-03-01 20:16 - 00000000 ____D C:\Users\Martin\AppData\Roaming\TS3Client
2017-03-01 18:09 - 2017-03-01 18:09 - 00001254 _____ C:\Users\Martin\Desktop\TeamSpeak 3 Client.lnk
2017-03-01 18:09 - 2017-03-01 18:09 - 00001212 _____ C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2017-03-01 18:09 - 2017-03-01 18:09 - 00000000 ____D C:\Users\Martin\AppData\Local\TeamSpeak 3 Client
2017-02-27 18:55 - 2017-03-10 08:25 - 00000000 ____D C:\Users\Martin\VirtualBox VMs
2017-02-26 22:55 - 2017-02-26 22:55 - 00000000 ____D C:\Windows\system32\appmgmt
2017-02-26 22:46 - 2017-02-26 22:46 - 00002287 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-02-26 22:45 - 2017-02-26 22:53 - 00000000 ____D C:\Users\Martin\AppData\Local\Google
2017-02-26 22:45 - 2017-02-26 22:46 - 00000000 ____D C:\Program Files (x86)\Google
2017-02-26 22:45 - 2017-02-26 22:45 - 00003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2017-02-26 22:45 - 2017-02-26 22:45 - 00003256 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2017-02-26 22:26 - 2017-02-26 22:56 - 00000000 ____D C:\ProgramData\Ashampoo
2017-02-26 22:26 - 2017-02-26 22:26 - 00001333 _____ C:\Users\Martin\Desktop\Ashampoo Burning Studio 6 FREE.lnk
2017-02-26 22:26 - 2017-02-26 22:26 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ashampoo
2017-02-26 22:26 - 2017-02-26 22:26 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Ashampoo
2017-02-26 22:26 - 2017-02-26 22:26 - 00000000 ____D C:\Users\Martin\AppData\Local\ashampoo
2017-02-26 22:26 - 2017-02-26 22:26 - 00000000 ____D C:\Program Files (x86)\Ashampoo
2017-02-26 21:23 - 2017-03-10 08:25 - 00000000 ____D C:\Users\Martin\.VirtualBox
2017-02-26 21:23 - 2017-02-26 21:23 - 00000781 _____ C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk
2017-02-26 21:23 - 2017-02-26 21:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2017-02-26 21:23 - 2017-01-16 17:38 - 00959720 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
2017-02-26 21:22 - 2017-01-16 17:38 - 00149304 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys
2017-02-25 08:21 - 2017-02-25 08:21 - 00000000 ____D C:\Users\Martin\Documents\WB Games
2017-02-25 07:22 - 2017-02-03 18:37 - 00093360 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2017-02-25 07:22 - 2017-02-02 15:37 - 00650752 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2017-02-25 07:22 - 2017-01-18 15:35 - 01609216 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2017-02-25 07:22 - 2017-01-18 15:35 - 01286144 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2017-02-25 07:22 - 2017-01-18 15:35 - 00556544 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2017-02-25 07:22 - 2017-01-18 15:35 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2017-02-25 07:22 - 2017-01-18 15:35 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2017-02-25 07:22 - 2017-01-18 15:35 - 00233984 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2017-02-25 07:22 - 2017-01-18 15:35 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2017-02-21 22:40 - 2017-02-21 22:40 - 00002005 _____ C:\Users\Martin\Desktop\Vypínač na dobrou noc.lnk
2017-02-21 22:40 - 2017-02-21 22:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vypínač na dobrou noc
2017-02-21 22:40 - 2017-02-21 22:40 - 00000000 ____D C:\Program Files (x86)\Vypínač na dobrou noc
2017-02-21 17:36 - 2017-02-21 17:37 - 00000000 ____D C:\Users\Martin\Documents\Shadow Warrior DX11
2017-02-21 16:52 - 2017-01-20 19:39 - 00156608 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2017-02-21 16:52 - 2017-01-20 19:39 - 00124352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2017-02-21 16:52 - 2017-01-20 19:39 - 00057792 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
2017-02-21 16:52 - 2017-01-20 19:39 - 00046016 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2017-02-20 19:06 - 2017-02-20 19:06 - 00000000 ____D C:\Users\Martin\Documents\Shadow Warrior
2017-02-16 21:29 - 2017-02-10 01:52 - 01983424 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437866.dll
2017-02-16 21:29 - 2017-02-10 01:52 - 01589696 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437866.dll
2017-02-16 21:29 - 2017-02-10 01:52 - 00000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2017-02-16 21:29 - 2017-02-10 01:52 - 00000669 _____ C:\Windows\system32\nv-vk64.json
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-03-16 08:26 - 2016-12-23 18:54 - 00000000 ____D C:\FRST
2017-03-16 08:26 - 2016-06-27 22:16 - 00000000 ____D C:\ProgramData\NVIDIA
2017-03-16 08:25 - 2016-12-23 18:45 - 02424832 _____ (Farbar) C:\Users\Martin\Desktop\FRST64.exe
2017-03-16 08:23 - 2016-06-27 17:14 - 00000000 ___DO C:\Users\Martin\SkyDrive
2017-03-16 08:21 - 2016-12-23 20:44 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-03-16 08:19 - 2016-12-30 14:28 - 00000008 __RSH C:\ProgramData\ntuser.pol
2017-03-16 08:19 - 2016-12-23 20:40 - 00000000 ____D C:\AdwCleaner
2017-03-16 08:18 - 2013-09-30 05:20 - 01745984 _____ C:\Windows\system32\PerfStringBackup.INI
2017-03-16 08:18 - 2013-09-30 04:57 - 00738682 _____ C:\Windows\system32\perfh005.dat
2017-03-16 08:18 - 2013-09-30 04:57 - 00151404 _____ C:\Windows\system32\perfc005.dat
2017-03-16 08:18 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\Inf
2017-03-15 23:39 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2017-03-14 18:02 - 2016-06-27 17:16 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-711420153-2017975014-3052516532-1001
2017-03-13 19:17 - 2016-06-27 22:22 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Skype
2017-03-12 16:11 - 2016-07-13 11:03 - 00000000 ____D C:\Users\Martin\AppData\Roaming\vlc
2017-03-12 16:10 - 2016-07-13 10:48 - 00000000 ____D C:\KMPlayer
2017-03-12 14:11 - 2016-06-27 22:22 - 00002747 _____ C:\Users\Public\Desktop\Skype.lnk
2017-03-12 14:11 - 2016-06-27 22:22 - 00000000 ____D C:\ProgramData\Skype
2017-03-12 14:10 - 2016-06-27 22:22 - 00000000 ____D C:\Users\Martin\AppData\Local\Skype
2017-03-12 09:58 - 2016-06-29 11:19 - 00000958 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2017-03-12 09:54 - 2016-12-23 19:18 - 00000000 ____D C:\Program Files\trend micro
2017-03-12 09:41 - 2016-12-23 18:22 - 00000000 ____D C:\Users\Martin\AppData\Local\CrashDumps
2017-03-11 11:54 - 2016-06-29 11:19 - 00003922 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2017-03-11 11:54 - 2016-06-29 11:16 - 00000000 ____D C:\Users\Martin\AppData\Local\Adobe
2017-03-11 11:53 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-03-11 11:53 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\Macromed
2017-03-10 08:37 - 2016-07-13 10:10 - 00000000 ____D C:\Users\Martin\AppData\Roaming\uTorrent
2017-03-10 08:24 - 2016-06-28 14:30 - 00000000 ___RD C:\Users\Martin\Desktop\Games
2017-03-10 08:15 - 2016-06-27 22:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2017-03-10 08:15 - 2016-06-27 22:16 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2017-03-09 21:08 - 2016-06-27 17:10 - 00000000 ____D C:\Users\Martin
2017-03-03 14:09 - 2016-12-30 14:18 - 00004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-03-03 14:09 - 2016-10-29 14:24 - 00003852 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-03-03 14:09 - 2016-10-29 14:23 - 00003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-03-03 14:09 - 2016-10-29 14:23 - 00003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-03-03 14:09 - 2016-10-29 14:23 - 00003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-03-03 14:09 - 2016-10-29 14:23 - 00003554 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-03-03 14:09 - 2016-10-29 14:23 - 00003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-03-03 14:09 - 2016-06-27 17:16 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2017-03-03 14:09 - 2016-06-27 17:16 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-03-01 18:10 - 2016-06-27 22:14 - 00000000 ____D C:\ProgramData\Package Cache
2017-03-01 17:23 - 2016-06-27 17:19 - 00004050 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1467044360
2017-03-01 17:23 - 2016-06-27 17:19 - 00001328 _____ C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2017-02-25 07:32 - 2016-06-28 13:26 - 00000000 ____D C:\Windows\system32\appraiser
2017-02-25 07:25 - 2013-08-22 16:20 - 00000000 ____D C:\Windows\CbsTemp
2017-02-25 07:24 - 2016-06-27 21:42 - 00000000 ____D C:\Windows\system32\MRT
2017-02-25 07:23 - 2016-06-27 21:42 - 138020592 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-02-23 23:56 - 2016-07-10 22:00 - 01600056 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2017-02-23 19:35 - 2016-10-29 14:24 - 01880512 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2017-02-23 19:35 - 2016-10-29 14:24 - 01755072 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2017-02-23 19:35 - 2016-10-29 14:24 - 01468864 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2017-02-23 19:35 - 2016-10-29 14:24 - 01317312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2017-02-23 19:35 - 2016-10-29 14:24 - 00120256 _____ C:\Windows\system32\NvRtmpStreamer64.dll
2017-02-23 15:30 - 2016-12-30 14:17 - 00001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2017-02-23 11:34 - 2016-11-19 16:30 - 17281112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2017-02-23 11:34 - 2016-10-30 16:23 - 00492744 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2017-02-23 11:34 - 2016-06-27 22:12 - 19883088 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2017-02-23 11:34 - 2016-06-27 22:12 - 04064088 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2017-02-23 11:34 - 2016-06-27 22:12 - 03583744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2017-02-23 11:34 - 2016-06-27 22:12 - 00042616 _____ C:\Windows\system32\nvinfo.pb
2017-02-23 09:43 - 2016-10-29 14:23 - 00001951 _____ C:\Windows\NvContainerRecovery.bat
2017-02-23 09:28 - 2016-06-27 22:16 - 06401984 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2017-02-23 09:28 - 2016-06-27 22:16 - 02479160 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2017-02-23 09:28 - 2016-06-27 22:16 - 01764408 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2017-02-23 09:28 - 2016-06-27 22:16 - 00548288 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2017-02-23 09:28 - 2016-06-27 22:16 - 00392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2017-02-23 09:28 - 2016-06-27 22:16 - 00083512 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2017-02-23 09:28 - 2016-06-27 22:16 - 00069568 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2017-02-23 07:38 - 2016-06-27 22:16 - 07807027 _____ C:\Windows\system32\nvcoproc.bin
2017-02-21 22:41 - 2016-06-27 17:10 - 00000000 ____D C:\Users\Martin\AppData\Local\VirtualStore
2017-02-17 11:52 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\rescache
==================== Files in the root of some directories =======
2016-06-27 21:54 - 2016-06-27 21:54 - 0000017 _____ () C:\Users\Martin\AppData\Local\resmon.resmoncfg
2016-12-30 14:19 - 2017-02-21 16:53 - 0016198 _____ () C:\ProgramData\NvTelemetryContainer.log
2016-12-30 14:19 - 2017-01-08 10:38 - 0008200 _____ () C:\ProgramData\NvTelemetryContainer.log_backup1
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-03-16 07:38
==================== End of FRST.txt ============================
Re: Prohlížeč blbne
Log z Addition
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-03-2017
Ran by Martin (16-03-2017 08:27:44)
Running from C:\Users\Martin\Desktop
Windows 8.1 Pro (Update) (X64) (2016-06-27 16:10:50)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-711420153-2017975014-3052516532-500 - Administrator - Disabled)
Guest (S-1-5-21-711420153-2017975014-3052516532-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-711420153-2017975014-3052516532-1003 - Limited - Enabled)
Martin (S-1-5-21-711420153-2017975014-3052516532-1001 - Administrator - Enabled) => C:\Users\Martin
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
3DMark Vantage (HKLM-x32\...\{C40C3C3D-97CF-44B5-836C-766E374464B3}) (Version: 1.1.3 - Futuremark)
Adobe Flash Player 24 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 24.0.0.221 - Adobe Systems Incorporated)
Aktualizace NVIDIA 23.23.30.0 (Version: 23.23.30.0 - NVIDIA Corporation) Hidden
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Ansel (Version: 378.78 - NVIDIA Corporation) Hidden
Ashampoo Burning Studio 6 FREE v.6.84 (HKLM-x32\...\{91B33C97-3ED1-03EA-A67B-244AA4D7B559}_is1) (Version: 6.8.4 - Ashampoo GmbH & Co. KG)
Batman™: Arkham Origins (HKLM\...\Steam App 209000) (Version: - WB Games Montreal)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
CCleaner (HKLM\...\CCleaner) (Version: 5.22 - Piriform)
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
CPUID CPU-Z 1.77 (HKLM\...\CPUID CPU-Z_is1) (Version: - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0192 - Disc Soft Ltd)
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
DmC Devil May Cry (HKLM\...\Steam App 220440) (Version: - Ninja Theory)
Dota 2 (HKLM\...\Steam App 570) (Version: - Valve)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.2.0.429 - Foxit Corporation)
Futuremark SystemInfo (HKLM-x32\...\{032DC00A-51D1-4D28-BFB7-1D0E85291E11}) (Version: 4.25.366 - Futuremark)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 56.0.2924.87 - Google Inc.)
Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden
Ionball 2 : Ionstorm (HKLM\...\Steam App 287120) (Version: - Ironsun Studios)
Java 8 Update 91 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218091F0}) (Version: 8.0.910.15 - Oracle Corporation)
KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 4.1.0.3 - PandoraTV)
Lethal League (HKLM\...\Steam App 261180) (Version: - Team Reptile)
Mafia II (HKLM\...\Steam App 50130) (Version: - 2K Czech)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation)
Mortal Kombat Komplete Edition (HKLM\...\Steam App 237110) (Version: - NetherRealm Studios)
NVIDIA GeForce Experience 3.4.0.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.4.0.70 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 378.78 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 378.78 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.23 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 378.78 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 378.78 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
NVIDIA Virtuální audio Miracast 378.78 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 378.78 - NVIDIA Corporation)
NvNodejs (Version: 3.4.0.70 - NVIDIA Corporation) Hidden
NvTelemetry (Version: 2.3.16.0 - NVIDIA Corporation) Hidden
NvvHci (Version: 2.02.0.5 - NVIDIA Corporation) Hidden
Opera Stable 43.0.2442.1144 (HKU\S-1-5-21-711420153-2017975014-3052516532-1001\...\Opera 43.0.2442.1144) (Version: 43.0.2442.1144 - Opera Software)
Oracle VM VirtualBox 5.1.14 (HKLM\...\{6AE61854-0F78-49E3-ABCC-586FB43CE709}) (Version: 5.1.14 - Oracle Corporation)
Ovládací panel NVIDIA 378.78 (Version: 378.78 - NVIDIA Corporation) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0033 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.)
Shadow Warrior (HKLM\...\Steam App 233130) (Version: - Flying Wild Hog)
SHIELD Streaming (Version: 7.1.0351 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 3.4.0.70 - NVIDIA Corporation) Hidden
Skype™ 7.32 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.32.104 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKU\S-1-5-21-711420153-2017975014-3052516532-1001\...\TeamSpeak 3 Client) (Version: 3.1.1 - TeamSpeak Systems GmbH)
Trine (HKLM\...\Steam App 35700) (Version: - Frozenbyte)
Trine 2 (HKLM\...\Steam App 35720) (Version: - Frozenbyte)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1) (Version: 1.0.39.1 - LunarG, Inc.)
Vypínač na dobrou noc verze 2.0 (HKLM-x32\...\Vypínač na dobrou noc_is1) (Version: - )
Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
WinRAR archiver (HKLM-x32\...\WinRAR archiver) (Version: - )
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0F6B538F-ED56-4927-A023-148F0DD4D3C6} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-02-23] (NVIDIA Corporation)
Task: {1EEE3BB1-861E-4C0D-BC80-FE31155AB4AA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-08-26] (Piriform Ltd)
Task: {27E12924-E8D7-4546-A394-3EA38A5DAEE8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-02-26] (Google Inc.)
Task: {4BAF89D5-7DCA-4810-AC98-CD27FE2E6043} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-02-23] (NVIDIA Corporation)
Task: {4D08479A-9179-4ED9-8FC3-5EDEA4501493} - System32\Tasks\blogcreativeorglrops => C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe [2017-03-01] (Opera Software)
Task: {6346E44F-883C-41ED-BDDE-DC2EAFB475CC} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-02-23] (NVIDIA Corporation)
Task: {9503077F-D154-4298-8E02-3334EB7D57FB} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-02-23] (NVIDIA Corporation)
Task: {B095CE8C-820B-4EF9-A4BC-D43A72637788} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23] (NVIDIA Corporation)
Task: {B1841527-A310-4EA0-B1C9-EEDF4862CD1C} - System32\Tasks\Opera scheduled Autoupdate 1467044360 => C:\Users\Martin\AppData\Local\Programs\Opera\launcher.exe [2017-02-27] (Opera Software)
Task: {B2851CE8-92A5-4FBB-A55B-651660A4D402} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-02-23] (NVIDIA Corporation)
Task: {CB57A636-FD16-429E-B88D-A4794B88246B} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-02-23] (NVIDIA Corporation)
Task: {F28C1F90-6DB0-4B39-904E-F68A126D3108} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-02-26] (Google Inc.)
Task: {F521FB43-B3D0-4CFD-8555-22941787F538} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_24_0_0_221_pepper.exe [2017-03-11] (Adobe Systems Incorporated)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_24_0_0_221_pepper.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2016-10-29 14:23 - 2017-02-23 19:35 - 04489152 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll
2016-10-29 14:23 - 2017-02-23 19:35 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-06-27 22:16 - 2017-02-23 09:28 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-10-29 14:24 - 2017-02-23 19:35 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2016-10-29 14:23 - 2017-02-23 19:35 - 03774400 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\Poco.dll
2016-10-29 14:23 - 2017-02-23 19:35 - 00900032 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-03-10 22:17 - 2017-02-03 02:42 - 00668960 _____ () D:\Games\Steam\SDL2.dll
2016-10-18 17:41 - 2016-09-01 02:02 - 04969248 _____ () D:\Games\Steam\v8.dll
2017-03-14 17:27 - 2017-03-13 23:04 - 02465056 _____ () D:\Games\Steam\video.dll
2016-10-18 17:41 - 2016-09-01 02:02 - 01563936 _____ () D:\Games\Steam\icui18n.dll
2016-10-18 17:41 - 2016-09-01 02:02 - 01195296 _____ () D:\Games\Steam\icuuc.dll
2016-10-18 17:41 - 2016-01-27 08:49 - 02549760 _____ () D:\Games\Steam\libavcodec-56.dll
2016-10-18 17:41 - 2016-01-27 08:49 - 00491008 _____ () D:\Games\Steam\libavformat-56.dll
2016-10-18 17:41 - 2016-01-27 08:49 - 00332800 _____ () D:\Games\Steam\libavresample-2.dll
2016-10-18 17:41 - 2016-01-27 08:49 - 00442880 _____ () D:\Games\Steam\libavutil-54.dll
2016-10-18 17:41 - 2016-01-27 08:49 - 00485888 _____ () D:\Games\Steam\libswscale-3.dll
2017-03-14 17:27 - 2017-03-13 23:04 - 00838944 _____ () D:\Games\Steam\bin\chromehtml.DLL
2016-10-18 17:41 - 2016-07-04 23:17 - 00266560 _____ () D:\Games\Steam\openvr_api.dll
2017-03-10 22:16 - 2017-01-30 22:41 - 68875552 _____ () D:\Games\Steam\bin\cef\cef.win7\libcef.dll
2017-03-14 17:27 - 2017-03-13 23:04 - 00383776 _____ () D:\Games\Steam\steam.dll
2017-03-01 17:23 - 2017-03-01 17:22 - 39821912 _____ () C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera_browser.dll
2016-10-18 17:41 - 2015-09-25 00:52 - 00119208 _____ () D:\Games\Steam\winh264.dll
2017-03-01 17:23 - 2017-03-01 17:23 - 45842008 _____ () C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera_child.dll
2017-03-01 17:23 - 2017-03-01 17:22 - 01930328 _____ () C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\libglesv2.dll
2017-03-01 17:23 - 2017-03-01 17:22 - 00087640 _____ () C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\libegl.dll
2016-10-29 14:24 - 2017-02-23 15:30 - 00338488 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node
2016-10-29 14:24 - 2017-02-23 15:30 - 00252352 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node
2016-10-29 14:24 - 2017-02-23 15:30 - 02443320 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node
2016-10-29 14:24 - 2017-02-23 15:30 - 00385592 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node
2016-10-29 14:24 - 2017-02-23 15:30 - 00543288 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node
2016-10-29 14:24 - 2017-02-23 15:30 - 00468536 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 14:25 - 2017-03-16 08:19 - 00000832 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-711420153-2017975014-3052516532-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Martin\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta programu Windows Prohlížeč fotografií.jpg
DNS Servers: 62.129.50.20 - 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-711420153-2017975014-3052516532-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-711420153-2017975014-3052516532-1001\...\StartupApproved\Run: => "World of Tanks"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{605C5DEE-B0EA-4FB4-9EC6-F6967473D601}] => (Allow) D:\Games\Steam\Steam.exe
FirewallRules: [{F09EE736-9C1D-4622-97A6-E598B2C148BE}] => (Allow) D:\Games\Steam\Steam.exe
FirewallRules: [{BE288CA3-0B46-4366-B690-60D5C9E35232}] => (Allow) D:\Games\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{9786EADC-79BA-4006-BCD0-497FD4FD46D9}] => (Allow) D:\Games\Steam\bin\cef\cef.win7\steamwebhelper.exe
==================== Restore Points =========================
01-03-2017 18:09:47 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506
09-03-2017 22:31:08 Naplánovaný kontrolní bod
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (03/16/2017 08:20:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:20:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:20:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:20:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:20:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:20:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:19:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:19:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:19:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:19:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
System errors:
=============
Error: (03/16/2017 08:19:37 AM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správce služeb se pokusil o opravnou akci (Restartovat službu) po nečekaném ukončení služby Windows Search, ale tato akce selhala kvůli následující chybě:
Instance této služby je již spuštěna.
Error: (03/16/2017 08:19:08 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Steam Client Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (03/16/2017 08:19:07 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.
Error: (03/16/2017 08:19:07 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Telemetry Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.
Error: (03/16/2017 08:19:07 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Display Container LS byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.
Error: (03/16/2017 08:19:07 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA LocalSystem Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.
Error: (03/16/2017 08:19:07 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba zařazování tisku byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.
Error: (03/16/2017 07:43:22 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 20
Error: (03/14/2017 05:27:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (03/14/2017 05:27:39 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (60000 ms).
CodeIntegrity:
===================================
Date: 2017-01-02 16:08:47.536
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:47.067
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:46.646
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:44.802
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:44.333
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:43.849
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:39.302
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:38.817
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:33.333
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:32.880
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Core(TM)2 Quad CPU Q8200 @ 2.33GHz
Percentage of memory in use: 33%
Total physical RAM: 6142.49 MB
Available physical RAM: 4061.1 MB
Total Virtual: 12286.49 MB
Available Virtual: 10062.38 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:97.65 GB) (Free:29.38 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:200.43 GB) (Free:37.66 GB) NTFS
Drive e: (Disk) (Fixed) (Total:74.53 GB) (Free:32.75 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 74.5 GB) (Disk ID: F59CF59C)
Partition 1: (Not Active) - (Size=74.5 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 0330032F)
Partition 1: (Active) - (Size=97.7 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=200.4 GB) - (Type=OF Extended)
==================== End of Addition.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-03-2017
Ran by Martin (16-03-2017 08:27:44)
Running from C:\Users\Martin\Desktop
Windows 8.1 Pro (Update) (X64) (2016-06-27 16:10:50)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-711420153-2017975014-3052516532-500 - Administrator - Disabled)
Guest (S-1-5-21-711420153-2017975014-3052516532-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-711420153-2017975014-3052516532-1003 - Limited - Enabled)
Martin (S-1-5-21-711420153-2017975014-3052516532-1001 - Administrator - Enabled) => C:\Users\Martin
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
3DMark Vantage (HKLM-x32\...\{C40C3C3D-97CF-44B5-836C-766E374464B3}) (Version: 1.1.3 - Futuremark)
Adobe Flash Player 24 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 24.0.0.221 - Adobe Systems Incorporated)
Aktualizace NVIDIA 23.23.30.0 (Version: 23.23.30.0 - NVIDIA Corporation) Hidden
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Ansel (Version: 378.78 - NVIDIA Corporation) Hidden
Ashampoo Burning Studio 6 FREE v.6.84 (HKLM-x32\...\{91B33C97-3ED1-03EA-A67B-244AA4D7B559}_is1) (Version: 6.8.4 - Ashampoo GmbH & Co. KG)
Batman™: Arkham Origins (HKLM\...\Steam App 209000) (Version: - WB Games Montreal)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
CCleaner (HKLM\...\CCleaner) (Version: 5.22 - Piriform)
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
CPUID CPU-Z 1.77 (HKLM\...\CPUID CPU-Z_is1) (Version: - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0192 - Disc Soft Ltd)
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
DmC Devil May Cry (HKLM\...\Steam App 220440) (Version: - Ninja Theory)
Dota 2 (HKLM\...\Steam App 570) (Version: - Valve)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.2.0.429 - Foxit Corporation)
Futuremark SystemInfo (HKLM-x32\...\{032DC00A-51D1-4D28-BFB7-1D0E85291E11}) (Version: 4.25.366 - Futuremark)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 56.0.2924.87 - Google Inc.)
Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden
Ionball 2 : Ionstorm (HKLM\...\Steam App 287120) (Version: - Ironsun Studios)
Java 8 Update 91 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218091F0}) (Version: 8.0.910.15 - Oracle Corporation)
KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 4.1.0.3 - PandoraTV)
Lethal League (HKLM\...\Steam App 261180) (Version: - Team Reptile)
Mafia II (HKLM\...\Steam App 50130) (Version: - 2K Czech)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation)
Mortal Kombat Komplete Edition (HKLM\...\Steam App 237110) (Version: - NetherRealm Studios)
NVIDIA GeForce Experience 3.4.0.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.4.0.70 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 378.78 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 378.78 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.23 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 378.78 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 378.78 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
NVIDIA Virtuální audio Miracast 378.78 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 378.78 - NVIDIA Corporation)
NvNodejs (Version: 3.4.0.70 - NVIDIA Corporation) Hidden
NvTelemetry (Version: 2.3.16.0 - NVIDIA Corporation) Hidden
NvvHci (Version: 2.02.0.5 - NVIDIA Corporation) Hidden
Opera Stable 43.0.2442.1144 (HKU\S-1-5-21-711420153-2017975014-3052516532-1001\...\Opera 43.0.2442.1144) (Version: 43.0.2442.1144 - Opera Software)
Oracle VM VirtualBox 5.1.14 (HKLM\...\{6AE61854-0F78-49E3-ABCC-586FB43CE709}) (Version: 5.1.14 - Oracle Corporation)
Ovládací panel NVIDIA 378.78 (Version: 378.78 - NVIDIA Corporation) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0033 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.)
Shadow Warrior (HKLM\...\Steam App 233130) (Version: - Flying Wild Hog)
SHIELD Streaming (Version: 7.1.0351 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 3.4.0.70 - NVIDIA Corporation) Hidden
Skype™ 7.32 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.32.104 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKU\S-1-5-21-711420153-2017975014-3052516532-1001\...\TeamSpeak 3 Client) (Version: 3.1.1 - TeamSpeak Systems GmbH)
Trine (HKLM\...\Steam App 35700) (Version: - Frozenbyte)
Trine 2 (HKLM\...\Steam App 35720) (Version: - Frozenbyte)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1) (Version: 1.0.39.1 - LunarG, Inc.)
Vypínač na dobrou noc verze 2.0 (HKLM-x32\...\Vypínač na dobrou noc_is1) (Version: - )
Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
WinRAR archiver (HKLM-x32\...\WinRAR archiver) (Version: - )
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0F6B538F-ED56-4927-A023-148F0DD4D3C6} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-02-23] (NVIDIA Corporation)
Task: {1EEE3BB1-861E-4C0D-BC80-FE31155AB4AA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-08-26] (Piriform Ltd)
Task: {27E12924-E8D7-4546-A394-3EA38A5DAEE8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-02-26] (Google Inc.)
Task: {4BAF89D5-7DCA-4810-AC98-CD27FE2E6043} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-02-23] (NVIDIA Corporation)
Task: {4D08479A-9179-4ED9-8FC3-5EDEA4501493} - System32\Tasks\blogcreativeorglrops => C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe [2017-03-01] (Opera Software)
Task: {6346E44F-883C-41ED-BDDE-DC2EAFB475CC} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-02-23] (NVIDIA Corporation)
Task: {9503077F-D154-4298-8E02-3334EB7D57FB} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-02-23] (NVIDIA Corporation)
Task: {B095CE8C-820B-4EF9-A4BC-D43A72637788} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23] (NVIDIA Corporation)
Task: {B1841527-A310-4EA0-B1C9-EEDF4862CD1C} - System32\Tasks\Opera scheduled Autoupdate 1467044360 => C:\Users\Martin\AppData\Local\Programs\Opera\launcher.exe [2017-02-27] (Opera Software)
Task: {B2851CE8-92A5-4FBB-A55B-651660A4D402} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-02-23] (NVIDIA Corporation)
Task: {CB57A636-FD16-429E-B88D-A4794B88246B} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-02-23] (NVIDIA Corporation)
Task: {F28C1F90-6DB0-4B39-904E-F68A126D3108} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-02-26] (Google Inc.)
Task: {F521FB43-B3D0-4CFD-8555-22941787F538} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_24_0_0_221_pepper.exe [2017-03-11] (Adobe Systems Incorporated)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_24_0_0_221_pepper.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2016-10-29 14:23 - 2017-02-23 19:35 - 04489152 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll
2016-10-29 14:23 - 2017-02-23 19:35 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-06-27 22:16 - 2017-02-23 09:28 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-10-29 14:24 - 2017-02-23 19:35 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2016-10-29 14:23 - 2017-02-23 19:35 - 03774400 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\Poco.dll
2016-10-29 14:23 - 2017-02-23 19:35 - 00900032 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-03-10 22:17 - 2017-02-03 02:42 - 00668960 _____ () D:\Games\Steam\SDL2.dll
2016-10-18 17:41 - 2016-09-01 02:02 - 04969248 _____ () D:\Games\Steam\v8.dll
2017-03-14 17:27 - 2017-03-13 23:04 - 02465056 _____ () D:\Games\Steam\video.dll
2016-10-18 17:41 - 2016-09-01 02:02 - 01563936 _____ () D:\Games\Steam\icui18n.dll
2016-10-18 17:41 - 2016-09-01 02:02 - 01195296 _____ () D:\Games\Steam\icuuc.dll
2016-10-18 17:41 - 2016-01-27 08:49 - 02549760 _____ () D:\Games\Steam\libavcodec-56.dll
2016-10-18 17:41 - 2016-01-27 08:49 - 00491008 _____ () D:\Games\Steam\libavformat-56.dll
2016-10-18 17:41 - 2016-01-27 08:49 - 00332800 _____ () D:\Games\Steam\libavresample-2.dll
2016-10-18 17:41 - 2016-01-27 08:49 - 00442880 _____ () D:\Games\Steam\libavutil-54.dll
2016-10-18 17:41 - 2016-01-27 08:49 - 00485888 _____ () D:\Games\Steam\libswscale-3.dll
2017-03-14 17:27 - 2017-03-13 23:04 - 00838944 _____ () D:\Games\Steam\bin\chromehtml.DLL
2016-10-18 17:41 - 2016-07-04 23:17 - 00266560 _____ () D:\Games\Steam\openvr_api.dll
2017-03-10 22:16 - 2017-01-30 22:41 - 68875552 _____ () D:\Games\Steam\bin\cef\cef.win7\libcef.dll
2017-03-14 17:27 - 2017-03-13 23:04 - 00383776 _____ () D:\Games\Steam\steam.dll
2017-03-01 17:23 - 2017-03-01 17:22 - 39821912 _____ () C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera_browser.dll
2016-10-18 17:41 - 2015-09-25 00:52 - 00119208 _____ () D:\Games\Steam\winh264.dll
2017-03-01 17:23 - 2017-03-01 17:23 - 45842008 _____ () C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera_child.dll
2017-03-01 17:23 - 2017-03-01 17:22 - 01930328 _____ () C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\libglesv2.dll
2017-03-01 17:23 - 2017-03-01 17:22 - 00087640 _____ () C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\libegl.dll
2016-10-29 14:24 - 2017-02-23 15:30 - 00338488 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node
2016-10-29 14:24 - 2017-02-23 15:30 - 00252352 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node
2016-10-29 14:24 - 2017-02-23 15:30 - 02443320 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node
2016-10-29 14:24 - 2017-02-23 15:30 - 00385592 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node
2016-10-29 14:24 - 2017-02-23 15:30 - 00543288 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node
2016-10-29 14:24 - 2017-02-23 15:30 - 00468536 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 14:25 - 2017-03-16 08:19 - 00000832 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-711420153-2017975014-3052516532-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Martin\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta programu Windows Prohlížeč fotografií.jpg
DNS Servers: 62.129.50.20 - 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-711420153-2017975014-3052516532-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-711420153-2017975014-3052516532-1001\...\StartupApproved\Run: => "World of Tanks"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{605C5DEE-B0EA-4FB4-9EC6-F6967473D601}] => (Allow) D:\Games\Steam\Steam.exe
FirewallRules: [{F09EE736-9C1D-4622-97A6-E598B2C148BE}] => (Allow) D:\Games\Steam\Steam.exe
FirewallRules: [{BE288CA3-0B46-4366-B690-60D5C9E35232}] => (Allow) D:\Games\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{9786EADC-79BA-4006-BCD0-497FD4FD46D9}] => (Allow) D:\Games\Steam\bin\cef\cef.win7\steamwebhelper.exe
==================== Restore Points =========================
01-03-2017 18:09:47 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506
09-03-2017 22:31:08 Naplánovaný kontrolní bod
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (03/16/2017 08:20:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:20:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:20:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:20:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:20:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:20:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:19:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:19:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:19:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
Error: (03/16/2017 08:19:00 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1264) SRUJet: Při otevírání souboru protokolu C:\Windows\system32\SRU\SRU.log došlo k chybě -1023 (0xfffffc01).
System errors:
=============
Error: (03/16/2017 08:19:37 AM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správce služeb se pokusil o opravnou akci (Restartovat službu) po nečekaném ukončení služby Windows Search, ale tato akce selhala kvůli následující chybě:
Instance této služby je již spuštěna.
Error: (03/16/2017 08:19:08 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Steam Client Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (03/16/2017 08:19:07 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.
Error: (03/16/2017 08:19:07 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Telemetry Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.
Error: (03/16/2017 08:19:07 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Display Container LS byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.
Error: (03/16/2017 08:19:07 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA LocalSystem Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.
Error: (03/16/2017 08:19:07 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba zařazování tisku byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.
Error: (03/16/2017 07:43:22 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 20
Error: (03/14/2017 05:27:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (03/14/2017 05:27:39 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (60000 ms).
CodeIntegrity:
===================================
Date: 2017-01-02 16:08:47.536
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:47.067
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:46.646
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:44.802
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:44.333
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:43.849
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:39.302
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:38.817
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:33.333
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-01-02 16:08:32.880
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Core(TM)2 Quad CPU Q8200 @ 2.33GHz
Percentage of memory in use: 33%
Total physical RAM: 6142.49 MB
Available physical RAM: 4061.1 MB
Total Virtual: 12286.49 MB
Available Virtual: 10062.38 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:97.65 GB) (Free:29.38 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:200.43 GB) (Free:37.66 GB) NTFS
Drive e: (Disk) (Fixed) (Total:74.53 GB) (Free:32.75 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 74.5 GB) (Disk ID: F59CF59C)
Partition 1: (Not Active) - (Size=74.5 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 0330032F)
Partition 1: (Active) - (Size=97.7 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=200.4 GB) - (Type=OF Extended)
==================== End of Addition.txt ============================
Re: Prohlížeč blbne
Krasny den Vam preju 
Pokud je Vas log dlouhy a nevejde se do jednoho prispevku (je delsi nez 100.000 znaku), pridejte do nazvu tematu informaci o tom, ze je log dlouhy a je rozdelen do vice casti (napr. "virus, 3 posty"). Primarne resime temata bez odpovedi, takze ve Vasem pripade to vypada, ze se Vam jiz nektery z kolegu venuje a tema snadno zapadne.
V ramci cisteni Vam budou vyprazdneny docasne adresare (vysypani Kose a tempu, vyprazdneni cache prohlizecu apod.).
- Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
- ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
- znovu spustte FRST a kliknete na Fix
- po restartu bude na plose ulozen fixlog, jehoz obsah vlozte do pristi odpovedi
Kód: Vybrat vše
Start CreateRestorePoint: CloseProcesses: S3 cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys [X] S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X] S3 GPUZ; \??\C:\Windows\TEMP\GPUZ.sys [X] S3 TEAM; \SystemRoot\system32\DRIVERS\RtTeam60.sys [X] 2017-03-12 09:54 - 2016-12-23 19:18 - 00000000 ____D C:\Program Files\trend micro Task: {4D08479A-9179-4ED9-8FC3-5EDEA4501493} - System32\Tasks\blogcreativeorglrops => C:\Users\Martin\AppData\Local\Programs\Opera\43.0.2442.1144\opera.exe [2017-03-01] (Opera Software) CMD: dir "C:\Windows\Inf" /AD CMD: dir "C:\PROGRA~1" CMD: dir "C:\PROGRA~2" CMD: dir "C:\PROGRA~3" CMD: dir "%localappdata%" CMD: dir "%appdata%" Hosts: EmptyTemp: End
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.


Přispějete na provoz fóra?