
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Při spuštení her černá obrazovka a zásek.
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Při spuštení her černá obrazovka a zásek.
Zdravím mám problém.Zapnu Pc následně spustim jakoukoliv hru zčerná obrazovka a pc přestane reagovat poté musím natvrdo restartovat.Po restartu se hry spustí bez problému.Pak když Pc vypnu a zapnu vše se znovu opakuje.Nevím jestli to spolu souvisí ale občas po spuštění pc mám přeškrtnutou ikonku zvuku nebo mikrofonu ale přitom normálně fungují.Nevím si rady prosím poraďte.Děkuji S pozdravem R.V.
- Rudy
- Site Admin

- Příspěvky: 119670
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Při spuštení her černá obrazovka a zásek.
Zdravím!
Nejprve zkusíme PC vyčistit. Dejte log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Nejprve zkusíme PC vyčistit. Dejte log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Při spuštení her černá obrazovka a zásek.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02-06-2017
Ran by Domov (administrator) on DOMOV-PC (02-06-2017 20:33:15)
Running from C:\Users\Domov\Desktop
Loaded Profiles: Domov (Available Profiles: Domov)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Windows\runservice.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFTips.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\Domov\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213824 2017-05-09] (AVAST Software)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16781824 2017-05-31] (Realtek Semiconductor)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [5296416 2017-04-11] (IObit)
HKU\S-1-5-21-2596990379-3546878720-370041002-1001\...\Run: [Advanced SystemCare 10] => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [3920672 2017-03-30] (IObit)
HKU\S-1-5-21-2596990379-3546878720-370041002-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8944344 2016-09-28] (Piriform Ltd)
HKU\S-1-5-21-2596990379-3546878720-370041002-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKU\S-1-5-21-2596990379-3546878720-370041002-1001\...\MountPoints2: {e0c5d04c-5183-11e6-8db5-406186c8fb21} - E:\autorun.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2016-07-26] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-05-09] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-05-09] (AVAST Software)
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{02F5A82D-96ED-423F-A352-56724C03E54C}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2596990379-3546878720-370041002-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2017-03-28] (IObit)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-04-04] (AVAST Software)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-11-01] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-04-04] (AVAST Software)
BHO-x32: IObit Surfing Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll [2016-08-03] (IObit)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-11-01] (Oracle Corporation)
BHO-x32: IObit Ads Removal -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\Adblock\Adblock.dll [2016-06-23] (IObit)
FireFox:
========
FF ProfilePath: C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383 [2017-06-02]
FF user.js: detected! => C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383\user.js [2017-05-12]
FF Homepage: Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383 -> www.google.cz
FF Extension: (IObit Surfing Protection & Ads Removal) - C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383\Extensions\ascsurfingprotectionnew@iobit.com.xpi [2016-10-18]
FF Extension: (Avast SafePrice) - C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383\Extensions\sp@avast.com.xpi [2017-05-09]
FF Extension: (Avast Online Security) - C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383\Extensions\wrc@avast.com.xpi [2017-05-09]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll [2017-05-10] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll [2017-05-10] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-11-01] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-11-01] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-11-14] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-11-14] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-01] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-03-28] (Adobe Systems Inc.)
Chrome:
=======
CHR NewTab: Default -> Not-active:"chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/core/chrome/content/speedDial/speedDial.html"
CHR Profile: C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default [2017-06-02]
CHR Extension: (Prezentace Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-04-12]
CHR Extension: (Dokumenty Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-04-12]
CHR Extension: (Disk Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-04-12]
CHR Extension: (IObit Surfing Protection & Ads Removal) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd [2017-05-31]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2017-05-24]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2017-05-24]
CHR Extension: (YouTube) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-04-12]
CHR Extension: (Avast SafePrice) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-05-31]
CHR Extension: (Tabulky Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-04-12]
CHR Extension: (Dokumenty Google offline) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-04-12]
CHR Extension: (Avast Online Security) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-05-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-04-12]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2017-05-24]
CHR Extension: (Gmail) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-04-12]
CHR Extension: (Chrome Media Router) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-05-17]
CHR Profile: C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2 [2017-06-02]
CHR Extension: (Disk Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-10-29]
CHR Extension: (YouTube) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-10-29]
CHR Extension: (Avast SafePrice) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2016-10-29]
CHR Extension: (Tabulky Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-10-29]
CHR Extension: (Dokumenty Google offline) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-10-29]
CHR Extension: (Avast Online Security) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-10-29]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-10-29]
CHR Extension: (Gmail) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-10-29]
CHR Extension: (Chrome Media Router) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-29]
CHR HKU\S-1-5-21-2596990379-3546878720-370041002-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2596990379-3546878720-370041002-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [blmojkbhnkkphngknkmgccmlenfaelkd] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2596990379-3546878720-370041002-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdvancedSystemCareService10; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [462624 2017-03-21] (IObit)
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7346208 2017-05-09] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [263304 2017-05-09] (AVAST Software)
S3 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft Development Team)
R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [1764640 2017-04-11] (IObit)
S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [360736 2017-03-28] (IObit)
R2 LicCtrlService; C:\Windows\runservice.exe [16384 2016-10-08] () [File not signed]
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [492480 2017-03-28] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [492480 2017-03-28] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [425408 2017-03-28] (NVIDIA Corporation)
S3 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [311808 2017-05-09] (AVAST Software s.r.o.)
R0 aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [190256 2017-05-09] (AVAST Software s.r.o.)
R0 aswblog; C:\Windows\system32\drivers\aswbloga.sys [334576 2017-05-09] (AVAST Software s.r.o.)
R0 aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [49016 2017-05-09] (AVAST Software s.r.o.)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [38296 2017-05-09] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [32600 2017-05-09] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [128648 2017-05-09] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [101152 2017-05-09] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [75704 2017-05-09] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1007160 2017-05-09] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [569192 2017-05-09] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [158880 2017-05-13] (AVAST Software)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [44640 2016-07-24] (The OpenVPN Project)
R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [339696 2017-05-09] (AVAST Software)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2017-05-31] (REALiX(tm))
R1 IMFCameraProtect; C:\Windows\system32\drivers\IMFCameraProtect.sys [26272 2017-03-29] (IObit.com)
R3 IMFDownProtect; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\IMFDownProtect.sys [21360 2017-03-08] (IObit.com)
R3 IMFFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\IMFFilter.sys [22440 2016-12-22] (IObit)
R3 IMFForceDelete; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\IMFForceDelete.sys [16216 2017-03-29] (IObit.com)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-03-28] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [47552 2017-03-28] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57792 2017-02-23] (NVIDIA Corporation)
R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34752 2016-11-03] (IObit.com)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2017-02-08] (Duplex Secure Ltd.)
U3 a73ddkof; C:\Windows\System32\Drivers\a73ddkof.sys [0 ] (Elaborate Bytes AG) <==== ATTENTION (zero byte File/Folder)
S3 MSICDSetup; \??\D:\CDriver64.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-06-02 20:33 - 2017-06-02 20:33 - 00018677 _____ C:\Users\Domov\Desktop\FRST.txt
2017-06-02 20:32 - 2017-06-02 20:33 - 00000000 ____D C:\FRST
2017-06-02 20:31 - 2017-06-02 20:31 - 00112640 _____ (forum.viry.cz) C:\Users\Domov\Desktop\FRSTLauncher.exe
2017-06-02 20:28 - 2017-06-02 20:28 - 00112640 _____ (forum.viry.cz) C:\Users\Domov\Desktop\Nepotvrzeno 150452.crdownload
2017-06-02 20:25 - 2017-06-02 20:25 - 02433536 _____ (Farbar) C:\Users\Domov\Desktop\FRST64.exe
2017-06-02 15:08 - 2017-06-02 15:08 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-06-01 19:06 - 2017-06-01 19:06 - 00006343 _____ C:\Users\Domov\Downloads\rv certi.kb.p12
2017-05-31 19:44 - 2017-05-31 19:44 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\Windows\system32\DAX3
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\Windows\system32\DAX2
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\ProgramData\Audyssey Labs
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\Program Files\Realtek
2017-05-31 19:42 - 2017-05-31 19:42 - 72520712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2017-05-31 19:42 - 2017-05-31 19:42 - 15202032 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 09124224 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2017-05-31 19:42 - 2017-05-31 19:42 - 07172912 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 07096184 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 06264632 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat
2017-05-31 19:42 - 2017-05-31 19:42 - 05545512 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2017-05-31 19:42 - 2017-05-31 19:42 - 05347000 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03503048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03410832 _____ (DTS, Inc.) C:\Windows\system32\slcnt64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03299816 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03203584 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03203424 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03122656 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03014144 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2017-05-31 19:42 - 2017-05-31 19:42 - 02993720 _____ (Audyssey Labs) C:\Windows\system32\AudysseyEfx.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 02830480 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 02444688 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv201.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 02201600 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 02190976 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01965808 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01959600 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01780616 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01591056 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01516896 _____ (Dolby Laboratories) C:\Windows\system32\DAX3APOProp.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01508928 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01435136 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01382232 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01363096 _____ (Dolby Laboratories) C:\Windows\system32\DAX3APOv251.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01353824 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01337640 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tossaeapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01133584 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01003504 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDHF64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00984912 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00965024 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00962128 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tosasfapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00873456 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00866088 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SEHDHF32.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00859912 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00854208 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00785608 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOvlldp.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00743960 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00727432 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00726120 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00708312 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00689880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00601136 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tossaemaxapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00588032 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00532376 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00514872 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00504304 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00467152 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00447720 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00447176 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\toseaeapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00445400 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00441264 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00426568 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2APIPCLL.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00416504 _____ (Harman) C:\Windows\system32\HMUI.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00387312 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00381400 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00378384 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00366120 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\HMAPO.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00362048 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00360344 _____ (Harman) C:\Windows\system32\HMClariFi.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00343704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00341144 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00341144 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00327456 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00321712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00321712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00310416 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00272712 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00258864 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00253896 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00253864 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00252872 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00231912 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00221960 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00214832 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00209528 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00203840 _____ (Harman) C:\Windows\system32\HMHVS.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00192976 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00190928 _____ (Harman) C:\Windows\system32\HMEQ_Voice.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00190928 _____ (Harman) C:\Windows\system32\HMEQ.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00179592 _____ (Harman) C:\Windows\system32\HMLimiter.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00166200 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00158688 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00154360 _____ (Harman) C:\Windows\system32\HarmanAudioInterface.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00151784 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00134200 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00122320 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00118592 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00110984 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00105304 _____ C:\Windows\system32\audioLibVc.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00090912 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00088344 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00088320 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00084616 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00083624 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00075536 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00023688 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2017-05-31 19:37 - 2017-05-31 19:37 - 00501280 _____ (NVIDIA Corporation) C:\Windows\system32\nvusmb.exe
2017-05-31 19:37 - 2017-05-31 19:37 - 00135680 _____ (NVIDIA Corporation) C:\Windows\system32\NVCOSMB.DLL
2017-05-31 19:37 - 2017-05-31 19:37 - 00002344 _____ C:\Windows\system32\nvsmb.nvu
2017-05-31 19:35 - 2017-05-31 19:35 - 01057296 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2017-05-31 19:35 - 2017-05-31 19:35 - 00131592 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2017-05-31 19:35 - 2017-05-31 19:35 - 00127536 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2017-05-31 19:34 - 2017-05-31 19:34 - 00239720 _____ (NVIDIA Corporation) C:\Windows\system32\NVCOSMU.DLL
2017-05-31 19:34 - 2017-05-31 19:34 - 00029800 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvsmu.sys
2017-05-31 19:31 - 2017-05-31 19:31 - 00000000 ____D C:\Windows\IObit
2017-05-31 19:30 - 2017-05-31 19:44 - 00002234 _____ C:\Users\Public\Desktop\Driver Booster 4.lnk
2017-05-31 19:30 - 2017-05-31 19:31 - 00002886 _____ C:\Windows\System32\Tasks\Driver Booster SkipUAC (Domov)
2017-05-31 19:30 - 2017-05-31 19:30 - 00027552 _____ (REALiX(tm)) C:\Windows\SysWOW64\Drivers\HWiNFO64A.SYS
2017-05-31 19:30 - 2017-05-31 19:30 - 00003254 _____ C:\Windows\System32\Tasks\Driver Booster Scheduler
2017-05-31 19:30 - 2017-05-31 19:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 4
2017-05-31 19:28 - 2017-05-31 19:29 - 15721672 _____ (IObit ) C:\Users\Domov\Downloads\driver_booster_setup.exe
2017-05-20 10:40 - 2017-05-20 10:40 - 00001091 _____ C:\Users\Domov\Desktop\PTE Patch.lnk
2017-05-20 10:21 - 2017-05-20 10:21 - 00000000 ____D C:\Users\Domov\Desktop\[PES16] PTE PATCH 6.0 Final Version
2017-05-20 10:11 - 2017-05-20 10:42 - 00000000 ____D C:\Program Files (x86)\Pro Evolution Soccer 2016
2017-05-20 10:11 - 2017-05-20 10:11 - 00000902 _____ C:\Users\Public\Desktop\Pro Evolution Soccer 2016.lnk
2017-05-19 09:06 - 2017-05-19 09:10 - 00000000 ____D C:\Users\Domov\Desktop\fleska
2017-05-19 08:52 - 2017-05-19 09:10 - 00000000 ____D C:\Users\Domov\Desktop\vyvolat
2017-05-18 18:14 - 2017-05-18 20:13 - 4023874727 _____ C:\Users\Domov\Desktop\[PES16] PTE PATCH 6.0 Final Version.rar
2017-05-17 20:16 - 2017-05-17 20:16 - 00000000 ____D C:\Users\Domov\Desktop\PES 2016 Update v1.03.00 3DM Crack Only (Offline)
2017-05-17 20:15 - 2017-05-17 20:16 - 11523634 _____ C:\Users\Domov\Desktop\PES 2016 Update v1.03.00 3DM Crack Only (Offline).rar
2017-05-17 19:45 - 2017-05-17 19:45 - 00000000 ____D C:\Users\Domov\AppData\Local\PTE_Patch
2017-05-17 19:05 - 2017-05-17 19:05 - 00000000 ____D C:\Users\Domov\Desktop\[PES16] PTE PATCH 2.0.part1 (1)
2017-05-16 19:17 - 2017-05-16 19:17 - 00001133 _____ C:\Users\Public\Desktop\IObit Malware Fighter.lnk
2017-05-16 19:17 - 2017-05-16 19:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter
2017-05-16 19:17 - 2017-03-29 18:05 - 00026272 _____ (IObit.com) C:\Windows\system32\Drivers\IMFCameraProtect.sys
2017-05-16 19:16 - 2017-05-16 19:16 - 00000000 ____D C:\ProgramData\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705}
2017-05-12 19:09 - 2017-05-20 10:09 - 00002904 _____ C:\Windows\System32\Tasks\Uninstaller_SkipUac_Domov
2017-05-12 19:09 - 2017-05-12 19:09 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller.lnk
2017-05-12 19:09 - 2017-05-12 19:09 - 00001314 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk
2017-05-12 19:09 - 2017-05-12 19:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
2017-05-12 19:08 - 2017-05-12 19:08 - 00000000 ____D C:\update
2017-05-12 18:33 - 2017-05-12 18:33 - 87785472 _____ C:\Windows\system32\config\SOFTWARE.iobit
2017-05-12 18:33 - 2017-05-12 18:33 - 05017600 _____ C:\Windows\system32\config\DEFAULT.iobit
2017-05-12 18:33 - 2017-05-12 18:33 - 00028672 _____ C:\Windows\system32\config\SAM.iobit
2017-05-12 18:33 - 2017-05-12 18:33 - 00024576 _____ C:\Windows\system32\config\SECURITY.iobit
2017-05-12 18:30 - 2017-06-02 15:42 - 00002222 _____ C:\Users\Public\Desktop\Advanced SystemCare 10.lnk
2017-05-12 18:30 - 2017-05-31 19:30 - 00000000 ____D C:\ProgramData\IObit
2017-05-12 18:30 - 2017-05-31 19:30 - 00000000 ____D C:\Program Files (x86)\IObit
2017-05-12 18:30 - 2017-05-12 18:30 - 00002820 _____ C:\Windows\System32\Tasks\ASC10_SkipUac_Domov
2017-05-12 18:30 - 2017-05-12 18:30 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled
2017-05-12 18:30 - 2017-05-12 18:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
2017-05-12 18:30 - 2017-05-12 18:30 - 00000000 ____D C:\ProgramData\{74E9F814-C737-42CC-B721-DBBC4059367A}
2017-05-12 18:27 - 2017-05-12 18:28 - 39666592 _____ (IObit ) C:\Users\Domov\Desktop\asc10-setup-aff.exe
2017-05-12 12:06 - 2017-05-12 13:40 - 00000000 ____D C:\Users\Domov\Downloads\Pro.Evolution.Soccer.2016-RELOADED
2017-05-12 12:03 - 2017-05-17 13:21 - 00000000 ____D C:\Users\Domov\AppData\Roaming\uTorrent
2017-05-12 12:03 - 2017-05-12 12:03 - 00000950 _____ C:\Users\Domov\Desktop\µTorrent.lnk
2017-05-12 12:01 - 2017-05-12 12:03 - 00000000 ____D C:\Users\Domov\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2017-05-11 18:42 - 2017-05-11 18:42 - 00000000 ____D C:\Users\Domov\Desktop\sssssss
2017-05-09 17:59 - 2017-05-09 17:58 - 00400456 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-06-02 20:29 - 2016-11-20 11:22 - 00000000 ____D C:\Users\Domov\AppData\LocalLow\Mozilla
2017-06-02 20:29 - 2016-11-19 20:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-06-02 20:29 - 2016-10-31 20:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-06-02 19:11 - 2009-07-14 06:45 - 00017360 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-06-02 19:11 - 2009-07-14 06:45 - 00017360 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-06-02 18:25 - 2016-07-25 13:41 - 00000000 ____D C:\ProgramData\NVIDIA
2017-06-02 18:22 - 2016-10-08 19:31 - 00001377 ___SH C:\Windows\SysWOW64\mmf.sys
2017-06-02 18:22 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-06-02 15:47 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2017-06-01 18:00 - 2017-03-04 18:26 - 00004172 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2017-05-31 19:43 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2017-05-31 19:38 - 2009-07-14 17:18 - 00668866 _____ C:\Windows\system32\perfh005.dat
2017-05-31 19:38 - 2009-07-14 17:18 - 00141526 _____ C:\Windows\system32\perfc005.dat
2017-05-31 19:38 - 2009-07-14 07:13 - 01584554 _____ C:\Windows\system32\PerfStringBackup.INI
2017-05-31 19:34 - 2016-07-25 12:52 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2017-05-31 19:31 - 2016-07-26 21:47 - 00000000 ____D C:\ProgramData\ProductData
2017-05-31 19:28 - 2016-07-26 21:47 - 00000000 ____D C:\Users\Domov\AppData\LocalLow\IObit
2017-05-31 19:27 - 2016-07-26 21:47 - 00000000 ____D C:\Users\Domov\AppData\Roaming\IObit
2017-05-31 19:08 - 2017-02-07 16:31 - 00000000 ____D C:\Users\Domov\AppData\Roaming\Seznam.cz
2017-05-31 17:58 - 2016-09-22 15:55 - 00003892 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1474552541
2017-05-30 19:35 - 2016-07-25 12:55 - 01559268 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2017-05-30 14:50 - 2016-07-25 15:33 - 00000000 ____D C:\Windows\Minidump
2017-05-30 14:50 - 2016-07-25 13:51 - 00000000 ____D C:\Users\Domov\AppData\Local\CrashDumps
2017-05-23 09:30 - 2016-07-25 12:11 - 00000000 ____D C:\Windows\system32\MRT
2017-05-23 09:27 - 2016-07-25 12:11 - 132223576 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-05-19 20:02 - 2016-07-25 17:51 - 00000000 ____D C:\Users\Domov\Downloads\Gamesky
2017-05-19 20:01 - 2016-09-15 19:52 - 00000000 ____D C:\Users\Domov\Documents\My Games
2017-05-19 20:01 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2017-05-19 08:47 - 2016-09-18 19:19 - 00000000 ___RD C:\Users\Domov\Desktop\market
2017-05-17 12:55 - 2016-12-24 12:41 - 00002155 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-05-17 12:55 - 2016-12-24 12:41 - 00002143 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-05-13 09:01 - 2016-09-22 15:53 - 00158880 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2017-05-12 18:35 - 2016-08-31 12:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2017-05-12 18:35 - 2016-08-23 16:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC
2017-05-12 18:35 - 2016-08-06 12:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2017-05-12 18:35 - 2016-08-03 10:10 - 00000000 ____D C:\Users\Domov\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks
2017-05-12 18:35 - 2016-07-29 19:59 - 00000000 ____D C:\Users\Domov\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder
2017-05-12 18:35 - 2016-07-22 13:48 - 00000000 ____D C:\Windows\Panther
2017-05-12 13:55 - 2017-01-05 16:17 - 00000000 ____D C:\ProgramData\KONAMI
2017-05-12 13:55 - 2017-01-05 16:10 - 00000000 ____D C:\Users\Domov\Documents\KONAMI
2017-05-10 20:56 - 2017-04-04 18:28 - 00000000 ____D C:\AdwCleaner
2017-05-10 18:15 - 2016-12-07 22:03 - 00803320 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2017-05-10 18:15 - 2016-12-07 22:03 - 00144888 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-05-10 18:15 - 2016-12-07 22:03 - 00004396 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-05-10 18:15 - 2016-12-07 22:03 - 00000000 ____D C:\Windows\system32\Macromed
2017-05-10 18:15 - 2016-08-06 15:13 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-05-09 17:58 - 2016-09-22 15:53 - 00569192 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00339696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00128648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00101152 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00075704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00038296 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2017-05-09 17:57 - 2016-09-22 15:55 - 00032600 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2017-05-09 17:57 - 2016-09-22 15:53 - 01007160 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2017-05-09 17:56 - 2017-03-04 18:26 - 00334576 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbloga.sys
2017-05-09 17:56 - 2017-03-04 18:26 - 00190256 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsha.sys
2017-05-09 17:56 - 2017-03-04 18:26 - 00049016 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbuniva.sys
2017-05-09 17:56 - 2017-03-04 18:25 - 00311808 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdrivera.sys
2017-05-04 18:54 - 2017-03-09 19:05 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
==================== Files in the root of some directories =======
2017-05-31 19:44 - 2017-05-31 19:44 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2017-03-16 18:07 - 2017-03-16 18:07 - 0000016 _____ () C:\ProgramData\mntemp
2017-03-16 18:07 - 2017-03-16 18:07 - 0005041 _____ () C:\ProgramData\mudtcpaz.vzs
2016-12-18 20:35 - 2017-04-10 17:04 - 0005307 _____ () C:\ProgramData\NvTelemetryContainer.log
2016-12-18 20:35 - 2017-04-10 15:08 - 0003135 _____ () C:\ProgramData\NvTelemetryContainer.log_backup1
Some files in TEMP:
====================
2017-05-30 18:39 - 2017-05-30 18:39 - 0534528 _____ () C:\Users\Domov\AppData\Local\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: IObit Malware Fighter (Enabled - Up to date) {A751AC20-3B48-5237-898A-78C4436BB78D}
AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Domov\Desktop" je 39586 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM
C:\Program Files (x86)\Origin\Origin.exe -AutoStart [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gaijin.Net Agent
"C:\Users\Domov\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotPostWindows10UpgradeReInstall
"C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\World of Warships
"C:\Games\World_of_Warships\WargamingGameUpdater.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zune Launcher
"C:\Program Files\Zune\ZuneLauncher.exe" [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Ran by Domov (administrator) on DOMOV-PC (02-06-2017 20:33:15)
Running from C:\Users\Domov\Desktop
Loaded Profiles: Domov (Available Profiles: Domov)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Windows\runservice.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFTips.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\Domov\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213824 2017-05-09] (AVAST Software)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16781824 2017-05-31] (Realtek Semiconductor)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [5296416 2017-04-11] (IObit)
HKU\S-1-5-21-2596990379-3546878720-370041002-1001\...\Run: [Advanced SystemCare 10] => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [3920672 2017-03-30] (IObit)
HKU\S-1-5-21-2596990379-3546878720-370041002-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8944344 2016-09-28] (Piriform Ltd)
HKU\S-1-5-21-2596990379-3546878720-370041002-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKU\S-1-5-21-2596990379-3546878720-370041002-1001\...\MountPoints2: {e0c5d04c-5183-11e6-8db5-406186c8fb21} - E:\autorun.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2016-07-26] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-05-09] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-05-09] (AVAST Software)
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{02F5A82D-96ED-423F-A352-56724C03E54C}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2596990379-3546878720-370041002-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2017-03-28] (IObit)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-04-04] (AVAST Software)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-11-01] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-04-04] (AVAST Software)
BHO-x32: IObit Surfing Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll [2016-08-03] (IObit)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-11-01] (Oracle Corporation)
BHO-x32: IObit Ads Removal -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\Adblock\Adblock.dll [2016-06-23] (IObit)
FireFox:
========
FF ProfilePath: C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383 [2017-06-02]
FF user.js: detected! => C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383\user.js [2017-05-12]
FF Homepage: Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383 -> www.google.cz
FF Extension: (IObit Surfing Protection & Ads Removal) - C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383\Extensions\ascsurfingprotectionnew@iobit.com.xpi [2016-10-18]
FF Extension: (Avast SafePrice) - C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383\Extensions\sp@avast.com.xpi [2017-05-09]
FF Extension: (Avast Online Security) - C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383\Extensions\wrc@avast.com.xpi [2017-05-09]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll [2017-05-10] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll [2017-05-10] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-11-01] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-11-01] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-11-14] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-11-14] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-01] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-03-28] (Adobe Systems Inc.)
Chrome:
=======
CHR NewTab: Default -> Not-active:"chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/core/chrome/content/speedDial/speedDial.html"
CHR Profile: C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default [2017-06-02]
CHR Extension: (Prezentace Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-04-12]
CHR Extension: (Dokumenty Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-04-12]
CHR Extension: (Disk Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-04-12]
CHR Extension: (IObit Surfing Protection & Ads Removal) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd [2017-05-31]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2017-05-24]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2017-05-24]
CHR Extension: (YouTube) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-04-12]
CHR Extension: (Avast SafePrice) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-05-31]
CHR Extension: (Tabulky Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-04-12]
CHR Extension: (Dokumenty Google offline) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-04-12]
CHR Extension: (Avast Online Security) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-05-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-04-12]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2017-05-24]
CHR Extension: (Gmail) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-04-12]
CHR Extension: (Chrome Media Router) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-05-17]
CHR Profile: C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2 [2017-06-02]
CHR Extension: (Disk Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-10-29]
CHR Extension: (YouTube) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-10-29]
CHR Extension: (Avast SafePrice) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2016-10-29]
CHR Extension: (Tabulky Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-10-29]
CHR Extension: (Dokumenty Google offline) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-10-29]
CHR Extension: (Avast Online Security) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-10-29]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-10-29]
CHR Extension: (Gmail) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-10-29]
CHR Extension: (Chrome Media Router) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-29]
CHR HKU\S-1-5-21-2596990379-3546878720-370041002-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2596990379-3546878720-370041002-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [blmojkbhnkkphngknkmgccmlenfaelkd] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2596990379-3546878720-370041002-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdvancedSystemCareService10; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [462624 2017-03-21] (IObit)
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7346208 2017-05-09] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [263304 2017-05-09] (AVAST Software)
S3 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft Development Team)
R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [1764640 2017-04-11] (IObit)
S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [360736 2017-03-28] (IObit)
R2 LicCtrlService; C:\Windows\runservice.exe [16384 2016-10-08] () [File not signed]
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [492480 2017-03-28] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [492480 2017-03-28] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [425408 2017-03-28] (NVIDIA Corporation)
S3 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [311808 2017-05-09] (AVAST Software s.r.o.)
R0 aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [190256 2017-05-09] (AVAST Software s.r.o.)
R0 aswblog; C:\Windows\system32\drivers\aswbloga.sys [334576 2017-05-09] (AVAST Software s.r.o.)
R0 aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [49016 2017-05-09] (AVAST Software s.r.o.)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [38296 2017-05-09] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [32600 2017-05-09] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [128648 2017-05-09] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [101152 2017-05-09] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [75704 2017-05-09] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1007160 2017-05-09] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [569192 2017-05-09] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [158880 2017-05-13] (AVAST Software)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [44640 2016-07-24] (The OpenVPN Project)
R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [339696 2017-05-09] (AVAST Software)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2017-05-31] (REALiX(tm))
R1 IMFCameraProtect; C:\Windows\system32\drivers\IMFCameraProtect.sys [26272 2017-03-29] (IObit.com)
R3 IMFDownProtect; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\IMFDownProtect.sys [21360 2017-03-08] (IObit.com)
R3 IMFFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\IMFFilter.sys [22440 2016-12-22] (IObit)
R3 IMFForceDelete; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\IMFForceDelete.sys [16216 2017-03-29] (IObit.com)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-03-28] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [47552 2017-03-28] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57792 2017-02-23] (NVIDIA Corporation)
R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34752 2016-11-03] (IObit.com)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2017-02-08] (Duplex Secure Ltd.)
U3 a73ddkof; C:\Windows\System32\Drivers\a73ddkof.sys [0 ] (Elaborate Bytes AG) <==== ATTENTION (zero byte File/Folder)
S3 MSICDSetup; \??\D:\CDriver64.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-06-02 20:33 - 2017-06-02 20:33 - 00018677 _____ C:\Users\Domov\Desktop\FRST.txt
2017-06-02 20:32 - 2017-06-02 20:33 - 00000000 ____D C:\FRST
2017-06-02 20:31 - 2017-06-02 20:31 - 00112640 _____ (forum.viry.cz) C:\Users\Domov\Desktop\FRSTLauncher.exe
2017-06-02 20:28 - 2017-06-02 20:28 - 00112640 _____ (forum.viry.cz) C:\Users\Domov\Desktop\Nepotvrzeno 150452.crdownload
2017-06-02 20:25 - 2017-06-02 20:25 - 02433536 _____ (Farbar) C:\Users\Domov\Desktop\FRST64.exe
2017-06-02 15:08 - 2017-06-02 15:08 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-06-01 19:06 - 2017-06-01 19:06 - 00006343 _____ C:\Users\Domov\Downloads\rv certi.kb.p12
2017-05-31 19:44 - 2017-05-31 19:44 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\Windows\system32\DAX3
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\Windows\system32\DAX2
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\ProgramData\Audyssey Labs
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\Program Files\Realtek
2017-05-31 19:42 - 2017-05-31 19:42 - 72520712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2017-05-31 19:42 - 2017-05-31 19:42 - 15202032 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 09124224 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2017-05-31 19:42 - 2017-05-31 19:42 - 07172912 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 07096184 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 06264632 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat
2017-05-31 19:42 - 2017-05-31 19:42 - 05545512 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2017-05-31 19:42 - 2017-05-31 19:42 - 05347000 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03503048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03410832 _____ (DTS, Inc.) C:\Windows\system32\slcnt64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03299816 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03203584 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03203424 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03122656 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03014144 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2017-05-31 19:42 - 2017-05-31 19:42 - 02993720 _____ (Audyssey Labs) C:\Windows\system32\AudysseyEfx.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 02830480 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 02444688 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv201.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 02201600 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 02190976 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01965808 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01959600 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01780616 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01591056 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01516896 _____ (Dolby Laboratories) C:\Windows\system32\DAX3APOProp.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01508928 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01435136 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01382232 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01363096 _____ (Dolby Laboratories) C:\Windows\system32\DAX3APOv251.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01353824 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01337640 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tossaeapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01133584 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01003504 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDHF64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00984912 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00965024 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00962128 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tosasfapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00873456 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00866088 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SEHDHF32.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00859912 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00854208 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00785608 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOvlldp.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00743960 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00727432 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00726120 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00708312 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00689880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00601136 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tossaemaxapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00588032 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00532376 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00514872 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00504304 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00467152 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00447720 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00447176 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\toseaeapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00445400 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00441264 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00426568 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2APIPCLL.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00416504 _____ (Harman) C:\Windows\system32\HMUI.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00387312 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00381400 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00378384 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00366120 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\HMAPO.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00362048 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00360344 _____ (Harman) C:\Windows\system32\HMClariFi.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00343704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00341144 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00341144 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00327456 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00321712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00321712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00310416 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00272712 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00258864 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00253896 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00253864 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00252872 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00231912 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00221960 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00214832 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00209528 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00203840 _____ (Harman) C:\Windows\system32\HMHVS.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00192976 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00190928 _____ (Harman) C:\Windows\system32\HMEQ_Voice.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00190928 _____ (Harman) C:\Windows\system32\HMEQ.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00179592 _____ (Harman) C:\Windows\system32\HMLimiter.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00166200 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00158688 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00154360 _____ (Harman) C:\Windows\system32\HarmanAudioInterface.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00151784 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00134200 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00122320 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00118592 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00110984 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00105304 _____ C:\Windows\system32\audioLibVc.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00090912 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00088344 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00088320 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00084616 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00083624 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00075536 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00023688 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2017-05-31 19:37 - 2017-05-31 19:37 - 00501280 _____ (NVIDIA Corporation) C:\Windows\system32\nvusmb.exe
2017-05-31 19:37 - 2017-05-31 19:37 - 00135680 _____ (NVIDIA Corporation) C:\Windows\system32\NVCOSMB.DLL
2017-05-31 19:37 - 2017-05-31 19:37 - 00002344 _____ C:\Windows\system32\nvsmb.nvu
2017-05-31 19:35 - 2017-05-31 19:35 - 01057296 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2017-05-31 19:35 - 2017-05-31 19:35 - 00131592 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2017-05-31 19:35 - 2017-05-31 19:35 - 00127536 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2017-05-31 19:34 - 2017-05-31 19:34 - 00239720 _____ (NVIDIA Corporation) C:\Windows\system32\NVCOSMU.DLL
2017-05-31 19:34 - 2017-05-31 19:34 - 00029800 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvsmu.sys
2017-05-31 19:31 - 2017-05-31 19:31 - 00000000 ____D C:\Windows\IObit
2017-05-31 19:30 - 2017-05-31 19:44 - 00002234 _____ C:\Users\Public\Desktop\Driver Booster 4.lnk
2017-05-31 19:30 - 2017-05-31 19:31 - 00002886 _____ C:\Windows\System32\Tasks\Driver Booster SkipUAC (Domov)
2017-05-31 19:30 - 2017-05-31 19:30 - 00027552 _____ (REALiX(tm)) C:\Windows\SysWOW64\Drivers\HWiNFO64A.SYS
2017-05-31 19:30 - 2017-05-31 19:30 - 00003254 _____ C:\Windows\System32\Tasks\Driver Booster Scheduler
2017-05-31 19:30 - 2017-05-31 19:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 4
2017-05-31 19:28 - 2017-05-31 19:29 - 15721672 _____ (IObit ) C:\Users\Domov\Downloads\driver_booster_setup.exe
2017-05-20 10:40 - 2017-05-20 10:40 - 00001091 _____ C:\Users\Domov\Desktop\PTE Patch.lnk
2017-05-20 10:21 - 2017-05-20 10:21 - 00000000 ____D C:\Users\Domov\Desktop\[PES16] PTE PATCH 6.0 Final Version
2017-05-20 10:11 - 2017-05-20 10:42 - 00000000 ____D C:\Program Files (x86)\Pro Evolution Soccer 2016
2017-05-20 10:11 - 2017-05-20 10:11 - 00000902 _____ C:\Users\Public\Desktop\Pro Evolution Soccer 2016.lnk
2017-05-19 09:06 - 2017-05-19 09:10 - 00000000 ____D C:\Users\Domov\Desktop\fleska
2017-05-19 08:52 - 2017-05-19 09:10 - 00000000 ____D C:\Users\Domov\Desktop\vyvolat
2017-05-18 18:14 - 2017-05-18 20:13 - 4023874727 _____ C:\Users\Domov\Desktop\[PES16] PTE PATCH 6.0 Final Version.rar
2017-05-17 20:16 - 2017-05-17 20:16 - 00000000 ____D C:\Users\Domov\Desktop\PES 2016 Update v1.03.00 3DM Crack Only (Offline)
2017-05-17 20:15 - 2017-05-17 20:16 - 11523634 _____ C:\Users\Domov\Desktop\PES 2016 Update v1.03.00 3DM Crack Only (Offline).rar
2017-05-17 19:45 - 2017-05-17 19:45 - 00000000 ____D C:\Users\Domov\AppData\Local\PTE_Patch
2017-05-17 19:05 - 2017-05-17 19:05 - 00000000 ____D C:\Users\Domov\Desktop\[PES16] PTE PATCH 2.0.part1 (1)
2017-05-16 19:17 - 2017-05-16 19:17 - 00001133 _____ C:\Users\Public\Desktop\IObit Malware Fighter.lnk
2017-05-16 19:17 - 2017-05-16 19:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter
2017-05-16 19:17 - 2017-03-29 18:05 - 00026272 _____ (IObit.com) C:\Windows\system32\Drivers\IMFCameraProtect.sys
2017-05-16 19:16 - 2017-05-16 19:16 - 00000000 ____D C:\ProgramData\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705}
2017-05-12 19:09 - 2017-05-20 10:09 - 00002904 _____ C:\Windows\System32\Tasks\Uninstaller_SkipUac_Domov
2017-05-12 19:09 - 2017-05-12 19:09 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller.lnk
2017-05-12 19:09 - 2017-05-12 19:09 - 00001314 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk
2017-05-12 19:09 - 2017-05-12 19:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
2017-05-12 19:08 - 2017-05-12 19:08 - 00000000 ____D C:\update
2017-05-12 18:33 - 2017-05-12 18:33 - 87785472 _____ C:\Windows\system32\config\SOFTWARE.iobit
2017-05-12 18:33 - 2017-05-12 18:33 - 05017600 _____ C:\Windows\system32\config\DEFAULT.iobit
2017-05-12 18:33 - 2017-05-12 18:33 - 00028672 _____ C:\Windows\system32\config\SAM.iobit
2017-05-12 18:33 - 2017-05-12 18:33 - 00024576 _____ C:\Windows\system32\config\SECURITY.iobit
2017-05-12 18:30 - 2017-06-02 15:42 - 00002222 _____ C:\Users\Public\Desktop\Advanced SystemCare 10.lnk
2017-05-12 18:30 - 2017-05-31 19:30 - 00000000 ____D C:\ProgramData\IObit
2017-05-12 18:30 - 2017-05-31 19:30 - 00000000 ____D C:\Program Files (x86)\IObit
2017-05-12 18:30 - 2017-05-12 18:30 - 00002820 _____ C:\Windows\System32\Tasks\ASC10_SkipUac_Domov
2017-05-12 18:30 - 2017-05-12 18:30 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled
2017-05-12 18:30 - 2017-05-12 18:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
2017-05-12 18:30 - 2017-05-12 18:30 - 00000000 ____D C:\ProgramData\{74E9F814-C737-42CC-B721-DBBC4059367A}
2017-05-12 18:27 - 2017-05-12 18:28 - 39666592 _____ (IObit ) C:\Users\Domov\Desktop\asc10-setup-aff.exe
2017-05-12 12:06 - 2017-05-12 13:40 - 00000000 ____D C:\Users\Domov\Downloads\Pro.Evolution.Soccer.2016-RELOADED
2017-05-12 12:03 - 2017-05-17 13:21 - 00000000 ____D C:\Users\Domov\AppData\Roaming\uTorrent
2017-05-12 12:03 - 2017-05-12 12:03 - 00000950 _____ C:\Users\Domov\Desktop\µTorrent.lnk
2017-05-12 12:01 - 2017-05-12 12:03 - 00000000 ____D C:\Users\Domov\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2017-05-11 18:42 - 2017-05-11 18:42 - 00000000 ____D C:\Users\Domov\Desktop\sssssss
2017-05-09 17:59 - 2017-05-09 17:58 - 00400456 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-06-02 20:29 - 2016-11-20 11:22 - 00000000 ____D C:\Users\Domov\AppData\LocalLow\Mozilla
2017-06-02 20:29 - 2016-11-19 20:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-06-02 20:29 - 2016-10-31 20:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-06-02 19:11 - 2009-07-14 06:45 - 00017360 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-06-02 19:11 - 2009-07-14 06:45 - 00017360 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-06-02 18:25 - 2016-07-25 13:41 - 00000000 ____D C:\ProgramData\NVIDIA
2017-06-02 18:22 - 2016-10-08 19:31 - 00001377 ___SH C:\Windows\SysWOW64\mmf.sys
2017-06-02 18:22 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-06-02 15:47 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2017-06-01 18:00 - 2017-03-04 18:26 - 00004172 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2017-05-31 19:43 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2017-05-31 19:38 - 2009-07-14 17:18 - 00668866 _____ C:\Windows\system32\perfh005.dat
2017-05-31 19:38 - 2009-07-14 17:18 - 00141526 _____ C:\Windows\system32\perfc005.dat
2017-05-31 19:38 - 2009-07-14 07:13 - 01584554 _____ C:\Windows\system32\PerfStringBackup.INI
2017-05-31 19:34 - 2016-07-25 12:52 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2017-05-31 19:31 - 2016-07-26 21:47 - 00000000 ____D C:\ProgramData\ProductData
2017-05-31 19:28 - 2016-07-26 21:47 - 00000000 ____D C:\Users\Domov\AppData\LocalLow\IObit
2017-05-31 19:27 - 2016-07-26 21:47 - 00000000 ____D C:\Users\Domov\AppData\Roaming\IObit
2017-05-31 19:08 - 2017-02-07 16:31 - 00000000 ____D C:\Users\Domov\AppData\Roaming\Seznam.cz
2017-05-31 17:58 - 2016-09-22 15:55 - 00003892 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1474552541
2017-05-30 19:35 - 2016-07-25 12:55 - 01559268 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2017-05-30 14:50 - 2016-07-25 15:33 - 00000000 ____D C:\Windows\Minidump
2017-05-30 14:50 - 2016-07-25 13:51 - 00000000 ____D C:\Users\Domov\AppData\Local\CrashDumps
2017-05-23 09:30 - 2016-07-25 12:11 - 00000000 ____D C:\Windows\system32\MRT
2017-05-23 09:27 - 2016-07-25 12:11 - 132223576 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-05-19 20:02 - 2016-07-25 17:51 - 00000000 ____D C:\Users\Domov\Downloads\Gamesky
2017-05-19 20:01 - 2016-09-15 19:52 - 00000000 ____D C:\Users\Domov\Documents\My Games
2017-05-19 20:01 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2017-05-19 08:47 - 2016-09-18 19:19 - 00000000 ___RD C:\Users\Domov\Desktop\market
2017-05-17 12:55 - 2016-12-24 12:41 - 00002155 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-05-17 12:55 - 2016-12-24 12:41 - 00002143 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-05-13 09:01 - 2016-09-22 15:53 - 00158880 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2017-05-12 18:35 - 2016-08-31 12:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2017-05-12 18:35 - 2016-08-23 16:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC
2017-05-12 18:35 - 2016-08-06 12:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2017-05-12 18:35 - 2016-08-03 10:10 - 00000000 ____D C:\Users\Domov\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks
2017-05-12 18:35 - 2016-07-29 19:59 - 00000000 ____D C:\Users\Domov\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder
2017-05-12 18:35 - 2016-07-22 13:48 - 00000000 ____D C:\Windows\Panther
2017-05-12 13:55 - 2017-01-05 16:17 - 00000000 ____D C:\ProgramData\KONAMI
2017-05-12 13:55 - 2017-01-05 16:10 - 00000000 ____D C:\Users\Domov\Documents\KONAMI
2017-05-10 20:56 - 2017-04-04 18:28 - 00000000 ____D C:\AdwCleaner
2017-05-10 18:15 - 2016-12-07 22:03 - 00803320 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2017-05-10 18:15 - 2016-12-07 22:03 - 00144888 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-05-10 18:15 - 2016-12-07 22:03 - 00004396 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-05-10 18:15 - 2016-12-07 22:03 - 00000000 ____D C:\Windows\system32\Macromed
2017-05-10 18:15 - 2016-08-06 15:13 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-05-09 17:58 - 2016-09-22 15:53 - 00569192 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00339696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00128648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00101152 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00075704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00038296 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2017-05-09 17:57 - 2016-09-22 15:55 - 00032600 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2017-05-09 17:57 - 2016-09-22 15:53 - 01007160 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2017-05-09 17:56 - 2017-03-04 18:26 - 00334576 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbloga.sys
2017-05-09 17:56 - 2017-03-04 18:26 - 00190256 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsha.sys
2017-05-09 17:56 - 2017-03-04 18:26 - 00049016 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbuniva.sys
2017-05-09 17:56 - 2017-03-04 18:25 - 00311808 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdrivera.sys
2017-05-04 18:54 - 2017-03-09 19:05 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
==================== Files in the root of some directories =======
2017-05-31 19:44 - 2017-05-31 19:44 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2017-03-16 18:07 - 2017-03-16 18:07 - 0000016 _____ () C:\ProgramData\mntemp
2017-03-16 18:07 - 2017-03-16 18:07 - 0005041 _____ () C:\ProgramData\mudtcpaz.vzs
2016-12-18 20:35 - 2017-04-10 17:04 - 0005307 _____ () C:\ProgramData\NvTelemetryContainer.log
2016-12-18 20:35 - 2017-04-10 15:08 - 0003135 _____ () C:\ProgramData\NvTelemetryContainer.log_backup1
Some files in TEMP:
====================
2017-05-30 18:39 - 2017-05-30 18:39 - 0534528 _____ () C:\Users\Domov\AppData\Local\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: IObit Malware Fighter (Enabled - Up to date) {A751AC20-3B48-5237-898A-78C4436BB78D}
AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Domov\Desktop" je 39586 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM
C:\Program Files (x86)\Origin\Origin.exe -AutoStart [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gaijin.Net Agent
"C:\Users\Domov\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotPostWindows10UpgradeReInstall
"C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\World of Warships
"C:\Games\World_of_Warships\WargamingGameUpdater.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zune Launcher
"C:\Program Files\Zune\ZuneLauncher.exe" [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
- Rudy
- Site Admin

- Příspěvky: 119670
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Při spuštení her černá obrazovka a zásek.
Jak je na tom váš oper. systém s legalitou?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Při spuštení her černá obrazovka a zásek.
os je legalní
- Rudy
- Site Admin

- Příspěvky: 119670
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Při spuštení her černá obrazovka a zásek.
OK. Teď dejte tento sken:
Stáhněte a spusťte OTL: http://oldtimer.geekstogo.com/OTL.exe . Spusťte, zaškrněte "Pro všechny uživatele", Kontrola na havěť LOP" a Kontrola na hvěť PURITY" a do dolního bílého okna zkopírujte:
Stáhněte a spusťte OTL: http://oldtimer.geekstogo.com/OTL.exe . Spusťte, zaškrněte "Pro všechny uživatele", Kontrola na havěť LOP" a Kontrola na hvěť PURITY" a do dolního bílého okna zkopírujte:
a klikněte na >Prohledat<. Dejte oba logy.CREATERESTOREPOINT
netsvcs
drivers32
savembr:0
/md5start
atapi.sys
autochk.exe
cdrom.sys
explorer.exe
hal.dll
scecli.dll
services.exe
svchost.exe
tcpip.sys
userinit.exe
winlogon.exe
/md5stop
%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
%PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5
%PROGRAMFILES%\Internet Explorer\iexplore.exe /md5
%PROGRAMFILES%\Opera\opera.exe /md5
%PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5
%SystemDrive%\PhysicalMBR.bin /md5
*crack* /s
*keygen* /s
*loader* /s
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
- Rudy
- Site Admin

- Příspěvky: 119670
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Při spuštení her černá obrazovka a zásek.
Spusťte znovu OTL jako správce.
Do spodniho okna vlozte nasledujici text:
Po restartu se objevi novy log, ten sem dejte.
Dále doporučuji odinstalovat AdvancedSystemCare. Tento optimizer někdy vidí problémy i tam kde nejsou a laik si tak může snadno poškodit systém.
Do spodniho okna vlozte nasledujici text:
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.:OTL
O33 - MountPoints2\{e0c5d04c-5183-11e6-8db5-406186c8fb21}\Shell - "" = AutoRun
O33 - MountPoints2\{e0c5d04c-5183-11e6-8db5-406186c8fb21}\Shell\AutoRun\command - "" = E:\autorun.exe
:files
C:\ProgramData\DP45977C.lfl
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
:commands
[EMPTYTEMP]
[EMPTYFLASH]
[RESETHOSTS]
[Purity]
[CreateRestorePoint]
Po restartu se objevi novy log, ten sem dejte.
Dále doporučuji odinstalovat AdvancedSystemCare. Tento optimizer někdy vidí problémy i tam kde nejsou a laik si tak může snadno poškodit systém.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Při spuštení her černá obrazovka a zásek.
All processes killed
========== OTL ==========
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e0c5d04c-5183-11e6-8db5-406186c8fb21}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e0c5d04c-5183-11e6-8db5-406186c8fb21}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e0c5d04c-5183-11e6-8db5-406186c8fb21}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e0c5d04c-5183-11e6-8db5-406186c8fb21}\ not found.
File E:\autorun.exe not found.
========== FILES ==========
C:\ProgramData\DP45977C.lfl moved successfully.
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Domov
->Temp folder emptied: 32885093 bytes
->Temporary Internet Files folder emptied: 1737592 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 9870666 bytes
->Google Chrome cache emptied: 22023636 bytes
->Flash cache emptied: 506 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1586888 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
RecycleBin emptied: 372 bytes
Total Files Cleaned = 65,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: Domov
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
Restore point Set: OTL Restore Point
OTL by OldTimer - Version 3.2.69.0 log created on 06032017_144724
Files\Folders moved on Reboot...
File move failed. C:\Users\Domov\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\b9928bf7aa10148369087e55f224ad6b_fce8394c8fd8a83d_6229ccd76215aea1_0_0.bin scheduled to be moved on reboot.
File move failed. C:\Users\Domov\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\b9928bf7aa10148369087e55f224ad6b_fce8394c8fd8a83d_6229ccd76215aea1_0_0.toc scheduled to be moved on reboot.
File\Folder C:\Users\Domov\AppData\Local\Temp\etilqs_fHTRmT8h9uVqY7H not found!
File\Folder C:\Users\Domov\AppData\Local\Temp\etilqs_pgDuXxRbiaScDnI not found!
C:\Users\Domov\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\Domov\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.
C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0 moved successfully.
C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1 moved successfully.
C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2 moved successfully.
C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3 moved successfully.
C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Cache\index moved successfully.
File move failed. C:\Windows\temp\_avast_\AvLock.txt scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160823131435.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160823131442.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160920121849.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160920121852.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160922155532.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160922155541.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160922155653.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160922155712.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170304173056.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170304173116.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170310174054.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170310174056.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170325184433.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170325184436.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170405184054.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170405184058.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170405184201.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170509180012.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170509180013.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170509180022.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170531175800.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170531175801.log scheduled to be moved on reboot.
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
========== OTL ==========
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e0c5d04c-5183-11e6-8db5-406186c8fb21}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e0c5d04c-5183-11e6-8db5-406186c8fb21}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e0c5d04c-5183-11e6-8db5-406186c8fb21}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e0c5d04c-5183-11e6-8db5-406186c8fb21}\ not found.
File E:\autorun.exe not found.
========== FILES ==========
C:\ProgramData\DP45977C.lfl moved successfully.
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Domov
->Temp folder emptied: 32885093 bytes
->Temporary Internet Files folder emptied: 1737592 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 9870666 bytes
->Google Chrome cache emptied: 22023636 bytes
->Flash cache emptied: 506 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1586888 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
RecycleBin emptied: 372 bytes
Total Files Cleaned = 65,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: Domov
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
Restore point Set: OTL Restore Point
OTL by OldTimer - Version 3.2.69.0 log created on 06032017_144724
Files\Folders moved on Reboot...
File move failed. C:\Users\Domov\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\b9928bf7aa10148369087e55f224ad6b_fce8394c8fd8a83d_6229ccd76215aea1_0_0.bin scheduled to be moved on reboot.
File move failed. C:\Users\Domov\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\b9928bf7aa10148369087e55f224ad6b_fce8394c8fd8a83d_6229ccd76215aea1_0_0.toc scheduled to be moved on reboot.
File\Folder C:\Users\Domov\AppData\Local\Temp\etilqs_fHTRmT8h9uVqY7H not found!
File\Folder C:\Users\Domov\AppData\Local\Temp\etilqs_pgDuXxRbiaScDnI not found!
C:\Users\Domov\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\Domov\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.
C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0 moved successfully.
C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1 moved successfully.
C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2 moved successfully.
C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3 moved successfully.
C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Cache\index moved successfully.
File move failed. C:\Windows\temp\_avast_\AvLock.txt scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160823131435.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160823131442.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160920121849.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160920121852.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160922155532.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160922155541.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160922155653.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20160922155712.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170304173056.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170304173116.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170310174054.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170310174056.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170325184433.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170325184436.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170405184054.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170405184058.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170405184201.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170509180012.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170509180013.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170509180022.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170531175800.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\SafeZone Installer\safezone_installer_20170531175801.log scheduled to be moved on reboot.
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
Re: Při spuštení her černá obrazovka a zásek.
Aha tak děkuji za upozornění.A jaky program na optimalizaci by jste mi doporučil?
- Rudy
- Site Admin

- Příspěvky: 119670
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Při spuštení her černá obrazovka a zásek.
Doporučuji CCleaner: https://forum.viry.cz/viewtopic.php?f=46&t=7478 . Pro běžnou optimalizaci postačí použít ho v defaultním nastavení. Jinak smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Při spuštení her černá obrazovka a zásek.
Urcite je pc v lepsi forme.Jeste jeden problem sem vam zapomel napsat tyka se to aktualizaci.Mam nalezenou aktualizaci stahnu ji aale nenainstaluje se kompletni pise ze nastala chyba a kdyz se kouknu u ceho tak se tam pise ze aktualizace zabezpeceni se nezdarila.Take po kazdem zapnuti pc mam deaktivovane aut.aktualizace.Nevite cim to muze byt?
- Rudy
- Site Admin

- Příspěvky: 119670
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Při spuštení her černá obrazovka a zásek.
Může to být buď nějakým šmejdem, nebo je to systémová záležitost. Ještě bych provedl kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Při spuštení her černá obrazovka a zásek.
Skenované objekty: 314649
Zjištěné hrozby: 4
Hrozby umístěné do karantény: 0
(Nebyly zjištěny žádné škodlivé položky)
Uplynulý čas: 5 min, 24 sek
-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Povoleno
Potenciálně nežádoucí modifikace: Povoleno
-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)
Modul: 0
(Nebyly zjištěny žádné škodlivé položky)
Klíč registru: 4
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WarThunder 01440, Žádná uživatelská akce, [59], [186209],1.0.2079
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WarThunder 05, Žádná uživatelská akce, [59], [186209],1.0.2079
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WarThunder 0Sat0, Žádná uživatelská akce, [59], [186209],1.0.2079
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WarThunder 0Sun0, Žádná uživatelská akce, [59], [186209],1.0.2079
Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)
Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)
Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)
Adresář: 0
(Nebyly zjištěny žádné škodlivé položky)
Soubor: 0
(Nebyly zjištěny žádné škodlivé položky)
Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)
(end)
Zjištěné hrozby: 4
Hrozby umístěné do karantény: 0
(Nebyly zjištěny žádné škodlivé položky)
Uplynulý čas: 5 min, 24 sek
-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Povoleno
Potenciálně nežádoucí modifikace: Povoleno
-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)
Modul: 0
(Nebyly zjištěny žádné škodlivé položky)
Klíč registru: 4
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WarThunder 01440, Žádná uživatelská akce, [59], [186209],1.0.2079
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WarThunder 05, Žádná uživatelská akce, [59], [186209],1.0.2079
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WarThunder 0Sat0, Žádná uživatelská akce, [59], [186209],1.0.2079
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WarThunder 0Sun0, Žádná uživatelská akce, [59], [186209],1.0.2079
Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)
Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)
Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)
Adresář: 0
(Nebyly zjištěny žádné škodlivé položky)
Soubor: 0
(Nebyly zjištěny žádné škodlivé položky)
Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)
(end)
- Rudy
- Site Admin

- Příspěvky: 119670
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Při spuštení her černá obrazovka a zásek.
V tom to asi nebude. Nicméně položky smažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?