Vzhledem k tomu, že mám stejný problém, tak nebudu zakládat nový thread, ale přihodím svůj log sem... tedy pokud to není moc velký problém

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014
Ran by msi (administrator) on MSI-MSI on 01-04-2014 00:04:21
Running from C:\Users\msi\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\windows\system32\nvvsvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
(MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\S-Bar\MSIService.exe
(MSI) C:\Program Files (x86)\MSI\MSI HOUSE\MSIFoundationService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Program Files (x86)\HandyUpdater\HandyUpdater.exe
(SqueakyChocolate, LLC) C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe
() C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
(Dropbox, Inc.) C:\Users\msi\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(PasswordBox, Inc.) C:\Program Files (x86)\PasswordBox\pbbtnService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Micro-Star International Co.,Ltd.) C:\Program Files (x86)\S-Bar\S-Bar.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\MSI\KLM\KLM.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe
() C:\Program Files (x86)\MSI\MSI VGA Overclock Tool\VGAOCAP.exe
() C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCam.exe
() C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.0.5\ToolbarUpdater.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.0.5\loggingserver.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(InterVideo) C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
(Microsoft Corporation) C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) c:\program files\windows defender\MpCmdRun.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2328360 2010-09-16] (Synaptics Incorporated)
HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [11406608 2011-12-20] (Intel Corporation)
HKLM\...\Run: [THXCfg64] - C:\windows\system32\THXCfg64.dll [25600 2010-09-14] (Creative Technology Ltd.)
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12445288 2012-01-10] (Realtek Semiconductor)
HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET Smart Security\egui.exe [2918656 2011-01-12] (ESET)
HKLM\...\Run: [BCSSync] - C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-11-29] (Intel Corporation)
HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-01-04] (Intel Corporation)
HKLM-x32\...\Run: [S-Bar] - C:\Program Files (x86)\S-Bar\S-Bar.exe [5499392 2011-11-03] (Micro-Star International Co.,Ltd.)
HKLM-x32\...\Run: [Super-Charger] - C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [502288 2012-01-03] (MSI)
HKLM-x32\...\Run: [KLM] - C:\Program Files (x86)\MSI\KLM\KLM.exe [1522376 2011-12-19] (Micro-Star International Co., Ltd.)
HKLM-x32\...\Run: [THX Audio Control Panel] - C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe [1517056 2011-08-30] (Creative Technology Ltd)
HKLM-x32\...\Run: [UpdReg] - C:\windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
HKLM-x32\...\Run: [VGAOCAP] - C:\Program Files (x86)\MSI\MSI VGA Overclock Tool\VGAOCAP.exe [88576 2012-01-31] ()
HKLM-x32\...\Run: [YouCam Mirage] - C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488 2011-10-13] (CyberLink)
HKLM-x32\...\Run: [YouCam Tray] - C:\Program Files (x86)\CyberLink\YouCam\YouCam.exe [230696 2011-10-13] (CyberLink Corp.)
HKLM-x32\...\Run: [NortonOnlineBackup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1112920 2010-03-06] (Symantec Corporation)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [vProt] - C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe [2544664 2014-03-20] ()
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2434717301-3026624133-2648855760-1001\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1821888 2014-02-25] (Valve Corporation)
HKU\S-1-5-21-2434717301-3026624133-2648855760-1001\...\Run: [Handy Updater] - C:\Program Files (x86)\HandyUpdater\HandyUpdater.exe [370176 2013-07-05] ()
HKU\S-1-5-21-2434717301-3026624133-2648855760-1001\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673184 2013-07-03] (Disc Soft Ltd)
HKU\S-1-5-21-2434717301-3026624133-2648855760-1001\...\Run: [UpdateChecker] - C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe [7168 2013-08-25] (SqueakyChocolate, LLC)
HKU\S-1-5-21-2434717301-3026624133-2648855760-1001\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20922016 2014-02-10] (Skype Technologies S.A.)
AppInit_DLLs: C:\windows\system32\nvinitx.dll => C:\windows\system32\nvinitx.dll [247144 2012-08-28] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\windows\SysWOW64\nvinit.dll => C:\windows\SysWOW64\nvinit.dll [202600 2012-08-28] (NVIDIA Corporation)
Startup: C:\Users\msi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\msi\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://msi.msn.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://msi.msn.com
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - DefaultScope {4089A85C-F3A3-4606-9857-8A8416B57438} URL =
SearchScopes: HKCU - {4089A85C-F3A3-4606-9857-8A8416B57438} URL =
SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = http://mysearch.avg.com/search?cid={511 ... 2013-07-20 15:55:31&v=15.5.0.2&pid=safeguard&sg=0&sap=dsp&q={searchTerms}
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: TmBpIeBHO Class - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\Module\20002\7.1.1104\7.1.1104\TmBpIe64.dll No File
BHO: SmileysWeLoveToolbar - {E4EF8A64-0A30-48F5-B3FE-5FDA978DA775} - C:\Program Files (x86)\Smileys We Love Toolbar for IE\adxloader64.dll ()
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: PasswordBox Helper - {5DB69B97-934B-451D-94DB-32EF802A01CD} - C:\Program Files (x86)\PasswordBox\Application\pbbtn.dll (PasswordBox, Inc.)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\18.0.5.292\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: TmBpIeBHO Class - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\Module\20002\7.1.1104\7.1.1104\TmBpIe32.dll No File
BHO-x32: SmileysWeLoveToolbar - {E4EF8A64-0A30-48F5-B3FE-5FDA978DA775} - C:\Program Files (x86)\Smileys We Love Toolbar for IE\adxloader.dll ()
Toolbar: HKLM - SmileysWeLove - {CF0F43AB-9C23-4D7B-8040-201B82844854} - C:\Program Files (x86)\Smileys We Love Toolbar for IE\adxloader64.dll ()
Toolbar: HKLM-x32 - AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\18.0.5.292\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search)
Toolbar: HKLM-x32 - SmileysWeLove - {CF0F43AB-9C23-4D7B-8040-201B82844854} - C:\Program Files (x86)\Smileys We Love Toolbar for IE\adxloader.dll ()
Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\Module\20002\7.1.1104\7.1.1104\TmBpIe64.dll No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler-x32: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\Module\20002\7.1.1104\7.1.1104\TmBpIe32.dll No File
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.0.5\ViProtocol.dll (AVG Secure Search)
Winsock: Catalog9 01 C:\windows\SysWOW64\BfLLR.dll [183808] (Bigfoot Networks, Inc.)
Winsock: Catalog9 02 C:\windows\SysWOW64\BfLLR.dll [183808] (Bigfoot Networks, Inc.)
Winsock: Catalog9 03 C:\windows\SysWOW64\BfLLR.dll [183808] (Bigfoot Networks, Inc.)
Winsock: Catalog9 04 C:\windows\SysWOW64\BfLLR.dll [183808] (Bigfoot Networks, Inc.)
Winsock: Catalog9 16 C:\windows\SysWOW64\BfLLR.dll [183808] (Bigfoot Networks, Inc.)
Winsock: Catalog9-x64 01 %SYSTEMROOT%\system32\BfLLR.dll [200704] (Bigfoot Networks, Inc.)
Winsock: Catalog9-x64 02 %SYSTEMROOT%\system32\BfLLR.dll [200704] (Bigfoot Networks, Inc.)
Winsock: Catalog9-x64 03 %SYSTEMROOT%\system32\BfLLR.dll [200704] (Bigfoot Networks, Inc.)
Winsock: Catalog9-x64 04 %SYSTEMROOT%\system32\BfLLR.dll [200704] (Bigfoot Networks, Inc.)
Winsock: Catalog9-x64 16 %SYSTEMROOT%\system32\BfLLR.dll [200704] (Bigfoot Networks, Inc.)
Tcpip\Parameters: [DhcpNameServer] 193.84.32.93 193.84.47.225 195.113.144.233
FireFox:
========
FF ProfilePath: C:\Users\msi\AppData\Roaming\Mozilla\Firefox\Profiles\b8xv16wq.default
FF DefaultSearchEngine: AVG Secure Search
FF SelectedSearchEngine: AVG Secure Search
FF Homepage: https://www.google.cz/?gws_rd=cr
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.0.5\\npsitesafety.dll (AVG Technologies)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: anvisoft.com/AdblockPlugin - C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll No File
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Users\msi\AppData\Roaming\Mozilla\Firefox\Profiles\b8xv16wq.default\searchplugins\conduit.xml
FF SearchPlugin: C:\Users\msi\AppData\Roaming\Mozilla\Firefox\Profiles\b8xv16wq.default\searchplugins\safeguard-secure-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\safeguard-secure-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: WebSite Recommendation - C:\Users\msi\AppData\Roaming\Mozilla\Firefox\Profiles\b8xv16wq.default\Extensions\WebSiteRecommendation@weliketheweb.com [2014-03-20]
FF Extension: BS Player ControlBar - C:\Users\msi\AppData\Roaming\Mozilla\Firefox\Profiles\b8xv16wq.default\Extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} [2013-12-11]
FF Extension: SmileysWeLove: Smileys for use with Facebook, GMail, and more - C:\Users\msi\AppData\Roaming\Mozilla\Firefox\Profiles\b8xv16wq.default\Extensions\jid1-vW9nopuIAJiRHw@jetpack.xpi [2013-10-20]
FF Extension: NASA Night Launch - C:\Users\msi\AppData\Roaming\Mozilla\Firefox\Profiles\b8xv16wq.default\Extensions\nasanightlaunch@example.com.xpi [2013-07-22]
FF Extension: Adblock Plus - C:\Users\msi\AppData\Roaming\Mozilla\Firefox\Profiles\b8xv16wq.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-03-01]
FF HKLM-x32\...\Firefox\Extensions: [{38783831-6098-4faa-A9C9-1EE1E343F4D2}] - C:\Program Files\Trend Micro\AMSP\Module\20002\7.1.1104\7.1.1104\firefoxextension
FF HKLM-x32\...\Firefox\Extensions: [avg@toolbar] - C:\ProgramData\AVG SafeGuard toolbar\FireFoxExt\18.0.5.292
FF Extension: AVG SafeGuard toolbar - C:\ProgramData\AVG SafeGuard toolbar\FireFoxExt\18.0.5.292 [2014-03-20]
FF HKLM-x32\...\Firefox\Extensions: [firefox@passwordbox.com] - C:\Program Files (x86)\PasswordBox\Firefox
FF Extension: PasswordBox - C:\Program Files (x86)\PasswordBox\Firefox [2013-11-21]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2013-08-18]
Chrome:
=======
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
CHR Extension: (Docs) - C:\Users\msi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-09-25]
CHR Extension: (Google Drive) - C:\Users\msi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-09-25]
CHR Extension: (YouTube) - C:\Users\msi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-09-25]
CHR Extension: (Google Search) - C:\Users\msi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-09-25]
CHR Extension: (AVG SafeGuard) - C:\Users\msi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof [2013-09-25]
CHR Extension: (Chrome In-App Payments service) - C:\Users\msi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-25]
CHR Extension: (No Name) - C:\Users\msi\AppData\Local\Google\Chrome\User Data\Default\Extensions\olakgnkoldmagdblaalodobkmeokmgjj [2013-07-20]
CHR Extension: (Gmail) - C:\Users\msi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-09-25]
CHR HKLM-x32\...\Chrome\Extension: [lhmiofmipcpmhgihiecmpiekcacigpgb] - C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\chrome.crx [2013-09-25]
CHR HKLM-x32\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\ProgramData\AVG SafeGuard toolbar\ChromeExt\18.0.5.292\avg.crx [2014-03-20]
==================== Services (Whitelisted) =================
S3 EhttpSrv; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [42360 2011-01-12] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [810144 2011-01-12] (ESET)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe [289256 2014-01-16] (McAfee, Inc.)
R2 Micro Star SCM; C:\Program Files (x86)\S-Bar\MSIService.exe [160768 2011-11-03] (Micro-Star International Co., Ltd.)
R2 MSI Foundation Service; C:\Program Files (x86)\MSI\MSI HOUSE\MSIFoundationService.exe [12800 2010-07-17] (MSI)
R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [138768 2012-01-03] (MSI)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2782552 2010-03-06] (Symantec Corporation)
R2 PasswordBox; C:\Program Files (x86)\PasswordBox\pbbtnService.exe [67584 2013-11-01] (PasswordBox, Inc.)
R2 Qualcomm Atheros Killer Service; C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe [492032 2012-03-08] ()
R2 vToolbarUpdater18.0.5; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.0.5\ToolbarUpdater.exe [1771032 2014-03-20] (AVG Secure Search)
==================== Drivers (Whitelisted) ====================
S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [32768 2010-04-29] (Google Inc)
R1 asd2fsm; C:\Windows\System32\DRIVERS\asd2fsm.sys [35344 2014-03-27] (Anvisoft)
R1 avgtp; C:\windows\system32\drivers\avgtpx64.sys [49952 2014-03-20] (AVG Technologies)
R1 BfLwf; C:\Windows\System32\DRIVERS\bflwfx64.sys [75880 2012-03-08] (Bigfoot Networks, Inc.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-08-22] (Disc Soft Ltd)
R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [170640 2010-12-21] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [141264 2010-12-21] (ESET)
R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [170640 2010-12-21] (ESET)
R3 Epfwndis; C:\Windows\System32\DRIVERS\Epfwndis.sys [34144 2010-12-21] (ESET)
R2 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [50624 2010-12-21] (ESET)
R3 L1C; C:\Windows\System32\DRIVERS\e22w7x64.sys [161616 2012-03-08] (Qualcomm Atheros, Inc.)
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [14136 2010-01-18] (MSI)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
S3 efavdrv; \??\C:\windows\system32\drivers\efavdrv.sys [X]
S3 MGHwCtrl; \??\C:\Program Files\MSI\MSI Software Install\MGHwCtrl.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-04-01 00:04 - 2014-04-01 00:04 - 00023181 _____ () C:\Users\msi\Desktop\FRST.txt
2014-04-01 00:04 - 2014-04-01 00:04 - 00000000 ____D () C:\FRST
2014-04-01 00:03 - 2014-04-01 00:03 - 02157056 _____ (Farbar) C:\Users\msi\Desktop\FRST64.exe
2014-04-01 00:02 - 2014-04-01 00:02 - 00029696 _____ () C:\Users\msi\AppData\Local\MSGBOX.EXE
2014-04-01 00:02 - 2014-04-01 00:02 - 00015327 _____ () C:\Users\msi\Desktop\LM.bat
2014-04-01 00:01 - 2014-04-01 00:01 - 00112640 _____ (forum.viry.cz) C:\Users\msi\Desktop\FRSTLauncher.exe
2014-03-31 23:54 - 2014-03-31 23:54 - 00000000 ____D () C:\rsit
2014-03-31 23:54 - 2014-03-31 23:54 - 00000000 ____D () C:\Program Files\trend micro
2014-03-31 23:53 - 2014-03-31 23:53 - 00832273 _____ () C:\Users\msi\Downloads\RSITx64.exe
2014-03-31 17:45 - 2014-03-31 17:45 - 02991832 _____ (ESET) C:\Users\msi\Downloads\ERARemover_x64.exe
2014-03-31 17:41 - 2014-03-31 17:41 - 02347384 _____ (ESET) C:\Users\msi\Downloads\esetsmartinstaller_csy.exe
2014-03-31 17:41 - 2014-03-31 17:41 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-03-31 17:32 - 2014-03-31 17:32 - 00000000 ____D () C:\ProgramData\boost_interprocess
2014-03-31 17:31 - 2014-03-31 17:31 - 32652456 _____ (Anvisoft) C:\Users\msi\Downloads\asdsetup.exe
2014-03-31 17:31 - 2014-03-31 17:31 - 00000000 ____D () C:\ProgramData\Anvisoft
2014-03-31 17:31 - 2014-03-31 17:31 - 00000000 ____D () C:\Program Files (x86)\Anvisoft
2014-03-31 17:31 - 2014-03-27 07:24 - 00035344 _____ (Anvisoft) C:\windows\system32\Drivers\asd2fsm.sys
2014-03-31 13:59 - 2014-03-31 14:00 - 04514475 _____ () C:\Users\msi\Downloads\bombic.zip
2014-03-29 22:16 - 2014-03-29 22:16 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-03-27 07:24 - 2014-03-27 07:24 - 00047632 _____ (Anvisoft) C:\windows\system32\Drivers\asdids.sys
2014-03-23 20:37 - 2014-03-23 20:37 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-03-23 20:37 - 2014-03-23 20:37 - 00000000 ____D () C:\Users\msi\AppData\Local\Skype
2014-03-23 02:16 - 2014-03-23 17:15 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-03-20 22:51 - 2014-03-20 22:51 - 00000000 ____D () C:\ProgramData\AVG Secure Search
2014-03-16 19:58 - 2014-03-16 19:59 - 00000000 ____D () C:\windows\system32\MRT
2014-03-16 19:58 - 2014-03-02 15:05 - 90015360 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-03-16 13:15 - 2014-03-16 13:15 - 00000000 ____D () C:\Users\msi\AppData\Local\Skyrim
2014-03-16 13:14 - 2014-03-16 13:14 - 00003633 _____ () C:\Users\msi\Downloads\steam.rar
2014-03-16 12:45 - 2014-03-16 12:45 - 01141680 _____ () C:\Users\msi\Downloads\SteamSetup.exe
2014-03-15 15:58 - 2014-03-16 12:05 - 2962702336 _____ () C:\Users\msi\Downloads\The-Elder-Scrolls-V-Skyrim---Legendary-Edition-CZ-REPAK.iso
2014-03-14 18:46 - 2014-03-17 15:01 - 00000000 ____D () C:\Users\msi\AppData\Local\Windows Live
2014-03-14 18:46 - 2014-03-14 18:46 - 00000000 ____D () C:\Users\msi\AppData\Local\{465A3A6E-4265-4539-82E6-384E96356AD5}
2014-03-14 18:43 - 2014-03-26 17:35 - 00000000 ____D () C:\Users\msi\Documents\moto
2014-03-13 14:30 - 2014-03-13 14:30 - 00000000 ____D () C:\Users\Public\CyberLink
2014-03-13 13:42 - 2014-03-01 07:16 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-03-13 13:42 - 2014-03-01 06:58 - 02765824 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-03-13 13:42 - 2014-03-01 05:51 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-03-13 13:42 - 2014-03-01 05:47 - 02168320 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-03-13 13:42 - 2014-03-01 05:43 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-03-13 13:42 - 2014-03-01 05:03 - 00524288 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-03-13 13:42 - 2014-03-01 04:27 - 01156096 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-03-13 13:42 - 2014-02-07 03:23 - 03156480 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-03-13 13:42 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2014-03-13 13:42 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2014-03-13 13:42 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll
2014-03-13 13:41 - 2014-03-01 08:05 - 23133696 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-03-13 13:41 - 2014-03-01 07:17 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-03-13 13:41 - 2014-03-01 06:52 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-03-13 13:41 - 2014-03-01 06:51 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-03-13 13:41 - 2014-03-01 06:42 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-03-13 13:41 - 2014-03-01 06:40 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-03-13 13:41 - 2014-03-01 06:37 - 00574976 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-03-13 13:41 - 2014-03-01 06:33 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-03-13 13:41 - 2014-03-01 06:33 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-03-13 13:41 - 2014-03-01 06:32 - 00708608 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-03-13 13:41 - 2014-03-01 06:30 - 17074688 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-03-13 13:41 - 2014-03-01 06:23 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-03-13 13:41 - 2014-03-01 06:17 - 00218624 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-03-13 13:41 - 2014-03-01 06:11 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-03-13 13:41 - 2014-03-01 06:02 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-03-13 13:41 - 2014-03-01 05:54 - 05768704 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-03-13 13:41 - 2014-03-01 05:52 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-03-13 13:41 - 2014-03-01 05:43 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-03-13 13:41 - 2014-03-01 05:42 - 00627200 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-03-13 13:41 - 2014-03-01 05:40 - 00440832 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-03-13 13:41 - 2014-03-01 05:38 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-03-13 13:41 - 2014-03-01 05:37 - 00553472 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-03-13 13:41 - 2014-03-01 05:35 - 02041856 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-03-13 13:41 - 2014-03-01 05:18 - 13051904 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-03-13 13:41 - 2014-03-01 05:16 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-03-13 13:41 - 2014-03-01 05:14 - 04244480 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-03-13 13:41 - 2014-03-01 05:10 - 02334208 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-03-13 13:41 - 2014-03-01 05:00 - 01964032 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-03-13 13:41 - 2014-03-01 04:57 - 11266048 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-03-13 13:41 - 2014-03-01 04:38 - 01393664 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-03-13 13:41 - 2014-03-01 04:32 - 01820160 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-03-13 13:41 - 2014-03-01 04:25 - 00817664 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-03-13 13:41 - 2014-03-01 04:25 - 00703488 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-03-13 13:41 - 2014-02-04 04:32 - 01424384 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2014-03-13 13:41 - 2014-02-04 04:32 - 00624128 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll
2014-03-13 13:41 - 2014-02-04 04:04 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2014-03-13 13:41 - 2014-02-04 04:04 - 00509440 _____ (Microsoft Corporation) C:\windows\SysWOW64\qedit.dll
2014-03-07 13:24 - 2014-03-07 13:30 - 108324724 _____ () C:\Users\msi\Downloads\Deuce---Nine-Lives-(2012)-(by-Mexiicek).rar
2014-03-03 18:35 - 2014-03-03 18:35 - 00301960 _____ () C:\windows\Minidump\030314-20560-01.dmp
==================== One Month Modified Files and Folders =======
2014-04-01 00:04 - 2014-04-01 00:04 - 00023181 _____ () C:\Users\msi\Desktop\FRST.txt
2014-04-01 00:04 - 2014-04-01 00:04 - 00000000 ____D () C:\FRST
2014-04-01 00:03 - 2014-04-01 00:03 - 02157056 _____ (Farbar) C:\Users\msi\Desktop\FRST64.exe
2014-04-01 00:02 - 2014-04-01 00:02 - 00029696 _____ () C:\Users\msi\AppData\Local\MSGBOX.EXE
2014-04-01 00:02 - 2014-04-01 00:02 - 00015327 _____ () C:\Users\msi\Desktop\LM.bat
2014-04-01 00:01 - 2014-04-01 00:01 - 00112640 _____ (forum.viry.cz) C:\Users\msi\Desktop\FRSTLauncher.exe
2014-03-31 23:54 - 2014-03-31 23:54 - 00000000 ____D () C:\rsit
2014-03-31 23:54 - 2014-03-31 23:54 - 00000000 ____D () C:\Program Files\trend micro
2014-03-31 23:53 - 2014-03-31 23:53 - 00832273 _____ () C:\Users\msi\Downloads\RSITx64.exe
2014-03-31 23:53 - 2013-09-25 18:51 - 00000946 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-31 23:51 - 2013-07-17 17:11 - 00000000 ____D () C:\Users\msi\AppData\Roaming\Skype
2014-03-31 23:20 - 2013-07-17 16:59 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-03-31 21:19 - 2009-07-14 06:51 - 00080361 _____ () C:\windows\setupact.log
2014-03-31 20:53 - 2013-09-25 18:51 - 00000942 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-03-31 19:32 - 2013-07-11 13:22 - 01364808 _____ () C:\windows\WindowsUpdate.log
2014-03-31 18:41 - 2009-07-14 06:45 - 00031712 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-03-31 18:41 - 2009-07-14 06:45 - 00031712 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-03-31 18:40 - 2012-05-18 10:04 - 00680522 _____ () C:\windows\system32\perfh005.dat
2014-03-31 18:40 - 2012-05-18 10:04 - 00145490 _____ () C:\windows\system32\perfc005.dat
2014-03-31 18:40 - 2009-07-14 07:13 - 01615286 _____ () C:\windows\system32\PerfStringBackup.INI
2014-03-31 18:35 - 2013-11-25 21:54 - 00000000 ___RD () C:\Users\msi\Dropbox
2014-03-31 18:35 - 2013-11-25 21:53 - 00000000 ____D () C:\Users\msi\AppData\Roaming\Dropbox
2014-03-31 18:35 - 2012-05-19 01:23 - 00000000 ____D () C:\ProgramData\Bigfoot Networks
2014-03-31 18:34 - 2013-07-17 16:16 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-03-31 18:33 - 2010-11-21 05:47 - 00753676 _____ () C:\windows\PFRO.log
2014-03-31 18:33 - 2010-01-01 01:09 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-03-31 18:33 - 2009-07-14 07:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-03-31 18:31 - 2014-01-28 20:57 - 00000000 ____D () C:\Users\msi\AppData\Local\Battle.net
2014-03-31 17:46 - 2013-08-18 20:57 - 00000000 ____D () C:\ProgramData\ESET
2014-03-31 17:45 - 2014-03-31 17:45 - 02991832 _____ (ESET) C:\Users\msi\Downloads\ERARemover_x64.exe
2014-03-31 17:41 - 2014-03-31 17:41 - 02347384 _____ (ESET) C:\Users\msi\Downloads\esetsmartinstaller_csy.exe
2014-03-31 17:41 - 2014-03-31 17:41 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-03-31 17:32 - 2014-03-31 17:32 - 00000000 ____D () C:\ProgramData\boost_interprocess
2014-03-31 17:31 - 2014-03-31 17:31 - 32652456 _____ (Anvisoft) C:\Users\msi\Downloads\asdsetup.exe
2014-03-31 17:31 - 2014-03-31 17:31 - 00000000 ____D () C:\ProgramData\Anvisoft
2014-03-31 17:31 - 2014-03-31 17:31 - 00000000 ____D () C:\Program Files (x86)\Anvisoft
2014-03-31 14:00 - 2014-03-31 13:59 - 04514475 _____ () C:\Users\msi\Downloads\bombic.zip
2014-03-30 15:42 - 2013-08-22 17:24 - 00000000 ____D () C:\Users\msi\Documents\My Games
2014-03-30 15:01 - 2013-07-17 16:12 - 00000000 ____D () C:\Users\msi\AppData\Local\PMB Files
2014-03-30 15:01 - 2013-07-17 16:12 - 00000000 ____D () C:\ProgramData\PMB Files
2014-03-29 22:16 - 2014-03-29 22:16 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-03-28 13:52 - 2013-07-20 15:55 - 00000000 ____D () C:\ProgramData\AVG SafeGuard toolbar
2014-03-28 11:14 - 2009-07-14 07:08 - 00032570 _____ () C:\windows\Tasks\SCHEDLGU.TXT
2014-03-27 22:33 - 2013-11-21 16:31 - 00000000 ____D () C:\Program Files (x86)\PasswordBox
2014-03-27 07:24 - 2014-03-31 17:31 - 00035344 _____ (Anvisoft) C:\windows\system32\Drivers\asd2fsm.sys
2014-03-27 07:24 - 2014-03-27 07:24 - 00047632 _____ (Anvisoft) C:\windows\system32\Drivers\asdids.sys
2014-03-26 17:35 - 2014-03-14 18:43 - 00000000 ____D () C:\Users\msi\Documents\moto
2014-03-23 20:37 - 2014-03-23 20:37 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-03-23 20:37 - 2014-03-23 20:37 - 00000000 ____D () C:\Users\msi\AppData\Local\Skype
2014-03-23 20:37 - 2013-07-17 17:11 - 00000000 ____D () C:\ProgramData\Skype
2014-03-23 17:15 - 2014-03-23 02:16 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-03-22 14:31 - 2014-01-28 20:57 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2014-03-21 09:22 - 2013-07-20 15:55 - 00000000 ____D () C:\Users\msi\AppData\Local\AVG SafeGuard toolbar
2014-03-20 22:51 - 2014-03-20 22:51 - 00000000 ____D () C:\ProgramData\AVG Secure Search
2014-03-20 22:51 - 2013-07-20 15:55 - 00049952 _____ (AVG Technologies) C:\windows\system32\Drivers\avgtpx64.sys
2014-03-20 22:51 - 2013-07-20 15:55 - 00003738 _____ () C:\Program Files (x86)\Mozilla Firefoxsafeguard-secure-search.xml
2014-03-20 22:51 - 2013-07-20 15:55 - 00000000 ____D () C:\Program Files (x86)\AVG SafeGuard toolbar
2014-03-19 11:04 - 2013-07-03 08:53 - 00000000 ____D () C:\Users\msi\Documents\CULS
2014-03-17 15:01 - 2014-03-14 18:46 - 00000000 ____D () C:\Users\msi\AppData\Local\Windows Live
2014-03-16 19:59 - 2014-03-16 19:58 - 00000000 ____D () C:\windows\system32\MRT
2014-03-16 19:59 - 2013-09-24 17:15 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-03-16 13:15 - 2014-03-16 13:15 - 00000000 ____D () C:\Users\msi\AppData\Local\Skyrim
2014-03-16 13:15 - 2013-07-17 16:51 - 00000000 ___RD () C:\Users\msi\Desktop\
2014-03-16 13:14 - 2014-03-16 13:14 - 00003633 _____ () C:\Users\msi\Downloads\steam.rar
2014-03-16 12:54 - 2013-08-22 17:18 - 00000000 ____D () C:\Program Files (x86)\Bethesda Softworks
2014-03-16 12:45 - 2014-03-16 12:45 - 01141680 _____ () C:\Users\msi\Downloads\SteamSetup.exe
2014-03-16 12:05 - 2014-03-15 15:58 - 2962702336 _____ () C:\Users\msi\Downloads\The-Elder-Scrolls-V-Skyrim---Legendary-Edition-CZ-REPAK.iso
2014-03-14 22:31 - 2013-11-11 02:21 - 00000000 ____D () C:\Users\msi\Downloads\Subs
2014-03-14 22:02 - 2014-01-28 22:03 - 00000000 ____D () C:\Program Files (x86)\Hearthstone
2014-03-14 18:46 - 2014-03-14 18:46 - 00000000 ____D () C:\Users\msi\AppData\Local\{465A3A6E-4265-4539-82E6-384E96356AD5}
2014-03-14 09:18 - 2009-07-14 06:45 - 00437320 _____ () C:\windows\system32\FNTCACHE.DAT
2014-03-14 09:17 - 2013-09-25 00:52 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-03-14 09:17 - 2013-09-25 00:52 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-03-13 14:31 - 2013-07-12 14:15 - 00000000 ____D () C:\Users\msi\Documents\Youcam
2014-03-13 14:30 - 2014-03-13 14:30 - 00000000 ____D () C:\Users\Public\CyberLink
2014-03-12 16:20 - 2013-09-10 20:20 - 05777288 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerInstaller.exe
2014-03-12 16:20 - 2013-07-17 16:59 - 00003852 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2014-03-12 16:20 - 2012-05-19 02:07 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2014-03-12 16:20 - 2012-05-19 02:07 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-03-07 13:30 - 2014-03-07 13:24 - 108324724 _____ () C:\Users\msi\Downloads\Deuce---Nine-Lives-(2012)-(by-Mexiicek).rar
2014-03-03 18:35 - 2014-03-03 18:35 - 00301960 _____ () C:\windows\Minidump\030314-20560-01.dmp
2014-03-03 18:35 - 2013-07-11 13:51 - 00000000 ____D () C:\windows\Minidump
2014-03-03 18:35 - 2013-07-11 13:50 - 779360882 _____ () C:\windows\MEMORY.DMP
2014-03-02 17:22 - 2014-03-01 22:42 - 01590208 _____ () C:\windows\SysWOW64\PerfStringBackup.INI
2014-03-02 15:05 - 2014-03-16 19:58 - 90015360 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
Some content of TEMP:
====================
C:\Users\msi\AppData\Local\Temp\DSETUP.dll
C:\Users\msi\AppData\Local\Temp\dsetup32.dll
C:\Users\msi\AppData\Local\Temp\DXSETUP.exe
C:\Users\msi\AppData\Local\Temp\oi_{159361F7-B707-426B-972B-A75E87DD4C89}.exe
C:\Users\msi\AppData\Local\Temp\swt-win32-3349.dll
C:\Users\msi\AppData\Local\Temp\YSPCUNLR.dll
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-03-20 20:15
==================== End Of Log ============================