Využití procesoru 100%
Napsal: 26 zář 2014 17:54
Dobrý den, máti se zpomalil počítač, otevření chromu trvá dlouho a procesor je při každé sebemenší akci vytížený na 100%.
Přikládám log z FRST.
Děkuji za pomoc.
Martin
--------------------------------------------------------------------------------------
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 26-09-2014
Ran by mamka (administrator) on MAMKA-PC on 26-09-2014 18:47:34
Running from C:\Users\mamka\Desktop
Loaded Profile: mamka (Available profiles: mamka & UpdatusUser)
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2004-10-26] (AVAST Software)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [1797064 2014-03-20] (NVIDIA Corporation)
HKU\S-1-5-21-3656359218-3098799048-2826735911-1001\...\MountPoints2: {048a1295-cb83-11e2-a028-001143a60b1c} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL E:\drivers\setup.exe
HKU\S-1-5-21-3656359218-3098799048-2826735911-1001\...\MountPoints2: {33ae7551-eea4-11e1-ab47-806e6f6e6963} - D:\setup.exe
HKU\S-1-5-21-3656359218-3098799048-2826735911-1001\...\MountPoints2: {b6188c5f-df17-11e2-ac21-001143a60b1c} - E:\setup.exe
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-03-18]
Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR DefaultSearchKeyword: Default -> FAE561278B95840291832540B5F3D39571F437B22EA9EBDAD246EBB01B5D4A31
CHR DefaultSearchURL: Default -> 00328553F7CDFF3BF3D8102EBC2E78DEF047E76938374804FFF161259D09E72E
CHR CustomProfile: C:\Users\mamka\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (avast! Online Security) - C:\Users\mamka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-06-16]
CHR Extension: (Peněženka Google) - C:\Users\mamka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-03]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2004-10-26]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2004-10-26] (AVAST Software)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2004-10-26] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2004-10-26] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2004-10-26] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2004-10-26] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [779536 2004-10-26] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [414520 2004-10-26] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [71944 2004-10-26] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [192352 2004-10-26] ()
S3 mcdbus; system32\DRIVERS\mcdbus.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-26 18:47 - 2014-09-26 18:48 - 00007089 _____ () C:\Users\mamka\Desktop\FRST.txt
2014-09-26 18:47 - 2014-09-26 18:47 - 00000000 ____D () C:\FRST
2014-09-26 18:47 - 2014-09-26 18:45 - 01100288 _____ (Farbar) C:\Users\mamka\Desktop\FRST.exe
2014-09-26 18:45 - 2014-09-26 18:45 - 01100288 _____ (Farbar) C:\Users\mamka\Downloads\FRST.exe
2014-09-26 18:44 - 2014-09-26 18:44 - 02108928 _____ (Farbar) C:\Users\mamka\Downloads\FRST64.exe
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-26 18:48 - 2009-07-14 06:34 - 00014448 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-26 18:48 - 2009-07-14 06:34 - 00014448 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-26 18:46 - 2012-08-25 13:35 - 01583998 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-26 18:46 - 2012-08-25 13:04 - 01579906 _____ () C:\Windows\WindowsUpdate.log
2014-09-26 18:38 - 2012-11-05 15:30 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-09-26 18:38 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-26 18:38 - 2009-07-14 06:39 - 00081882 _____ () C:\Windows\setupact.log
2014-09-26 18:38 - 2004-10-26 20:53 - 00000934 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-25 20:58 - 2004-10-26 20:53 - 00000938 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
Some content of TEMP:
====================
C:\Users\mamka\AppData\Local\Temp\BlackBerryDeviceManager.exe
C:\Users\mamka\AppData\Local\Temp\EpsonInkjetDriverDownloader.EXE
C:\Users\mamka\AppData\Local\Temp\GUR2029.exe
C:\Users\mamka\AppData\Local\Temp\install_flashplayer11x32_mssd_aaa_aih.exe
C:\Users\mamka\AppData\Local\Temp\jre-7u11-windows-i586-iftw.exe
C:\Users\mamka\AppData\Local\Temp\jre-7u13-windows-i586-iftw.exe
C:\Users\mamka\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe
C:\Users\mamka\AppData\Local\Temp\jre-7u21-windows-i586-iftw.exe
C:\Users\mamka\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe
C:\Users\mamka\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\mamka\AppData\Local\Temp\vlc-2.1.3-win32.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-08-08 20:04
==================== End Of Log ============================
Přikládám log z FRST.
Děkuji za pomoc.
Martin
--------------------------------------------------------------------------------------
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 26-09-2014
Ran by mamka (administrator) on MAMKA-PC on 26-09-2014 18:47:34
Running from C:\Users\mamka\Desktop
Loaded Profile: mamka (Available profiles: mamka & UpdatusUser)
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2004-10-26] (AVAST Software)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [1797064 2014-03-20] (NVIDIA Corporation)
HKU\S-1-5-21-3656359218-3098799048-2826735911-1001\...\MountPoints2: {048a1295-cb83-11e2-a028-001143a60b1c} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL E:\drivers\setup.exe
HKU\S-1-5-21-3656359218-3098799048-2826735911-1001\...\MountPoints2: {33ae7551-eea4-11e1-ab47-806e6f6e6963} - D:\setup.exe
HKU\S-1-5-21-3656359218-3098799048-2826735911-1001\...\MountPoints2: {b6188c5f-df17-11e2-ac21-001143a60b1c} - E:\setup.exe
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-03-18]
Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR DefaultSearchKeyword: Default -> FAE561278B95840291832540B5F3D39571F437B22EA9EBDAD246EBB01B5D4A31
CHR DefaultSearchURL: Default -> 00328553F7CDFF3BF3D8102EBC2E78DEF047E76938374804FFF161259D09E72E
CHR CustomProfile: C:\Users\mamka\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (avast! Online Security) - C:\Users\mamka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-06-16]
CHR Extension: (Peněženka Google) - C:\Users\mamka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-03]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2004-10-26]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2004-10-26] (AVAST Software)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2004-10-26] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2004-10-26] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2004-10-26] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2004-10-26] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [779536 2004-10-26] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [414520 2004-10-26] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [71944 2004-10-26] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [192352 2004-10-26] ()
S3 mcdbus; system32\DRIVERS\mcdbus.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-26 18:47 - 2014-09-26 18:48 - 00007089 _____ () C:\Users\mamka\Desktop\FRST.txt
2014-09-26 18:47 - 2014-09-26 18:47 - 00000000 ____D () C:\FRST
2014-09-26 18:47 - 2014-09-26 18:45 - 01100288 _____ (Farbar) C:\Users\mamka\Desktop\FRST.exe
2014-09-26 18:45 - 2014-09-26 18:45 - 01100288 _____ (Farbar) C:\Users\mamka\Downloads\FRST.exe
2014-09-26 18:44 - 2014-09-26 18:44 - 02108928 _____ (Farbar) C:\Users\mamka\Downloads\FRST64.exe
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-26 18:48 - 2009-07-14 06:34 - 00014448 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-26 18:48 - 2009-07-14 06:34 - 00014448 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-26 18:46 - 2012-08-25 13:35 - 01583998 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-26 18:46 - 2012-08-25 13:04 - 01579906 _____ () C:\Windows\WindowsUpdate.log
2014-09-26 18:38 - 2012-11-05 15:30 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-09-26 18:38 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-26 18:38 - 2009-07-14 06:39 - 00081882 _____ () C:\Windows\setupact.log
2014-09-26 18:38 - 2004-10-26 20:53 - 00000934 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-25 20:58 - 2004-10-26 20:53 - 00000938 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
Some content of TEMP:
====================
C:\Users\mamka\AppData\Local\Temp\BlackBerryDeviceManager.exe
C:\Users\mamka\AppData\Local\Temp\EpsonInkjetDriverDownloader.EXE
C:\Users\mamka\AppData\Local\Temp\GUR2029.exe
C:\Users\mamka\AppData\Local\Temp\install_flashplayer11x32_mssd_aaa_aih.exe
C:\Users\mamka\AppData\Local\Temp\jre-7u11-windows-i586-iftw.exe
C:\Users\mamka\AppData\Local\Temp\jre-7u13-windows-i586-iftw.exe
C:\Users\mamka\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe
C:\Users\mamka\AppData\Local\Temp\jre-7u21-windows-i586-iftw.exe
C:\Users\mamka\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe
C:\Users\mamka\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\mamka\AppData\Local\Temp\vlc-2.1.3-win32.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-08-08 20:04
==================== End Of Log ============================