Nefunkční zvuk
Napsal: 27 úno 2015 19:13
Zdravím,
včera jsem se koukal na film a z ničeho nic se vypl zvuk, dole v rohu mi to píše "Služba zvuku není spuštěna" v services.msc mi nejde nahodit service "audiosrv" vypisuje chybu, reinstalace driverů atp. nepomohla, tak se obávám nějákého červa, který si hraje s "audiosrv" popřípadě s něčím jiným. Díky za pomoc..
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-02-2015 01
Ran by Jindřich (administrator) on WHZY on 27-02-2015 19:10:53
Running from C:\Users\Jindřich\Desktop
Loaded Profiles: Jindřich (Available profiles: Jindřich)
Platform: Windows 8 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 10 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Autodesk Inc.) C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Anti-Theft\Engine\1.10.0.9\NAT.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Windows\SysWOW64\PnkBstrB.exe
() C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\NIS.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\NIS.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Anti-Theft\Engine\1.10.0.9\NAT.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\LiveComm.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe
(WinZip Computing, S.L.) C:\Program Files\WinZip\WZQKPICK32.EXE
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Windows\WinStore\WSHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Jindřich\Desktop\FRSTLauncher (1).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2859344 2013-03-13] (ELAN Microelectronics Corp.)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
HKLM\...\Run: [Radio Manager] => C:\Program Files (x86)\SCM\Radio Manager.exe [403848 2012-09-13] (MSI)
HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [399776 2012-09-13] (MSI)
HKLM\...\Run: [THXCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\THXCfg64.dll,RunDLLEntry THXCfg64
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13667032 2014-01-20] (Realtek Semiconductor)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-09-02] (Intel Corporation)
HKLM-x32\...\Run: [THX Audio Control Panel] => C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe [1517056 2011-08-30] (Creative Technology Ltd)
HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [490480 2013-02-07] (MSI)
HKLM-x32\...\Run: [BlueStacks Agent] => c:\Program Files (x86)\BlueStacks\HD-Agent.exe [597880 2013-01-07] (BlueStack Systems, Inc.)
HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [477064 2013-12-22] (Autodesk Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3138791764-2514349817-933611605-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-29] (Piriform Ltd)
HKU\S-1-5-21-3138791764-2514349817-933611605-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [1305408 2011-01-20] (DT Soft Ltd)
HKU\S-1-5-21-3138791764-2514349817-933611605-1002\...\Run: [SandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [785416 2015-02-18] (Sandboxie Holdings, LLC)
HKU\S-1-5-21-3138791764-2514349817-933611605-1002\...\MountPoints2: {6a3ceb37-6923-11e4-be7c-0cd292264c64} - "F:\WD Drive Unlock.exe" autoplay=true
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [174856 2014-11-04] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [156840 2014-11-04] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Qualcomm Atheros Killer Network Manager.lnk
ShortcutTarget: Qualcomm Atheros Killer Network Manager.lnk -> C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Quick Pick.lnk
ShortcutTarget: WinZip Quick Pick.lnk -> C:\Program Files\WinZip\WZQKPICK32.EXE (WinZip Computing, S.L.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
ProxyServer: [S-1-5-21-3138791764-2514349817-933611605-1002] => 127.0.0.1:9666
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3138791764-2514349817-933611605-1002 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.bing.com/search?FORM=UP97DF& ... -SearchBox
SearchScopes: HKU\S-1-5-21-3138791764-2514349817-933611605-1002 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.bing.com/search?FORM=UP97DF& ... -SearchBox
SearchScopes: HKU\S-1-5-21-3138791764-2514349817-933611605-1002 -> {ED1A0152-3C38-4BCD-BAFC-D15E66390332} URL = http://www.google.com/search?q={searchTerms}
BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Internet Security\Engine64\21.6.0.32\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\IPS\IPSBHO.DLL (Symantec Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine64\21.6.0.32\coIEPlg.dll (Symantec Corporation)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\coIEPlg.dll (Symantec Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{2C8D1927-0368-47D1-A3D2-630819F691E8}: [NameServer] 8.8.8.8
FireFox:
========
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.6.0.32\coFFPlgn
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.6.0.32\coFFPlgn [2015-02-26]
FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.6.0.32\IPSFF
FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.6.0.32\IPSFF [2014-12-16]
Chrome:
=======
CHR Profile: C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-11-09]
CHR Extension: (Google Docs) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-09]
CHR Extension: (Google Drive) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-09]
CHR Extension: (YouTube) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-11-09]
CHR Extension: (Facebook Secret Emoticons) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpgpffljkgjmijjdmjbdppndoojdgboe [2015-01-09]
CHR Extension: (Google Search) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-11-09]
CHR Extension: (Google Sheets) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-11-09]
CHR Extension: (AdBlock) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-11-09]
CHR Extension: (Facebook Emoticons) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkdlcejbjnnmjgajjjfenejacioiimpp [2015-01-09]
CHR Extension: (Google Wallet) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-09]
CHR Extension: (Gmail) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-11-09]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\Exts\Chrome.crx [2014-12-16]
CHR HKU\S-1-5-21-3138791764-2514349817-933611605-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bmkckgpgekmanipelfidlhmkfcjicion] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\Exts\Chrome.crx [2014-12-16]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [576904 2013-12-22] (Autodesk Inc.)
S2 Audiosrv; C:\Windows\System32\Audiosrv.dll [0 2014-12-06] () <==== ATTENTION (zero size file/folder)
S2 BstHdAndroidSvc; c:\Program Files (x86)\BlueStacks\HD-Service.exe [393080 2013-01-07] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; c:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [384888 2013-01-07] (BlueStack Systems, Inc.)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148744 2014-11-06] (NVIDIA Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2013-03-13] (Intel Corporation)
R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2012-09-13] (Micro-Star International Co., Ltd.) [File not signed]
R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [154112 2013-02-08] (MSI) [File not signed]
R2 NAT; C:\Program Files (x86)\Norton Anti-Theft\Engine\1.10.0.9\NAT.exe [232424 2013-10-11] (Symantec Corporation)
R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\NIS.exe [276376 2014-09-21] (Symantec Corporation)
S3 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [4230016 2013-01-28] (Symantec Corporation)
R2 Norton PC Checkup Application Launcher; C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe [123320 2012-08-13] (Symantec Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1795912 2014-11-06] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19819848 2014-11-06] (NVIDIA Corporation)
R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1854056 2012-12-07] (Microsoft Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1910128 2015-01-29] (Electronic Arts)
R2 PCCUJobMgr; C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe [126392 2012-08-13] (Symantec Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2014-11-21] ()
R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [214520 2015-01-03] ()
R2 Qualcomm Atheros Killer Service; C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe [490496 2012-09-25] () [File not signed]
R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [175112 2015-02-18] (Sandboxie Holdings, LLC)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16032 2014-09-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [74096 2012-09-25] (Qualcomm Atheros, Inc.)
R3 BHDrvx64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.6.0.32\Definitions\BASHDefs\20141209.001\BHDrvx64.sys [1587416 2014-12-09] (Symantec Corporation)
R2 BstHdDrv; c:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [71032 2013-01-07] (BlueStack Systems)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [121728 2012-08-27] (Motorola Solutions, Inc.)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [857472 2012-08-29] (Motorola Solutions, Inc.)
R3 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0403000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation)
R1 ccSet_NAT; C:\Windows\system32\drivers\NATx64\010A000.009\ccSetx64.sys [150104 2013-07-29] (Symantec Corporation)
R3 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1506000.020\ccSetx64.sys [162392 2014-02-21] (Symantec Corporation)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [254528 2014-11-18] (DT Soft Ltd)
R3 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2014-11-25] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [142640 2014-11-25] (Symantec Corporation)
R3 IDSVia64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.6.0.32\Definitions\IPSDefs\20150107.001\IDSvia64.sys [637656 2015-01-07] (Symantec Corporation)
R3 ipadtst; C:\Program Files (x86)\MSI\Super-Charger\ipadtst_64.sys [19952 2013-02-01] (Windows (R) Win 7 DDK provider)
R3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [164720 2012-09-25] (Qualcomm Atheros, Inc.)
S3 NAVENG; C:\Program Files (x86)\Norton Internet Security\NortonData\21.6.0.32\Definitions\VirusDefs\20150108.036\ENG64.SYS [129752 2014-08-11] (Symantec Corporation)
S3 NAVEX15; C:\Program Files (x86)\Norton Internet Security\NortonData\21.6.0.32\Definitions\VirusDefs\20150108.036\EX64.SYS [2137304 2014-08-11] (Symantec Corporation)
R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [4293672 2013-03-13] (Intel Corporation)
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-26] (MSI)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19784 2014-11-06] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38216 2014-10-03] (NVIDIA Corporation)
U5 RTSPER; C:\Windows\System32\Drivers\RTSPER.sys [444632 2013-09-27] (Realsil Semiconductor Corporation)
R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [237064 2015-02-18] (Sandboxie Holdings, LLC)
S3 SRTSP; C:\Windows\System32\Drivers\NISx64\1506000.020\SRTSP64.SYS [876248 2014-08-26] (Symantec Corporation)
R3 SRTSPX; C:\Windows\system32\drivers\NISx64\1506000.020\SRTSPX64.SYS [37592 2014-08-26] (Symantec Corporation)
S3 ssudobex; C:\Windows\system32\DRIVERS\ssudobex.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr))
R3 SymDS; C:\Windows\system32\drivers\NISx64\1506000.020\SYMDS64.SYS [493656 2014-08-26] (Symantec Corporation)
R3 SymEFA; C:\Windows\system32\drivers\NISx64\1506000.020\SYMEFA64.SYS [1148120 2014-08-26] (Symantec Corporation)
S4 SymELAM; C:\Windows\system32\drivers\NISx64\1506000.020\SymELAM.sys [23568 2014-08-26] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2014-12-16] (Symantec Corporation)
R3 SymIRON; C:\Windows\system32\drivers\NISx64\1506000.020\Ironx64.SYS [266968 2014-08-06] (Symantec Corporation)
R3 SymNetS; C:\Windows\System32\Drivers\NISx64\1506000.020\SYMNETS.SYS [593112 2014-08-26] (Symantec Corporation)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2014-08-15] (Apple, Inc.) [File not signed]
S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [89088 2012-07-26] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-02-27 19:10 - 2015-02-27 19:11 - 00024009 _____ () C:\Users\Jindřich\Desktop\FRST.txt
2015-02-27 19:10 - 2015-02-27 19:10 - 00000000 ____D () C:\FRST
2015-02-27 19:09 - 2015-02-27 19:09 - 00112640 _____ (forum.viry.cz) C:\Users\Jindřich\Downloads\Nepotvrzeno 42753.crdownload
2015-02-27 19:09 - 2015-02-27 19:09 - 00112640 _____ (forum.viry.cz) C:\Users\Jindřich\Desktop\FRSTLauncher (1).exe
2015-02-27 19:08 - 2015-02-27 19:09 - 02087936 _____ (Farbar) C:\Users\Jindřich\Desktop\FRST64.exe
2015-02-26 21:49 - 2015-02-26 21:49 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2015-02-26 21:49 - 2015-02-26 21:49 - 00000000 ____D () C:\Program Files\Realtek
2015-02-26 21:48 - 2014-02-04 00:45 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2015-02-26 21:48 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2015-02-26 21:48 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2015-02-26 21:48 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2015-02-26 21:48 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2015-02-26 21:47 - 2014-02-18 19:42 - 03867992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2015-02-26 21:47 - 2014-02-18 17:33 - 00624344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2015-02-26 21:47 - 2014-02-18 17:04 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-02-26 21:47 - 2014-02-18 16:56 - 00749977 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT
2015-02-26 21:47 - 2014-02-18 14:33 - 00946392 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2015-02-26 21:47 - 2014-02-18 10:35 - 01024216 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2015-02-26 21:47 - 2014-02-17 16:04 - 02788056 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2015-02-26 21:47 - 2014-02-04 00:45 - 02037336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2015-02-26 21:47 - 2014-02-04 00:45 - 01033304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-02-26 21:47 - 2014-01-28 11:48 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2015-02-26 21:47 - 2014-01-08 15:25 - 00397592 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll
2015-02-26 21:47 - 2013-12-31 11:16 - 02825432 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2015-02-26 21:47 - 2013-12-04 16:27 - 01958616 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2015-02-26 21:47 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2015-02-26 21:47 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2015-02-26 21:47 - 2013-01-11 16:27 - 00628504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBTHX64.dll
2015-02-26 21:47 - 2013-01-11 16:27 - 00563992 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBTHX32.dll
2015-02-26 21:47 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2015-02-26 21:47 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2015-02-26 21:47 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2015-02-26 21:47 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2015-02-26 21:47 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2015-02-26 21:47 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2015-02-26 21:47 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2015-02-26 21:47 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2015-02-26 21:47 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2015-02-26 21:47 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2015-02-26 21:47 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2015-02-26 21:47 - 2009-11-18 07:12 - 00032344 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\MBfilt64.sys
2015-02-26 20:36 - 2015-02-26 21:41 - 221982547 _____ () C:\Users\Jindřich\Downloads\audio_realtek_6.0.1.7179_0x29f517cb_81700 (2).zip
2015-02-26 20:10 - 2015-02-26 20:10 - 00000827 _____ () C:\Users\Jindřich\Downloads\audio_realtek_6.0.1.7179_0x29f517cb_81700.zip
2015-02-26 20:10 - 2015-02-26 20:10 - 00000827 _____ () C:\Users\Jindřich\Downloads\audio_realtek_6.0.1.7179_0x29f517cb_81700 (1).zip
2015-02-26 19:58 - 2015-02-26 19:58 - 00042496 _____ (Microsoft Corporation) C:\Users\Jindřich\Downloads\audiosrv.dll
2015-02-26 19:38 - 2015-02-26 20:07 - 79446932 _____ () C:\Users\Jindřich\Downloads\Nepotvrzeno 760280.crdownload
2015-02-26 19:37 - 2015-02-26 19:37 - 00000000 ____D () C:\Windows\SysWOW64\sda
2015-02-26 19:37 - 2013-09-27 07:44 - 00444632 _____ (Realsil Semiconductor Corporation) C:\Windows\system32\Drivers\RtsPer.sys
2015-02-26 19:35 - 2015-02-26 19:36 - 10801552 _____ () C:\Users\Jindřich\Downloads\cr_rts5249_6.2.9600.21242_0xb2eab4e9_w8100.zip
2015-02-26 19:11 - 2015-02-26 19:28 - 51733249 _____ (Realtek Semiconductor Corp.) C:\Users\Jindřich\Downloads\32bit_Vista_Win7_Win8_R270.exe
2015-02-26 07:45 - 2015-02-26 07:45 - 00003374 _____ () C:\Windows\System32\Tasks\{0A6F250D-3B6A-4EEF-93FF-D2E3004CAED6}
2015-02-26 07:29 - 2015-02-26 07:29 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf
2015-02-26 00:12 - 2015-02-26 00:12 - 00000000 ____D () C:\Users\Jindřich\AppData\Roaming\WebApp
2015-02-25 23:25 - 2015-02-25 23:26 - 00000000 ____D () C:\ProgramData\CyberLink
2015-02-25 23:25 - 2015-02-25 23:25 - 00000000 ____D () C:\Users\Jindřich\Documents\CyberLink
2015-02-25 23:25 - 2015-02-25 23:25 - 00000000 ____D () C:\Users\Jindřich\AppData\Roaming\CyberLink
2015-02-24 22:03 - 2015-01-09 07:43 - 00951808 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2015-02-24 22:03 - 2015-01-09 06:03 - 00601088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2015-02-24 22:03 - 2015-01-09 00:52 - 00478296 _____ () C:\Windows\SysWOW64\locale.nls
2015-02-24 22:03 - 2015-01-09 00:52 - 00478296 _____ () C:\Windows\system32\locale.nls
2015-02-24 21:01 - 2015-02-24 21:15 - 15918329 _____ () C:\Users\Jindřich\Downloads\Just-cause-2-crack-only-skidrow.rar
2015-02-24 20:06 - 2015-02-24 20:06 - 200990647 _____ () C:\Users\Jindřich\Downloads\Fifa 15 v4 crack.rar
2015-02-24 19:42 - 2015-02-24 19:42 - 00000000 ____D () C:\Users\Jindřich\Documents\Square Enix
2015-02-24 19:28 - 2015-02-24 19:28 - 00033792 _____ () C:\Users\Jindřich\AppData\Roaming\cmsetac.dll
2015-02-24 19:03 - 2015-02-24 19:20 - 65552074 _____ () C:\Users\Jindřich\Downloads\FIFA15 Up 1-4 and Crack v2-3DM.iso
2015-02-24 18:29 - 2015-02-24 18:30 - 00025160 _____ () C:\Users\Jindřich\Downloads\[kickass.to]fifa.15.crack.v.2.update.4.by.3dm.torrent
2015-02-24 18:21 - 2015-02-01 08:37 - 00000030 _____ () C:\Users\Jindřich\Desktop\3dmgame.ini
2015-02-24 18:15 - 2015-02-24 20:07 - 00001962 _____ () C:\Users\Jindřich\AppData\Roaming\KB8888239.log
2015-02-24 18:14 - 2014-09-10 09:58 - 00514560 _____ () C:\Windows\SysWOW64\Launcher.exe
2015-02-24 18:14 - 2014-09-03 02:18 - 00894071 _____ () C:\Windows\SysWOW64\Tools.exe
2015-02-24 18:03 - 2015-02-24 18:08 - 02145780 _____ () C:\Users\Jindřich\Downloads\FIFA15_3DM_CRACk_V2_FOR_UPDATE_4.rar
2015-02-24 17:50 - 2015-02-24 20:36 - 00000533 _____ () C:\Users\Public\Desktop\FIFA 15.lnk
2015-02-24 17:50 - 2015-02-24 17:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 15
2015-02-24 15:59 - 2015-02-24 15:59 - 00000000 ____D () C:\Users\Jindřich\Documents\Ghost Games
2015-02-24 15:35 - 2015-02-24 15:36 - 00017647 _____ () C:\Windows\DirectX.log
2015-02-23 17:14 - 2015-02-23 17:14 - 00000000 ___RD () C:\Sandbox
2015-02-23 17:13 - 2015-02-24 18:47 - 00001752 _____ () C:\Windows\Sandboxie.ini
2015-02-23 17:13 - 2015-02-23 17:13 - 00000892 _____ () C:\Users\Jindřich\Desktop\Sandbox webový prohlížeč.lnk
2015-02-23 17:13 - 2015-02-23 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie
2015-02-23 17:13 - 2015-02-23 17:13 - 00000000 ____D () C:\Program Files\Sandboxie
2015-02-23 17:09 - 2015-02-23 17:13 - 06980616 _____ (Sandboxie Holdings, LLC) C:\Users\Jindřich\Downloads\SandboxieInstall.exe
2015-02-22 19:54 - 2015-02-22 20:04 - 327392061 _____ () C:\Users\Jindřich\Desktop\Untitled.wmv
2015-02-22 19:42 - 2015-02-22 19:43 - 247281904 _____ () C:\Users\Jindřich\Desktop\MVI_4958.MOV
2015-02-22 19:42 - 2015-02-22 19:43 - 00064280 _____ () C:\Users\Jindřich\Desktop\MVI_4958.MOV.sfk
2015-02-22 19:42 - 2015-02-22 19:42 - 23033552 _____ () C:\Users\Jindřich\Desktop\MVI_4957.MOV
2015-02-22 19:17 - 2015-02-22 19:37 - 00000000 ____D () C:\Users\Jindřich\Desktop\sabča honza trénink
2015-02-19 07:02 - 2015-02-19 07:05 - 00486960 _____ () C:\Windows\Minidump\021915-47296-01.dmp
2015-02-18 23:58 - 2015-02-18 23:58 - 05635532 _____ () C:\Users\Jindřich\Desktop\Page_A4.psd
2015-02-16 17:04 - 2015-01-23 06:50 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-02-16 17:04 - 2015-01-23 05:27 - 02864640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-02-15 18:43 - 2015-02-15 18:53 - 218847737 _____ () C:\Users\Jindřich\Desktop\honza2.wmv
2015-02-15 16:19 - 2015-02-15 16:32 - 00000000 ____D () C:\Users\Jindřich\Downloads\Need.For.Speed.Rivals-RELOADED
2015-02-15 13:44 - 2015-02-15 14:03 - 527609603 _____ () C:\Users\Jindřich\Desktop\honza.wmv
2015-02-12 21:21 - 2015-01-12 07:49 - 02237952 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-02-12 21:21 - 2015-01-12 07:49 - 01409536 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-02-12 21:21 - 2015-01-12 07:49 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2015-02-12 21:21 - 2015-01-12 07:49 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-02-12 21:21 - 2015-01-12 07:48 - 19291136 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-02-12 21:21 - 2015-01-12 07:48 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-02-12 21:21 - 2015-01-12 07:47 - 15403008 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-02-12 21:21 - 2015-01-12 07:47 - 02655744 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-02-12 21:21 - 2015-01-12 07:47 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-02-12 21:21 - 2015-01-12 07:47 - 00451584 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-02-12 21:21 - 2015-01-12 07:46 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-02-12 21:21 - 2015-01-12 06:07 - 01762816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-02-12 21:21 - 2015-01-12 06:07 - 01181696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-02-12 21:21 - 2015-01-12 06:07 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-02-12 21:21 - 2015-01-12 06:06 - 14373376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-02-12 21:21 - 2015-01-12 06:06 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-02-12 21:21 - 2015-01-12 06:06 - 02055168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-02-12 21:21 - 2015-01-12 06:06 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-02-12 21:21 - 2015-01-12 06:06 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-02-12 21:21 - 2015-01-12 06:06 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-02-12 21:21 - 2015-01-12 05:16 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-02-12 21:21 - 2015-01-12 04:46 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-02-12 20:36 - 2015-01-15 12:44 - 01043968 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2015-02-12 20:36 - 2015-01-15 12:44 - 00588288 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2015-02-12 20:36 - 2015-01-15 12:43 - 01282560 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-02-12 20:36 - 2015-01-15 11:00 - 00961536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2015-02-12 20:36 - 2015-01-15 11:00 - 00452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2015-02-12 20:36 - 2015-01-15 10:38 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-02-12 20:36 - 2015-01-15 10:09 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-02-12 20:36 - 2015-01-15 05:08 - 00568656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-02-12 20:36 - 2015-01-12 07:49 - 01627648 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-02-12 20:36 - 2015-01-12 06:07 - 01338880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-02-12 20:36 - 2015-01-09 05:33 - 04061696 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-02-12 20:36 - 2014-12-18 09:51 - 00096576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2015-02-12 20:36 - 2014-12-18 07:52 - 00889344 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-02-12 20:36 - 2014-12-18 07:51 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-02-12 20:36 - 2014-12-18 07:50 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2015-02-12 20:36 - 2014-12-18 07:20 - 00702464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2015-02-12 20:35 - 2015-01-29 09:30 - 00593408 _____ (Microsoft Corporation) C:\Windows\system32\AutoUpdate.exe
2015-02-12 20:35 - 2015-01-29 09:30 - 00467952 _____ (Microsoft Corporation) C:\Windows\system32\NotificationUI.exe
2015-02-12 20:35 - 2015-01-29 09:30 - 00011056 _____ () C:\Windows\system32\AutoconfigV2.cab
2015-02-12 20:35 - 2015-01-29 09:05 - 00695808 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-02-12 20:35 - 2015-01-29 09:05 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-02-12 20:35 - 2015-01-29 07:19 - 00568832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-02-12 20:35 - 2015-01-29 07:19 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-02-12 20:33 - 2014-12-09 00:14 - 00391526 _____ () C:\Windows\system32\ApnDatabase.xml
2015-02-12 20:33 - 2014-12-08 07:48 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-12 20:33 - 2014-12-08 06:04 - 00318464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-02-12 20:33 - 2014-11-26 07:43 - 00778240 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-12 20:33 - 2014-11-26 05:50 - 00567808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-02-12 20:30 - 2015-01-15 22:45 - 06973248 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-02-11 23:14 - 2015-02-25 19:56 - 00009581 _____ () C:\Users\Jindřich\Desktop\freimen fest.xlsx
2015-02-10 22:46 - 2015-02-10 22:47 - 02277380 _____ () C:\Users\Jindřich\Desktop\FIFA15.Crack.Only.v2.For.Update.4.rar
2015-02-06 23:57 - 2015-02-07 00:44 - 00000000 ____D () C:\Users\Jindřich\Documents\NHL09
2015-02-06 20:14 - 2015-02-06 20:14 - 00000000 ____D () C:\Users\Jindřich\AppData\Local\Introversion
2015-02-06 18:21 - 2015-02-06 18:21 - 00000000 ____D () C:\Users\Jindřich\Downloads\EA Sports
2015-02-05 12:02 - 2015-02-24 17:44 - 00000000 ____D () C:\Users\Jindřich\Documents\FIFA 15
2015-02-05 12:01 - 2015-02-05 12:01 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-05 11:47 - 2015-02-05 11:54 - 00000000 ____D () C:\Users\Jindřich\Downloads\GMT-MAX.ORG_FIFAF15.Update.1-4.and.Crack
2015-02-04 22:14 - 2015-02-24 18:27 - 00000000 ____D () C:\Users\Jindřich\Downloads\3DMGAME-FIFA.15.PC.Ultimate.Team.Edition-3DM
2015-02-04 19:25 - 2015-02-27 10:30 - 00000970 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-04 19:25 - 2015-02-26 22:26 - 00000966 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-02 15:46 - 2015-02-02 15:46 - 00000000 ____D () C:\ProgramData\Steam
2015-02-02 15:46 - 2015-02-02 15:46 - 00000000 ____D () C:\ProgramData\Codemasters
2015-02-02 15:44 - 2015-02-02 15:44 - 00001155 _____ () C:\Users\Public\Desktop\F1 2014.lnk
2015-02-02 15:44 - 2015-02-02 15:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codemasters
2015-02-02 15:37 - 2015-02-02 15:37 - 00000000 ____D () C:\Program Files (x86)\Codemasters
2015-02-01 12:14 - 2014-12-31 12:14 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-01-29 16:53 - 2015-01-29 17:16 - 502385543 _____ () C:\Users\Jindřich\Documents\Untitled.wmv
2015-01-29 14:55 - 2015-01-29 14:56 - 40519139 _____ () C:\Users\Jindřich\Downloads\sting template.rar
2015-01-29 14:27 - 2015-01-29 14:27 - 00000000 ____D () C:\Users\Jindřich\AppData\Roaming\Publish Providers
2015-01-29 14:22 - 2015-01-29 14:22 - 00001048 _____ () C:\Users\Public\Desktop\Vegas Pro 12.0 (64-bit).lnk
2015-01-29 14:21 - 2015-01-29 14:21 - 00000000 ____D () C:\ProgramData\Sony
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-02-27 19:10 - 2014-11-10 15:20 - 01510280 _____ () C:\Windows\WindowsUpdate.log
2015-02-27 19:02 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\AUInstallAgent
2015-02-27 19:00 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\system32\sru
2015-02-26 21:52 - 2012-07-26 08:22 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-02-26 21:50 - 2014-12-07 08:57 - 00025418 _____ () C:\Windows\setupact.log
2015-02-26 21:50 - 2013-03-13 21:34 - 00000000 ___HD () C:\Program Files (x86)\Temp
2015-02-26 21:46 - 2013-03-13 21:26 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-02-26 21:44 - 2014-12-07 19:31 - 00009656 _____ () C:\Windows\PFRO.log
2015-02-26 21:43 - 2014-11-25 23:36 - 00000000 ____D () C:\Users\Jindřich\AppData\Roaming\AIMP3
2015-02-26 21:42 - 2013-03-13 21:34 - 00000000 ____D () C:\Program Files (x86)\Realtek
2015-02-26 21:37 - 2014-11-11 11:11 - 00001456 _____ () C:\Users\Jindřich\AppData\Local\Adobe Save for Web 13.0 Prefs
2015-02-26 19:28 - 2014-11-16 14:22 - 00000000 ____D () C:\Users\Jindřich\Documents\Assassin's Creed Unity
2015-02-26 18:29 - 2012-07-26 06:26 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-02-26 17:00 - 2013-02-22 10:19 - 00791060 _____ () C:\Windows\system32\perfh00C.dat
2015-02-26 17:00 - 2013-02-22 10:19 - 00155620 _____ () C:\Windows\system32\perfc00C.dat
2015-02-26 17:00 - 2013-02-22 09:15 - 00728526 _____ () C:\Windows\system32\perfh005.dat
2015-02-26 17:00 - 2013-02-22 09:15 - 00148542 _____ () C:\Windows\system32\perfc005.dat
2015-02-26 17:00 - 2012-07-26 08:28 - 02664590 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-02-26 11:06 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\rescache
2015-02-26 10:30 - 2014-11-09 22:41 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3138791764-2514349817-933611605-1002
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\uk-UA
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\sr-Latn-CS
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\sl-SI
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\sk-SK
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\lv-LV
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\lt-LT
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\hr-HR
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\he-IL
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\et-EE
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\bg-BG
2015-02-26 07:50 - 2015-01-26 23:08 - 00000000 ____D () C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-02-26 07:47 - 2015-01-26 23:07 - 00000000 ____D () C:\ProgramData\Apple
2015-02-26 00:36 - 2014-12-08 21:46 - 00000000 ____D () C:\Users\Jindřich\Desktop\utmp
2015-02-26 00:36 - 2014-11-10 22:26 - 00000600 _____ () C:\Users\Jindřich\PUTTY.RND
2015-02-26 00:14 - 2012-07-26 09:12 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-26 00:14 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\ro-RO
2015-02-26 00:14 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\system32\ro-RO
2015-02-26 00:14 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-02-25 21:22 - 2014-12-30 19:03 - 00000000 ____D () C:\Users\Jindřich\Documents\FIFA 14
2015-02-25 19:07 - 2014-11-10 05:49 - 00000000 ____D () C:\Users\Jindřich\AppData\Local\CrashDumps
2015-02-24 22:03 - 2012-07-26 08:59 - 00000000 ____D () C:\Windows\CbsTemp
2015-02-24 21:08 - 2015-01-04 00:01 - 00001377 _____ () C:\Users\Public\Desktop\Just Cause 2.lnk
2015-02-24 21:05 - 2014-11-17 22:03 - 00000000 ____D () C:\ProgramData\Origin
2015-02-24 21:05 - 2014-11-17 22:03 - 00000000 ____D () C:\Program Files (x86)\Origin
2015-02-24 18:38 - 2014-11-09 23:11 - 00000000 ____D () C:\Users\Jindřich\AppData\Roaming\uTorrent
2015-02-23 17:02 - 2012-07-26 06:26 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-02-20 10:31 - 2014-11-09 22:44 - 00002193 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-02-19 07:02 - 2015-01-15 13:39 - 973559579 _____ () C:\Windows\MEMORY.DMP
2015-02-19 07:02 - 2014-11-28 22:58 - 00000000 ____D () C:\Windows\Minidump
2015-02-17 17:15 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\system32\NDF
2015-02-15 22:03 - 2014-11-21 12:18 - 06816728 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-15 21:56 - 2014-11-14 16:53 - 00000000 ____D () C:\Windows\system32\MRT
2015-02-15 21:56 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\WinStore
2015-02-15 21:52 - 2014-11-14 16:53 - 116773704 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-02-13 08:15 - 2015-01-11 12:42 - 00000000 ____D () C:\Users\Jindřich\Desktop\Fan Page
2015-02-06 20:13 - 2014-11-28 16:22 - 00000000 ____D () C:\Users\Jindřich\Desktop\Prison Architect Alpha 27
2015-02-04 19:25 - 2014-11-09 22:43 - 00003942 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-02-04 19:25 - 2014-11-09 22:43 - 00003706 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-02-03 20:29 - 2014-11-14 17:39 - 00714184 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-02-03 20:29 - 2014-11-14 17:39 - 00106440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-02-02 15:46 - 2014-11-18 19:05 - 00000000 ____D () C:\Users\Jindřich\Documents\My Games
2015-02-01 01:52 - 2014-12-30 19:25 - 00000000 ____D () C:\Users\Jindřich\AppData\Roaming\Skype
2015-01-29 15:06 - 2015-01-19 13:25 - 00000000 ____D () C:\Users\Jindřich\AppData\Roaming\Sony
2015-01-29 14:27 - 2015-01-19 13:48 - 00002656 _____ () C:\Users\Jindřich\Documents\Register Vegas Pro.htm
2015-01-29 14:21 - 2015-01-19 13:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-01-29 14:21 - 2015-01-19 13:26 - 00000000 ____D () C:\Program Files\Sony
==================== Files in the root of some directories =======
2015-02-24 19:28 - 2015-02-24 19:28 - 0033792 _____ () C:\Users\Jindřich\AppData\Roaming\cmsetac.dll
2015-02-24 18:15 - 2015-02-24 20:07 - 0001962 _____ () C:\Users\Jindřich\AppData\Roaming\KB8888239.log
2014-11-11 11:11 - 2015-02-26 21:37 - 0001456 _____ () C:\Users\Jindřich\AppData\Local\Adobe Save for Web 13.0 Prefs
2015-01-02 01:56 - 2015-01-02 01:56 - 0000000 ___SH () C:\Users\Jindřich\AppData\Local\LumaEmu
Some zero byte size files/folders:
==========================
C:\Windows\System32\audiosrv.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-02-12 14:03
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (OS_Install) (Fixed) (Total:467.82 GB) (Free:153.05 GB) NTFS
Drive d: (Data) (Fixed) (Total:211.66 GB) (Free:103.93 GB) NTFS
Drive g: (EOS_DIGITAL) (Removable) (Total:14.96 GB) (Free:3.96 GB) FAT32
Available physical RAM: 5019.61 MB
Total physical RAM: 8080.72 MB
Percentage of memory in use: 37%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 698.6 GB) (Disk ID: DD07544E)
Disk: 1 (Size: 15 GB) (Disk ID: 00000000)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Norton Internet Security (Disabled - Out of date) {D87FA2C0-F526-77B1-D6EC-0EDF3936CEDB}
AS: Norton Internet Security (Disabled - Out of date) {631E4324-D31C-783F-EC5C-35AD42B18466}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Norton Internet Security (Disabled) {E04423E5-BF49-76E9-FDB3-A7EAC7E589A0}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Jind�ich\Desktop" je 21427 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
včera jsem se koukal na film a z ničeho nic se vypl zvuk, dole v rohu mi to píše "Služba zvuku není spuštěna" v services.msc mi nejde nahodit service "audiosrv" vypisuje chybu, reinstalace driverů atp. nepomohla, tak se obávám nějákého červa, který si hraje s "audiosrv" popřípadě s něčím jiným. Díky za pomoc..
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-02-2015 01
Ran by Jindřich (administrator) on WHZY on 27-02-2015 19:10:53
Running from C:\Users\Jindřich\Desktop
Loaded Profiles: Jindřich (Available profiles: Jindřich)
Platform: Windows 8 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 10 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Autodesk Inc.) C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Anti-Theft\Engine\1.10.0.9\NAT.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Windows\SysWOW64\PnkBstrB.exe
() C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\NIS.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\NIS.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Anti-Theft\Engine\1.10.0.9\NAT.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\LiveComm.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe
(WinZip Computing, S.L.) C:\Program Files\WinZip\WZQKPICK32.EXE
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Windows\WinStore\WSHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Jindřich\Desktop\FRSTLauncher (1).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2859344 2013-03-13] (ELAN Microelectronics Corp.)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
HKLM\...\Run: [Radio Manager] => C:\Program Files (x86)\SCM\Radio Manager.exe [403848 2012-09-13] (MSI)
HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [399776 2012-09-13] (MSI)
HKLM\...\Run: [THXCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\THXCfg64.dll,RunDLLEntry THXCfg64
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13667032 2014-01-20] (Realtek Semiconductor)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-09-02] (Intel Corporation)
HKLM-x32\...\Run: [THX Audio Control Panel] => C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe [1517056 2011-08-30] (Creative Technology Ltd)
HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [490480 2013-02-07] (MSI)
HKLM-x32\...\Run: [BlueStacks Agent] => c:\Program Files (x86)\BlueStacks\HD-Agent.exe [597880 2013-01-07] (BlueStack Systems, Inc.)
HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [477064 2013-12-22] (Autodesk Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3138791764-2514349817-933611605-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-29] (Piriform Ltd)
HKU\S-1-5-21-3138791764-2514349817-933611605-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [1305408 2011-01-20] (DT Soft Ltd)
HKU\S-1-5-21-3138791764-2514349817-933611605-1002\...\Run: [SandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [785416 2015-02-18] (Sandboxie Holdings, LLC)
HKU\S-1-5-21-3138791764-2514349817-933611605-1002\...\MountPoints2: {6a3ceb37-6923-11e4-be7c-0cd292264c64} - "F:\WD Drive Unlock.exe" autoplay=true
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [174856 2014-11-04] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [156840 2014-11-04] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Qualcomm Atheros Killer Network Manager.lnk
ShortcutTarget: Qualcomm Atheros Killer Network Manager.lnk -> C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Quick Pick.lnk
ShortcutTarget: WinZip Quick Pick.lnk -> C:\Program Files\WinZip\WZQKPICK32.EXE (WinZip Computing, S.L.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
ProxyServer: [S-1-5-21-3138791764-2514349817-933611605-1002] => 127.0.0.1:9666
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3138791764-2514349817-933611605-1002 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.bing.com/search?FORM=UP97DF& ... -SearchBox
SearchScopes: HKU\S-1-5-21-3138791764-2514349817-933611605-1002 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.bing.com/search?FORM=UP97DF& ... -SearchBox
SearchScopes: HKU\S-1-5-21-3138791764-2514349817-933611605-1002 -> {ED1A0152-3C38-4BCD-BAFC-D15E66390332} URL = http://www.google.com/search?q={searchTerms}
BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Internet Security\Engine64\21.6.0.32\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\IPS\IPSBHO.DLL (Symantec Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine64\21.6.0.32\coIEPlg.dll (Symantec Corporation)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\coIEPlg.dll (Symantec Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{2C8D1927-0368-47D1-A3D2-630819F691E8}: [NameServer] 8.8.8.8
FireFox:
========
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.6.0.32\coFFPlgn
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.6.0.32\coFFPlgn [2015-02-26]
FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.6.0.32\IPSFF
FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.6.0.32\IPSFF [2014-12-16]
Chrome:
=======
CHR Profile: C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-11-09]
CHR Extension: (Google Docs) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-09]
CHR Extension: (Google Drive) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-09]
CHR Extension: (YouTube) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-11-09]
CHR Extension: (Facebook Secret Emoticons) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpgpffljkgjmijjdmjbdppndoojdgboe [2015-01-09]
CHR Extension: (Google Search) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-11-09]
CHR Extension: (Google Sheets) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-11-09]
CHR Extension: (AdBlock) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-11-09]
CHR Extension: (Facebook Emoticons) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkdlcejbjnnmjgajjjfenejacioiimpp [2015-01-09]
CHR Extension: (Google Wallet) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-09]
CHR Extension: (Gmail) - C:\Users\Jindřich\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-11-09]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\Exts\Chrome.crx [2014-12-16]
CHR HKU\S-1-5-21-3138791764-2514349817-933611605-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bmkckgpgekmanipelfidlhmkfcjicion] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\Exts\Chrome.crx [2014-12-16]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [576904 2013-12-22] (Autodesk Inc.)
S2 Audiosrv; C:\Windows\System32\Audiosrv.dll [0 2014-12-06] () <==== ATTENTION (zero size file/folder)
S2 BstHdAndroidSvc; c:\Program Files (x86)\BlueStacks\HD-Service.exe [393080 2013-01-07] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; c:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [384888 2013-01-07] (BlueStack Systems, Inc.)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148744 2014-11-06] (NVIDIA Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2013-03-13] (Intel Corporation)
R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2012-09-13] (Micro-Star International Co., Ltd.) [File not signed]
R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [154112 2013-02-08] (MSI) [File not signed]
R2 NAT; C:\Program Files (x86)\Norton Anti-Theft\Engine\1.10.0.9\NAT.exe [232424 2013-10-11] (Symantec Corporation)
R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\NIS.exe [276376 2014-09-21] (Symantec Corporation)
S3 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [4230016 2013-01-28] (Symantec Corporation)
R2 Norton PC Checkup Application Launcher; C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe [123320 2012-08-13] (Symantec Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1795912 2014-11-06] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19819848 2014-11-06] (NVIDIA Corporation)
R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1854056 2012-12-07] (Microsoft Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1910128 2015-01-29] (Electronic Arts)
R2 PCCUJobMgr; C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe [126392 2012-08-13] (Symantec Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2014-11-21] ()
R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [214520 2015-01-03] ()
R2 Qualcomm Atheros Killer Service; C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe [490496 2012-09-25] () [File not signed]
R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [175112 2015-02-18] (Sandboxie Holdings, LLC)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16032 2014-09-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [74096 2012-09-25] (Qualcomm Atheros, Inc.)
R3 BHDrvx64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.6.0.32\Definitions\BASHDefs\20141209.001\BHDrvx64.sys [1587416 2014-12-09] (Symantec Corporation)
R2 BstHdDrv; c:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [71032 2013-01-07] (BlueStack Systems)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [121728 2012-08-27] (Motorola Solutions, Inc.)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [857472 2012-08-29] (Motorola Solutions, Inc.)
R3 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0403000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation)
R1 ccSet_NAT; C:\Windows\system32\drivers\NATx64\010A000.009\ccSetx64.sys [150104 2013-07-29] (Symantec Corporation)
R3 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1506000.020\ccSetx64.sys [162392 2014-02-21] (Symantec Corporation)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [254528 2014-11-18] (DT Soft Ltd)
R3 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2014-11-25] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [142640 2014-11-25] (Symantec Corporation)
R3 IDSVia64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.6.0.32\Definitions\IPSDefs\20150107.001\IDSvia64.sys [637656 2015-01-07] (Symantec Corporation)
R3 ipadtst; C:\Program Files (x86)\MSI\Super-Charger\ipadtst_64.sys [19952 2013-02-01] (Windows (R) Win 7 DDK provider)
R3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [164720 2012-09-25] (Qualcomm Atheros, Inc.)
S3 NAVENG; C:\Program Files (x86)\Norton Internet Security\NortonData\21.6.0.32\Definitions\VirusDefs\20150108.036\ENG64.SYS [129752 2014-08-11] (Symantec Corporation)
S3 NAVEX15; C:\Program Files (x86)\Norton Internet Security\NortonData\21.6.0.32\Definitions\VirusDefs\20150108.036\EX64.SYS [2137304 2014-08-11] (Symantec Corporation)
R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [4293672 2013-03-13] (Intel Corporation)
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-26] (MSI)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19784 2014-11-06] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38216 2014-10-03] (NVIDIA Corporation)
U5 RTSPER; C:\Windows\System32\Drivers\RTSPER.sys [444632 2013-09-27] (Realsil Semiconductor Corporation)
R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [237064 2015-02-18] (Sandboxie Holdings, LLC)
S3 SRTSP; C:\Windows\System32\Drivers\NISx64\1506000.020\SRTSP64.SYS [876248 2014-08-26] (Symantec Corporation)
R3 SRTSPX; C:\Windows\system32\drivers\NISx64\1506000.020\SRTSPX64.SYS [37592 2014-08-26] (Symantec Corporation)
S3 ssudobex; C:\Windows\system32\DRIVERS\ssudobex.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr))
R3 SymDS; C:\Windows\system32\drivers\NISx64\1506000.020\SYMDS64.SYS [493656 2014-08-26] (Symantec Corporation)
R3 SymEFA; C:\Windows\system32\drivers\NISx64\1506000.020\SYMEFA64.SYS [1148120 2014-08-26] (Symantec Corporation)
S4 SymELAM; C:\Windows\system32\drivers\NISx64\1506000.020\SymELAM.sys [23568 2014-08-26] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2014-12-16] (Symantec Corporation)
R3 SymIRON; C:\Windows\system32\drivers\NISx64\1506000.020\Ironx64.SYS [266968 2014-08-06] (Symantec Corporation)
R3 SymNetS; C:\Windows\System32\Drivers\NISx64\1506000.020\SYMNETS.SYS [593112 2014-08-26] (Symantec Corporation)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2014-08-15] (Apple, Inc.) [File not signed]
S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [89088 2012-07-26] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-02-27 19:10 - 2015-02-27 19:11 - 00024009 _____ () C:\Users\Jindřich\Desktop\FRST.txt
2015-02-27 19:10 - 2015-02-27 19:10 - 00000000 ____D () C:\FRST
2015-02-27 19:09 - 2015-02-27 19:09 - 00112640 _____ (forum.viry.cz) C:\Users\Jindřich\Downloads\Nepotvrzeno 42753.crdownload
2015-02-27 19:09 - 2015-02-27 19:09 - 00112640 _____ (forum.viry.cz) C:\Users\Jindřich\Desktop\FRSTLauncher (1).exe
2015-02-27 19:08 - 2015-02-27 19:09 - 02087936 _____ (Farbar) C:\Users\Jindřich\Desktop\FRST64.exe
2015-02-26 21:49 - 2015-02-26 21:49 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2015-02-26 21:49 - 2015-02-26 21:49 - 00000000 ____D () C:\Program Files\Realtek
2015-02-26 21:48 - 2014-02-04 00:45 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2015-02-26 21:48 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2015-02-26 21:48 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2015-02-26 21:48 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2015-02-26 21:48 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2015-02-26 21:47 - 2014-02-18 19:42 - 03867992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2015-02-26 21:47 - 2014-02-18 17:33 - 00624344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2015-02-26 21:47 - 2014-02-18 17:04 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-02-26 21:47 - 2014-02-18 16:56 - 00749977 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT
2015-02-26 21:47 - 2014-02-18 14:33 - 00946392 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2015-02-26 21:47 - 2014-02-18 10:35 - 01024216 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2015-02-26 21:47 - 2014-02-17 16:04 - 02788056 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2015-02-26 21:47 - 2014-02-04 00:45 - 02037336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2015-02-26 21:47 - 2014-02-04 00:45 - 01033304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-02-26 21:47 - 2014-01-28 11:48 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2015-02-26 21:47 - 2014-01-08 15:25 - 00397592 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll
2015-02-26 21:47 - 2013-12-31 11:16 - 02825432 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2015-02-26 21:47 - 2013-12-04 16:27 - 01958616 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2015-02-26 21:47 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2015-02-26 21:47 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2015-02-26 21:47 - 2013-01-11 16:27 - 00628504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBTHX64.dll
2015-02-26 21:47 - 2013-01-11 16:27 - 00563992 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBTHX32.dll
2015-02-26 21:47 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2015-02-26 21:47 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2015-02-26 21:47 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2015-02-26 21:47 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2015-02-26 21:47 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2015-02-26 21:47 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2015-02-26 21:47 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2015-02-26 21:47 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2015-02-26 21:47 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2015-02-26 21:47 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2015-02-26 21:47 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2015-02-26 21:47 - 2009-11-18 07:12 - 00032344 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\MBfilt64.sys
2015-02-26 20:36 - 2015-02-26 21:41 - 221982547 _____ () C:\Users\Jindřich\Downloads\audio_realtek_6.0.1.7179_0x29f517cb_81700 (2).zip
2015-02-26 20:10 - 2015-02-26 20:10 - 00000827 _____ () C:\Users\Jindřich\Downloads\audio_realtek_6.0.1.7179_0x29f517cb_81700.zip
2015-02-26 20:10 - 2015-02-26 20:10 - 00000827 _____ () C:\Users\Jindřich\Downloads\audio_realtek_6.0.1.7179_0x29f517cb_81700 (1).zip
2015-02-26 19:58 - 2015-02-26 19:58 - 00042496 _____ (Microsoft Corporation) C:\Users\Jindřich\Downloads\audiosrv.dll
2015-02-26 19:38 - 2015-02-26 20:07 - 79446932 _____ () C:\Users\Jindřich\Downloads\Nepotvrzeno 760280.crdownload
2015-02-26 19:37 - 2015-02-26 19:37 - 00000000 ____D () C:\Windows\SysWOW64\sda
2015-02-26 19:37 - 2013-09-27 07:44 - 00444632 _____ (Realsil Semiconductor Corporation) C:\Windows\system32\Drivers\RtsPer.sys
2015-02-26 19:35 - 2015-02-26 19:36 - 10801552 _____ () C:\Users\Jindřich\Downloads\cr_rts5249_6.2.9600.21242_0xb2eab4e9_w8100.zip
2015-02-26 19:11 - 2015-02-26 19:28 - 51733249 _____ (Realtek Semiconductor Corp.) C:\Users\Jindřich\Downloads\32bit_Vista_Win7_Win8_R270.exe
2015-02-26 07:45 - 2015-02-26 07:45 - 00003374 _____ () C:\Windows\System32\Tasks\{0A6F250D-3B6A-4EEF-93FF-D2E3004CAED6}
2015-02-26 07:29 - 2015-02-26 07:29 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf
2015-02-26 00:12 - 2015-02-26 00:12 - 00000000 ____D () C:\Users\Jindřich\AppData\Roaming\WebApp
2015-02-25 23:25 - 2015-02-25 23:26 - 00000000 ____D () C:\ProgramData\CyberLink
2015-02-25 23:25 - 2015-02-25 23:25 - 00000000 ____D () C:\Users\Jindřich\Documents\CyberLink
2015-02-25 23:25 - 2015-02-25 23:25 - 00000000 ____D () C:\Users\Jindřich\AppData\Roaming\CyberLink
2015-02-24 22:03 - 2015-01-09 07:43 - 00951808 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2015-02-24 22:03 - 2015-01-09 06:03 - 00601088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2015-02-24 22:03 - 2015-01-09 00:52 - 00478296 _____ () C:\Windows\SysWOW64\locale.nls
2015-02-24 22:03 - 2015-01-09 00:52 - 00478296 _____ () C:\Windows\system32\locale.nls
2015-02-24 21:01 - 2015-02-24 21:15 - 15918329 _____ () C:\Users\Jindřich\Downloads\Just-cause-2-crack-only-skidrow.rar
2015-02-24 20:06 - 2015-02-24 20:06 - 200990647 _____ () C:\Users\Jindřich\Downloads\Fifa 15 v4 crack.rar
2015-02-24 19:42 - 2015-02-24 19:42 - 00000000 ____D () C:\Users\Jindřich\Documents\Square Enix
2015-02-24 19:28 - 2015-02-24 19:28 - 00033792 _____ () C:\Users\Jindřich\AppData\Roaming\cmsetac.dll
2015-02-24 19:03 - 2015-02-24 19:20 - 65552074 _____ () C:\Users\Jindřich\Downloads\FIFA15 Up 1-4 and Crack v2-3DM.iso
2015-02-24 18:29 - 2015-02-24 18:30 - 00025160 _____ () C:\Users\Jindřich\Downloads\[kickass.to]fifa.15.crack.v.2.update.4.by.3dm.torrent
2015-02-24 18:21 - 2015-02-01 08:37 - 00000030 _____ () C:\Users\Jindřich\Desktop\3dmgame.ini
2015-02-24 18:15 - 2015-02-24 20:07 - 00001962 _____ () C:\Users\Jindřich\AppData\Roaming\KB8888239.log
2015-02-24 18:14 - 2014-09-10 09:58 - 00514560 _____ () C:\Windows\SysWOW64\Launcher.exe
2015-02-24 18:14 - 2014-09-03 02:18 - 00894071 _____ () C:\Windows\SysWOW64\Tools.exe
2015-02-24 18:03 - 2015-02-24 18:08 - 02145780 _____ () C:\Users\Jindřich\Downloads\FIFA15_3DM_CRACk_V2_FOR_UPDATE_4.rar
2015-02-24 17:50 - 2015-02-24 20:36 - 00000533 _____ () C:\Users\Public\Desktop\FIFA 15.lnk
2015-02-24 17:50 - 2015-02-24 17:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 15
2015-02-24 15:59 - 2015-02-24 15:59 - 00000000 ____D () C:\Users\Jindřich\Documents\Ghost Games
2015-02-24 15:35 - 2015-02-24 15:36 - 00017647 _____ () C:\Windows\DirectX.log
2015-02-23 17:14 - 2015-02-23 17:14 - 00000000 ___RD () C:\Sandbox
2015-02-23 17:13 - 2015-02-24 18:47 - 00001752 _____ () C:\Windows\Sandboxie.ini
2015-02-23 17:13 - 2015-02-23 17:13 - 00000892 _____ () C:\Users\Jindřich\Desktop\Sandbox webový prohlížeč.lnk
2015-02-23 17:13 - 2015-02-23 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie
2015-02-23 17:13 - 2015-02-23 17:13 - 00000000 ____D () C:\Program Files\Sandboxie
2015-02-23 17:09 - 2015-02-23 17:13 - 06980616 _____ (Sandboxie Holdings, LLC) C:\Users\Jindřich\Downloads\SandboxieInstall.exe
2015-02-22 19:54 - 2015-02-22 20:04 - 327392061 _____ () C:\Users\Jindřich\Desktop\Untitled.wmv
2015-02-22 19:42 - 2015-02-22 19:43 - 247281904 _____ () C:\Users\Jindřich\Desktop\MVI_4958.MOV
2015-02-22 19:42 - 2015-02-22 19:43 - 00064280 _____ () C:\Users\Jindřich\Desktop\MVI_4958.MOV.sfk
2015-02-22 19:42 - 2015-02-22 19:42 - 23033552 _____ () C:\Users\Jindřich\Desktop\MVI_4957.MOV
2015-02-22 19:17 - 2015-02-22 19:37 - 00000000 ____D () C:\Users\Jindřich\Desktop\sabča honza trénink
2015-02-19 07:02 - 2015-02-19 07:05 - 00486960 _____ () C:\Windows\Minidump\021915-47296-01.dmp
2015-02-18 23:58 - 2015-02-18 23:58 - 05635532 _____ () C:\Users\Jindřich\Desktop\Page_A4.psd
2015-02-16 17:04 - 2015-01-23 06:50 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-02-16 17:04 - 2015-01-23 05:27 - 02864640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-02-15 18:43 - 2015-02-15 18:53 - 218847737 _____ () C:\Users\Jindřich\Desktop\honza2.wmv
2015-02-15 16:19 - 2015-02-15 16:32 - 00000000 ____D () C:\Users\Jindřich\Downloads\Need.For.Speed.Rivals-RELOADED
2015-02-15 13:44 - 2015-02-15 14:03 - 527609603 _____ () C:\Users\Jindřich\Desktop\honza.wmv
2015-02-12 21:21 - 2015-01-12 07:49 - 02237952 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-02-12 21:21 - 2015-01-12 07:49 - 01409536 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-02-12 21:21 - 2015-01-12 07:49 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2015-02-12 21:21 - 2015-01-12 07:49 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-02-12 21:21 - 2015-01-12 07:48 - 19291136 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-02-12 21:21 - 2015-01-12 07:48 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-02-12 21:21 - 2015-01-12 07:47 - 15403008 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-02-12 21:21 - 2015-01-12 07:47 - 02655744 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-02-12 21:21 - 2015-01-12 07:47 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-02-12 21:21 - 2015-01-12 07:47 - 00451584 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-02-12 21:21 - 2015-01-12 07:46 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-02-12 21:21 - 2015-01-12 06:07 - 01762816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-02-12 21:21 - 2015-01-12 06:07 - 01181696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-02-12 21:21 - 2015-01-12 06:07 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-02-12 21:21 - 2015-01-12 06:06 - 14373376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-02-12 21:21 - 2015-01-12 06:06 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-02-12 21:21 - 2015-01-12 06:06 - 02055168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-02-12 21:21 - 2015-01-12 06:06 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-02-12 21:21 - 2015-01-12 06:06 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-02-12 21:21 - 2015-01-12 06:06 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-02-12 21:21 - 2015-01-12 05:16 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-02-12 21:21 - 2015-01-12 04:46 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-02-12 20:36 - 2015-01-15 12:44 - 01043968 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2015-02-12 20:36 - 2015-01-15 12:44 - 00588288 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2015-02-12 20:36 - 2015-01-15 12:43 - 01282560 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-02-12 20:36 - 2015-01-15 11:00 - 00961536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2015-02-12 20:36 - 2015-01-15 11:00 - 00452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2015-02-12 20:36 - 2015-01-15 10:38 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-02-12 20:36 - 2015-01-15 10:09 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-02-12 20:36 - 2015-01-15 05:08 - 00568656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-02-12 20:36 - 2015-01-12 07:49 - 01627648 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-02-12 20:36 - 2015-01-12 06:07 - 01338880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-02-12 20:36 - 2015-01-09 05:33 - 04061696 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-02-12 20:36 - 2014-12-18 09:51 - 00096576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2015-02-12 20:36 - 2014-12-18 07:52 - 00889344 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-02-12 20:36 - 2014-12-18 07:51 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-02-12 20:36 - 2014-12-18 07:50 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2015-02-12 20:36 - 2014-12-18 07:20 - 00702464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2015-02-12 20:35 - 2015-01-29 09:30 - 00593408 _____ (Microsoft Corporation) C:\Windows\system32\AutoUpdate.exe
2015-02-12 20:35 - 2015-01-29 09:30 - 00467952 _____ (Microsoft Corporation) C:\Windows\system32\NotificationUI.exe
2015-02-12 20:35 - 2015-01-29 09:30 - 00011056 _____ () C:\Windows\system32\AutoconfigV2.cab
2015-02-12 20:35 - 2015-01-29 09:05 - 00695808 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-02-12 20:35 - 2015-01-29 09:05 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-02-12 20:35 - 2015-01-29 07:19 - 00568832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-02-12 20:35 - 2015-01-29 07:19 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-02-12 20:33 - 2014-12-09 00:14 - 00391526 _____ () C:\Windows\system32\ApnDatabase.xml
2015-02-12 20:33 - 2014-12-08 07:48 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-12 20:33 - 2014-12-08 06:04 - 00318464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-02-12 20:33 - 2014-11-26 07:43 - 00778240 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-12 20:33 - 2014-11-26 05:50 - 00567808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-02-12 20:30 - 2015-01-15 22:45 - 06973248 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-02-11 23:14 - 2015-02-25 19:56 - 00009581 _____ () C:\Users\Jindřich\Desktop\freimen fest.xlsx
2015-02-10 22:46 - 2015-02-10 22:47 - 02277380 _____ () C:\Users\Jindřich\Desktop\FIFA15.Crack.Only.v2.For.Update.4.rar
2015-02-06 23:57 - 2015-02-07 00:44 - 00000000 ____D () C:\Users\Jindřich\Documents\NHL09
2015-02-06 20:14 - 2015-02-06 20:14 - 00000000 ____D () C:\Users\Jindřich\AppData\Local\Introversion
2015-02-06 18:21 - 2015-02-06 18:21 - 00000000 ____D () C:\Users\Jindřich\Downloads\EA Sports
2015-02-05 12:02 - 2015-02-24 17:44 - 00000000 ____D () C:\Users\Jindřich\Documents\FIFA 15
2015-02-05 12:01 - 2015-02-05 12:01 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-05 11:47 - 2015-02-05 11:54 - 00000000 ____D () C:\Users\Jindřich\Downloads\GMT-MAX.ORG_FIFAF15.Update.1-4.and.Crack
2015-02-04 22:14 - 2015-02-24 18:27 - 00000000 ____D () C:\Users\Jindřich\Downloads\3DMGAME-FIFA.15.PC.Ultimate.Team.Edition-3DM
2015-02-04 19:25 - 2015-02-27 10:30 - 00000970 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-04 19:25 - 2015-02-26 22:26 - 00000966 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-02 15:46 - 2015-02-02 15:46 - 00000000 ____D () C:\ProgramData\Steam
2015-02-02 15:46 - 2015-02-02 15:46 - 00000000 ____D () C:\ProgramData\Codemasters
2015-02-02 15:44 - 2015-02-02 15:44 - 00001155 _____ () C:\Users\Public\Desktop\F1 2014.lnk
2015-02-02 15:44 - 2015-02-02 15:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codemasters
2015-02-02 15:37 - 2015-02-02 15:37 - 00000000 ____D () C:\Program Files (x86)\Codemasters
2015-02-01 12:14 - 2014-12-31 12:14 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-01-29 16:53 - 2015-01-29 17:16 - 502385543 _____ () C:\Users\Jindřich\Documents\Untitled.wmv
2015-01-29 14:55 - 2015-01-29 14:56 - 40519139 _____ () C:\Users\Jindřich\Downloads\sting template.rar
2015-01-29 14:27 - 2015-01-29 14:27 - 00000000 ____D () C:\Users\Jindřich\AppData\Roaming\Publish Providers
2015-01-29 14:22 - 2015-01-29 14:22 - 00001048 _____ () C:\Users\Public\Desktop\Vegas Pro 12.0 (64-bit).lnk
2015-01-29 14:21 - 2015-01-29 14:21 - 00000000 ____D () C:\ProgramData\Sony
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-02-27 19:10 - 2014-11-10 15:20 - 01510280 _____ () C:\Windows\WindowsUpdate.log
2015-02-27 19:02 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\AUInstallAgent
2015-02-27 19:00 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\system32\sru
2015-02-26 21:52 - 2012-07-26 08:22 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-02-26 21:50 - 2014-12-07 08:57 - 00025418 _____ () C:\Windows\setupact.log
2015-02-26 21:50 - 2013-03-13 21:34 - 00000000 ___HD () C:\Program Files (x86)\Temp
2015-02-26 21:46 - 2013-03-13 21:26 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-02-26 21:44 - 2014-12-07 19:31 - 00009656 _____ () C:\Windows\PFRO.log
2015-02-26 21:43 - 2014-11-25 23:36 - 00000000 ____D () C:\Users\Jindřich\AppData\Roaming\AIMP3
2015-02-26 21:42 - 2013-03-13 21:34 - 00000000 ____D () C:\Program Files (x86)\Realtek
2015-02-26 21:37 - 2014-11-11 11:11 - 00001456 _____ () C:\Users\Jindřich\AppData\Local\Adobe Save for Web 13.0 Prefs
2015-02-26 19:28 - 2014-11-16 14:22 - 00000000 ____D () C:\Users\Jindřich\Documents\Assassin's Creed Unity
2015-02-26 18:29 - 2012-07-26 06:26 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-02-26 17:00 - 2013-02-22 10:19 - 00791060 _____ () C:\Windows\system32\perfh00C.dat
2015-02-26 17:00 - 2013-02-22 10:19 - 00155620 _____ () C:\Windows\system32\perfc00C.dat
2015-02-26 17:00 - 2013-02-22 09:15 - 00728526 _____ () C:\Windows\system32\perfh005.dat
2015-02-26 17:00 - 2013-02-22 09:15 - 00148542 _____ () C:\Windows\system32\perfc005.dat
2015-02-26 17:00 - 2012-07-26 08:28 - 02664590 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-02-26 11:06 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\rescache
2015-02-26 10:30 - 2014-11-09 22:41 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3138791764-2514349817-933611605-1002
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\uk-UA
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\sr-Latn-CS
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\sl-SI
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\sk-SK
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\lv-LV
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\lt-LT
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\hr-HR
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\he-IL
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\et-EE
2015-02-26 10:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\bg-BG
2015-02-26 07:50 - 2015-01-26 23:08 - 00000000 ____D () C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-02-26 07:47 - 2015-01-26 23:07 - 00000000 ____D () C:\ProgramData\Apple
2015-02-26 00:36 - 2014-12-08 21:46 - 00000000 ____D () C:\Users\Jindřich\Desktop\utmp
2015-02-26 00:36 - 2014-11-10 22:26 - 00000600 _____ () C:\Users\Jindřich\PUTTY.RND
2015-02-26 00:14 - 2012-07-26 09:12 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-26 00:14 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\SysWOW64\ro-RO
2015-02-26 00:14 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\system32\ro-RO
2015-02-26 00:14 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-02-25 21:22 - 2014-12-30 19:03 - 00000000 ____D () C:\Users\Jindřich\Documents\FIFA 14
2015-02-25 19:07 - 2014-11-10 05:49 - 00000000 ____D () C:\Users\Jindřich\AppData\Local\CrashDumps
2015-02-24 22:03 - 2012-07-26 08:59 - 00000000 ____D () C:\Windows\CbsTemp
2015-02-24 21:08 - 2015-01-04 00:01 - 00001377 _____ () C:\Users\Public\Desktop\Just Cause 2.lnk
2015-02-24 21:05 - 2014-11-17 22:03 - 00000000 ____D () C:\ProgramData\Origin
2015-02-24 21:05 - 2014-11-17 22:03 - 00000000 ____D () C:\Program Files (x86)\Origin
2015-02-24 18:38 - 2014-11-09 23:11 - 00000000 ____D () C:\Users\Jindřich\AppData\Roaming\uTorrent
2015-02-23 17:02 - 2012-07-26 06:26 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-02-20 10:31 - 2014-11-09 22:44 - 00002193 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-02-19 07:02 - 2015-01-15 13:39 - 973559579 _____ () C:\Windows\MEMORY.DMP
2015-02-19 07:02 - 2014-11-28 22:58 - 00000000 ____D () C:\Windows\Minidump
2015-02-17 17:15 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\system32\NDF
2015-02-15 22:03 - 2014-11-21 12:18 - 06816728 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-15 21:56 - 2014-11-14 16:53 - 00000000 ____D () C:\Windows\system32\MRT
2015-02-15 21:56 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\WinStore
2015-02-15 21:52 - 2014-11-14 16:53 - 116773704 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-02-13 08:15 - 2015-01-11 12:42 - 00000000 ____D () C:\Users\Jindřich\Desktop\Fan Page
2015-02-06 20:13 - 2014-11-28 16:22 - 00000000 ____D () C:\Users\Jindřich\Desktop\Prison Architect Alpha 27
2015-02-04 19:25 - 2014-11-09 22:43 - 00003942 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-02-04 19:25 - 2014-11-09 22:43 - 00003706 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-02-03 20:29 - 2014-11-14 17:39 - 00714184 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-02-03 20:29 - 2014-11-14 17:39 - 00106440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-02-02 15:46 - 2014-11-18 19:05 - 00000000 ____D () C:\Users\Jindřich\Documents\My Games
2015-02-01 01:52 - 2014-12-30 19:25 - 00000000 ____D () C:\Users\Jindřich\AppData\Roaming\Skype
2015-01-29 15:06 - 2015-01-19 13:25 - 00000000 ____D () C:\Users\Jindřich\AppData\Roaming\Sony
2015-01-29 14:27 - 2015-01-19 13:48 - 00002656 _____ () C:\Users\Jindřich\Documents\Register Vegas Pro.htm
2015-01-29 14:21 - 2015-01-19 13:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-01-29 14:21 - 2015-01-19 13:26 - 00000000 ____D () C:\Program Files\Sony
==================== Files in the root of some directories =======
2015-02-24 19:28 - 2015-02-24 19:28 - 0033792 _____ () C:\Users\Jindřich\AppData\Roaming\cmsetac.dll
2015-02-24 18:15 - 2015-02-24 20:07 - 0001962 _____ () C:\Users\Jindřich\AppData\Roaming\KB8888239.log
2014-11-11 11:11 - 2015-02-26 21:37 - 0001456 _____ () C:\Users\Jindřich\AppData\Local\Adobe Save for Web 13.0 Prefs
2015-01-02 01:56 - 2015-01-02 01:56 - 0000000 ___SH () C:\Users\Jindřich\AppData\Local\LumaEmu
Some zero byte size files/folders:
==========================
C:\Windows\System32\audiosrv.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-02-12 14:03
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (OS_Install) (Fixed) (Total:467.82 GB) (Free:153.05 GB) NTFS
Drive d: (Data) (Fixed) (Total:211.66 GB) (Free:103.93 GB) NTFS
Drive g: (EOS_DIGITAL) (Removable) (Total:14.96 GB) (Free:3.96 GB) FAT32
Available physical RAM: 5019.61 MB
Total physical RAM: 8080.72 MB
Percentage of memory in use: 37%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 698.6 GB) (Disk ID: DD07544E)
Disk: 1 (Size: 15 GB) (Disk ID: 00000000)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Norton Internet Security (Disabled - Out of date) {D87FA2C0-F526-77B1-D6EC-0EDF3936CEDB}
AS: Norton Internet Security (Disabled - Out of date) {631E4324-D31C-783F-EC5C-35AD42B18466}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Norton Internet Security (Disabled) {E04423E5-BF49-76E9-FDB3-A7EAC7E589A0}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Jind�ich\Desktop" je 21427 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================