prohlížeč
Napsal: 26 kvě 2015 09:34
Dobrý den,
automaticky se mi v Chromu otevírají stránky.
Prosím o kontrolu logu.
Děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-05-2015
Ran by Aldair (administrator) on MSI on 26-05-2015 10:30:27
Running from C:\Users\Aldair\Desktop
Loaded Profiles: Aldair (Available Profiles: Aldair)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Logitech Inc.) C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Innova Co S.a r.l.) C:\Program Files (x86)\4game\3.4.22.118\4game-service.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdcBase.exe
(O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodtray.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
() C:\Program Files (x86)\MSI\MSI VGA Overclock Tool\VGAOCAP.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\System Control Manager\MSIService.exe
(Micro-Star International) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
(MSI) C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe
(O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodag.exe
(ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM) C:\Windows\System32\PrintCtrl.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(ActMask Co.,Ltd - http://www.all2pdf.com) C:\Windows\System32\PrintDisp.exe
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13774040 2014-12-31] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-08] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdcBase.exe [660360 2007-05-31] (Microsoft Corporation)
HKLM\...\Run: [OODefragTray] => C:\Program Files\OO Software\Defrag\oodtray.exe [4465448 2014-08-29] (O&O Software GmbH)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227648 2015-03-30] (AVAST Software)
HKLM-x32\...\Run: [VGAOCAP] => C:\Program Files (x86)\MSI\MSI VGA Overclock Tool\VGAOCAP.exe [89088 2012-06-06] ()
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\RunOnce: [20150107] => C:\Program Files\AVAST Software\Avast\setup\emupdate\d6a2cbeb-292c-44be-bd05-c9a11e4ff494.exe [183232 2015-05-26] (AVAST Software)
HKU\S-1-5-21-854197151-3482271168-3196824506-1000\...\MountPoints2: {93174084-1002-11e3-bb1c-806e6f6e6963} - F:\Launcher\LAUNCHER.EXE
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-01-30] (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
HKU\S-1-5-21-854197151-3482271168-3196824506-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gooe.cz/
SearchScopes: HKU\S-1-5-21-854197151-3482271168-3196824506-1000 -> DefaultScope {0AD56A9D-57FF-401E-846C-D19A1A5B19DE} URL = https://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-854197151-3482271168-3196824506-1000 -> {0AD56A9D-57FF-401E-846C-D19A1A5B19DE} URL = https://www.google.com/search?q={searchTerms}
BHO: No Name -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> No File
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-12-30] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-01-30] (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-12-30] (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-11-24] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-01-30] (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> No File
BHO-x32: Advanced SystemCare Surfing Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll [2015-04-01] (IObit)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-11-24] (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2013-02-26] (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll [2015-04-15] ()
FF Plugin: @java.com/DTPlugin,version=10.72.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-12-30] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.72.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-12-30] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2013-09-25] (VideoLAN)
FF Plugin-x32: @4game.com/plugin -> C:\Program Files (x86)\4game\3.4.22.118\npplugin4game.dll [2015-04-16] (Innova Co S.a r.l.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-15] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2014-11-24] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2014-11-24] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3522.0110 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-01-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-854197151-3482271168-3196824506-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Aldair\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited)
FF Plugin HKU\S-1-5-21-854197151-3482271168-3196824506-1000: sony.com/MediaGoDetector -> C:\Program Files (x86)\Sony\Media Go\npMediaGoDetector.dll [2013-04-25] (Sony Network Entertainment International LLC)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-08-28]
Chrome:
=======
CHR Profile: C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-10]
CHR Extension: (Google Docs) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-10]
CHR Extension: (Google Drive) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-10]
CHR Extension: (YouTube) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-10]
CHR Extension: (Google Search) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-10]
CHR Extension: (Bookmark Manager) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-15]
CHR Extension: (Avast Online Security) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-03-10]
CHR Extension: (Google Wallet) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-10]
CHR Extension: (Gmail) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-10]
CHR Profile: C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Google Slides) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-10]
CHR Extension: (Google Docs) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-10]
CHR Extension: (Google Drive) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-10]
CHR Extension: (YouTube) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-10]
CHR Extension: (Google Search) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-10]
CHR Extension: (Google Sheets) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-10]
CHR Extension: (Avast Online Security) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-03-10]
CHR Extension: (Google Wallet) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-10]
CHR Extension: (Gmail) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-10]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-01-30]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 4game-service; C:\Program Files (x86)\4game\3.4.22.118\4game-service.exe [1361544 2015-04-16] (Innova Co S.a r.l.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-01-30] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2015-01-30] (Avast Software)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-08] (NVIDIA Corporation)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [103808 2008-01-22] ()
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2585376 2015-03-26] (IObit)
R2 Micro Star SCM; C:\Program Files (x86)\System Control Manager\MSIService.exe [160768 2009-07-09] (Micro-Star International Co., Ltd.) []
R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [1722320 2014-08-26] (Micro-Star International)
R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe [162800 2014-03-17] (MSI)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-01-05] ()
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1884304 2015-05-08] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22997648 2015-05-08] (NVIDIA Corporation)
R2 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [1660200 2014-08-29] (O&O Software GmbH)
R2 Printer Control; C:\Windows\system32\PrintCtrl.exe [121856 2012-10-21] (ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM) []
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) []
S2 WDBackup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [1042808 2013-04-22] (Western Digital Technologies, Inc.)
R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [270192 2013-04-01] (Western Digital Technologies, Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 ALCATELUSB; C:\Windows\System32\Drivers\AlcatelUsb.sys [25088 2014-04-23] (Windows (R) Codename Longhorn DDK provider) []
S3 AndnetBus; C:\Windows\System32\DRIVERS\lgandnetbus64.sys [20992 2014-05-27] (LG Electronics Inc.)
S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [29184 2014-05-27] (LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [36352 2014-05-27] (LG Electronics Inc.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-01-30] ()
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28184 2015-02-09] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2015-01-30] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-01-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-01-30] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-01-30] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-01-30] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-01-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-01-30] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [279616 2013-09-01] (DT Soft Ltd)
S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [17480 2013-03-07] () []
S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [13896 2013-03-07] () []
S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9800 2013-03-07] () []
S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [9160 2013-03-07] () []
S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2013-07-18] () []
S3 h643331; C:\Windows\System32\drivers\h643331.sys [67432 2012-06-19] (Your Corporation)
S3 hid3331; C:\Windows\SysWOW64\drivers\hid3331.sys [45672 2012-06-19] (Your Corporation)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2014-12-30] (REALiX(tm))
S3 jrdusbser; C:\Windows\System32\DRIVERS\jrdusbser.sys [119680 2014-04-23] (TCT International Mobile Ltd) []
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super Charger\NTIOLib_X64.sys [13368 2012-10-25] (MSI)
R3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update\NTIOLib_X64.sys [14136 2010-10-22] (MSI)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-08] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [32496 2013-11-30] (Synaptics Incorporated)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2015-01-30] (Avast Software)
S3 dgderdrv; System32\drivers\dgderdrv.sys [X]
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
S3 massfilter; system32\drivers\massfilter.sys [X]
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-05-26 10:30 - 2015-05-26 10:31 - 00020494 _____ () C:\Users\Aldair\Desktop\FRST.txt
2015-05-26 10:29 - 2015-05-26 10:29 - 02108928 _____ (Farbar) C:\Users\Aldair\Desktop\FRST64.exe
2015-05-26 10:05 - 2015-05-26 10:05 - 00000000 ____D () C:\Users\Aldair\Documents\My Games
2015-05-26 10:01 - 2015-05-26 10:02 - 00000000 ____D () C:\Windows\LastGood
2015-05-26 10:00 - 2015-05-13 08:52 - 00195912 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2015-05-26 10:00 - 2015-05-13 08:52 - 00031552 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 42718864 _____ () C:\Windows\system32\nvcompiler.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 37741712 _____ () C:\Windows\SysWOW64\nvcompiler.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 30478992 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 22945424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 16145176 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 15858728 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 14455296 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 13263568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 11790144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 10972304 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-05-26 10:00 - 2015-05-12 08:27 - 02932368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 02599056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 01898312 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435286.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435286.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 01059984 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 01050256 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 00982672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 00974480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-05-26 09:34 - 2015-05-26 09:39 - 00045869 _____ () C:\Windows\WindowsUpdate.log
2015-05-26 06:52 - 2015-05-26 06:53 - 00000197 _____ () C:\Windows\system32\2015-05-26-04-52-32.005-AvastVBoxSVC.exe-4864.log
2015-05-25 09:36 - 2015-05-25 14:16 - 00000000 ____D () C:\Users\Aldair\Desktop\fotky eva fb
2015-05-25 05:59 - 2015-05-25 05:59 - 00000197 _____ () C:\Windows\system32\2015-05-25-03-59-09.030-AvastVBoxSVC.exe-4692.log
2015-05-24 07:29 - 2015-05-24 07:29 - 00000197 _____ () C:\Windows\system32\2015-05-24-05-29-29.016-AvastVBoxSVC.exe-5332.log
2015-05-23 10:25 - 2015-05-23 10:26 - 00000197 _____ () C:\Windows\system32\2015-05-23-08-25-43.030-AvastVBoxSVC.exe-5260.log
2015-05-22 06:27 - 2015-05-22 06:28 - 00000197 _____ () C:\Windows\system32\2015-05-22-04-27-51.025-AvastVBoxSVC.exe-5668.log
2015-05-21 15:12 - 2015-05-21 15:12 - 17488560 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2015-05-21 06:59 - 2015-05-21 07:00 - 00000197 _____ () C:\Windows\system32\2015-05-21-04-59-54.021-AvastVBoxSVC.exe-3328.log
2015-05-20 08:13 - 2015-05-20 08:14 - 00000197 _____ () C:\Windows\system32\2015-05-20-06-13-47.027-AvastVBoxSVC.exe-2556.log
2015-05-19 07:45 - 2015-05-19 07:45 - 00000197 _____ () C:\Windows\system32\2015-05-19-05-45-09.018-AvastVBoxSVC.exe-2276.log
2015-05-18 08:27 - 2015-05-18 08:28 - 00000197 _____ () C:\Windows\system32\2015-05-18-06-27-50.061-AvastVBoxSVC.exe-5080.log
2015-05-17 08:27 - 2015-05-17 08:27 - 00000197 _____ () C:\Windows\system32\2015-05-17-06-27-31.087-AvastVBoxSVC.exe-4424.log
2015-05-16 09:45 - 2015-05-16 09:45 - 00000197 _____ () C:\Windows\system32\2015-05-16-07-45-36.068-AvastVBoxSVC.exe-2856.log
2015-05-15 06:19 - 2015-05-15 06:19 - 00000197 _____ () C:\Windows\system32\2015-05-15-04-19-08.019-AvastVBoxSVC.exe-3448.log
2015-05-14 15:49 - 2015-05-14 15:49 - 00000197 _____ () C:\Windows\system32\2015-05-14-13-49-58.064-AvastVBoxSVC.exe-4232.log
2015-05-14 06:53 - 2015-05-14 06:53 - 00000197 _____ () C:\Windows\system32\2015-05-14-04-53-34.038-AvastVBoxSVC.exe-4800.log
2015-05-13 21:03 - 2015-05-13 21:03 - 00000197 _____ () C:\Windows\system32\2015-05-13-19-03-52.048-AvastVBoxSVC.exe-628.log
2015-05-13 06:15 - 2015-05-13 06:15 - 00000197 _____ () C:\Windows\system32\2015-05-13-04-15-23.073-AvastVBoxSVC.exe-4348.log
2015-05-12 21:47 - 2015-05-12 21:47 - 00000197 _____ () C:\Windows\system32\2015-05-12-19-47-18.061-AvastVBoxSVC.exe-4928.log
2015-05-12 07:39 - 2015-05-26 09:08 - 00003440 _____ () C:\Windows\DirectX.log
2015-05-12 07:20 - 2015-05-12 07:20 - 00000197 _____ () C:\Windows\system32\2015-05-12-05-20-35.031-AvastVBoxSVC.exe-4372.log
2015-05-11 21:31 - 2015-05-11 21:31 - 00000197 _____ () C:\Windows\system32\2015-05-11-19-31-05.097-AvastVBoxSVC.exe-4976.log
2015-05-11 11:03 - 2015-05-11 11:03 - 00000197 _____ () C:\Windows\system32\2015-05-11-09-03-01.051-AvastVBoxSVC.exe-4532.log
2015-05-11 10:59 - 2015-05-11 10:59 - 00000382 _____ () C:\Windows\PFRO.log
2015-05-11 07:59 - 2015-05-26 10:02 - 00005723 _____ () C:\Windows\setupact.log
2015-05-11 07:59 - 2015-05-11 07:59 - 00000000 _____ () C:\Windows\setuperr.log
2015-05-11 06:08 - 2015-05-11 06:08 - 00000197 _____ () C:\Windows\system32\2015-05-11-04-08-09.056-AvastVBoxSVC.exe-4932.log
2015-05-11 06:03 - 2015-05-11 06:03 - 00000000 ____D () C:\Windows\pss
2015-05-11 05:59 - 2015-05-11 06:00 - 00000197 _____ () C:\Windows\system32\2015-05-11-03-59-45.091-AvastVBoxSVC.exe-4588.log
2015-05-10 06:51 - 2015-05-10 06:51 - 00000197 _____ () C:\Windows\system32\2015-05-10-04-51-21.088-AvastVBoxSVC.exe-4968.log
2015-05-09 08:48 - 2015-05-09 08:48 - 00000197 _____ () C:\Windows\system32\2015-05-09-06-48-43.099-AvastVBoxSVC.exe-5008.log
2015-05-08 08:19 - 2015-05-08 08:19 - 00000197 _____ () C:\Windows\system32\2015-05-08-06-19-13.096-AvastVBoxSVC.exe-5052.log
2015-05-07 07:05 - 2015-05-07 07:05 - 00000197 _____ () C:\Windows\system32\2015-05-07-05-05-32.033-AvastVBoxSVC.exe-4508.log
2015-05-06 09:02 - 2015-05-06 09:02 - 00000197 _____ () C:\Windows\system32\2015-05-06-07-02-36.078-AvastVBoxSVC.exe-4536.log
2015-05-05 09:27 - 2015-05-05 09:27 - 00000197 _____ () C:\Windows\system32\2015-05-05-07-27-21.025-AvastVBoxSVC.exe-4968.log
2015-05-02 19:49 - 2015-05-02 19:49 - 00000000 _____ () C:\dummy.wav
2015-04-28 08:59 - 2015-04-28 08:59 - 00000000 ____D () C:\Users\Aldair\AppData\Roaming\SimCity
2015-04-28 08:59 - 2015-04-28 08:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2015-04-28 08:52 - 2015-04-28 08:52 - 00000197 _____ () C:\Windows\system32\2015-04-28-06-52-40.073-AvastVBoxSVC.exe-3632.log
2015-04-27 17:33 - 2015-04-27 17:33 - 00000000 ____D () C:\Users\Aldair\Documents\SimCity
2015-04-27 07:17 - 2015-04-27 07:17 - 00000197 _____ () C:\Windows\system32\2015-04-27-05-17-40.070-AvastVBoxSVC.exe-4492.log
2015-04-26 11:33 - 2015-04-26 11:33 - 00000281 _____ () C:\Windows\EReg072.dat
2015-04-26 11:30 - 1998-01-23 12:22 - 00304128 _____ (InstallShield Software Corporation) C:\Windows\IsUninst.exe
2015-04-26 10:16 - 2015-04-26 10:17 - 00000197 _____ () C:\Windows\system32\2015-04-26-08-16-58.049-AvastVBoxSVC.exe-4220.log
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-05-26 10:30 - 2015-03-09 19:20 - 00000000 ____D () C:\FRST
2015-05-26 10:29 - 2013-08-28 20:28 - 00000000 ____D () C:\Download
2015-05-26 10:24 - 2015-03-10 21:12 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-26 10:12 - 2013-08-28 20:20 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-26 10:02 - 2013-08-28 19:05 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-05-26 10:01 - 2013-08-28 19:03 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-05-26 09:41 - 2009-07-14 06:45 - 00032080 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-26 09:41 - 2009-07-14 06:45 - 00032080 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-26 06:57 - 2015-03-19 18:12 - 00000000 ____D () C:\Users\Aldair\AppData\Roaming\Awesomium
2015-05-26 06:52 - 2014-12-30 19:50 - 00002866 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (Aldair)
2015-05-26 06:51 - 2015-03-10 21:12 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-26 06:51 - 2013-11-03 12:23 - 00000000 ____D () C:\ProgramData\ProductData
2015-05-26 06:51 - 2013-08-28 18:34 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-05-26 06:50 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-25 16:41 - 2011-04-12 10:34 - 00681656 _____ () C:\Windows\system32\perfh005.dat
2015-05-25 16:41 - 2011-04-12 10:34 - 00148458 _____ () C:\Windows\system32\perfc005.dat
2015-05-25 16:41 - 2009-07-14 07:13 - 01622852 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-24 22:38 - 2013-11-11 14:53 - 00000000 ____D () C:\Users\Aldair\AppData\Roaming\TS3Client
2015-05-22 16:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-05-21 15:12 - 2013-08-28 20:20 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-05-21 15:12 - 2013-08-28 20:20 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-05-21 15:12 - 2013-08-28 20:20 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-05-19 14:08 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries
2015-05-15 06:30 - 2013-08-28 20:24 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-05-15 06:19 - 2014-12-12 13:11 - 00003696 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-05-15 06:19 - 2014-11-13 09:28 - 00003948 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-05-13 12:08 - 2015-03-18 21:06 - 00001214 _____ () C:\Users\Public\Desktop\Lineage 2 EU.lnk
2015-05-13 08:52 - 2015-01-22 18:18 - 01558848 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2015-05-12 08:27 - 2015-04-18 15:30 - 15048816 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-05-12 08:27 - 2014-12-31 07:58 - 17540416 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-05-12 08:27 - 2013-08-28 19:03 - 12849056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-05-12 08:27 - 2013-08-28 19:03 - 03363224 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-05-12 08:27 - 2013-08-28 19:03 - 02971776 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-05-12 08:27 - 2013-08-28 19:03 - 00031710 _____ () C:\Windows\system32\nvinfo.pb
2015-05-12 05:30 - 2013-08-28 19:04 - 06872392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-05-12 05:30 - 2013-08-28 19:04 - 03490448 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-05-12 05:30 - 2013-08-28 19:04 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-05-12 05:30 - 2013-08-28 19:04 - 00937288 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-05-12 05:30 - 2013-08-28 19:04 - 00385352 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-05-12 05:30 - 2013-08-28 19:04 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-05-11 19:01 - 2014-09-11 20:42 - 04391871 _____ () C:\Windows\system32\nvcoproc.bin
2015-05-11 06:13 - 2013-08-28 20:01 - 00000000 ____D () C:\Users\Aldair\AppData\Roaming\DAEMON Tools Lite
2015-05-11 06:13 - 2013-08-28 20:00 - 00000000 ____D () C:\Users\Aldair\AppData\Roaming\uTorrent
2015-05-08 13:16 - 2013-09-15 20:13 - 00000000 ____D () C:\Users\Aldair\AppData\Roaming\AnvSoft
2015-05-08 02:35 - 2014-09-11 18:59 - 01316184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-05-08 02:35 - 2013-11-03 12:34 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-05-08 02:34 - 2014-09-11 18:59 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-05-08 02:34 - 2013-11-03 12:34 - 01570672 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-04-27 13:20 - 2013-08-28 20:07 - 00000000 ____D () C:\Program Files (x86)\IObit
2015-04-27 13:19 - 2015-01-02 12:48 - 00002896 _____ () C:\Windows\System32\Tasks\Uninstaller_SkipUac_Aldair
2015-04-27 13:17 - 2014-12-30 19:49 - 00003224 _____ () C:\Windows\System32\Tasks\Driver Booster Scan
2015-04-27 13:17 - 2014-12-30 19:49 - 00003168 _____ () C:\Windows\System32\Tasks\Driver Booster Update
2015-04-27 13:17 - 2014-12-30 19:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster
2015-04-26 11:44 - 2014-08-17 12:47 - 00000530 _____ () C:\Windows\eReg.dat
2015-04-26 11:33 - 2013-11-11 13:39 - 00000000 ____D () C:\Users\Aldair\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
==================== Files in the root of some directories =======
2013-11-12 08:48 - 2014-12-21 23:26 - 0009216 _____ () C:\Users\Aldair\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-04-23 18:04 - 2014-04-23 18:04 - 0000094 _____ () C:\Users\Aldair\AppData\Local\fusioncache.dat
2015-01-18 08:50 - 2015-01-18 08:50 - 0000057 _____ () C:\ProgramData\Ament.ini
2014-03-27 10:05 - 2014-03-27 10:05 - 0000096 _____ () C:\ProgramData\CameraRecorder.ini
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-05-24 17:15
==================== End of log ============================
automaticky se mi v Chromu otevírají stránky.
Prosím o kontrolu logu.
Děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-05-2015
Ran by Aldair (administrator) on MSI on 26-05-2015 10:30:27
Running from C:\Users\Aldair\Desktop
Loaded Profiles: Aldair (Available Profiles: Aldair)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Logitech Inc.) C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Innova Co S.a r.l.) C:\Program Files (x86)\4game\3.4.22.118\4game-service.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdcBase.exe
(O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodtray.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
() C:\Program Files (x86)\MSI\MSI VGA Overclock Tool\VGAOCAP.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\System Control Manager\MSIService.exe
(Micro-Star International) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
(MSI) C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe
(O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodag.exe
(ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM) C:\Windows\System32\PrintCtrl.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(ActMask Co.,Ltd - http://www.all2pdf.com) C:\Windows\System32\PrintDisp.exe
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13774040 2014-12-31] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-08] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdcBase.exe [660360 2007-05-31] (Microsoft Corporation)
HKLM\...\Run: [OODefragTray] => C:\Program Files\OO Software\Defrag\oodtray.exe [4465448 2014-08-29] (O&O Software GmbH)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227648 2015-03-30] (AVAST Software)
HKLM-x32\...\Run: [VGAOCAP] => C:\Program Files (x86)\MSI\MSI VGA Overclock Tool\VGAOCAP.exe [89088 2012-06-06] ()
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\RunOnce: [20150107] => C:\Program Files\AVAST Software\Avast\setup\emupdate\d6a2cbeb-292c-44be-bd05-c9a11e4ff494.exe [183232 2015-05-26] (AVAST Software)
HKU\S-1-5-21-854197151-3482271168-3196824506-1000\...\MountPoints2: {93174084-1002-11e3-bb1c-806e6f6e6963} - F:\Launcher\LAUNCHER.EXE
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-01-30] (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
HKU\S-1-5-21-854197151-3482271168-3196824506-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gooe.cz/
SearchScopes: HKU\S-1-5-21-854197151-3482271168-3196824506-1000 -> DefaultScope {0AD56A9D-57FF-401E-846C-D19A1A5B19DE} URL = https://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-854197151-3482271168-3196824506-1000 -> {0AD56A9D-57FF-401E-846C-D19A1A5B19DE} URL = https://www.google.com/search?q={searchTerms}
BHO: No Name -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> No File
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-12-30] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-01-30] (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-12-30] (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-11-24] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-01-30] (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> No File
BHO-x32: Advanced SystemCare Surfing Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll [2015-04-01] (IObit)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-11-24] (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2013-02-26] (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll [2015-04-15] ()
FF Plugin: @java.com/DTPlugin,version=10.72.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-12-30] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.72.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-12-30] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2013-09-25] (VideoLAN)
FF Plugin-x32: @4game.com/plugin -> C:\Program Files (x86)\4game\3.4.22.118\npplugin4game.dll [2015-04-16] (Innova Co S.a r.l.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-15] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2014-11-24] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2014-11-24] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3522.0110 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-01-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-854197151-3482271168-3196824506-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Aldair\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited)
FF Plugin HKU\S-1-5-21-854197151-3482271168-3196824506-1000: sony.com/MediaGoDetector -> C:\Program Files (x86)\Sony\Media Go\npMediaGoDetector.dll [2013-04-25] (Sony Network Entertainment International LLC)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-08-28]
Chrome:
=======
CHR Profile: C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-10]
CHR Extension: (Google Docs) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-10]
CHR Extension: (Google Drive) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-10]
CHR Extension: (YouTube) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-10]
CHR Extension: (Google Search) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-10]
CHR Extension: (Bookmark Manager) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-15]
CHR Extension: (Avast Online Security) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-03-10]
CHR Extension: (Google Wallet) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-10]
CHR Extension: (Gmail) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-10]
CHR Profile: C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Google Slides) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-10]
CHR Extension: (Google Docs) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-10]
CHR Extension: (Google Drive) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-10]
CHR Extension: (YouTube) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-10]
CHR Extension: (Google Search) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-10]
CHR Extension: (Google Sheets) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-10]
CHR Extension: (Avast Online Security) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-03-10]
CHR Extension: (Google Wallet) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-10]
CHR Extension: (Gmail) - C:\Users\Aldair\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-10]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-01-30]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 4game-service; C:\Program Files (x86)\4game\3.4.22.118\4game-service.exe [1361544 2015-04-16] (Innova Co S.a r.l.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-01-30] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2015-01-30] (Avast Software)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-08] (NVIDIA Corporation)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [103808 2008-01-22] ()
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2585376 2015-03-26] (IObit)
R2 Micro Star SCM; C:\Program Files (x86)\System Control Manager\MSIService.exe [160768 2009-07-09] (Micro-Star International Co., Ltd.) []
R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [1722320 2014-08-26] (Micro-Star International)
R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe [162800 2014-03-17] (MSI)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-01-05] ()
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1884304 2015-05-08] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22997648 2015-05-08] (NVIDIA Corporation)
R2 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [1660200 2014-08-29] (O&O Software GmbH)
R2 Printer Control; C:\Windows\system32\PrintCtrl.exe [121856 2012-10-21] (ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM) []
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) []
S2 WDBackup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [1042808 2013-04-22] (Western Digital Technologies, Inc.)
R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [270192 2013-04-01] (Western Digital Technologies, Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 ALCATELUSB; C:\Windows\System32\Drivers\AlcatelUsb.sys [25088 2014-04-23] (Windows (R) Codename Longhorn DDK provider) []
S3 AndnetBus; C:\Windows\System32\DRIVERS\lgandnetbus64.sys [20992 2014-05-27] (LG Electronics Inc.)
S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [29184 2014-05-27] (LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [36352 2014-05-27] (LG Electronics Inc.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-01-30] ()
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28184 2015-02-09] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2015-01-30] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-01-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-01-30] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-01-30] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-01-30] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-01-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-01-30] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [279616 2013-09-01] (DT Soft Ltd)
S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [17480 2013-03-07] () []
S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [13896 2013-03-07] () []
S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9800 2013-03-07] () []
S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [9160 2013-03-07] () []
S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2013-07-18] () []
S3 h643331; C:\Windows\System32\drivers\h643331.sys [67432 2012-06-19] (Your Corporation)
S3 hid3331; C:\Windows\SysWOW64\drivers\hid3331.sys [45672 2012-06-19] (Your Corporation)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2014-12-30] (REALiX(tm))
S3 jrdusbser; C:\Windows\System32\DRIVERS\jrdusbser.sys [119680 2014-04-23] (TCT International Mobile Ltd) []
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super Charger\NTIOLib_X64.sys [13368 2012-10-25] (MSI)
R3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update\NTIOLib_X64.sys [14136 2010-10-22] (MSI)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-08] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [32496 2013-11-30] (Synaptics Incorporated)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2015-01-30] (Avast Software)
S3 dgderdrv; System32\drivers\dgderdrv.sys [X]
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
S3 massfilter; system32\drivers\massfilter.sys [X]
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-05-26 10:30 - 2015-05-26 10:31 - 00020494 _____ () C:\Users\Aldair\Desktop\FRST.txt
2015-05-26 10:29 - 2015-05-26 10:29 - 02108928 _____ (Farbar) C:\Users\Aldair\Desktop\FRST64.exe
2015-05-26 10:05 - 2015-05-26 10:05 - 00000000 ____D () C:\Users\Aldair\Documents\My Games
2015-05-26 10:01 - 2015-05-26 10:02 - 00000000 ____D () C:\Windows\LastGood
2015-05-26 10:00 - 2015-05-13 08:52 - 00195912 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2015-05-26 10:00 - 2015-05-13 08:52 - 00031552 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 42718864 _____ () C:\Windows\system32\nvcompiler.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 37741712 _____ () C:\Windows\SysWOW64\nvcompiler.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 30478992 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 22945424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 16145176 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 15858728 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 14455296 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 13263568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 11790144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 10972304 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-05-26 10:00 - 2015-05-12 08:27 - 02932368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 02599056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 01898312 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435286.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435286.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 01059984 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 01050256 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 00982672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-05-26 10:00 - 2015-05-12 08:27 - 00974480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-05-26 09:34 - 2015-05-26 09:39 - 00045869 _____ () C:\Windows\WindowsUpdate.log
2015-05-26 06:52 - 2015-05-26 06:53 - 00000197 _____ () C:\Windows\system32\2015-05-26-04-52-32.005-AvastVBoxSVC.exe-4864.log
2015-05-25 09:36 - 2015-05-25 14:16 - 00000000 ____D () C:\Users\Aldair\Desktop\fotky eva fb
2015-05-25 05:59 - 2015-05-25 05:59 - 00000197 _____ () C:\Windows\system32\2015-05-25-03-59-09.030-AvastVBoxSVC.exe-4692.log
2015-05-24 07:29 - 2015-05-24 07:29 - 00000197 _____ () C:\Windows\system32\2015-05-24-05-29-29.016-AvastVBoxSVC.exe-5332.log
2015-05-23 10:25 - 2015-05-23 10:26 - 00000197 _____ () C:\Windows\system32\2015-05-23-08-25-43.030-AvastVBoxSVC.exe-5260.log
2015-05-22 06:27 - 2015-05-22 06:28 - 00000197 _____ () C:\Windows\system32\2015-05-22-04-27-51.025-AvastVBoxSVC.exe-5668.log
2015-05-21 15:12 - 2015-05-21 15:12 - 17488560 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2015-05-21 06:59 - 2015-05-21 07:00 - 00000197 _____ () C:\Windows\system32\2015-05-21-04-59-54.021-AvastVBoxSVC.exe-3328.log
2015-05-20 08:13 - 2015-05-20 08:14 - 00000197 _____ () C:\Windows\system32\2015-05-20-06-13-47.027-AvastVBoxSVC.exe-2556.log
2015-05-19 07:45 - 2015-05-19 07:45 - 00000197 _____ () C:\Windows\system32\2015-05-19-05-45-09.018-AvastVBoxSVC.exe-2276.log
2015-05-18 08:27 - 2015-05-18 08:28 - 00000197 _____ () C:\Windows\system32\2015-05-18-06-27-50.061-AvastVBoxSVC.exe-5080.log
2015-05-17 08:27 - 2015-05-17 08:27 - 00000197 _____ () C:\Windows\system32\2015-05-17-06-27-31.087-AvastVBoxSVC.exe-4424.log
2015-05-16 09:45 - 2015-05-16 09:45 - 00000197 _____ () C:\Windows\system32\2015-05-16-07-45-36.068-AvastVBoxSVC.exe-2856.log
2015-05-15 06:19 - 2015-05-15 06:19 - 00000197 _____ () C:\Windows\system32\2015-05-15-04-19-08.019-AvastVBoxSVC.exe-3448.log
2015-05-14 15:49 - 2015-05-14 15:49 - 00000197 _____ () C:\Windows\system32\2015-05-14-13-49-58.064-AvastVBoxSVC.exe-4232.log
2015-05-14 06:53 - 2015-05-14 06:53 - 00000197 _____ () C:\Windows\system32\2015-05-14-04-53-34.038-AvastVBoxSVC.exe-4800.log
2015-05-13 21:03 - 2015-05-13 21:03 - 00000197 _____ () C:\Windows\system32\2015-05-13-19-03-52.048-AvastVBoxSVC.exe-628.log
2015-05-13 06:15 - 2015-05-13 06:15 - 00000197 _____ () C:\Windows\system32\2015-05-13-04-15-23.073-AvastVBoxSVC.exe-4348.log
2015-05-12 21:47 - 2015-05-12 21:47 - 00000197 _____ () C:\Windows\system32\2015-05-12-19-47-18.061-AvastVBoxSVC.exe-4928.log
2015-05-12 07:39 - 2015-05-26 09:08 - 00003440 _____ () C:\Windows\DirectX.log
2015-05-12 07:20 - 2015-05-12 07:20 - 00000197 _____ () C:\Windows\system32\2015-05-12-05-20-35.031-AvastVBoxSVC.exe-4372.log
2015-05-11 21:31 - 2015-05-11 21:31 - 00000197 _____ () C:\Windows\system32\2015-05-11-19-31-05.097-AvastVBoxSVC.exe-4976.log
2015-05-11 11:03 - 2015-05-11 11:03 - 00000197 _____ () C:\Windows\system32\2015-05-11-09-03-01.051-AvastVBoxSVC.exe-4532.log
2015-05-11 10:59 - 2015-05-11 10:59 - 00000382 _____ () C:\Windows\PFRO.log
2015-05-11 07:59 - 2015-05-26 10:02 - 00005723 _____ () C:\Windows\setupact.log
2015-05-11 07:59 - 2015-05-11 07:59 - 00000000 _____ () C:\Windows\setuperr.log
2015-05-11 06:08 - 2015-05-11 06:08 - 00000197 _____ () C:\Windows\system32\2015-05-11-04-08-09.056-AvastVBoxSVC.exe-4932.log
2015-05-11 06:03 - 2015-05-11 06:03 - 00000000 ____D () C:\Windows\pss
2015-05-11 05:59 - 2015-05-11 06:00 - 00000197 _____ () C:\Windows\system32\2015-05-11-03-59-45.091-AvastVBoxSVC.exe-4588.log
2015-05-10 06:51 - 2015-05-10 06:51 - 00000197 _____ () C:\Windows\system32\2015-05-10-04-51-21.088-AvastVBoxSVC.exe-4968.log
2015-05-09 08:48 - 2015-05-09 08:48 - 00000197 _____ () C:\Windows\system32\2015-05-09-06-48-43.099-AvastVBoxSVC.exe-5008.log
2015-05-08 08:19 - 2015-05-08 08:19 - 00000197 _____ () C:\Windows\system32\2015-05-08-06-19-13.096-AvastVBoxSVC.exe-5052.log
2015-05-07 07:05 - 2015-05-07 07:05 - 00000197 _____ () C:\Windows\system32\2015-05-07-05-05-32.033-AvastVBoxSVC.exe-4508.log
2015-05-06 09:02 - 2015-05-06 09:02 - 00000197 _____ () C:\Windows\system32\2015-05-06-07-02-36.078-AvastVBoxSVC.exe-4536.log
2015-05-05 09:27 - 2015-05-05 09:27 - 00000197 _____ () C:\Windows\system32\2015-05-05-07-27-21.025-AvastVBoxSVC.exe-4968.log
2015-05-02 19:49 - 2015-05-02 19:49 - 00000000 _____ () C:\dummy.wav
2015-04-28 08:59 - 2015-04-28 08:59 - 00000000 ____D () C:\Users\Aldair\AppData\Roaming\SimCity
2015-04-28 08:59 - 2015-04-28 08:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2015-04-28 08:52 - 2015-04-28 08:52 - 00000197 _____ () C:\Windows\system32\2015-04-28-06-52-40.073-AvastVBoxSVC.exe-3632.log
2015-04-27 17:33 - 2015-04-27 17:33 - 00000000 ____D () C:\Users\Aldair\Documents\SimCity
2015-04-27 07:17 - 2015-04-27 07:17 - 00000197 _____ () C:\Windows\system32\2015-04-27-05-17-40.070-AvastVBoxSVC.exe-4492.log
2015-04-26 11:33 - 2015-04-26 11:33 - 00000281 _____ () C:\Windows\EReg072.dat
2015-04-26 11:30 - 1998-01-23 12:22 - 00304128 _____ (InstallShield Software Corporation) C:\Windows\IsUninst.exe
2015-04-26 10:16 - 2015-04-26 10:17 - 00000197 _____ () C:\Windows\system32\2015-04-26-08-16-58.049-AvastVBoxSVC.exe-4220.log
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-05-26 10:30 - 2015-03-09 19:20 - 00000000 ____D () C:\FRST
2015-05-26 10:29 - 2013-08-28 20:28 - 00000000 ____D () C:\Download
2015-05-26 10:24 - 2015-03-10 21:12 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-26 10:12 - 2013-08-28 20:20 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-26 10:02 - 2013-08-28 19:05 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-05-26 10:01 - 2013-08-28 19:03 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-05-26 09:41 - 2009-07-14 06:45 - 00032080 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-26 09:41 - 2009-07-14 06:45 - 00032080 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-26 06:57 - 2015-03-19 18:12 - 00000000 ____D () C:\Users\Aldair\AppData\Roaming\Awesomium
2015-05-26 06:52 - 2014-12-30 19:50 - 00002866 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (Aldair)
2015-05-26 06:51 - 2015-03-10 21:12 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-26 06:51 - 2013-11-03 12:23 - 00000000 ____D () C:\ProgramData\ProductData
2015-05-26 06:51 - 2013-08-28 18:34 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-05-26 06:50 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-25 16:41 - 2011-04-12 10:34 - 00681656 _____ () C:\Windows\system32\perfh005.dat
2015-05-25 16:41 - 2011-04-12 10:34 - 00148458 _____ () C:\Windows\system32\perfc005.dat
2015-05-25 16:41 - 2009-07-14 07:13 - 01622852 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-24 22:38 - 2013-11-11 14:53 - 00000000 ____D () C:\Users\Aldair\AppData\Roaming\TS3Client
2015-05-22 16:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-05-21 15:12 - 2013-08-28 20:20 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-05-21 15:12 - 2013-08-28 20:20 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-05-21 15:12 - 2013-08-28 20:20 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-05-19 14:08 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries
2015-05-15 06:30 - 2013-08-28 20:24 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-05-15 06:19 - 2014-12-12 13:11 - 00003696 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-05-15 06:19 - 2014-11-13 09:28 - 00003948 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-05-13 12:08 - 2015-03-18 21:06 - 00001214 _____ () C:\Users\Public\Desktop\Lineage 2 EU.lnk
2015-05-13 08:52 - 2015-01-22 18:18 - 01558848 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2015-05-12 08:27 - 2015-04-18 15:30 - 15048816 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-05-12 08:27 - 2014-12-31 07:58 - 17540416 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-05-12 08:27 - 2013-08-28 19:03 - 12849056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-05-12 08:27 - 2013-08-28 19:03 - 03363224 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-05-12 08:27 - 2013-08-28 19:03 - 02971776 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-05-12 08:27 - 2013-08-28 19:03 - 00031710 _____ () C:\Windows\system32\nvinfo.pb
2015-05-12 05:30 - 2013-08-28 19:04 - 06872392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-05-12 05:30 - 2013-08-28 19:04 - 03490448 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-05-12 05:30 - 2013-08-28 19:04 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-05-12 05:30 - 2013-08-28 19:04 - 00937288 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-05-12 05:30 - 2013-08-28 19:04 - 00385352 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-05-12 05:30 - 2013-08-28 19:04 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-05-11 19:01 - 2014-09-11 20:42 - 04391871 _____ () C:\Windows\system32\nvcoproc.bin
2015-05-11 06:13 - 2013-08-28 20:01 - 00000000 ____D () C:\Users\Aldair\AppData\Roaming\DAEMON Tools Lite
2015-05-11 06:13 - 2013-08-28 20:00 - 00000000 ____D () C:\Users\Aldair\AppData\Roaming\uTorrent
2015-05-08 13:16 - 2013-09-15 20:13 - 00000000 ____D () C:\Users\Aldair\AppData\Roaming\AnvSoft
2015-05-08 02:35 - 2014-09-11 18:59 - 01316184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-05-08 02:35 - 2013-11-03 12:34 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-05-08 02:34 - 2014-09-11 18:59 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-05-08 02:34 - 2013-11-03 12:34 - 01570672 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-04-27 13:20 - 2013-08-28 20:07 - 00000000 ____D () C:\Program Files (x86)\IObit
2015-04-27 13:19 - 2015-01-02 12:48 - 00002896 _____ () C:\Windows\System32\Tasks\Uninstaller_SkipUac_Aldair
2015-04-27 13:17 - 2014-12-30 19:49 - 00003224 _____ () C:\Windows\System32\Tasks\Driver Booster Scan
2015-04-27 13:17 - 2014-12-30 19:49 - 00003168 _____ () C:\Windows\System32\Tasks\Driver Booster Update
2015-04-27 13:17 - 2014-12-30 19:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster
2015-04-26 11:44 - 2014-08-17 12:47 - 00000530 _____ () C:\Windows\eReg.dat
2015-04-26 11:33 - 2013-11-11 13:39 - 00000000 ____D () C:\Users\Aldair\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
==================== Files in the root of some directories =======
2013-11-12 08:48 - 2014-12-21 23:26 - 0009216 _____ () C:\Users\Aldair\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-04-23 18:04 - 2014-04-23 18:04 - 0000094 _____ () C:\Users\Aldair\AppData\Local\fusioncache.dat
2015-01-18 08:50 - 2015-01-18 08:50 - 0000057 _____ () C:\ProgramData\Ament.ini
2014-03-27 10:05 - 2014-03-27 10:05 - 0000096 _____ () C:\ProgramData\CameraRecorder.ini
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-05-24 17:15
==================== End of log ============================