
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prosím o kontrolu logu
Dobrý deň,prosím o kontrolu logu kedže môj notebook (win7 64bit,8gb ram,I5,GT540m) je v poslednom čase uplne spomalený a k tomu mi odišiel windows update,napíše tam niejaku chybu 080005 abo tak niejak...posielam log:
Recovery Scan Tool (FRST) (x64) Version:26-07-2015
Ran by Dominik (administrator) on DOMINIK-PC (27-07-2015 14:50:22)
Running from C:\Users\Dominik\Downloads
Loaded Profiles: Dominik (Available Profiles: Dominik)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ASUS) C:\Windows\AsScrPro.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(BitTorrent Inc.) C:\Users\Dominik\AppData\Roaming\BitTorrent\BitTorrent.exe
(PS Media s.r.o.) C:\Windows\SysWOW64\ssins.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [617120 2011-03-13] (Atheros Communications)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1396592 2000-01-01] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2631824 2015-07-14] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-15] (Avast Software s.r.o.)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-08] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-18] (ASUS)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1973447134-484782693-1030435007-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8202008 2015-04-08] (Piriform Ltd)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [176904 2015-06-17] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [155280 2015-06-17] (NVIDIA Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-05-10] (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll [2010-09-02] (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll [2010-09-02] (eCareme Technologies, Inc.)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-1973447134-484782693-1030435007-1001\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKU\S-1-5-21-1973447134-484782693-1030435007-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
HKU\S-1-5-21-1973447134-484782693-1030435007-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1973447134-484782693-1030435007-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-22] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-22] (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{BE4E406D-26EB-4F8E-A890-A6C19B58E389}: [DhcpNameServer] 192.168.1.254
FireFox:
========
FF ProfilePath: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713
FF DefaultSearchUrl: https://www.google.com/search/?trackid=sp-006
FF SearchEngineOrder.1: Google (avast)
FF SelectedSearchEngine: Google (avast)
FF Homepage: about:home
FF Keyword.URL: https://www.google.com/search/?trackid=sp-006
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-21] ()
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-21] ()
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-22] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems)
FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll [2010-01-23] (Zeon Corporation)
FF Plugin HKU\S-1-5-21-1973447134-484782693-1030435007-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Dominik\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-12-05] (Unity Technologies ApS)
FF SearchPlugin: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713\searchplugins\google-avast.xml [2015-07-13]
FF SearchPlugin: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713\searchplugins\WebSearch.xml [2015-07-26]
FF Extension: No Name - C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713\Extensions\1436796100_xpi [2015-07-13]
FF Extension: Adblock Plus - C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-03-14]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-12]
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Avast Online Security) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-04-21]
CHR Extension: (VideoDownloadConverter) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ikgjglmlehllifdekcggaapkaplbdpje [2015-07-26]
CHR Extension: (CinemaP-1.9cV18.07) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi [2015-07-13]
CHR Extension: (Google Wallet) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-21]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-14]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) [File not signed]
S3 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-05-10] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4034896 2015-05-10] (Avast Software)
R2 Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [897088 2010-11-03] (Intel Corporation) [File not signed]
S3 Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1298496 2010-11-03] (Intel Corporation) [File not signed]
R2 Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [983104 2010-11-03] (Intel Corporation) [File not signed]
S3 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2014-12-03] (Freemake) [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155216 2015-07-14] (NVIDIA Corporation)
S4 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1871504 2015-07-14] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544592 2015-07-14] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1910640 2015-03-14] (Electronic Arts)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2014-11-29] ()
R2 ssinstall; C:\Windows\SysWOW64\ssins.exe [2324216 2015-07-27] (PS Media s.r.o.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-05-10] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-05-10] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-05-10] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-05-10] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-05-10] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-06-27] (Avast Software s.r.o.)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-05-10] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-05-10] ()
R1 ATKWMIACPIIO_; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [17536 2011-05-26] (ASUS)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-11-22] (Disc Soft Ltd)
U5 FontCache3.0.0.0; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [42856 2010-11-05] (Microsoft Corporation)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2014-12-31] (REALiX(tm))
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-04-14] (Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-07-14] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [47976 2015-07-03] (NVIDIA Corporation)
S3 REN2CAP_DRIVER; C:\Windows\System32\drivers\ren2cap.sys [46728 2011-11-07] ()
R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-16] ()
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-05-10] (Avast Software)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-27 14:50 - 2015-07-27 14:50 - 02146816 _____ (Farbar) C:\Users\Dominik\Downloads\FRST64.exe
2015-07-27 14:50 - 2015-07-27 14:50 - 00017901 _____ C:\Users\Dominik\Downloads\FRST.txt
2015-07-27 14:50 - 2015-07-27 14:50 - 00000000 ____D C:\FRST
2015-07-27 14:28 - 2015-07-27 14:42 - 00000000 ____D C:\Users\Dominik\AppData\Local\LogMeIn Rescue Calling Card
2015-07-27 14:27 - 2015-07-27 14:33 - 00000000 ____D C:\Program Files (x86)\LogMeIn Rescue Calling Card
2015-07-27 14:27 - 2015-07-27 14:30 - 00009359 _____ C:\Windows\SysWOW64\sinstall.log
2015-07-27 14:27 - 2015-07-27 14:27 - 02324216 _____ (PS Media s.r.o.) C:\Windows\SysWOW64\ssins.exe
2015-07-27 14:27 - 2015-07-27 14:27 - 00002409 _____ C:\Users\Public\Desktop\Pomoc s poèítaèem na dálku NEJDETO.CZ.lnk
2015-07-27 14:27 - 2015-07-27 14:27 - 00000079 _____ C:\Windows\SysWOW64\ssinstall-uninstall.bat
2015-07-27 14:27 - 2015-07-27 14:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pomoc s počítačem na dálku NEJDETO.CZ
2015-07-27 14:26 - 2015-07-27 14:26 - 03075192 _____ (PS Media s.r.o.) C:\Users\Dominik\Downloads\Servis Slunecnice.cz - 059_slunecnice.exe
2015-07-27 14:17 - 2015-07-27 14:17 - 00105275 _____ C:\Users\Dominik\Downloads\spmn140.zip
2015-07-27 12:15 - 2015-07-27 12:15 - 00000001 _____ C:\Users\Dominik\AppData\Local\llftool.4.40.agreement
2015-07-27 10:08 - 2015-07-27 10:08 - 00002653 _____ C:\Users\Dominik\Desktop\BitTorrent.lnk
2015-07-27 10:08 - 2015-07-27 10:08 - 00002653 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2015-07-27 10:07 - 2015-07-27 14:49 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\BitTorrent
2015-07-27 08:58 - 2015-07-27 08:58 - 00000000 ___RD C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2015-07-26 19:40 - 2015-07-26 19:40 - 00000000 ____D C:\Users\Dominik\AppData\Local\NFS Underground 2
2015-07-26 19:30 - 2015-07-26 19:30 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2015-07-26 18:18 - 2015-07-26 18:18 - 00000000 ____D C:\Program Files (x86)\Crossbrowse
2015-07-26 18:16 - 2015-07-26 18:25 - 00000000 ____D C:\Program Files (x86)\SystemContinue
2015-07-26 18:15 - 2015-07-26 18:25 - 00000000 ____D C:\Program Files (x86)\VideoDownloadConverter
2015-07-26 18:15 - 2015-07-26 18:25 - 00000000 ____D C:\Program Files (x86)\bestadblocker
2015-07-26 18:14 - 2015-07-26 18:25 - 00000000 ____D C:\Program Files (x86)\CuttThePerice
2015-07-26 18:14 - 2015-07-26 18:25 - 00000000 ____D C:\Program Files (x86)\CutThePrice
2015-07-26 18:14 - 2015-07-26 18:24 - 00000000 ____D C:\ProgramData\mgnkmgbhgifiigaobnhmmmeffjkllbmh
2015-07-26 18:14 - 2015-07-26 18:14 - 00000000 ____D C:\Users\Dominik\AppData\Local\globalUpdate
2015-07-26 18:14 - 2015-07-26 18:14 - 00000000 ____D C:\Program Files (x86)\globalUpdate
2015-07-26 18:13 - 2015-07-26 18:24 - 00000000 ____D C:\ProgramData\{23831a83-005e-f325-2383-31a830056a0c}
2015-07-26 18:11 - 2015-07-26 18:26 - 00000000 ____D C:\ProgramData\DhmReu
2015-07-26 18:11 - 2015-07-26 18:16 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\systweak
2015-07-26 12:33 - 2015-07-26 12:33 - 00000000 ____D C:\Users\Dominik\Documents\PassMark
2015-07-26 12:32 - 2015-07-26 12:32 - 00000000 ____D C:\ProgramData\Passmark
2015-07-26 11:20 - 2015-07-26 18:15 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
2015-07-24 21:13 - 2015-07-24 21:15 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2015-07-24 21:13 - 2015-07-24 21:13 - 00001188 _____ C:\Users\Dominik\Desktop\CrystalDiskInfo.lnk
2015-07-24 21:13 - 2015-07-24 21:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2015-07-24 18:46 - 2015-07-26 20:01 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\SpinTires
2015-07-24 18:30 - 2015-07-24 18:30 - 00000000 ____D C:\Users\Dominik\AppData\Local\Steam
2015-07-24 18:30 - 2015-07-24 18:30 - 00000000 ____D C:\Users\Dominik\AppData\Local\CEF
2015-07-24 18:20 - 2015-07-27 10:16 - 00000000 ____D C:\Program Files (x86)\Steam
2015-07-24 18:20 - 2015-07-24 18:20 - 00000965 _____ C:\Users\Public\Desktop\Steam.lnk
2015-07-24 18:20 - 2015-07-24 18:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-07-24 18:19 - 2015-07-24 18:19 - 00000750 _____ C:\Users\Dominik\Desktop\Spintires.lnk
2015-07-23 10:35 - 2015-07-27 14:10 - 00000000 ____D C:\Program Files (x86)\AIDA64 Extreme
2015-07-22 19:50 - 2015-07-22 19:50 - 00000000 ____D C:\Windows\CheckSur
2015-07-22 12:53 - 2015-07-22 14:49 - 00000000 ____D C:\Users\Dominik\Documents\Windows Updates Downloader
2015-07-22 12:35 - 2015-07-22 12:35 - 00000110 ____H C:\Users\Dominik\Desktop\nebe.jpg.uid-zps
2015-07-22 12:34 - 2015-07-22 12:34 - 00000110 ____H C:\Users\Dominik\Desktop\puvodni.jpg.uid-zps
2015-07-22 12:28 - 2015-07-22 12:28 - 00000000 ____D C:\Program Files (x86)\VITSOFT
2015-07-22 12:05 - 2015-07-22 12:05 - 00000000 ____D C:\ProgramData\VIPRE
2015-07-22 12:05 - 2015-07-22 12:05 - 00000000 ____D C:\Program Files\Common Files\AV
2015-07-22 11:45 - 2015-07-22 12:26 - 00000000 ____D C:\ProgramData\ParetoLogic
2015-07-22 11:45 - 2015-07-22 11:45 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\ParetoLogic
2015-07-22 11:06 - 2015-07-22 11:07 - 00000000 ____D C:\KVRT_Data
2015-07-21 13:57 - 2015-07-21 13:59 - 00000000 ____D C:\AdwCleaner
2015-07-19 13:22 - 2015-07-19 13:22 - 00000916 _____ C:\Users\Dominik\Desktop\Euro Truck Simulator 2 (64-bit).lnk
2015-07-19 12:02 - 2015-07-19 12:02 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 v1.18.1s (26 DLC)
2015-07-19 11:34 - 2015-07-19 11:34 - 00000000 ____D C:\Windows\SysWOW64\NV
2015-07-19 11:34 - 2015-07-19 11:34 - 00000000 ____D C:\Windows\system32\NV
2015-07-19 11:30 - 2015-07-19 11:30 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-07-19 11:30 - 2015-06-17 11:10 - 42729104 _____ C:\Windows\system32\nvcompiler.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 37748880 _____ C:\Windows\SysWOW64\nvcompiler.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 30481552 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 22947144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 17724600 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 16145200 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 15866992 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 15224784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 14497520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 13263056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 11831856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 11011216 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-07-19 11:30 - 2015-06-17 11:10 - 02932368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 02599752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01898128 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435330.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01557832 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435330.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01060168 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01050768 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00982672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00975176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00150832 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00128696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00031376 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2015-07-18 11:38 - 2015-07-03 06:28 - 00065896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-07-18 11:38 - 2015-07-03 06:28 - 00047976 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-07-18 11:00 - 2015-07-19 12:02 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1-click run
2015-07-18 11:00 - 2015-07-18 11:00 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 v1.14.2s (18 DLC)
2015-07-18 10:40 - 2015-07-19 11:58 - 00000000 ____D C:\2-click run
2015-07-18 10:23 - 2015-07-18 10:23 - 00000985 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-07-18 10:23 - 2015-07-18 10:23 - 00000973 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-07-18 09:58 - 2015-07-18 09:58 - 00000000 ____D C:\ProgramData\Licenses
2015-07-18 09:52 - 2015-07-19 11:45 - 00000000 ____D C:\Program Files (x86)\DVR Converter 3.0
2015-07-18 09:52 - 2015-07-18 09:52 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Engelmann Media
2015-07-18 09:49 - 2015-07-18 09:49 - 00001093 _____ C:\Users\Public\Desktop\PhotoInstrument.lnk
2015-07-18 09:49 - 2015-07-18 09:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoInstrument
2015-07-18 09:49 - 2015-07-18 09:49 - 00000000 ____D C:\Program Files (x86)\PhotoInstrument
2015-07-16 20:28 - 2015-07-16 20:28 - 00003584 _____ C:\Users\Dominik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-07-16 16:34 - 2015-07-17 13:52 - 00000000 ____D C:\Program Files (x86)\Video Enhancer
2015-07-16 16:34 - 2015-07-16 16:34 - 00000000 ____D C:\Users\Dominik\AppData\Local\Video Enhancer
2015-07-14 10:01 - 2015-07-14 10:01 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01009.Wdf
2015-07-14 10:00 - 2015-07-14 10:00 - 01002728 _____ (Microsoft Corporation) C:\Windows\system32\WinUSBCoInstaller2.dll
2015-07-13 17:16 - 2015-07-27 13:22 - 00001008 _____ C:\Windows\Tasks\B3CeDyO9Ws5U19.job
2015-07-13 17:16 - 2015-07-27 08:58 - 00001000 _____ C:\Windows\Tasks\5KSR0Iz3PD.job
2015-07-13 17:16 - 2015-07-13 17:16 - 00004042 _____ C:\Windows\System32\Tasks\B3CeDyO9Ws5U19
2015-07-13 17:16 - 2015-07-13 17:16 - 00004034 _____ C:\Windows\System32\Tasks\5KSR0Iz3PD
2015-07-13 17:15 - 2015-07-13 17:20 - 00000004 _____ C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-07-13 17:14 - 2015-07-13 20:19 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Opera Software
2015-07-13 17:14 - 2015-07-13 20:19 - 00000000 ____D C:\Users\Dominik\AppData\Local\Opera Software
2015-07-13 17:13 - 2015-07-13 17:13 - 00000000 _____ C:\Users\Dominik\AppData\Local\Temp.dat
2015-07-13 17:12 - 2015-07-13 20:19 - 00000000 ____D C:\Program Files (x86)\Opera
2015-07-13 16:42 - 2015-07-13 16:42 - 00000000 _____ C:\autoexec.bat
2015-07-13 16:31 - 2015-07-13 16:31 - 00000122 _____ C:\Users\Dominik\AppData\Roaming\profiles.ini
2015-07-13 16:31 - 2015-07-13 16:31 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Crash Reports
2015-07-13 16:01 - 2015-07-13 16:18 - 00000000 ____D C:\Program Files (x86)\SystemVigor
2015-07-03 10:16 - 2015-07-04 14:43 - 00000000 ____D C:\Users\Dominik\AppData\Local\Arma 3
2015-07-03 10:16 - 2015-07-03 10:16 - 00000000 ____D C:\ProgramData\Bohemia Interactive
2015-07-03 09:46 - 2015-07-04 13:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-06-27 18:50 - 2015-06-27 18:50 - 00002023 _____ C:\Users\Public\Desktop\Bloody5.lnk
2015-06-27 18:50 - 2015-06-27 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bloody
2015-06-27 12:56 - 2015-07-23 11:44 - 00000000 ____D C:\Program Files (x86)\Windows Doctor
2015-06-27 12:53 - 2015-06-27 12:53 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Windows Doctor
2015-06-27 11:50 - 2015-06-27 11:50 - 00000000 ____D C:\Users\Dominik\Documents\Ashampoo Burning Studio 2015
2015-06-27 11:46 - 2015-06-27 11:46 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Ashampoo
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-27 14:22 - 2014-11-14 01:28 - 01061850 _____ C:\Windows\WindowsUpdate.log
2015-07-27 14:20 - 2015-04-05 12:46 - 00000000 ____D C:\Users\Dominik\AppData\Local\CrashDumps
2015-07-27 14:13 - 2014-11-14 01:41 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-07-27 14:01 - 2014-11-22 15:06 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\DAEMON Tools Lite
2015-07-27 14:01 - 2014-11-14 16:22 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\uTorrent
2015-07-27 13:20 - 2014-11-14 22:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-07-27 13:18 - 2014-11-14 22:04 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-07-27 13:18 - 2014-11-14 22:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-07-27 13:01 - 2009-07-14 06:45 - 00025968 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-07-27 13:01 - 2009-07-14 06:45 - 00025968 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-07-27 12:45 - 2009-07-14 07:13 - 00797170 _____ C:\Windows\system32\PerfStringBackup.INI
2015-07-27 12:00 - 2014-12-24 13:35 - 00000000 ____D C:\Users\Dominik\Documents\Euro Truck Simulator 2
2015-07-27 11:30 - 2014-11-26 21:29 - 00000000 ____D C:\Users\Dominik\Documents\My Games
2015-07-27 10:16 - 2014-11-13 18:30 - 00000000 ____D C:\Program Files\CCleaner
2015-07-27 10:15 - 2015-06-14 19:00 - 00000824 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-07-27 08:58 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-26 18:26 - 2014-11-13 18:11 - 00000000 ____D C:\Users\Dominik
2015-07-26 18:25 - 2014-11-14 01:49 - 00000000 ____D C:\ProgramData\P4G
2015-07-26 18:24 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration
2015-07-26 18:22 - 2014-11-23 13:04 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-07-25 14:40 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-07-25 14:39 - 2014-11-14 01:53 - 00002016 _____ C:\Windows\system32\ServiceFilter.ini
2015-07-22 12:36 - 2015-04-05 12:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 15
2015-07-22 12:36 - 2015-03-14 16:07 - 00000000 ____D C:\Users\Dominik\Desktop\Ashampoo
2015-07-22 10:15 - 2014-12-23 18:29 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\IObit
2015-07-22 10:15 - 2014-12-23 18:29 - 00000000 ____D C:\ProgramData\IObit
2015-07-22 10:07 - 2014-11-15 21:20 - 00000000 ____D C:\ProgramData\Oracle
2015-07-22 10:07 - 2014-11-15 21:20 - 00000000 ____D C:\Program Files (x86)\Java
2015-07-22 10:04 - 2014-11-15 21:23 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-07-22 09:58 - 2014-11-13 18:28 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-07-21 14:00 - 2014-11-14 20:59 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-07-21 11:44 - 2014-11-14 20:59 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-21 11:44 - 2014-11-14 20:59 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-21 11:44 - 2014-11-14 20:59 - 00003770 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-07-19 11:35 - 2014-11-14 01:38 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-07-19 11:35 - 2014-11-14 01:38 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2015-07-19 11:34 - 2014-11-14 01:39 - 00000000 ____D C:\ProgramData\NVIDIA
2015-07-19 11:32 - 2014-11-14 01:38 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-07-19 10:28 - 2014-11-13 18:12 - 00001415 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-07-18 10:08 - 2015-02-01 13:33 - 00000000 ____D C:\Program Files (x86)\Adobe Media Player
2015-07-16 13:30 - 2015-02-12 11:21 - 00000000 ____D C:\ProgramData\Freemake
2015-07-14 21:06 - 2015-02-07 12:21 - 01423120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-07-14 21:06 - 2015-02-07 12:21 - 01316184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-07-14 21:05 - 2015-02-07 12:21 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-07-14 21:05 - 2015-02-07 12:21 - 01710056 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-07-13 17:23 - 2015-02-15 14:20 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-07-13 17:19 - 2014-11-14 01:53 - 00002710 _____ C:\Windows\system32\AutoRunFilter.ini
2015-07-13 16:29 - 2015-02-12 11:20 - 00000000 ____D C:\Program Files (x86)\Freemake
2015-07-13 13:26 - 2014-11-14 20:56 - 00000000 ____D C:\Users\Dominik\AppData\Local\Adobe
2015-07-08 10:35 - 2015-04-21 19:19 - 00002197 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-04 13:20 - 2014-11-13 18:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-07-03 06:28 - 2014-11-16 12:31 - 00069992 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2015-07-01 09:31 - 2009-07-14 07:08 - 00032524 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-07-01 09:31 - 2009-07-14 07:08 - 00032524 _____ C:\Windows\Tasks\SCHEDLGU(16).TXT
2015-06-30 20:28 - 2009-07-14 06:45 - 05232880 _____ C:\Windows\system32\FNTCACHE.DAT
2015-06-29 20:27 - 2014-11-13 18:11 - 00113768 _____ C:\Users\Dominik\AppData\Local\GDIPFONTCACHEV1.DAT
2015-06-27 18:49 - 2015-02-23 11:05 - 00000000 ____D C:\Program Files (x86)\Bloody5
2015-06-27 15:40 - 2014-11-13 18:28 - 00442264 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswsp.sys
==================== Files in the root of some directories =======
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\Dominik\AppData\Roaming\5KSR0Iz3PD
2015-02-03 20:18 - 2015-06-02 20:34 - 0000132 _____ () C:\Users\Dominik\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Dominik\AppData\Roaming\B3CeDyO9Ws5U19
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\Dominik\AppData\Roaming\E0uiPi8fnileLWjmG2fqzPFeMr1
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Dominik\AppData\Roaming\Ek4haOqhx
2015-07-22 11:45 - 2015-07-22 12:26 - 0000115 _____ () C:\Users\Dominik\AppData\Roaming\LogFile.txt
2015-07-13 16:31 - 2015-07-13 16:31 - 0000122 _____ () C:\Users\Dominik\AppData\Roaming\profiles.ini
2014-12-26 16:34 - 2014-12-26 16:34 - 0033193 _____ () C:\Users\Dominik\AppData\Roaming\UserTile.png
2015-06-12 20:12 - 2015-06-12 20:12 - 212585352 _____ () C:\Users\Dominik\AppData\Local\ACCCx3_1_0_108.zip.aamdownload
2015-06-12 20:12 - 2015-06-12 20:12 - 0002489 _____ () C:\Users\Dominik\AppData\Local\ACCCx3_1_0_108.zip.aamdownload.aamd
2015-05-08 16:23 - 2015-05-08 16:23 - 0001480 _____ () C:\Users\Dominik\AppData\Local\Adobe Uložit pro web 12.0 Prefs
2015-07-16 20:28 - 2015-07-16 20:28 - 0003584 _____ () C:\Users\Dominik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-07-27 12:15 - 2015-07-27 12:15 - 0000001 _____ () C:\Users\Dominik\AppData\Local\llftool.4.40.agreement
2015-06-02 20:29 - 2015-06-02 20:29 - 0000218 _____ () C:\Users\Dominik\AppData\Local\recently-used.xbel
2014-11-14 15:57 - 2015-01-09 19:12 - 0007597 _____ () C:\Users\Dominik\AppData\Local\resmon.resmoncfg
2015-07-13 17:13 - 2015-07-13 17:13 - 0000000 _____ () C:\Users\Dominik\AppData\Local\Temp.dat
2014-12-22 13:49 - 2014-12-22 13:49 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2011-04-01 11:21 - 2010-07-07 01:10 - 0131472 _____ () C:\ProgramData\FullRemove.exe
2014-12-26 16:07 - 2014-12-26 16:14 - 0000193 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
2014-11-14 01:58 - 2014-11-14 01:58 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
2014-11-14 01:57 - 2014-11-14 01:58 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
Some files in TEMP:
====================
C:\Users\Dominik\AppData\Local\Temp\141445.exe
C:\Users\Dominik\AppData\Local\Temp\8080.exe
C:\Users\Dominik\AppData\Local\Temp\AutoRun.exe
C:\Users\Dominik\AppData\Local\Temp\AutoRunGUI.dll
C:\Users\Dominik\AppData\Local\Temp\eauninstall.exe
C:\Users\Dominik\AppData\Local\Temp\jre-8u51-windows-au.exe
C:\Users\Dominik\AppData\Local\Temp\Need for Speed Underground 2_uninst.exe
C:\Users\Dominik\AppData\Local\Temp\Opera_NI_stable.exe
C:\Users\Dominik\AppData\Local\Temp\Quarantine.exe
C:\Users\Dominik\AppData\Local\Temp\sqlite3.dll
C:\Users\Dominik\AppData\Local\Temp\ssins.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-07-24 10:25
==================== End of log ============================
Recovery Scan Tool (FRST) (x64) Version:26-07-2015
Ran by Dominik (administrator) on DOMINIK-PC (27-07-2015 14:50:22)
Running from C:\Users\Dominik\Downloads
Loaded Profiles: Dominik (Available Profiles: Dominik)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ASUS) C:\Windows\AsScrPro.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(BitTorrent Inc.) C:\Users\Dominik\AppData\Roaming\BitTorrent\BitTorrent.exe
(PS Media s.r.o.) C:\Windows\SysWOW64\ssins.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [617120 2011-03-13] (Atheros Communications)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1396592 2000-01-01] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2631824 2015-07-14] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-15] (Avast Software s.r.o.)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-08] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-18] (ASUS)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1973447134-484782693-1030435007-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8202008 2015-04-08] (Piriform Ltd)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [176904 2015-06-17] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [155280 2015-06-17] (NVIDIA Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-05-10] (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll [2010-09-02] (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll [2010-09-02] (eCareme Technologies, Inc.)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-1973447134-484782693-1030435007-1001\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKU\S-1-5-21-1973447134-484782693-1030435007-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
HKU\S-1-5-21-1973447134-484782693-1030435007-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1973447134-484782693-1030435007-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-22] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-22] (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{BE4E406D-26EB-4F8E-A890-A6C19B58E389}: [DhcpNameServer] 192.168.1.254
FireFox:
========
FF ProfilePath: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713
FF DefaultSearchUrl: https://www.google.com/search/?trackid=sp-006
FF SearchEngineOrder.1: Google (avast)
FF SelectedSearchEngine: Google (avast)
FF Homepage: about:home
FF Keyword.URL: https://www.google.com/search/?trackid=sp-006
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-21] ()
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-21] ()
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-22] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems)
FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll [2010-01-23] (Zeon Corporation)
FF Plugin HKU\S-1-5-21-1973447134-484782693-1030435007-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Dominik\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-12-05] (Unity Technologies ApS)
FF SearchPlugin: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713\searchplugins\google-avast.xml [2015-07-13]
FF SearchPlugin: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713\searchplugins\WebSearch.xml [2015-07-26]
FF Extension: No Name - C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713\Extensions\1436796100_xpi [2015-07-13]
FF Extension: Adblock Plus - C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-03-14]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-12]
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Avast Online Security) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-04-21]
CHR Extension: (VideoDownloadConverter) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ikgjglmlehllifdekcggaapkaplbdpje [2015-07-26]
CHR Extension: (CinemaP-1.9cV18.07) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi [2015-07-13]
CHR Extension: (Google Wallet) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-21]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-14]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) [File not signed]
S3 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-05-10] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4034896 2015-05-10] (Avast Software)
R2 Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [897088 2010-11-03] (Intel Corporation) [File not signed]
S3 Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1298496 2010-11-03] (Intel Corporation) [File not signed]
R2 Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [983104 2010-11-03] (Intel Corporation) [File not signed]
S3 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2014-12-03] (Freemake) [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155216 2015-07-14] (NVIDIA Corporation)
S4 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1871504 2015-07-14] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544592 2015-07-14] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1910640 2015-03-14] (Electronic Arts)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2014-11-29] ()
R2 ssinstall; C:\Windows\SysWOW64\ssins.exe [2324216 2015-07-27] (PS Media s.r.o.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-05-10] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-05-10] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-05-10] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-05-10] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-05-10] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-06-27] (Avast Software s.r.o.)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-05-10] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-05-10] ()
R1 ATKWMIACPIIO_; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [17536 2011-05-26] (ASUS)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-11-22] (Disc Soft Ltd)
U5 FontCache3.0.0.0; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [42856 2010-11-05] (Microsoft Corporation)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2014-12-31] (REALiX(tm))
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-04-14] (Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-07-14] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [47976 2015-07-03] (NVIDIA Corporation)
S3 REN2CAP_DRIVER; C:\Windows\System32\drivers\ren2cap.sys [46728 2011-11-07] ()
R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-16] ()
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-05-10] (Avast Software)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-27 14:50 - 2015-07-27 14:50 - 02146816 _____ (Farbar) C:\Users\Dominik\Downloads\FRST64.exe
2015-07-27 14:50 - 2015-07-27 14:50 - 00017901 _____ C:\Users\Dominik\Downloads\FRST.txt
2015-07-27 14:50 - 2015-07-27 14:50 - 00000000 ____D C:\FRST
2015-07-27 14:28 - 2015-07-27 14:42 - 00000000 ____D C:\Users\Dominik\AppData\Local\LogMeIn Rescue Calling Card
2015-07-27 14:27 - 2015-07-27 14:33 - 00000000 ____D C:\Program Files (x86)\LogMeIn Rescue Calling Card
2015-07-27 14:27 - 2015-07-27 14:30 - 00009359 _____ C:\Windows\SysWOW64\sinstall.log
2015-07-27 14:27 - 2015-07-27 14:27 - 02324216 _____ (PS Media s.r.o.) C:\Windows\SysWOW64\ssins.exe
2015-07-27 14:27 - 2015-07-27 14:27 - 00002409 _____ C:\Users\Public\Desktop\Pomoc s poèítaèem na dálku NEJDETO.CZ.lnk
2015-07-27 14:27 - 2015-07-27 14:27 - 00000079 _____ C:\Windows\SysWOW64\ssinstall-uninstall.bat
2015-07-27 14:27 - 2015-07-27 14:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pomoc s počítačem na dálku NEJDETO.CZ
2015-07-27 14:26 - 2015-07-27 14:26 - 03075192 _____ (PS Media s.r.o.) C:\Users\Dominik\Downloads\Servis Slunecnice.cz - 059_slunecnice.exe
2015-07-27 14:17 - 2015-07-27 14:17 - 00105275 _____ C:\Users\Dominik\Downloads\spmn140.zip
2015-07-27 12:15 - 2015-07-27 12:15 - 00000001 _____ C:\Users\Dominik\AppData\Local\llftool.4.40.agreement
2015-07-27 10:08 - 2015-07-27 10:08 - 00002653 _____ C:\Users\Dominik\Desktop\BitTorrent.lnk
2015-07-27 10:08 - 2015-07-27 10:08 - 00002653 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2015-07-27 10:07 - 2015-07-27 14:49 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\BitTorrent
2015-07-27 08:58 - 2015-07-27 08:58 - 00000000 ___RD C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2015-07-26 19:40 - 2015-07-26 19:40 - 00000000 ____D C:\Users\Dominik\AppData\Local\NFS Underground 2
2015-07-26 19:30 - 2015-07-26 19:30 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2015-07-26 18:18 - 2015-07-26 18:18 - 00000000 ____D C:\Program Files (x86)\Crossbrowse
2015-07-26 18:16 - 2015-07-26 18:25 - 00000000 ____D C:\Program Files (x86)\SystemContinue
2015-07-26 18:15 - 2015-07-26 18:25 - 00000000 ____D C:\Program Files (x86)\VideoDownloadConverter
2015-07-26 18:15 - 2015-07-26 18:25 - 00000000 ____D C:\Program Files (x86)\bestadblocker
2015-07-26 18:14 - 2015-07-26 18:25 - 00000000 ____D C:\Program Files (x86)\CuttThePerice
2015-07-26 18:14 - 2015-07-26 18:25 - 00000000 ____D C:\Program Files (x86)\CutThePrice
2015-07-26 18:14 - 2015-07-26 18:24 - 00000000 ____D C:\ProgramData\mgnkmgbhgifiigaobnhmmmeffjkllbmh
2015-07-26 18:14 - 2015-07-26 18:14 - 00000000 ____D C:\Users\Dominik\AppData\Local\globalUpdate
2015-07-26 18:14 - 2015-07-26 18:14 - 00000000 ____D C:\Program Files (x86)\globalUpdate
2015-07-26 18:13 - 2015-07-26 18:24 - 00000000 ____D C:\ProgramData\{23831a83-005e-f325-2383-31a830056a0c}
2015-07-26 18:11 - 2015-07-26 18:26 - 00000000 ____D C:\ProgramData\DhmReu
2015-07-26 18:11 - 2015-07-26 18:16 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\systweak
2015-07-26 12:33 - 2015-07-26 12:33 - 00000000 ____D C:\Users\Dominik\Documents\PassMark
2015-07-26 12:32 - 2015-07-26 12:32 - 00000000 ____D C:\ProgramData\Passmark
2015-07-26 11:20 - 2015-07-26 18:15 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
2015-07-24 21:13 - 2015-07-24 21:15 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2015-07-24 21:13 - 2015-07-24 21:13 - 00001188 _____ C:\Users\Dominik\Desktop\CrystalDiskInfo.lnk
2015-07-24 21:13 - 2015-07-24 21:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2015-07-24 18:46 - 2015-07-26 20:01 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\SpinTires
2015-07-24 18:30 - 2015-07-24 18:30 - 00000000 ____D C:\Users\Dominik\AppData\Local\Steam
2015-07-24 18:30 - 2015-07-24 18:30 - 00000000 ____D C:\Users\Dominik\AppData\Local\CEF
2015-07-24 18:20 - 2015-07-27 10:16 - 00000000 ____D C:\Program Files (x86)\Steam
2015-07-24 18:20 - 2015-07-24 18:20 - 00000965 _____ C:\Users\Public\Desktop\Steam.lnk
2015-07-24 18:20 - 2015-07-24 18:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-07-24 18:19 - 2015-07-24 18:19 - 00000750 _____ C:\Users\Dominik\Desktop\Spintires.lnk
2015-07-23 10:35 - 2015-07-27 14:10 - 00000000 ____D C:\Program Files (x86)\AIDA64 Extreme
2015-07-22 19:50 - 2015-07-22 19:50 - 00000000 ____D C:\Windows\CheckSur
2015-07-22 12:53 - 2015-07-22 14:49 - 00000000 ____D C:\Users\Dominik\Documents\Windows Updates Downloader
2015-07-22 12:35 - 2015-07-22 12:35 - 00000110 ____H C:\Users\Dominik\Desktop\nebe.jpg.uid-zps
2015-07-22 12:34 - 2015-07-22 12:34 - 00000110 ____H C:\Users\Dominik\Desktop\puvodni.jpg.uid-zps
2015-07-22 12:28 - 2015-07-22 12:28 - 00000000 ____D C:\Program Files (x86)\VITSOFT
2015-07-22 12:05 - 2015-07-22 12:05 - 00000000 ____D C:\ProgramData\VIPRE
2015-07-22 12:05 - 2015-07-22 12:05 - 00000000 ____D C:\Program Files\Common Files\AV
2015-07-22 11:45 - 2015-07-22 12:26 - 00000000 ____D C:\ProgramData\ParetoLogic
2015-07-22 11:45 - 2015-07-22 11:45 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\ParetoLogic
2015-07-22 11:06 - 2015-07-22 11:07 - 00000000 ____D C:\KVRT_Data
2015-07-21 13:57 - 2015-07-21 13:59 - 00000000 ____D C:\AdwCleaner
2015-07-19 13:22 - 2015-07-19 13:22 - 00000916 _____ C:\Users\Dominik\Desktop\Euro Truck Simulator 2 (64-bit).lnk
2015-07-19 12:02 - 2015-07-19 12:02 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 v1.18.1s (26 DLC)
2015-07-19 11:34 - 2015-07-19 11:34 - 00000000 ____D C:\Windows\SysWOW64\NV
2015-07-19 11:34 - 2015-07-19 11:34 - 00000000 ____D C:\Windows\system32\NV
2015-07-19 11:30 - 2015-07-19 11:30 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-07-19 11:30 - 2015-06-17 11:10 - 42729104 _____ C:\Windows\system32\nvcompiler.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 37748880 _____ C:\Windows\SysWOW64\nvcompiler.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 30481552 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 22947144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 17724600 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 16145200 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 15866992 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 15224784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 14497520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 13263056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 11831856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 11011216 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-07-19 11:30 - 2015-06-17 11:10 - 02932368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 02599752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01898128 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435330.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01557832 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435330.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01060168 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01050768 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00982672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00975176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00150832 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00128696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00031376 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2015-07-18 11:38 - 2015-07-03 06:28 - 00065896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-07-18 11:38 - 2015-07-03 06:28 - 00047976 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-07-18 11:00 - 2015-07-19 12:02 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1-click run
2015-07-18 11:00 - 2015-07-18 11:00 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 v1.14.2s (18 DLC)
2015-07-18 10:40 - 2015-07-19 11:58 - 00000000 ____D C:\2-click run
2015-07-18 10:23 - 2015-07-18 10:23 - 00000985 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-07-18 10:23 - 2015-07-18 10:23 - 00000973 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-07-18 09:58 - 2015-07-18 09:58 - 00000000 ____D C:\ProgramData\Licenses
2015-07-18 09:52 - 2015-07-19 11:45 - 00000000 ____D C:\Program Files (x86)\DVR Converter 3.0
2015-07-18 09:52 - 2015-07-18 09:52 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Engelmann Media
2015-07-18 09:49 - 2015-07-18 09:49 - 00001093 _____ C:\Users\Public\Desktop\PhotoInstrument.lnk
2015-07-18 09:49 - 2015-07-18 09:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoInstrument
2015-07-18 09:49 - 2015-07-18 09:49 - 00000000 ____D C:\Program Files (x86)\PhotoInstrument
2015-07-16 20:28 - 2015-07-16 20:28 - 00003584 _____ C:\Users\Dominik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-07-16 16:34 - 2015-07-17 13:52 - 00000000 ____D C:\Program Files (x86)\Video Enhancer
2015-07-16 16:34 - 2015-07-16 16:34 - 00000000 ____D C:\Users\Dominik\AppData\Local\Video Enhancer
2015-07-14 10:01 - 2015-07-14 10:01 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01009.Wdf
2015-07-14 10:00 - 2015-07-14 10:00 - 01002728 _____ (Microsoft Corporation) C:\Windows\system32\WinUSBCoInstaller2.dll
2015-07-13 17:16 - 2015-07-27 13:22 - 00001008 _____ C:\Windows\Tasks\B3CeDyO9Ws5U19.job
2015-07-13 17:16 - 2015-07-27 08:58 - 00001000 _____ C:\Windows\Tasks\5KSR0Iz3PD.job
2015-07-13 17:16 - 2015-07-13 17:16 - 00004042 _____ C:\Windows\System32\Tasks\B3CeDyO9Ws5U19
2015-07-13 17:16 - 2015-07-13 17:16 - 00004034 _____ C:\Windows\System32\Tasks\5KSR0Iz3PD
2015-07-13 17:15 - 2015-07-13 17:20 - 00000004 _____ C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-07-13 17:14 - 2015-07-13 20:19 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Opera Software
2015-07-13 17:14 - 2015-07-13 20:19 - 00000000 ____D C:\Users\Dominik\AppData\Local\Opera Software
2015-07-13 17:13 - 2015-07-13 17:13 - 00000000 _____ C:\Users\Dominik\AppData\Local\Temp.dat
2015-07-13 17:12 - 2015-07-13 20:19 - 00000000 ____D C:\Program Files (x86)\Opera
2015-07-13 16:42 - 2015-07-13 16:42 - 00000000 _____ C:\autoexec.bat
2015-07-13 16:31 - 2015-07-13 16:31 - 00000122 _____ C:\Users\Dominik\AppData\Roaming\profiles.ini
2015-07-13 16:31 - 2015-07-13 16:31 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Crash Reports
2015-07-13 16:01 - 2015-07-13 16:18 - 00000000 ____D C:\Program Files (x86)\SystemVigor
2015-07-03 10:16 - 2015-07-04 14:43 - 00000000 ____D C:\Users\Dominik\AppData\Local\Arma 3
2015-07-03 10:16 - 2015-07-03 10:16 - 00000000 ____D C:\ProgramData\Bohemia Interactive
2015-07-03 09:46 - 2015-07-04 13:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-06-27 18:50 - 2015-06-27 18:50 - 00002023 _____ C:\Users\Public\Desktop\Bloody5.lnk
2015-06-27 18:50 - 2015-06-27 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bloody
2015-06-27 12:56 - 2015-07-23 11:44 - 00000000 ____D C:\Program Files (x86)\Windows Doctor
2015-06-27 12:53 - 2015-06-27 12:53 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Windows Doctor
2015-06-27 11:50 - 2015-06-27 11:50 - 00000000 ____D C:\Users\Dominik\Documents\Ashampoo Burning Studio 2015
2015-06-27 11:46 - 2015-06-27 11:46 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Ashampoo
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-27 14:22 - 2014-11-14 01:28 - 01061850 _____ C:\Windows\WindowsUpdate.log
2015-07-27 14:20 - 2015-04-05 12:46 - 00000000 ____D C:\Users\Dominik\AppData\Local\CrashDumps
2015-07-27 14:13 - 2014-11-14 01:41 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-07-27 14:01 - 2014-11-22 15:06 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\DAEMON Tools Lite
2015-07-27 14:01 - 2014-11-14 16:22 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\uTorrent
2015-07-27 13:20 - 2014-11-14 22:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-07-27 13:18 - 2014-11-14 22:04 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-07-27 13:18 - 2014-11-14 22:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-07-27 13:01 - 2009-07-14 06:45 - 00025968 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-07-27 13:01 - 2009-07-14 06:45 - 00025968 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-07-27 12:45 - 2009-07-14 07:13 - 00797170 _____ C:\Windows\system32\PerfStringBackup.INI
2015-07-27 12:00 - 2014-12-24 13:35 - 00000000 ____D C:\Users\Dominik\Documents\Euro Truck Simulator 2
2015-07-27 11:30 - 2014-11-26 21:29 - 00000000 ____D C:\Users\Dominik\Documents\My Games
2015-07-27 10:16 - 2014-11-13 18:30 - 00000000 ____D C:\Program Files\CCleaner
2015-07-27 10:15 - 2015-06-14 19:00 - 00000824 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-07-27 08:58 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-26 18:26 - 2014-11-13 18:11 - 00000000 ____D C:\Users\Dominik
2015-07-26 18:25 - 2014-11-14 01:49 - 00000000 ____D C:\ProgramData\P4G
2015-07-26 18:24 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration
2015-07-26 18:22 - 2014-11-23 13:04 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-07-25 14:40 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-07-25 14:39 - 2014-11-14 01:53 - 00002016 _____ C:\Windows\system32\ServiceFilter.ini
2015-07-22 12:36 - 2015-04-05 12:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 15
2015-07-22 12:36 - 2015-03-14 16:07 - 00000000 ____D C:\Users\Dominik\Desktop\Ashampoo
2015-07-22 10:15 - 2014-12-23 18:29 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\IObit
2015-07-22 10:15 - 2014-12-23 18:29 - 00000000 ____D C:\ProgramData\IObit
2015-07-22 10:07 - 2014-11-15 21:20 - 00000000 ____D C:\ProgramData\Oracle
2015-07-22 10:07 - 2014-11-15 21:20 - 00000000 ____D C:\Program Files (x86)\Java
2015-07-22 10:04 - 2014-11-15 21:23 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-07-22 09:58 - 2014-11-13 18:28 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-07-21 14:00 - 2014-11-14 20:59 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-07-21 11:44 - 2014-11-14 20:59 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-21 11:44 - 2014-11-14 20:59 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-21 11:44 - 2014-11-14 20:59 - 00003770 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-07-19 11:35 - 2014-11-14 01:38 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-07-19 11:35 - 2014-11-14 01:38 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2015-07-19 11:34 - 2014-11-14 01:39 - 00000000 ____D C:\ProgramData\NVIDIA
2015-07-19 11:32 - 2014-11-14 01:38 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-07-19 10:28 - 2014-11-13 18:12 - 00001415 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-07-18 10:08 - 2015-02-01 13:33 - 00000000 ____D C:\Program Files (x86)\Adobe Media Player
2015-07-16 13:30 - 2015-02-12 11:21 - 00000000 ____D C:\ProgramData\Freemake
2015-07-14 21:06 - 2015-02-07 12:21 - 01423120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-07-14 21:06 - 2015-02-07 12:21 - 01316184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-07-14 21:05 - 2015-02-07 12:21 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-07-14 21:05 - 2015-02-07 12:21 - 01710056 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-07-13 17:23 - 2015-02-15 14:20 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-07-13 17:19 - 2014-11-14 01:53 - 00002710 _____ C:\Windows\system32\AutoRunFilter.ini
2015-07-13 16:29 - 2015-02-12 11:20 - 00000000 ____D C:\Program Files (x86)\Freemake
2015-07-13 13:26 - 2014-11-14 20:56 - 00000000 ____D C:\Users\Dominik\AppData\Local\Adobe
2015-07-08 10:35 - 2015-04-21 19:19 - 00002197 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-04 13:20 - 2014-11-13 18:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-07-03 06:28 - 2014-11-16 12:31 - 00069992 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2015-07-01 09:31 - 2009-07-14 07:08 - 00032524 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-07-01 09:31 - 2009-07-14 07:08 - 00032524 _____ C:\Windows\Tasks\SCHEDLGU(16).TXT
2015-06-30 20:28 - 2009-07-14 06:45 - 05232880 _____ C:\Windows\system32\FNTCACHE.DAT
2015-06-29 20:27 - 2014-11-13 18:11 - 00113768 _____ C:\Users\Dominik\AppData\Local\GDIPFONTCACHEV1.DAT
2015-06-27 18:49 - 2015-02-23 11:05 - 00000000 ____D C:\Program Files (x86)\Bloody5
2015-06-27 15:40 - 2014-11-13 18:28 - 00442264 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswsp.sys
==================== Files in the root of some directories =======
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\Dominik\AppData\Roaming\5KSR0Iz3PD
2015-02-03 20:18 - 2015-06-02 20:34 - 0000132 _____ () C:\Users\Dominik\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Dominik\AppData\Roaming\B3CeDyO9Ws5U19
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\Dominik\AppData\Roaming\E0uiPi8fnileLWjmG2fqzPFeMr1
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Dominik\AppData\Roaming\Ek4haOqhx
2015-07-22 11:45 - 2015-07-22 12:26 - 0000115 _____ () C:\Users\Dominik\AppData\Roaming\LogFile.txt
2015-07-13 16:31 - 2015-07-13 16:31 - 0000122 _____ () C:\Users\Dominik\AppData\Roaming\profiles.ini
2014-12-26 16:34 - 2014-12-26 16:34 - 0033193 _____ () C:\Users\Dominik\AppData\Roaming\UserTile.png
2015-06-12 20:12 - 2015-06-12 20:12 - 212585352 _____ () C:\Users\Dominik\AppData\Local\ACCCx3_1_0_108.zip.aamdownload
2015-06-12 20:12 - 2015-06-12 20:12 - 0002489 _____ () C:\Users\Dominik\AppData\Local\ACCCx3_1_0_108.zip.aamdownload.aamd
2015-05-08 16:23 - 2015-05-08 16:23 - 0001480 _____ () C:\Users\Dominik\AppData\Local\Adobe Uložit pro web 12.0 Prefs
2015-07-16 20:28 - 2015-07-16 20:28 - 0003584 _____ () C:\Users\Dominik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-07-27 12:15 - 2015-07-27 12:15 - 0000001 _____ () C:\Users\Dominik\AppData\Local\llftool.4.40.agreement
2015-06-02 20:29 - 2015-06-02 20:29 - 0000218 _____ () C:\Users\Dominik\AppData\Local\recently-used.xbel
2014-11-14 15:57 - 2015-01-09 19:12 - 0007597 _____ () C:\Users\Dominik\AppData\Local\resmon.resmoncfg
2015-07-13 17:13 - 2015-07-13 17:13 - 0000000 _____ () C:\Users\Dominik\AppData\Local\Temp.dat
2014-12-22 13:49 - 2014-12-22 13:49 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2011-04-01 11:21 - 2010-07-07 01:10 - 0131472 _____ () C:\ProgramData\FullRemove.exe
2014-12-26 16:07 - 2014-12-26 16:14 - 0000193 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
2014-11-14 01:58 - 2014-11-14 01:58 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
2014-11-14 01:57 - 2014-11-14 01:58 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
Some files in TEMP:
====================
C:\Users\Dominik\AppData\Local\Temp\141445.exe
C:\Users\Dominik\AppData\Local\Temp\8080.exe
C:\Users\Dominik\AppData\Local\Temp\AutoRun.exe
C:\Users\Dominik\AppData\Local\Temp\AutoRunGUI.dll
C:\Users\Dominik\AppData\Local\Temp\eauninstall.exe
C:\Users\Dominik\AppData\Local\Temp\jre-8u51-windows-au.exe
C:\Users\Dominik\AppData\Local\Temp\Need for Speed Underground 2_uninst.exe
C:\Users\Dominik\AppData\Local\Temp\Opera_NI_stable.exe
C:\Users\Dominik\AppData\Local\Temp\Quarantine.exe
C:\Users\Dominik\AppData\Local\Temp\sqlite3.dll
C:\Users\Dominik\AppData\Local\Temp\ssins.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-07-24 10:25
==================== End of log ============================
- Přílohy
-
- Addition.zip
- (12.63 KiB) Staženo 54 x
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu
Ďakujem za rýchlu odpoveď,log posielam v prílohe 
- Přílohy
-
- AdwCleaner[S1].zip
- (1.1 KiB) Staženo 49 x
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu
Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:26-07-2015
Ran by Dominik (administrator) on DOMINIK-PC (27-07-2015 18:26:18)
Running from C:\Users\Dominik\Desktop
Loaded Profiles: Dominik (Available Profiles: Dominik)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ASUS) C:\Windows\AsScrPro.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(PS Media s.r.o.) C:\Windows\SysWOW64\ssins.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Users\Dominik\Desktop\Windows-KB890830-x64-V5.26.exe
(Microsoft Corporation) D:\5d3ef680f435f2573f4aef2b1985\mrtstub.exe
(Microsoft Corporation) C:\Windows\System32\MRT.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [617120 2011-03-13] (Atheros Communications)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1396592 2000-01-01] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2631824 2015-07-14] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-15] (Avast Software s.r.o.)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-08] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-18] (ASUS)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [176904 2015-06-17] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [155280 2015-06-17] (NVIDIA Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-05-10] (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll [2010-09-02] (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll [2010-09-02] (eCareme Technologies, Inc.)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-1973447134-484782693-1030435007-1001\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKU\S-1-5-21-1973447134-484782693-1030435007-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
HKU\S-1-5-21-1973447134-484782693-1030435007-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1973447134-484782693-1030435007-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-22] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-22] (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{BE4E406D-26EB-4F8E-A890-A6C19B58E389}: [DhcpNameServer] 192.168.1.254
FireFox:
========
FF ProfilePath: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713
FF DefaultSearchUrl: https://www.google.com/search/?trackid=sp-006
FF SearchEngineOrder.1: Google (avast)
FF SelectedSearchEngine: Google (avast)
FF Homepage: about:home
FF Keyword.URL: https://www.google.com/search/?trackid=sp-006
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-21] ()
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-21] ()
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-22] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems)
FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll [2010-01-23] (Zeon Corporation)
FF Plugin HKU\S-1-5-21-1973447134-484782693-1030435007-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Dominik\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-12-05] (Unity Technologies ApS)
FF SearchPlugin: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713\searchplugins\google-avast.xml [2015-07-13]
FF Extension: No Name - C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713\Extensions\1436796100_xpi [2015-07-13]
FF Extension: Adblock Plus - C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-03-14]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-12]
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Avast Online Security) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-04-21]
CHR Extension: (CinemaP-1.9cV26.07) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi [2015-07-13]
CHR Extension: (Google Wallet) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-21]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-14]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) [File not signed]
S3 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-05-10] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4034896 2015-05-10] (Avast Software)
R2 Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [897088 2010-11-03] (Intel Corporation) [File not signed]
S3 Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1298496 2010-11-03] (Intel Corporation) [File not signed]
R2 Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [983104 2010-11-03] (Intel Corporation) [File not signed]
S3 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2014-12-03] (Freemake) [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155216 2015-07-14] (NVIDIA Corporation)
S4 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1871504 2015-07-14] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544592 2015-07-14] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1910640 2015-03-14] (Electronic Arts)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2014-11-29] ()
R2 ssinstall; C:\Windows\SysWOW64\ssins.exe [2324216 2015-07-27] (PS Media s.r.o.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-05-10] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-05-10] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-05-10] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-05-10] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-05-10] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-06-27] (Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-05-10] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-05-10] ()
R1 ATKWMIACPIIO_; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [17536 2011-05-26] (ASUS)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-11-22] (Disc Soft Ltd)
U5 FontCache3.0.0.0; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [42856 2010-11-05] (Microsoft Corporation)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2014-12-31] (REALiX(tm))
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-04-14] (Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-07-14] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [47976 2015-07-03] (NVIDIA Corporation)
S3 REN2CAP_DRIVER; C:\Windows\System32\drivers\ren2cap.sys [46728 2011-11-07] ()
R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-16] ()
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-05-10] (Avast Software)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-27 18:26 - 2015-07-27 18:26 - 02146816 _____ (Farbar) C:\Users\Dominik\Desktop\FRST64.exe
2015-07-27 18:26 - 2015-07-27 18:26 - 00017608 _____ C:\Users\Dominik\Desktop\FRST.txt
2015-07-27 18:25 - 2015-07-27 18:25 - 02146816 _____ (Farbar) C:\Users\Dominik\Downloads\FRST64.exe.part
2015-07-27 17:52 - 2015-07-27 17:55 - 50057952 _____ (Microsoft Corporation) C:\Users\Dominik\Desktop\Windows-KB890830-x64-V5.26.exe
2015-07-27 17:26 - 2015-07-27 17:26 - 00000000 ___RD C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2015-07-27 17:07 - 2015-07-27 17:26 - 00000504 _____ C:\Windows\setupact.log
2015-07-27 17:07 - 2015-07-27 17:10 - 00078430 _____ C:\Windows\PFRO.log
2015-07-27 17:07 - 2015-07-27 17:07 - 00000000 _____ C:\Windows\setuperr.log
2015-07-27 15:23 - 2015-07-27 15:23 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\TeamViewer
2015-07-27 15:22 - 2015-07-27 15:22 - 05046592 _____ (TeamViewer) C:\Users\Dominik\Downloads\TeamViewerQS_cs-idc5dq4nsx.exe
2015-07-27 14:50 - 2015-07-27 18:26 - 00000000 ____D C:\FRST
2015-07-27 14:28 - 2015-07-27 14:42 - 00000000 ____D C:\Users\Dominik\AppData\Local\LogMeIn Rescue Calling Card
2015-07-27 14:27 - 2015-07-27 17:26 - 00000000 _____ C:\Windows\SysWOW64\sinstall.log
2015-07-27 14:27 - 2015-07-27 14:33 - 00000000 ____D C:\Program Files (x86)\LogMeIn Rescue Calling Card
2015-07-27 14:27 - 2015-07-27 14:27 - 02324216 _____ (PS Media s.r.o.) C:\Windows\SysWOW64\ssins.exe
2015-07-27 14:27 - 2015-07-27 14:27 - 00002409 _____ C:\Users\Public\Desktop\Pomoc s poèítaèem na dálku NEJDETO.CZ.lnk
2015-07-27 14:27 - 2015-07-27 14:27 - 00000079 _____ C:\Windows\SysWOW64\ssinstall-uninstall.bat
2015-07-27 14:27 - 2015-07-27 14:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pomoc s počítačem na dálku NEJDETO.CZ
2015-07-27 12:15 - 2015-07-27 12:15 - 00000001 _____ C:\Users\Dominik\AppData\Local\llftool.4.40.agreement
2015-07-27 10:08 - 2015-07-27 10:08 - 00002653 _____ C:\Users\Dominik\Desktop\BitTorrent.lnk
2015-07-27 10:08 - 2015-07-27 10:08 - 00002653 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2015-07-27 10:07 - 2015-07-27 17:06 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\BitTorrent
2015-07-26 19:40 - 2015-07-26 19:40 - 00000000 ____D C:\Users\Dominik\AppData\Local\NFS Underground 2
2015-07-26 19:30 - 2015-07-26 19:30 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2015-07-26 18:16 - 2015-07-27 16:44 - 00000000 ____D C:\Program Files (x86)\SystemContinue
2015-07-26 12:32 - 2015-07-26 12:32 - 00000000 ____D C:\ProgramData\Passmark
2015-07-26 11:20 - 2015-07-26 18:15 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
2015-07-24 21:13 - 2015-07-24 21:15 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2015-07-24 21:13 - 2015-07-24 21:13 - 00001188 _____ C:\Users\Dominik\Desktop\CrystalDiskInfo.lnk
2015-07-24 21:13 - 2015-07-24 21:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2015-07-24 18:46 - 2015-07-26 20:01 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\SpinTires
2015-07-24 18:30 - 2015-07-24 18:30 - 00000000 ____D C:\Users\Dominik\AppData\Local\Steam
2015-07-24 18:30 - 2015-07-24 18:30 - 00000000 ____D C:\Users\Dominik\AppData\Local\CEF
2015-07-24 18:20 - 2015-07-27 10:16 - 00000000 ____D C:\Program Files (x86)\Steam
2015-07-24 18:20 - 2015-07-24 18:20 - 00000965 _____ C:\Users\Public\Desktop\Steam.lnk
2015-07-24 18:20 - 2015-07-24 18:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-07-24 18:19 - 2015-07-24 18:19 - 00000750 _____ C:\Users\Dominik\Desktop\Spintires.lnk
2015-07-23 10:35 - 2015-07-27 14:10 - 00000000 ____D C:\Program Files (x86)\AIDA64 Extreme
2015-07-22 19:50 - 2015-07-22 19:50 - 00000000 ____D C:\Windows\CheckSur
2015-07-22 12:35 - 2015-07-22 12:35 - 00000110 ____H C:\Users\Dominik\Desktop\nebe.jpg.uid-zps
2015-07-22 12:34 - 2015-07-22 12:34 - 00000110 ____H C:\Users\Dominik\Desktop\puvodni.jpg.uid-zps
2015-07-22 12:28 - 2015-07-22 12:28 - 00000000 ____D C:\Program Files (x86)\VITSOFT
2015-07-22 12:05 - 2015-07-22 12:05 - 00000000 ____D C:\ProgramData\VIPRE
2015-07-22 12:05 - 2015-07-22 12:05 - 00000000 ____D C:\Program Files\Common Files\AV
2015-07-22 11:06 - 2015-07-22 11:07 - 00000000 ____D C:\KVRT_Data
2015-07-21 13:57 - 2015-07-27 17:24 - 00000000 ____D C:\AdwCleaner
2015-07-19 13:22 - 2015-07-19 13:22 - 00000916 _____ C:\Users\Dominik\Desktop\Euro Truck Simulator 2 (64-bit).lnk
2015-07-19 12:02 - 2015-07-19 12:02 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 v1.18.1s (26 DLC)
2015-07-19 11:34 - 2015-07-19 11:34 - 00000000 ____D C:\Windows\SysWOW64\NV
2015-07-19 11:34 - 2015-07-19 11:34 - 00000000 ____D C:\Windows\system32\NV
2015-07-19 11:30 - 2015-07-19 11:30 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-07-19 11:30 - 2015-06-17 11:10 - 42729104 _____ C:\Windows\system32\nvcompiler.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 37748880 _____ C:\Windows\SysWOW64\nvcompiler.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 30481552 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 22947144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 17724600 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 16145200 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 15866992 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 15224784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 14497520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 13263056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 11831856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 11011216 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-07-19 11:30 - 2015-06-17 11:10 - 02932368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 02599752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01898128 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435330.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01557832 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435330.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01060168 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01050768 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00982672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00975176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00150832 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00128696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00031376 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2015-07-18 11:38 - 2015-07-03 06:28 - 00065896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-07-18 11:38 - 2015-07-03 06:28 - 00047976 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-07-18 11:00 - 2015-07-19 12:02 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1-click run
2015-07-18 11:00 - 2015-07-18 11:00 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 v1.14.2s (18 DLC)
2015-07-18 10:40 - 2015-07-19 11:58 - 00000000 ____D C:\2-click run
2015-07-18 10:23 - 2015-07-18 10:23 - 00000985 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-07-18 10:23 - 2015-07-18 10:23 - 00000973 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-07-18 09:58 - 2015-07-18 09:58 - 00000000 ____D C:\ProgramData\Licenses
2015-07-18 09:52 - 2015-07-19 11:45 - 00000000 ____D C:\Program Files (x86)\DVR Converter 3.0
2015-07-18 09:52 - 2015-07-18 09:52 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Engelmann Media
2015-07-18 09:49 - 2015-07-18 09:49 - 00001093 _____ C:\Users\Public\Desktop\PhotoInstrument.lnk
2015-07-18 09:49 - 2015-07-18 09:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoInstrument
2015-07-18 09:49 - 2015-07-18 09:49 - 00000000 ____D C:\Program Files (x86)\PhotoInstrument
2015-07-16 20:28 - 2015-07-16 20:28 - 00003584 _____ C:\Users\Dominik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-07-16 16:34 - 2015-07-17 13:52 - 00000000 ____D C:\Program Files (x86)\Video Enhancer
2015-07-16 16:34 - 2015-07-16 16:34 - 00000000 ____D C:\Users\Dominik\AppData\Local\Video Enhancer
2015-07-14 10:01 - 2015-07-14 10:01 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01009.Wdf
2015-07-14 10:00 - 2015-07-14 10:00 - 01002728 _____ (Microsoft Corporation) C:\Windows\system32\WinUSBCoInstaller2.dll
2015-07-13 17:16 - 2015-07-27 17:26 - 00001008 _____ C:\Windows\Tasks\B3CeDyO9Ws5U19.job
2015-07-13 17:16 - 2015-07-27 17:26 - 00001000 _____ C:\Windows\Tasks\5KSR0Iz3PD.job
2015-07-13 17:16 - 2015-07-13 17:16 - 00004042 _____ C:\Windows\System32\Tasks\B3CeDyO9Ws5U19
2015-07-13 17:16 - 2015-07-13 17:16 - 00004034 _____ C:\Windows\System32\Tasks\5KSR0Iz3PD
2015-07-13 17:15 - 2015-07-13 17:20 - 00000004 _____ C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-07-13 17:14 - 2015-07-13 20:19 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Opera Software
2015-07-13 17:14 - 2015-07-13 20:19 - 00000000 ____D C:\Users\Dominik\AppData\Local\Opera Software
2015-07-13 17:13 - 2015-07-13 17:13 - 00000000 _____ C:\Users\Dominik\AppData\Local\Temp.dat
2015-07-13 17:12 - 2015-07-13 20:19 - 00000000 ____D C:\Program Files (x86)\Opera
2015-07-13 16:42 - 2015-07-13 16:42 - 00000000 _____ C:\autoexec.bat
2015-07-13 16:31 - 2015-07-13 16:31 - 00000122 _____ C:\Users\Dominik\AppData\Roaming\profiles.ini
2015-07-13 16:31 - 2015-07-13 16:31 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Crash Reports
2015-07-13 16:01 - 2015-07-13 16:18 - 00000000 ____D C:\Program Files (x86)\SystemVigor
2015-07-03 10:16 - 2015-07-04 14:43 - 00000000 ____D C:\Users\Dominik\AppData\Local\Arma 3
2015-07-03 10:16 - 2015-07-03 10:16 - 00000000 ____D C:\ProgramData\Bohemia Interactive
2015-07-03 09:46 - 2015-07-04 13:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-06-27 18:50 - 2015-06-27 18:50 - 00002023 _____ C:\Users\Public\Desktop\Bloody5.lnk
2015-06-27 18:50 - 2015-06-27 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bloody
2015-06-27 12:56 - 2015-07-23 11:44 - 00000000 ____D C:\Program Files (x86)\Windows Doctor
2015-06-27 12:53 - 2015-06-27 12:53 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Windows Doctor
2015-06-27 11:50 - 2015-06-27 11:50 - 00000000 ____D C:\Users\Dominik\Documents\Ashampoo Burning Studio 2015
2015-06-27 11:46 - 2015-06-27 11:46 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Ashampoo
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-27 18:12 - 2015-02-03 20:18 - 00000132 _____ C:\Users\Dominik\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2015-07-27 17:34 - 2009-07-14 06:45 - 00025968 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-07-27 17:34 - 2009-07-14 06:45 - 00025968 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-07-27 17:29 - 2014-11-14 01:28 - 01083326 _____ C:\Windows\WindowsUpdate.log
2015-07-27 17:26 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-27 17:14 - 2014-11-26 21:29 - 00000000 ____D C:\Users\Dominik\Documents\My Games
2015-07-27 17:08 - 2014-11-14 01:53 - 00002026 _____ C:\Windows\system32\ServiceFilter.ini
2015-07-27 17:05 - 2015-02-01 13:33 - 00000000 ____D C:\Program Files (x86)\Adobe Media Player
2015-07-27 16:22 - 2015-02-15 14:20 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-07-27 15:58 - 2009-07-14 07:13 - 00797170 _____ C:\Windows\system32\PerfStringBackup.INI
2015-07-27 14:20 - 2015-04-05 12:46 - 00000000 ____D C:\Users\Dominik\AppData\Local\CrashDumps
2015-07-27 14:13 - 2014-11-14 01:41 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-07-27 14:01 - 2014-11-22 15:06 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\DAEMON Tools Lite
2015-07-27 14:01 - 2014-11-14 16:22 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\uTorrent
2015-07-27 13:20 - 2014-11-14 22:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-07-27 13:18 - 2014-11-14 22:04 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-07-27 13:18 - 2014-11-14 22:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-07-27 12:00 - 2014-12-24 13:35 - 00000000 ____D C:\Users\Dominik\Documents\Euro Truck Simulator 2
2015-07-27 10:16 - 2014-11-13 18:30 - 00000000 ____D C:\Program Files\CCleaner
2015-07-27 10:15 - 2015-06-14 19:00 - 00000824 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-07-26 18:26 - 2014-11-13 18:11 - 00000000 ____D C:\Users\Dominik
2015-07-26 18:25 - 2014-11-14 01:49 - 00000000 ____D C:\ProgramData\P4G
2015-07-26 18:24 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration
2015-07-26 18:22 - 2014-11-23 13:04 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-07-25 14:40 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-07-22 12:36 - 2015-04-05 12:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 15
2015-07-22 12:36 - 2015-03-14 16:07 - 00000000 ____D C:\Users\Dominik\Desktop\Ashampoo
2015-07-22 10:15 - 2014-12-23 18:29 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\IObit
2015-07-22 10:15 - 2014-12-23 18:29 - 00000000 ____D C:\ProgramData\IObit
2015-07-22 10:07 - 2014-11-15 21:20 - 00000000 ____D C:\ProgramData\Oracle
2015-07-22 10:07 - 2014-11-15 21:20 - 00000000 ____D C:\Program Files (x86)\Java
2015-07-22 10:04 - 2014-11-15 21:23 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-07-22 09:58 - 2014-11-13 18:28 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-07-21 14:00 - 2014-11-14 20:59 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-07-21 11:44 - 2014-11-14 20:59 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-21 11:44 - 2014-11-14 20:59 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-21 11:44 - 2014-11-14 20:59 - 00003770 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-07-19 11:35 - 2014-11-14 01:38 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-07-19 11:35 - 2014-11-14 01:38 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2015-07-19 11:34 - 2014-11-14 01:39 - 00000000 ____D C:\ProgramData\NVIDIA
2015-07-19 11:32 - 2014-11-14 01:38 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-07-19 10:28 - 2014-11-13 18:12 - 00001415 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-07-16 13:30 - 2015-02-12 11:21 - 00000000 ____D C:\ProgramData\Freemake
2015-07-14 21:06 - 2015-02-07 12:21 - 01423120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-07-14 21:06 - 2015-02-07 12:21 - 01316184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-07-14 21:05 - 2015-02-07 12:21 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-07-14 21:05 - 2015-02-07 12:21 - 01710056 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-07-13 17:19 - 2014-11-14 01:53 - 00002710 _____ C:\Windows\system32\AutoRunFilter.ini
2015-07-13 16:29 - 2015-02-12 11:20 - 00000000 ____D C:\Program Files (x86)\Freemake
2015-07-13 13:26 - 2014-11-14 20:56 - 00000000 ____D C:\Users\Dominik\AppData\Local\Adobe
2015-07-08 10:35 - 2015-04-21 19:19 - 00002197 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-04 13:20 - 2014-11-13 18:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-07-03 08:43 - 2014-11-14 16:18 - 130333168 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-07-03 06:28 - 2014-11-16 12:31 - 00069992 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2015-07-01 09:31 - 2009-07-14 07:08 - 00032524 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-07-01 09:31 - 2009-07-14 07:08 - 00032524 _____ C:\Windows\Tasks\SCHEDLGU(16).TXT
2015-06-30 20:28 - 2009-07-14 06:45 - 05232880 _____ C:\Windows\system32\FNTCACHE.DAT
2015-06-29 20:27 - 2014-11-13 18:11 - 00113768 _____ C:\Users\Dominik\AppData\Local\GDIPFONTCACHEV1.DAT
2015-06-27 18:49 - 2015-02-23 11:05 - 00000000 ____D C:\Program Files (x86)\Bloody5
2015-06-27 15:40 - 2014-11-13 18:28 - 00442264 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswsp.sys
==================== Files in the root of some directories =======
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\Dominik\AppData\Roaming\5KSR0Iz3PD
2015-02-03 20:18 - 2015-07-27 18:12 - 0000132 _____ () C:\Users\Dominik\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Dominik\AppData\Roaming\B3CeDyO9Ws5U19
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\Dominik\AppData\Roaming\E0uiPi8fnileLWjmG2fqzPFeMr1
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Dominik\AppData\Roaming\Ek4haOqhx
2015-07-22 11:45 - 2015-07-22 12:26 - 0000115 _____ () C:\Users\Dominik\AppData\Roaming\LogFile.txt
2015-07-13 16:31 - 2015-07-13 16:31 - 0000122 _____ () C:\Users\Dominik\AppData\Roaming\profiles.ini
2014-12-26 16:34 - 2014-12-26 16:34 - 0033193 _____ () C:\Users\Dominik\AppData\Roaming\UserTile.png
2015-06-12 20:12 - 2015-06-12 20:12 - 212585352 _____ () C:\Users\Dominik\AppData\Local\ACCCx3_1_0_108.zip.aamdownload
2015-06-12 20:12 - 2015-06-12 20:12 - 0002489 _____ () C:\Users\Dominik\AppData\Local\ACCCx3_1_0_108.zip.aamdownload.aamd
2015-05-08 16:23 - 2015-05-08 16:23 - 0001480 _____ () C:\Users\Dominik\AppData\Local\Adobe Uložit pro web 12.0 Prefs
2015-07-16 20:28 - 2015-07-16 20:28 - 0003584 _____ () C:\Users\Dominik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-07-27 12:15 - 2015-07-27 12:15 - 0000001 _____ () C:\Users\Dominik\AppData\Local\llftool.4.40.agreement
2015-06-02 20:29 - 2015-06-02 20:29 - 0000218 _____ () C:\Users\Dominik\AppData\Local\recently-used.xbel
2014-11-14 15:57 - 2015-01-09 19:12 - 0007597 _____ () C:\Users\Dominik\AppData\Local\resmon.resmoncfg
2015-07-13 17:13 - 2015-07-13 17:13 - 0000000 _____ () C:\Users\Dominik\AppData\Local\Temp.dat
2014-12-22 13:49 - 2014-12-22 13:49 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2011-04-01 11:21 - 2010-07-07 01:10 - 0131472 _____ () C:\ProgramData\FullRemove.exe
2014-12-26 16:07 - 2014-12-26 16:14 - 0000193 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
2014-11-14 01:58 - 2014-11-14 01:58 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
2014-11-14 01:57 - 2014-11-14 01:58 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
Some files in TEMP:
====================
C:\Users\Dominik\AppData\Local\Temp\AutoRun.exe
C:\Users\Dominik\AppData\Local\Temp\AutoRunGUI.dll
C:\Users\Dominik\AppData\Local\Temp\eauninstall.exe
C:\Users\Dominik\AppData\Local\Temp\jre-8u51-windows-au.exe
C:\Users\Dominik\AppData\Local\Temp\Need for Speed Underground 2_uninst.exe
C:\Users\Dominik\AppData\Local\Temp\Opera_NI_stable.exe
C:\Users\Dominik\AppData\Local\Temp\Quarantine.exe
C:\Users\Dominik\AppData\Local\Temp\sqlite3.dll
C:\Users\Dominik\AppData\Local\Temp\ssins.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-07-24 10:25
==================== End of log ============================
Ran by Dominik (administrator) on DOMINIK-PC (27-07-2015 18:26:18)
Running from C:\Users\Dominik\Desktop
Loaded Profiles: Dominik (Available Profiles: Dominik)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ASUS) C:\Windows\AsScrPro.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(PS Media s.r.o.) C:\Windows\SysWOW64\ssins.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Users\Dominik\Desktop\Windows-KB890830-x64-V5.26.exe
(Microsoft Corporation) D:\5d3ef680f435f2573f4aef2b1985\mrtstub.exe
(Microsoft Corporation) C:\Windows\System32\MRT.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [617120 2011-03-13] (Atheros Communications)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1396592 2000-01-01] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2631824 2015-07-14] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-15] (Avast Software s.r.o.)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-08] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-18] (ASUS)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [176904 2015-06-17] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [155280 2015-06-17] (NVIDIA Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-05-10] (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll [2010-09-02] (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll [2010-09-02] (eCareme Technologies, Inc.)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-1973447134-484782693-1030435007-1001\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKU\S-1-5-21-1973447134-484782693-1030435007-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
HKU\S-1-5-21-1973447134-484782693-1030435007-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1973447134-484782693-1030435007-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-22] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-22] (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{BE4E406D-26EB-4F8E-A890-A6C19B58E389}: [DhcpNameServer] 192.168.1.254
FireFox:
========
FF ProfilePath: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713
FF DefaultSearchUrl: https://www.google.com/search/?trackid=sp-006
FF SearchEngineOrder.1: Google (avast)
FF SelectedSearchEngine: Google (avast)
FF Homepage: about:home
FF Keyword.URL: https://www.google.com/search/?trackid=sp-006
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-21] ()
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-21] ()
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-22] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems)
FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll [2010-01-23] (Zeon Corporation)
FF Plugin HKU\S-1-5-21-1973447134-484782693-1030435007-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Dominik\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-12-05] (Unity Technologies ApS)
FF SearchPlugin: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713\searchplugins\google-avast.xml [2015-07-13]
FF Extension: No Name - C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713\Extensions\1436796100_xpi [2015-07-13]
FF Extension: Adblock Plus - C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\dm3tmmla.default-1426326776713\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-03-14]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-12]
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Avast Online Security) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-04-21]
CHR Extension: (CinemaP-1.9cV26.07) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi [2015-07-13]
CHR Extension: (Google Wallet) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-21]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-14]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) [File not signed]
S3 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-05-10] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4034896 2015-05-10] (Avast Software)
R2 Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [897088 2010-11-03] (Intel Corporation) [File not signed]
S3 Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1298496 2010-11-03] (Intel Corporation) [File not signed]
R2 Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [983104 2010-11-03] (Intel Corporation) [File not signed]
S3 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2014-12-03] (Freemake) [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155216 2015-07-14] (NVIDIA Corporation)
S4 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1871504 2015-07-14] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544592 2015-07-14] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1910640 2015-03-14] (Electronic Arts)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2014-11-29] ()
R2 ssinstall; C:\Windows\SysWOW64\ssins.exe [2324216 2015-07-27] (PS Media s.r.o.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-05-10] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-05-10] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-05-10] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-05-10] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-05-10] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-06-27] (Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-05-10] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-05-10] ()
R1 ATKWMIACPIIO_; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [17536 2011-05-26] (ASUS)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-11-22] (Disc Soft Ltd)
U5 FontCache3.0.0.0; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [42856 2010-11-05] (Microsoft Corporation)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2014-12-31] (REALiX(tm))
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-04-14] (Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-07-14] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [47976 2015-07-03] (NVIDIA Corporation)
S3 REN2CAP_DRIVER; C:\Windows\System32\drivers\ren2cap.sys [46728 2011-11-07] ()
R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-16] ()
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-05-10] (Avast Software)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-27 18:26 - 2015-07-27 18:26 - 02146816 _____ (Farbar) C:\Users\Dominik\Desktop\FRST64.exe
2015-07-27 18:26 - 2015-07-27 18:26 - 00017608 _____ C:\Users\Dominik\Desktop\FRST.txt
2015-07-27 18:25 - 2015-07-27 18:25 - 02146816 _____ (Farbar) C:\Users\Dominik\Downloads\FRST64.exe.part
2015-07-27 17:52 - 2015-07-27 17:55 - 50057952 _____ (Microsoft Corporation) C:\Users\Dominik\Desktop\Windows-KB890830-x64-V5.26.exe
2015-07-27 17:26 - 2015-07-27 17:26 - 00000000 ___RD C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2015-07-27 17:07 - 2015-07-27 17:26 - 00000504 _____ C:\Windows\setupact.log
2015-07-27 17:07 - 2015-07-27 17:10 - 00078430 _____ C:\Windows\PFRO.log
2015-07-27 17:07 - 2015-07-27 17:07 - 00000000 _____ C:\Windows\setuperr.log
2015-07-27 15:23 - 2015-07-27 15:23 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\TeamViewer
2015-07-27 15:22 - 2015-07-27 15:22 - 05046592 _____ (TeamViewer) C:\Users\Dominik\Downloads\TeamViewerQS_cs-idc5dq4nsx.exe
2015-07-27 14:50 - 2015-07-27 18:26 - 00000000 ____D C:\FRST
2015-07-27 14:28 - 2015-07-27 14:42 - 00000000 ____D C:\Users\Dominik\AppData\Local\LogMeIn Rescue Calling Card
2015-07-27 14:27 - 2015-07-27 17:26 - 00000000 _____ C:\Windows\SysWOW64\sinstall.log
2015-07-27 14:27 - 2015-07-27 14:33 - 00000000 ____D C:\Program Files (x86)\LogMeIn Rescue Calling Card
2015-07-27 14:27 - 2015-07-27 14:27 - 02324216 _____ (PS Media s.r.o.) C:\Windows\SysWOW64\ssins.exe
2015-07-27 14:27 - 2015-07-27 14:27 - 00002409 _____ C:\Users\Public\Desktop\Pomoc s poèítaèem na dálku NEJDETO.CZ.lnk
2015-07-27 14:27 - 2015-07-27 14:27 - 00000079 _____ C:\Windows\SysWOW64\ssinstall-uninstall.bat
2015-07-27 14:27 - 2015-07-27 14:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pomoc s počítačem na dálku NEJDETO.CZ
2015-07-27 12:15 - 2015-07-27 12:15 - 00000001 _____ C:\Users\Dominik\AppData\Local\llftool.4.40.agreement
2015-07-27 10:08 - 2015-07-27 10:08 - 00002653 _____ C:\Users\Dominik\Desktop\BitTorrent.lnk
2015-07-27 10:08 - 2015-07-27 10:08 - 00002653 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2015-07-27 10:07 - 2015-07-27 17:06 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\BitTorrent
2015-07-26 19:40 - 2015-07-26 19:40 - 00000000 ____D C:\Users\Dominik\AppData\Local\NFS Underground 2
2015-07-26 19:30 - 2015-07-26 19:30 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2015-07-26 18:16 - 2015-07-27 16:44 - 00000000 ____D C:\Program Files (x86)\SystemContinue
2015-07-26 12:32 - 2015-07-26 12:32 - 00000000 ____D C:\ProgramData\Passmark
2015-07-26 11:20 - 2015-07-26 18:15 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
2015-07-24 21:13 - 2015-07-24 21:15 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2015-07-24 21:13 - 2015-07-24 21:13 - 00001188 _____ C:\Users\Dominik\Desktop\CrystalDiskInfo.lnk
2015-07-24 21:13 - 2015-07-24 21:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2015-07-24 18:46 - 2015-07-26 20:01 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\SpinTires
2015-07-24 18:30 - 2015-07-24 18:30 - 00000000 ____D C:\Users\Dominik\AppData\Local\Steam
2015-07-24 18:30 - 2015-07-24 18:30 - 00000000 ____D C:\Users\Dominik\AppData\Local\CEF
2015-07-24 18:20 - 2015-07-27 10:16 - 00000000 ____D C:\Program Files (x86)\Steam
2015-07-24 18:20 - 2015-07-24 18:20 - 00000965 _____ C:\Users\Public\Desktop\Steam.lnk
2015-07-24 18:20 - 2015-07-24 18:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-07-24 18:19 - 2015-07-24 18:19 - 00000750 _____ C:\Users\Dominik\Desktop\Spintires.lnk
2015-07-23 10:35 - 2015-07-27 14:10 - 00000000 ____D C:\Program Files (x86)\AIDA64 Extreme
2015-07-22 19:50 - 2015-07-22 19:50 - 00000000 ____D C:\Windows\CheckSur
2015-07-22 12:35 - 2015-07-22 12:35 - 00000110 ____H C:\Users\Dominik\Desktop\nebe.jpg.uid-zps
2015-07-22 12:34 - 2015-07-22 12:34 - 00000110 ____H C:\Users\Dominik\Desktop\puvodni.jpg.uid-zps
2015-07-22 12:28 - 2015-07-22 12:28 - 00000000 ____D C:\Program Files (x86)\VITSOFT
2015-07-22 12:05 - 2015-07-22 12:05 - 00000000 ____D C:\ProgramData\VIPRE
2015-07-22 12:05 - 2015-07-22 12:05 - 00000000 ____D C:\Program Files\Common Files\AV
2015-07-22 11:06 - 2015-07-22 11:07 - 00000000 ____D C:\KVRT_Data
2015-07-21 13:57 - 2015-07-27 17:24 - 00000000 ____D C:\AdwCleaner
2015-07-19 13:22 - 2015-07-19 13:22 - 00000916 _____ C:\Users\Dominik\Desktop\Euro Truck Simulator 2 (64-bit).lnk
2015-07-19 12:02 - 2015-07-19 12:02 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 v1.18.1s (26 DLC)
2015-07-19 11:34 - 2015-07-19 11:34 - 00000000 ____D C:\Windows\SysWOW64\NV
2015-07-19 11:34 - 2015-07-19 11:34 - 00000000 ____D C:\Windows\system32\NV
2015-07-19 11:30 - 2015-07-19 11:30 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-07-19 11:30 - 2015-06-17 11:10 - 42729104 _____ C:\Windows\system32\nvcompiler.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 37748880 _____ C:\Windows\SysWOW64\nvcompiler.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 30481552 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 22947144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 17724600 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 16145200 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 15866992 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 15224784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 14497520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 13263056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 11831856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 11011216 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-07-19 11:30 - 2015-06-17 11:10 - 02932368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 02599752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01898128 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435330.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01557832 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435330.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01060168 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 01050768 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00982672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00975176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00150832 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00128696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-07-19 11:30 - 2015-06-17 11:10 - 00031376 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2015-07-18 11:38 - 2015-07-03 06:28 - 00065896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-07-18 11:38 - 2015-07-03 06:28 - 00047976 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-07-18 11:00 - 2015-07-19 12:02 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1-click run
2015-07-18 11:00 - 2015-07-18 11:00 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 v1.14.2s (18 DLC)
2015-07-18 10:40 - 2015-07-19 11:58 - 00000000 ____D C:\2-click run
2015-07-18 10:23 - 2015-07-18 10:23 - 00000985 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-07-18 10:23 - 2015-07-18 10:23 - 00000973 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-07-18 09:58 - 2015-07-18 09:58 - 00000000 ____D C:\ProgramData\Licenses
2015-07-18 09:52 - 2015-07-19 11:45 - 00000000 ____D C:\Program Files (x86)\DVR Converter 3.0
2015-07-18 09:52 - 2015-07-18 09:52 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Engelmann Media
2015-07-18 09:49 - 2015-07-18 09:49 - 00001093 _____ C:\Users\Public\Desktop\PhotoInstrument.lnk
2015-07-18 09:49 - 2015-07-18 09:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoInstrument
2015-07-18 09:49 - 2015-07-18 09:49 - 00000000 ____D C:\Program Files (x86)\PhotoInstrument
2015-07-16 20:28 - 2015-07-16 20:28 - 00003584 _____ C:\Users\Dominik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-07-16 16:34 - 2015-07-17 13:52 - 00000000 ____D C:\Program Files (x86)\Video Enhancer
2015-07-16 16:34 - 2015-07-16 16:34 - 00000000 ____D C:\Users\Dominik\AppData\Local\Video Enhancer
2015-07-14 10:01 - 2015-07-14 10:01 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01009.Wdf
2015-07-14 10:00 - 2015-07-14 10:00 - 01002728 _____ (Microsoft Corporation) C:\Windows\system32\WinUSBCoInstaller2.dll
2015-07-13 17:16 - 2015-07-27 17:26 - 00001008 _____ C:\Windows\Tasks\B3CeDyO9Ws5U19.job
2015-07-13 17:16 - 2015-07-27 17:26 - 00001000 _____ C:\Windows\Tasks\5KSR0Iz3PD.job
2015-07-13 17:16 - 2015-07-13 17:16 - 00004042 _____ C:\Windows\System32\Tasks\B3CeDyO9Ws5U19
2015-07-13 17:16 - 2015-07-13 17:16 - 00004034 _____ C:\Windows\System32\Tasks\5KSR0Iz3PD
2015-07-13 17:15 - 2015-07-13 17:20 - 00000004 _____ C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-07-13 17:14 - 2015-07-13 20:19 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Opera Software
2015-07-13 17:14 - 2015-07-13 20:19 - 00000000 ____D C:\Users\Dominik\AppData\Local\Opera Software
2015-07-13 17:13 - 2015-07-13 17:13 - 00000000 _____ C:\Users\Dominik\AppData\Local\Temp.dat
2015-07-13 17:12 - 2015-07-13 20:19 - 00000000 ____D C:\Program Files (x86)\Opera
2015-07-13 16:42 - 2015-07-13 16:42 - 00000000 _____ C:\autoexec.bat
2015-07-13 16:31 - 2015-07-13 16:31 - 00000122 _____ C:\Users\Dominik\AppData\Roaming\profiles.ini
2015-07-13 16:31 - 2015-07-13 16:31 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Crash Reports
2015-07-13 16:01 - 2015-07-13 16:18 - 00000000 ____D C:\Program Files (x86)\SystemVigor
2015-07-03 10:16 - 2015-07-04 14:43 - 00000000 ____D C:\Users\Dominik\AppData\Local\Arma 3
2015-07-03 10:16 - 2015-07-03 10:16 - 00000000 ____D C:\ProgramData\Bohemia Interactive
2015-07-03 09:46 - 2015-07-04 13:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-06-27 18:50 - 2015-06-27 18:50 - 00002023 _____ C:\Users\Public\Desktop\Bloody5.lnk
2015-06-27 18:50 - 2015-06-27 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bloody
2015-06-27 12:56 - 2015-07-23 11:44 - 00000000 ____D C:\Program Files (x86)\Windows Doctor
2015-06-27 12:53 - 2015-06-27 12:53 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Windows Doctor
2015-06-27 11:50 - 2015-06-27 11:50 - 00000000 ____D C:\Users\Dominik\Documents\Ashampoo Burning Studio 2015
2015-06-27 11:46 - 2015-06-27 11:46 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\Ashampoo
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-27 18:12 - 2015-02-03 20:18 - 00000132 _____ C:\Users\Dominik\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2015-07-27 17:34 - 2009-07-14 06:45 - 00025968 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-07-27 17:34 - 2009-07-14 06:45 - 00025968 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-07-27 17:29 - 2014-11-14 01:28 - 01083326 _____ C:\Windows\WindowsUpdate.log
2015-07-27 17:26 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-27 17:14 - 2014-11-26 21:29 - 00000000 ____D C:\Users\Dominik\Documents\My Games
2015-07-27 17:08 - 2014-11-14 01:53 - 00002026 _____ C:\Windows\system32\ServiceFilter.ini
2015-07-27 17:05 - 2015-02-01 13:33 - 00000000 ____D C:\Program Files (x86)\Adobe Media Player
2015-07-27 16:22 - 2015-02-15 14:20 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-07-27 15:58 - 2009-07-14 07:13 - 00797170 _____ C:\Windows\system32\PerfStringBackup.INI
2015-07-27 14:20 - 2015-04-05 12:46 - 00000000 ____D C:\Users\Dominik\AppData\Local\CrashDumps
2015-07-27 14:13 - 2014-11-14 01:41 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-07-27 14:01 - 2014-11-22 15:06 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\DAEMON Tools Lite
2015-07-27 14:01 - 2014-11-14 16:22 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\uTorrent
2015-07-27 13:20 - 2014-11-14 22:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-07-27 13:18 - 2014-11-14 22:04 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-07-27 13:18 - 2014-11-14 22:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-07-27 12:00 - 2014-12-24 13:35 - 00000000 ____D C:\Users\Dominik\Documents\Euro Truck Simulator 2
2015-07-27 10:16 - 2014-11-13 18:30 - 00000000 ____D C:\Program Files\CCleaner
2015-07-27 10:15 - 2015-06-14 19:00 - 00000824 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-07-26 18:26 - 2014-11-13 18:11 - 00000000 ____D C:\Users\Dominik
2015-07-26 18:25 - 2014-11-14 01:49 - 00000000 ____D C:\ProgramData\P4G
2015-07-26 18:24 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration
2015-07-26 18:22 - 2014-11-23 13:04 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-07-25 14:40 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-07-22 12:36 - 2015-04-05 12:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 15
2015-07-22 12:36 - 2015-03-14 16:07 - 00000000 ____D C:\Users\Dominik\Desktop\Ashampoo
2015-07-22 10:15 - 2014-12-23 18:29 - 00000000 ____D C:\Users\Dominik\AppData\Roaming\IObit
2015-07-22 10:15 - 2014-12-23 18:29 - 00000000 ____D C:\ProgramData\IObit
2015-07-22 10:07 - 2014-11-15 21:20 - 00000000 ____D C:\ProgramData\Oracle
2015-07-22 10:07 - 2014-11-15 21:20 - 00000000 ____D C:\Program Files (x86)\Java
2015-07-22 10:04 - 2014-11-15 21:23 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-07-22 09:58 - 2014-11-13 18:28 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-07-21 14:00 - 2014-11-14 20:59 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-07-21 11:44 - 2014-11-14 20:59 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-21 11:44 - 2014-11-14 20:59 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-21 11:44 - 2014-11-14 20:59 - 00003770 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-07-19 11:35 - 2014-11-14 01:38 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-07-19 11:35 - 2014-11-14 01:38 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2015-07-19 11:34 - 2014-11-14 01:39 - 00000000 ____D C:\ProgramData\NVIDIA
2015-07-19 11:32 - 2014-11-14 01:38 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-07-19 10:28 - 2014-11-13 18:12 - 00001415 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-07-16 13:30 - 2015-02-12 11:21 - 00000000 ____D C:\ProgramData\Freemake
2015-07-14 21:06 - 2015-02-07 12:21 - 01423120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-07-14 21:06 - 2015-02-07 12:21 - 01316184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-07-14 21:05 - 2015-02-07 12:21 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-07-14 21:05 - 2015-02-07 12:21 - 01710056 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-07-13 17:19 - 2014-11-14 01:53 - 00002710 _____ C:\Windows\system32\AutoRunFilter.ini
2015-07-13 16:29 - 2015-02-12 11:20 - 00000000 ____D C:\Program Files (x86)\Freemake
2015-07-13 13:26 - 2014-11-14 20:56 - 00000000 ____D C:\Users\Dominik\AppData\Local\Adobe
2015-07-08 10:35 - 2015-04-21 19:19 - 00002197 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-04 13:20 - 2014-11-13 18:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-07-03 08:43 - 2014-11-14 16:18 - 130333168 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-07-03 06:28 - 2014-11-16 12:31 - 00069992 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2015-07-01 09:31 - 2009-07-14 07:08 - 00032524 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-07-01 09:31 - 2009-07-14 07:08 - 00032524 _____ C:\Windows\Tasks\SCHEDLGU(16).TXT
2015-06-30 20:28 - 2009-07-14 06:45 - 05232880 _____ C:\Windows\system32\FNTCACHE.DAT
2015-06-29 20:27 - 2014-11-13 18:11 - 00113768 _____ C:\Users\Dominik\AppData\Local\GDIPFONTCACHEV1.DAT
2015-06-27 18:49 - 2015-02-23 11:05 - 00000000 ____D C:\Program Files (x86)\Bloody5
2015-06-27 15:40 - 2014-11-13 18:28 - 00442264 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswsp.sys
==================== Files in the root of some directories =======
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\Dominik\AppData\Roaming\5KSR0Iz3PD
2015-02-03 20:18 - 2015-07-27 18:12 - 0000132 _____ () C:\Users\Dominik\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Dominik\AppData\Roaming\B3CeDyO9Ws5U19
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\Dominik\AppData\Roaming\E0uiPi8fnileLWjmG2fqzPFeMr1
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Dominik\AppData\Roaming\Ek4haOqhx
2015-07-22 11:45 - 2015-07-22 12:26 - 0000115 _____ () C:\Users\Dominik\AppData\Roaming\LogFile.txt
2015-07-13 16:31 - 2015-07-13 16:31 - 0000122 _____ () C:\Users\Dominik\AppData\Roaming\profiles.ini
2014-12-26 16:34 - 2014-12-26 16:34 - 0033193 _____ () C:\Users\Dominik\AppData\Roaming\UserTile.png
2015-06-12 20:12 - 2015-06-12 20:12 - 212585352 _____ () C:\Users\Dominik\AppData\Local\ACCCx3_1_0_108.zip.aamdownload
2015-06-12 20:12 - 2015-06-12 20:12 - 0002489 _____ () C:\Users\Dominik\AppData\Local\ACCCx3_1_0_108.zip.aamdownload.aamd
2015-05-08 16:23 - 2015-05-08 16:23 - 0001480 _____ () C:\Users\Dominik\AppData\Local\Adobe Uložit pro web 12.0 Prefs
2015-07-16 20:28 - 2015-07-16 20:28 - 0003584 _____ () C:\Users\Dominik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-07-27 12:15 - 2015-07-27 12:15 - 0000001 _____ () C:\Users\Dominik\AppData\Local\llftool.4.40.agreement
2015-06-02 20:29 - 2015-06-02 20:29 - 0000218 _____ () C:\Users\Dominik\AppData\Local\recently-used.xbel
2014-11-14 15:57 - 2015-01-09 19:12 - 0007597 _____ () C:\Users\Dominik\AppData\Local\resmon.resmoncfg
2015-07-13 17:13 - 2015-07-13 17:13 - 0000000 _____ () C:\Users\Dominik\AppData\Local\Temp.dat
2014-12-22 13:49 - 2014-12-22 13:49 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2011-04-01 11:21 - 2010-07-07 01:10 - 0131472 _____ () C:\ProgramData\FullRemove.exe
2014-12-26 16:07 - 2014-12-26 16:14 - 0000193 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
2014-11-14 01:58 - 2014-11-14 01:58 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
2014-11-14 01:57 - 2014-11-14 01:58 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
Some files in TEMP:
====================
C:\Users\Dominik\AppData\Local\Temp\AutoRun.exe
C:\Users\Dominik\AppData\Local\Temp\AutoRunGUI.dll
C:\Users\Dominik\AppData\Local\Temp\eauninstall.exe
C:\Users\Dominik\AppData\Local\Temp\jre-8u51-windows-au.exe
C:\Users\Dominik\AppData\Local\Temp\Need for Speed Underground 2_uninst.exe
C:\Users\Dominik\AppData\Local\Temp\Opera_NI_stable.exe
C:\Users\Dominik\AppData\Local\Temp\Quarantine.exe
C:\Users\Dominik\AppData\Local\Temp\sqlite3.dll
C:\Users\Dominik\AppData\Local\Temp\ssins.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-07-24 10:25
==================== End of log ============================
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
CHR dev: Chrome dev build detected! <======= ATTENTION
C:\Users\Dominik\AppData\Roaming\5KSR0Iz3PD
C:\Users\Dominik\AppData\Roaming\B3CeDyO9Ws5U19
C:\Users\Dominik\AppData\Roaming\E0uiPi8fnileLWjmG2fqzPFeMr1
C:\Users\Dominik\AppData\Roaming\Ek4haOqhx
C:\ProgramData\DP45977C.lfl
C:\Users\Dominik\AppData\Local\Temp
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu
Fix result of Farbar Recovery Scan Tool (x64) Version:26-07-2015
Ran by Dominik at 2015-07-27 20:10:25 Run:1
Running from C:\Users\Dominik\Desktop
Loaded Profiles: Dominik (Available Profiles: Dominik)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
CHR dev: Chrome dev build detected! <======= ATTENTION
C:\Users\Dominik\AppData\Roaming\5KSR0Iz3PD
C:\Users\Dominik\AppData\Roaming\B3CeDyO9Ws5U19
C:\Users\Dominik\AppData\Roaming\E0uiPi8fnileLWjmG2fqzPFeMr1
C:\Users\Dominik\AppData\Roaming\Ek4haOqhx
C:\ProgramData\DP45977C.lfl
C:\Users\Dominik\AppData\Local\Temp
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value removed successfully
"HKLM\SOFTWARE\Policies\Google" => key removed successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => key removed successfully
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => key removed successfully
CHR dev: Chrome dev build detected! <======= ATTENTION => Error: No automatic fix found for this entry.
C:\Users\Dominik\AppData\Roaming\5KSR0Iz3PD => moved successfully.
C:\Users\Dominik\AppData\Roaming\B3CeDyO9Ws5U19 => moved successfully.
C:\Users\Dominik\AppData\Roaming\E0uiPi8fnileLWjmG2fqzPFeMr1 => moved successfully.
C:\Users\Dominik\AppData\Roaming\Ek4haOqhx => moved successfully.
C:\ProgramData\DP45977C.lfl => moved successfully.
"C:\Users\Dominik\AppData\Local\Temp" folder move:
Could not move "C:\Users\Dominik\AppData\Local\Temp" => Scheduled to move on reboot.
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2015-07-27 20:12:37)<=
C:\Users\Dominik\AppData\Local\Temp => moved successfully
==== End of Fixlog 20:12:38 ====
Ran by Dominik at 2015-07-27 20:10:25 Run:1
Running from C:\Users\Dominik\Desktop
Loaded Profiles: Dominik (Available Profiles: Dominik)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
CHR dev: Chrome dev build detected! <======= ATTENTION
C:\Users\Dominik\AppData\Roaming\5KSR0Iz3PD
C:\Users\Dominik\AppData\Roaming\B3CeDyO9Ws5U19
C:\Users\Dominik\AppData\Roaming\E0uiPi8fnileLWjmG2fqzPFeMr1
C:\Users\Dominik\AppData\Roaming\Ek4haOqhx
C:\ProgramData\DP45977C.lfl
C:\Users\Dominik\AppData\Local\Temp
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value removed successfully
"HKLM\SOFTWARE\Policies\Google" => key removed successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => key removed successfully
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => key removed successfully
CHR dev: Chrome dev build detected! <======= ATTENTION => Error: No automatic fix found for this entry.
C:\Users\Dominik\AppData\Roaming\5KSR0Iz3PD => moved successfully.
C:\Users\Dominik\AppData\Roaming\B3CeDyO9Ws5U19 => moved successfully.
C:\Users\Dominik\AppData\Roaming\E0uiPi8fnileLWjmG2fqzPFeMr1 => moved successfully.
C:\Users\Dominik\AppData\Roaming\Ek4haOqhx => moved successfully.
C:\ProgramData\DP45977C.lfl => moved successfully.
"C:\Users\Dominik\AppData\Local\Temp" folder move:
Could not move "C:\Users\Dominik\AppData\Local\Temp" => Scheduled to move on reboot.
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2015-07-27 20:12:37)<=
C:\Users\Dominik\AppData\Local\Temp => moved successfully
==== End of Fixlog 20:12:38 ====
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu
Sú tam značne zmeny,ale nie take ako boli niekedy...napr. taký štart ešte nieje ono,dá sa ešte niečo urobiť?
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu
Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu
Bude to zbytočne,lebo asi pred týždnom som to tiež čistil s tým programom a teraz nič nenašlo
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu
Start je pomalý, či má jiný problém?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu
Tak štart je pomaly...ono nabehne rýchlejšie ale potom čakať kým sa rozbehne tak to nestojí za to
Ale je tam jasne zrýchlenie systému,ale ešte mám pocit,že ta I5 vytiahne viac
Ale je tam jasne zrýchlenie systému,ale ešte mám pocit,že ta I5 vytiahne viac
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu
Startmenu>přík. řádek>(napsat) msconfig>Enter. V otevřeném okně na záložkách "Po spuštění" a "Služby" zrušte zatržítka u těch položek, které nemusí automaticky startovat. Tj. u takových, které lze v případě potřeby spustit ručně.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu
Hej to už som robil..štart sa zrýchlil

Přispějete na provoz fóra?