Ram a disk na 100%, mnoho procesů
Napsal: 13 zář 2015 08:56
Zdravím, dnes ráno jsem zapl pc, vše v pohodě a najednou disk šel na 100% a nešlo nic dělat.. ani myška se sekala a slyšel jsem jenom jak vrčí disk.. tak jsem pc restartoval a v pohodě.. šel jsem na facebook a najednou ramka šla na 100% a strašně ale velmi moc procesů ve správci úloh jménem Java start launcher nebo něco tak.. bylo tam toho stovky.. odinstalovatl jsem javu a teď jsem píšu
vypadá to že to je zatím OK.. Můžete mi nějak pomoct? Zdá se mi že v PC bude nějaká havěť! Děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:12-09-2015
Ran by Pepa7 (administrator) on PEPA (13-09-2015 09:48:21)
Running from C:\Users\Pepa7\Desktop
Loaded Profiles: Pepa7 (Available Profiles: Pepa7)
Platform: Windows 8.1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Micro-Star International) C:\MSI\Smart Utilities\SuperRAIDSvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(MSI) C:\Windows\SysWOW64\muachost.exe
(Realtek Semiconductor) C:\Program Files (x86)\MSI\NetworkGenie\NetworkGenie.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe
(Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Corporation) C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe
(Alexander Roshal) C:\Program Files (x86)\WinRAR\WinRAR.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320360 2014-08-04] (Intel Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672664 2014-06-30] (Realtek Semiconductor)
HKLM-x32\...\Run: [Imperator] => C:\Program Files (x86)\Genius\Imperator\IMhid.exe [281600 2012-03-01] ()
HKLM-x32\...\Run: [Adobe Creative Cloud] => "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
HKLM-x32\...\Run: [Live Update] => C:\Program Files (x86)\MSI\Live Update\Live Update.exe [3458728 2015-07-30] (Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-07-27] (Raptr, Inc)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-07-28] (Advanced Micro Devices, Inc.)
HKU\S-1-5-21-1765931364-2895769979-1631063868-1001\...\Run: [OscarEditor] => C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe [3340288 2012-03-20] ()
HKU\S-1-5-21-1765931364-2895769979-1631063868-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dual Smart Solution.lnk [2015-05-07]
ShortcutTarget: Dual Smart Solution.lnk -> C:\Program Files (x86)\LG Soft India Pvt Ltd\Dual Smart Solution\bin\Dual Smart Solution.exe (LG Electronics)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 213.194.204.126 85.132.148.70
Tcpip\..\Interfaces\{87D0EC6C-D6FB-4148-8303-F6792D713566}: [DhcpNameServer] 213.194.204.126 85.132.148.70
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1765931364-2895769979-1631063868-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
FireFox:
========
FF ProfilePath: C:\Users\Pepa7\AppData\Roaming\Mozilla\Firefox\Profiles\0QVy95eW.default
FF Homepage: about:newtab
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-11] ()
FF Plugin: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelogx64.dll [No File]
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-11] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1219160.dll [2015-07-23] (Adobe Systems, Inc.)
FF Plugin-x32: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelog.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin HKU\S-1-5-21-1765931364-2895769979-1631063868-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Pepa7\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-08-23] (Unity Technologies ApS)
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [245544 2015-07-27] (EasyAntiCheat Ltd)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [344288 2015-03-20] (Futuremark)
R2 GamingApp_Service; C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe [31400 2015-08-18] (Micro-Star Int'l Co., Ltd.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-08-04] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344168 2015-05-29] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [1741992 2015-07-30] (Micro-Star INT'L CO., LTD.)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2057736 2015-09-02] (Electronic Arts)
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2014-12-26] ()
R2 SuperRAIDSvc; C:\MSI\Smart Utilities\SuperRAIDSvc.exe [29648 2014-08-13] (Micro-Star International)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [18384 2014-08-07] (Intel(R) Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AcpiCtlDrv; C:\Windows\System32\drivers\AcpiCtlDrv.sys [25880 2012-07-17] (Intel Corporation)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
R3 athur; C:\Windows\system32\DRIVERS\athuw8x.sys [2919936 2013-06-02] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [102912 2015-07-15] (Advanced Micro Devices)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [44296 2015-01-20] (LogMeIn Inc.)
R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [28912 2014-06-18] (Intel Corporation)
R3 KYEGKB; C:\Windows\system32\drivers\KYEGKB.sys [25600 2011-09-05] ( )
S3 LGDDCDevice; C:\WINDOWS\SysWOW64\LGI2CDriver.sys [16384 2012-10-17] (LG Soft India) [File not signed]
S3 LGII2CDevice; C:\WINDOWS\SysWOW64\LGPII2CDriver.sys [10752 2012-11-23] (LG Soft India) [File not signed]
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [113880 2015-09-13] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [129312 2015-01-06] (Intel Corporation)
R3 NTIOLib_MSI_RAID; C:\MSI\Smart Utilities\NTIOLib_X64.sys [13808 2014-03-17] (MSI)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13536 2015-05-27] ()
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-13 09:48 - 2015-09-13 09:48 - 00012262 _____ C:\Users\Pepa7\Desktop\FRST.txt
2015-09-13 09:47 - 2015-09-13 09:47 - 00012619 _____ C:\Users\Pepa7\Desktop\addition.zip
2015-09-13 09:44 - 2015-09-13 09:48 - 00000000 ____D C:\FRST
2015-09-12 14:38 - 2015-09-12 14:38 - 00000977 _____ C:\Users\Pepa7\Desktop\Minecraft.lnk
2015-09-09 15:01 - 2015-08-26 16:46 - 03705344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-09-09 15:00 - 2015-09-03 04:18 - 02531400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2015-09-09 15:00 - 2015-09-03 04:17 - 01903848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2015-09-09 15:00 - 2015-09-02 20:48 - 02345472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-09-09 15:00 - 2015-09-02 19:09 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2015-09-09 15:00 - 2015-09-02 04:56 - 04175872 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-09-09 15:00 - 2015-09-02 04:55 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-09-09 15:00 - 2015-09-02 04:50 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-09-09 15:00 - 2015-09-02 04:17 - 00301568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-09-09 15:00 - 2015-09-02 04:13 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-09-09 15:00 - 2015-08-27 04:48 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-09-09 15:00 - 2015-08-26 20:00 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-09-09 15:00 - 2015-08-26 20:00 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-09-09 15:00 - 2015-08-26 20:00 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-09-09 15:00 - 2015-08-26 20:00 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-09-09 15:00 - 2015-08-26 16:29 - 02240512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-09-09 15:00 - 2015-08-26 16:27 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-09-09 15:00 - 2015-08-26 16:27 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-09-09 15:00 - 2015-08-26 16:26 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-09-09 15:00 - 2015-08-26 16:26 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-09-09 15:00 - 2015-08-26 16:26 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-09-09 15:00 - 2015-08-22 20:19 - 25188352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-09-09 15:00 - 2015-08-22 19:35 - 02886144 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-09-09 15:00 - 2015-08-22 19:34 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-09-09 15:00 - 2015-08-22 19:22 - 19856384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-09-09 15:00 - 2015-08-22 19:21 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-09-09 15:00 - 2015-08-22 19:20 - 05923840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-09-09 15:00 - 2015-08-22 18:55 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-09-09 15:00 - 2015-08-22 18:50 - 02279424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-09-09 15:00 - 2015-08-22 18:50 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-09-09 15:00 - 2015-08-22 18:45 - 00665600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-09-09 15:00 - 2015-08-22 18:44 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-09-09 15:00 - 2015-08-22 18:41 - 14451712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-09-09 15:00 - 2015-08-22 18:41 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-09-09 15:00 - 2015-08-22 18:41 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-09-09 15:00 - 2015-08-22 18:41 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-09-09 15:00 - 2015-08-22 18:39 - 02126336 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-09-09 15:00 - 2015-08-22 18:28 - 04520448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-09-09 15:00 - 2015-08-22 18:26 - 02427392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-09-09 15:00 - 2015-08-22 18:23 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-09-09 15:00 - 2015-08-22 18:22 - 12857344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-09-09 15:00 - 2015-08-22 18:20 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2015-09-09 15:00 - 2015-08-22 18:18 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-09-09 15:00 - 2015-08-22 18:18 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-09-09 15:00 - 2015-08-22 18:18 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-09-09 15:00 - 2015-08-22 18:14 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-09-09 15:00 - 2015-08-22 18:01 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-09-09 15:00 - 2015-08-22 18:00 - 01951232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-09-09 15:00 - 2015-08-22 17:56 - 01310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-09-09 15:00 - 2015-08-22 17:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-09-09 15:00 - 2015-08-03 23:15 - 00074928 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2015-09-09 15:00 - 2015-08-03 23:15 - 00065600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidapi.dll
2015-09-09 15:00 - 2015-08-01 16:22 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll
2015-09-09 15:00 - 2015-08-01 05:47 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schtasks.exe
2015-09-09 15:00 - 2015-08-01 05:45 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schtasks.exe
2015-09-09 15:00 - 2015-08-01 05:38 - 01265152 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-09-09 15:00 - 2015-08-01 05:37 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe
2015-09-09 15:00 - 2015-08-01 05:37 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskeng.exe
2015-09-09 15:00 - 2015-07-30 19:18 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkEd.dll
2015-09-09 15:00 - 2015-07-30 18:22 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InkEd.dll
2015-09-09 15:00 - 2015-07-22 16:34 - 02775552 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-09-09 15:00 - 2015-07-22 16:33 - 01728000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-09-09 15:00 - 2015-07-22 16:25 - 02461184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-09-09 15:00 - 2015-07-22 16:25 - 01546752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2015-09-09 15:00 - 2015-07-22 16:19 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll
2015-09-09 15:00 - 2015-07-22 15:52 - 01633792 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-09-09 15:00 - 2015-07-18 20:31 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2015-09-09 15:00 - 2015-07-18 20:29 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2015-09-09 15:00 - 2015-07-18 20:29 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2015-09-09 15:00 - 2015-07-18 20:27 - 00520192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2015-09-09 15:00 - 2015-07-17 16:15 - 00951296 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2015-09-09 15:00 - 2015-07-17 16:10 - 00749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2015-09-09 15:00 - 2015-07-13 21:10 - 00411455 _____ C:\WINDOWS\system32\ApnDatabase.xml
2015-09-09 15:00 - 2015-07-09 18:14 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-09-09 15:00 - 2015-07-03 23:51 - 01380056 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-09-09 15:00 - 2015-07-03 16:00 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-09-09 15:00 - 2015-06-27 13:47 - 00118616 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2015-09-09 15:00 - 2015-06-19 19:07 - 02819072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2015-09-09 14:55 - 2015-07-14 05:27 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzsync.exe
2015-09-08 20:10 - 2015-09-08 20:10 - 00584288 _____ (Oracle Corporation) C:\Users\Pepa7\Downloads\jre-8u60-windows-i586-iftw(1).exe
2015-09-08 20:05 - 2015-09-08 20:05 - 00584288 _____ (Oracle Corporation) C:\Users\Pepa7\Downloads\jxpiinstall(3).exe
2015-09-08 19:11 - 2015-09-08 19:11 - 00584288 _____ (Oracle Corporation) C:\Users\Pepa7\Downloads\jxpiinstall(2).exe
2015-09-07 20:36 - 2015-09-07 20:36 - 00000016 _____ C:\ProgramData\mntemp
2015-09-07 20:14 - 2015-09-07 20:14 - 00001048 _____ C:\Users\Public\Desktop\DaeMU Season 6.lnk
2015-09-07 20:14 - 2015-09-07 20:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DaeMU Season 6
2015-09-07 20:11 - 2015-09-07 20:37 - 00000000 ____D C:\Program Files (x86)\DaeMU Season 6
2015-09-07 20:01 - 2015-09-07 20:10 - 642231048 _____ (DaemonicMU ) C:\Users\Pepa7\Downloads\daemu_s6_1_00_full.exe
2015-08-29 00:44 - 2015-09-08 20:12 - 00002548 _____ C:\WINDOWS\PFRO.log
2015-08-29 00:42 - 2015-08-29 00:42 - 56501344 _____ (Oracle Corporation) C:\Users\Pepa7\Downloads\jre-8u60-windows-x64.exe
2015-08-29 00:39 - 2015-08-29 00:39 - 00584288 _____ (Oracle Corporation) C:\Users\Pepa7\Downloads\jxpiinstall(1).exe
2015-08-29 00:33 - 2015-08-29 00:42 - 00000000 ____D C:\Users\Pepa7\.oracle_jre_usage
2015-08-29 00:33 - 2015-08-29 00:33 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Sun
2015-08-29 00:32 - 2015-08-29 00:32 - 00584288 _____ (Oracle Corporation) C:\Users\Pepa7\Downloads\jre-8u60-windows-i586-iftw.exe
2015-08-29 00:27 - 2015-08-29 00:27 - 00584288 _____ (Oracle Corporation) C:\Users\Pepa7\Downloads\jxpiinstall.exe
2015-08-28 00:48 - 2015-08-29 00:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-08-24 21:48 - 2015-08-24 21:48 - 00001169 _____ C:\Users\Public\Desktop\MSI Gaming APP.lnk
2015-08-24 21:35 - 2015-08-24 21:35 - 13477273 _____ C:\Users\Pepa7\Downloads\gaming_app_5(1).zip
2015-08-24 21:32 - 2015-08-24 21:32 - 00003002 _____ C:\WINDOWS\System32\Tasks\MSISW_Host
2015-08-24 21:32 - 2015-08-18 09:51 - 01692840 _____ (MSI) C:\WINDOWS\SysWOW64\muachost.exe
2015-08-24 21:31 - 2015-08-24 21:32 - 13477273 _____ C:\Users\Pepa7\Downloads\gaming_app_5.zip
2015-08-23 16:53 - 2015-08-23 16:53 - 00000000 ____D C:\Users\Pepa7\AppData\Local\ESN
2015-08-22 02:53 - 2015-08-25 22:33 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\.technic
2015-08-19 17:26 - 2015-08-19 17:26 - 00001864 _____ C:\Users\Pepa7\Desktop\Mafia II.lnk
2015-08-19 15:39 - 2015-08-19 15:41 - 104117057 _____ C:\Users\Pepa7\Downloads\Joes Adventures Free Ride(1).zip
2015-08-19 15:39 - 2015-08-19 15:39 - 09623899 _____ C:\Users\Pepa7\Downloads\DLC-Folder-Patch(1).zip
2015-08-19 15:07 - 2015-08-19 15:07 - 00242289 _____ C:\Users\Pepa7\Downloads\Better-Crosshairs.zip
2015-08-19 15:06 - 2015-08-19 15:06 - 00383198 _____ C:\Users\Pepa7\Downloads\First-Person-Shooting.zip
2015-08-19 01:19 - 2015-08-19 01:19 - 00000000 ____D C:\Users\Pepa7\AppData\Local\Macromedia
2015-08-19 01:07 - 2015-08-29 00:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-08-19 01:07 - 2015-08-19 01:19 - 00000000 ____D C:\Users\Pepa7\AppData\Local\Mozilla
2015-08-19 01:07 - 2015-08-19 01:07 - 00001175 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-08-19 01:07 - 2015-08-19 01:07 - 00001163 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-08-19 01:04 - 2015-08-19 01:04 - 41778720 _____ C:\Users\Pepa7\Downloads\Firefox Setup 40.0.2.exe
2015-08-18 19:29 - 2015-08-18 19:29 - 09623899 _____ C:\Users\Pepa7\Downloads\DLC-Folder-Patch (1).zip
2015-08-18 19:14 - 2015-08-18 19:14 - 00131191 _____ C:\Users\Pepa7\Downloads\steambackup.exe
2015-08-18 18:11 - 2015-08-23 23:13 - 00055419 _____ C:\WINDOWS\DirectX.log
2015-08-18 17:50 - 2015-09-13 09:30 - 00003016 _____ C:\WINDOWS\setupact.log
2015-08-18 17:50 - 2015-08-18 17:50 - 00000000 _____ C:\WINDOWS\setuperr.log
2015-08-18 16:34 - 2015-08-18 16:34 - 09623899 _____ C:\Users\Pepa7\Downloads\DLC-Folder-Patch.zip
2015-08-18 16:33 - 2015-08-18 16:38 - 104117057 _____ C:\Users\Pepa7\Downloads\Joes Adventures Free Ride.zip
2015-08-18 15:35 - 2015-08-18 15:35 - 00356298 _____ C:\Users\Pepa7\Downloads\mafia_II_crosshair_mod.rar
2015-08-18 14:23 - 2015-08-18 14:24 - 06822346 _____ C:\Users\Pepa7\Downloads\nocd.update_5.rar
2015-08-18 13:52 - 2015-08-18 13:52 - 01293704 _____ (Mojang) C:\Users\Pepa7\Downloads\Minecraft.exe
2015-08-17 19:24 - 2015-08-17 19:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler
2015-08-17 19:24 - 2015-08-17 19:24 - 00000000 ____D C:\Program Files\Defraggler
2015-08-17 19:22 - 2015-09-13 09:04 - 01310688 _____ C:\WINDOWS\WindowsUpdate.log
2015-08-17 19:22 - 2015-08-17 19:22 - 04532776 _____ (Piriform Ltd) C:\Users\Pepa7\Downloads\dfsetup219.exe
2015-08-17 19:13 - 2015-08-17 19:13 - 06609608 _____ (Piriform Ltd) C:\Users\Pepa7\Downloads\ccsetup508 (1).exe
2015-08-17 19:10 - 2015-08-17 19:10 - 00781312 _____ C:\Users\Pepa7\Downloads\delfix_1.010 (1).exe
2015-08-17 16:03 - 2015-09-13 09:45 - 02190848 _____ (Farbar) C:\Users\Pepa7\Desktop\FRST64.exe
2015-08-16 12:22 - 2015-08-17 15:58 - 00000000 ____D C:\Program Files\trend micro
2015-08-15 19:13 - 2015-08-15 19:13 - 00000000 ____D C:\Users\Pepa7\AppData\Local\2K Games
2015-08-15 18:58 - 2015-08-15 18:58 - 00288630 _____ C:\Users\Pepa7\Downloads\fulldamage.rar
2015-08-15 18:55 - 2015-08-15 18:55 - 04042064 _____ C:\Users\Pepa7\Downloads\volnajizda_v2.rar
2015-08-15 18:54 - 2015-08-15 18:54 - 04041856 _____ C:\Users\Pepa7\Downloads\freeride_v2.1 (1).rar
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-13 09:48 - 2015-05-08 23:05 - 00000000 ____D C:\Users\Pepa7\Desktop\PC testy
2015-09-13 09:38 - 2015-05-25 16:26 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1765931364-2895769979-1631063868-1001
2015-09-13 09:32 - 2015-08-12 22:06 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Raptr
2015-09-13 09:32 - 2014-12-25 00:39 - 00000000 ___DO C:\Users\Pepa7\OneDrive
2015-09-13 09:30 - 2014-12-26 00:32 - 00007598 _____ C:\Users\Pepa7\AppData\Local\Resmon.ResmonCfg
2015-09-13 09:30 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-09-13 09:24 - 2015-05-23 23:32 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-09-13 09:13 - 2014-12-24 23:47 - 00000000 ____D C:\Users\Pepa7
2015-09-13 09:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-09-13 00:54 - 2015-03-29 11:11 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Skype
2015-09-12 16:43 - 2014-12-27 12:29 - 00000000 ____D C:\Users\Pepa7\Desktop\Složky
2015-09-12 14:59 - 2014-12-25 01:02 - 00000000 ____D C:\Program Files (x86)\Steam
2015-09-12 14:50 - 2014-12-25 16:12 - 00000000 ____D C:\ProgramData\Origin
2015-09-12 14:24 - 2015-03-21 18:39 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\.minecraft
2015-09-12 12:12 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-09-11 18:42 - 2015-05-24 18:47 - 00000000 ____D C:\Users\Pepa7\AppData\Local\CrashDumps
2015-09-11 16:51 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2015-09-09 20:20 - 2013-08-22 16:44 - 00486120 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-09-09 20:19 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-09-09 20:17 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-09-09 17:29 - 2013-08-22 17:20 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-09-09 17:28 - 2014-03-18 17:10 - 00000000 ____D C:\Program Files\Windows Journal
2015-09-08 20:06 - 2014-12-25 01:08 - 00000000 ____D C:\ProgramData\Oracle
2015-09-08 19:32 - 2014-03-18 17:33 - 00005636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-09-08 19:32 - 2014-03-18 16:54 - 00751950 _____ C:\WINDOWS\system32\perfh005.dat
2015-09-08 19:32 - 2014-03-18 16:54 - 00155954 _____ C:\WINDOWS\system32\perfc005.dat
2015-09-06 14:01 - 2014-12-25 12:10 - 00000000 ____D C:\MSI
2015-09-05 23:28 - 2015-03-03 22:53 - 00000000 ____D C:\Program Files (x86)\SpeedFan
2015-09-05 22:09 - 2014-12-25 11:29 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner
2015-09-02 20:26 - 2014-12-25 16:12 - 00000000 ____D C:\Program Files (x86)\Origin
2015-08-25 22:31 - 2014-12-27 22:38 - 04730416 _____ () C:\Users\Pepa7\Desktop\TechnicLauncher.exe
2015-08-25 21:04 - 2014-12-25 22:15 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.xtr
2015-08-25 21:04 - 2014-12-25 21:22 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe
2015-08-25 21:04 - 2014-12-25 21:22 - 00280904 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0
2015-08-24 21:48 - 2014-12-25 11:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2015-08-23 23:32 - 2015-05-30 11:46 - 00001334 _____ C:\Users\Public\Desktop\Need for Speed™ Rivals(64 bit).lnk
2015-08-19 01:18 - 2014-12-25 00:21 - 00000000 ____D C:\Users\Pepa7\AppData\Local\Google
2015-08-19 01:18 - 2014-12-25 00:21 - 00000000 ____D C:\Program Files (x86)\Google
2015-08-19 01:07 - 2015-08-10 19:32 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Mozilla
2015-08-18 01:20 - 2014-12-24 23:48 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Adobe
2015-08-18 01:13 - 2015-02-25 14:03 - 00000000 ____D C:\Users\Pepa7\AppData\Local\Sony
2015-08-17 19:20 - 2015-01-07 23:12 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\DAEMON Tools Lite
2015-08-17 19:20 - 2014-12-24 23:45 - 00000000 ____D C:\WINDOWS\Minidump
2015-08-17 19:20 - 2014-12-24 23:43 - 00000000 ___DC C:\WINDOWS\Panther
2015-08-17 19:13 - 2015-08-06 11:01 - 00000000 ____D C:\Program Files\CCleaner
2015-08-17 19:10 - 2015-05-24 12:54 - 00000777 _____ C:\DelFix.txt
2015-08-16 22:40 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\System
==================== Files in the root of some directories =======
2015-03-21 18:39 - 2015-03-21 18:39 - 0001068 _____ () C:\Users\Pepa7\AppData\Roaming\.minecraft – zástupce (2).lnk
2015-03-21 18:39 - 2015-03-21 18:39 - 0001068 _____ () C:\Users\Pepa7\AppData\Roaming\.minecraft – zástupce.lnk
2015-03-09 20:08 - 2015-03-10 16:43 - 0000098 _____ () C:\Users\Pepa7\AppData\Roaming\LauncherSettings_live.cfg
2015-03-09 22:50 - 2015-03-09 22:56 - 0000040 _____ () C:\Users\Pepa7\AppData\Roaming\TheHunterSettings_live.cfg
2014-12-26 00:32 - 2015-09-13 09:30 - 0007598 _____ () C:\Users\Pepa7\AppData\Local\Resmon.ResmonCfg
2014-12-27 17:46 - 2014-12-27 17:46 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-09-07 20:36 - 2015-09-07 20:36 - 0000016 _____ () C:\ProgramData\mntemp
Some files in TEMP:
====================
C:\Users\Pepa7\AppData\Local\Temp\AdobePIM.dll
C:\Users\Pepa7\AppData\Local\Temp\cct.dll
C:\Users\Pepa7\AppData\Local\Temp\Creative Cloud Uninstaller.exe
C:\Users\Pepa7\AppData\Local\Temp\JavaIC.dll
C:\Users\Pepa7\AppData\Local\Temp\msscct32.dll
C:\Users\Pepa7\AppData\Local\Temp\sfamcc00001.dll
C:\Users\Pepa7\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Pepa7\AppData\Local\Temp\YSearchUtil.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-09-08 12:12
==================== End of FRST.txt ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:12-09-2015
Ran by Pepa7 (administrator) on PEPA (13-09-2015 09:48:21)
Running from C:\Users\Pepa7\Desktop
Loaded Profiles: Pepa7 (Available Profiles: Pepa7)
Platform: Windows 8.1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Micro-Star International) C:\MSI\Smart Utilities\SuperRAIDSvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(MSI) C:\Windows\SysWOW64\muachost.exe
(Realtek Semiconductor) C:\Program Files (x86)\MSI\NetworkGenie\NetworkGenie.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe
(Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Corporation) C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe
(Alexander Roshal) C:\Program Files (x86)\WinRAR\WinRAR.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320360 2014-08-04] (Intel Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672664 2014-06-30] (Realtek Semiconductor)
HKLM-x32\...\Run: [Imperator] => C:\Program Files (x86)\Genius\Imperator\IMhid.exe [281600 2012-03-01] ()
HKLM-x32\...\Run: [Adobe Creative Cloud] => "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
HKLM-x32\...\Run: [Live Update] => C:\Program Files (x86)\MSI\Live Update\Live Update.exe [3458728 2015-07-30] (Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-07-27] (Raptr, Inc)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-07-28] (Advanced Micro Devices, Inc.)
HKU\S-1-5-21-1765931364-2895769979-1631063868-1001\...\Run: [OscarEditor] => C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe [3340288 2012-03-20] ()
HKU\S-1-5-21-1765931364-2895769979-1631063868-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dual Smart Solution.lnk [2015-05-07]
ShortcutTarget: Dual Smart Solution.lnk -> C:\Program Files (x86)\LG Soft India Pvt Ltd\Dual Smart Solution\bin\Dual Smart Solution.exe (LG Electronics)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 213.194.204.126 85.132.148.70
Tcpip\..\Interfaces\{87D0EC6C-D6FB-4148-8303-F6792D713566}: [DhcpNameServer] 213.194.204.126 85.132.148.70
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1765931364-2895769979-1631063868-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
FireFox:
========
FF ProfilePath: C:\Users\Pepa7\AppData\Roaming\Mozilla\Firefox\Profiles\0QVy95eW.default
FF Homepage: about:newtab
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-11] ()
FF Plugin: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelogx64.dll [No File]
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-11] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1219160.dll [2015-07-23] (Adobe Systems, Inc.)
FF Plugin-x32: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelog.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin HKU\S-1-5-21-1765931364-2895769979-1631063868-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Pepa7\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-08-23] (Unity Technologies ApS)
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [245544 2015-07-27] (EasyAntiCheat Ltd)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [344288 2015-03-20] (Futuremark)
R2 GamingApp_Service; C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe [31400 2015-08-18] (Micro-Star Int'l Co., Ltd.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-08-04] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344168 2015-05-29] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [1741992 2015-07-30] (Micro-Star INT'L CO., LTD.)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2057736 2015-09-02] (Electronic Arts)
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2014-12-26] ()
R2 SuperRAIDSvc; C:\MSI\Smart Utilities\SuperRAIDSvc.exe [29648 2014-08-13] (Micro-Star International)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [18384 2014-08-07] (Intel(R) Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AcpiCtlDrv; C:\Windows\System32\drivers\AcpiCtlDrv.sys [25880 2012-07-17] (Intel Corporation)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
R3 athur; C:\Windows\system32\DRIVERS\athuw8x.sys [2919936 2013-06-02] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [102912 2015-07-15] (Advanced Micro Devices)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [44296 2015-01-20] (LogMeIn Inc.)
R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [28912 2014-06-18] (Intel Corporation)
R3 KYEGKB; C:\Windows\system32\drivers\KYEGKB.sys [25600 2011-09-05] ( )
S3 LGDDCDevice; C:\WINDOWS\SysWOW64\LGI2CDriver.sys [16384 2012-10-17] (LG Soft India) [File not signed]
S3 LGII2CDevice; C:\WINDOWS\SysWOW64\LGPII2CDriver.sys [10752 2012-11-23] (LG Soft India) [File not signed]
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [113880 2015-09-13] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [129312 2015-01-06] (Intel Corporation)
R3 NTIOLib_MSI_RAID; C:\MSI\Smart Utilities\NTIOLib_X64.sys [13808 2014-03-17] (MSI)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13536 2015-05-27] ()
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-13 09:48 - 2015-09-13 09:48 - 00012262 _____ C:\Users\Pepa7\Desktop\FRST.txt
2015-09-13 09:47 - 2015-09-13 09:47 - 00012619 _____ C:\Users\Pepa7\Desktop\addition.zip
2015-09-13 09:44 - 2015-09-13 09:48 - 00000000 ____D C:\FRST
2015-09-12 14:38 - 2015-09-12 14:38 - 00000977 _____ C:\Users\Pepa7\Desktop\Minecraft.lnk
2015-09-09 15:01 - 2015-08-26 16:46 - 03705344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-09-09 15:00 - 2015-09-03 04:18 - 02531400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2015-09-09 15:00 - 2015-09-03 04:17 - 01903848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2015-09-09 15:00 - 2015-09-02 20:48 - 02345472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-09-09 15:00 - 2015-09-02 19:09 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2015-09-09 15:00 - 2015-09-02 04:56 - 04175872 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-09-09 15:00 - 2015-09-02 04:55 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-09-09 15:00 - 2015-09-02 04:50 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-09-09 15:00 - 2015-09-02 04:17 - 00301568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-09-09 15:00 - 2015-09-02 04:13 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-09-09 15:00 - 2015-08-27 04:48 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-09-09 15:00 - 2015-08-26 20:00 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-09-09 15:00 - 2015-08-26 20:00 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-09-09 15:00 - 2015-08-26 20:00 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-09-09 15:00 - 2015-08-26 20:00 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-09-09 15:00 - 2015-08-26 16:29 - 02240512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-09-09 15:00 - 2015-08-26 16:27 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-09-09 15:00 - 2015-08-26 16:27 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-09-09 15:00 - 2015-08-26 16:26 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-09-09 15:00 - 2015-08-26 16:26 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-09-09 15:00 - 2015-08-26 16:26 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-09-09 15:00 - 2015-08-22 20:19 - 25188352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-09-09 15:00 - 2015-08-22 19:35 - 02886144 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-09-09 15:00 - 2015-08-22 19:34 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-09-09 15:00 - 2015-08-22 19:22 - 19856384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-09-09 15:00 - 2015-08-22 19:21 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-09-09 15:00 - 2015-08-22 19:20 - 05923840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-09-09 15:00 - 2015-08-22 18:55 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-09-09 15:00 - 2015-08-22 18:50 - 02279424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-09-09 15:00 - 2015-08-22 18:50 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-09-09 15:00 - 2015-08-22 18:45 - 00665600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-09-09 15:00 - 2015-08-22 18:44 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-09-09 15:00 - 2015-08-22 18:41 - 14451712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-09-09 15:00 - 2015-08-22 18:41 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-09-09 15:00 - 2015-08-22 18:41 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-09-09 15:00 - 2015-08-22 18:41 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-09-09 15:00 - 2015-08-22 18:39 - 02126336 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-09-09 15:00 - 2015-08-22 18:28 - 04520448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-09-09 15:00 - 2015-08-22 18:26 - 02427392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-09-09 15:00 - 2015-08-22 18:23 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-09-09 15:00 - 2015-08-22 18:22 - 12857344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-09-09 15:00 - 2015-08-22 18:20 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2015-09-09 15:00 - 2015-08-22 18:18 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-09-09 15:00 - 2015-08-22 18:18 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-09-09 15:00 - 2015-08-22 18:18 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-09-09 15:00 - 2015-08-22 18:14 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-09-09 15:00 - 2015-08-22 18:01 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-09-09 15:00 - 2015-08-22 18:00 - 01951232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-09-09 15:00 - 2015-08-22 17:56 - 01310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-09-09 15:00 - 2015-08-22 17:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-09-09 15:00 - 2015-08-03 23:15 - 00074928 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2015-09-09 15:00 - 2015-08-03 23:15 - 00065600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidapi.dll
2015-09-09 15:00 - 2015-08-01 16:22 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll
2015-09-09 15:00 - 2015-08-01 05:47 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schtasks.exe
2015-09-09 15:00 - 2015-08-01 05:45 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schtasks.exe
2015-09-09 15:00 - 2015-08-01 05:38 - 01265152 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-09-09 15:00 - 2015-08-01 05:37 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe
2015-09-09 15:00 - 2015-08-01 05:37 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskeng.exe
2015-09-09 15:00 - 2015-07-30 19:18 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkEd.dll
2015-09-09 15:00 - 2015-07-30 18:22 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InkEd.dll
2015-09-09 15:00 - 2015-07-22 16:34 - 02775552 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-09-09 15:00 - 2015-07-22 16:33 - 01728000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-09-09 15:00 - 2015-07-22 16:25 - 02461184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-09-09 15:00 - 2015-07-22 16:25 - 01546752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2015-09-09 15:00 - 2015-07-22 16:19 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll
2015-09-09 15:00 - 2015-07-22 15:52 - 01633792 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-09-09 15:00 - 2015-07-18 20:31 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2015-09-09 15:00 - 2015-07-18 20:29 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2015-09-09 15:00 - 2015-07-18 20:29 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2015-09-09 15:00 - 2015-07-18 20:27 - 00520192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2015-09-09 15:00 - 2015-07-17 16:15 - 00951296 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2015-09-09 15:00 - 2015-07-17 16:10 - 00749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2015-09-09 15:00 - 2015-07-13 21:10 - 00411455 _____ C:\WINDOWS\system32\ApnDatabase.xml
2015-09-09 15:00 - 2015-07-09 18:14 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-09-09 15:00 - 2015-07-03 23:51 - 01380056 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-09-09 15:00 - 2015-07-03 16:00 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-09-09 15:00 - 2015-06-27 13:47 - 00118616 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2015-09-09 15:00 - 2015-06-19 19:07 - 02819072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2015-09-09 14:55 - 2015-07-14 05:27 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzsync.exe
2015-09-08 20:10 - 2015-09-08 20:10 - 00584288 _____ (Oracle Corporation) C:\Users\Pepa7\Downloads\jre-8u60-windows-i586-iftw(1).exe
2015-09-08 20:05 - 2015-09-08 20:05 - 00584288 _____ (Oracle Corporation) C:\Users\Pepa7\Downloads\jxpiinstall(3).exe
2015-09-08 19:11 - 2015-09-08 19:11 - 00584288 _____ (Oracle Corporation) C:\Users\Pepa7\Downloads\jxpiinstall(2).exe
2015-09-07 20:36 - 2015-09-07 20:36 - 00000016 _____ C:\ProgramData\mntemp
2015-09-07 20:14 - 2015-09-07 20:14 - 00001048 _____ C:\Users\Public\Desktop\DaeMU Season 6.lnk
2015-09-07 20:14 - 2015-09-07 20:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DaeMU Season 6
2015-09-07 20:11 - 2015-09-07 20:37 - 00000000 ____D C:\Program Files (x86)\DaeMU Season 6
2015-09-07 20:01 - 2015-09-07 20:10 - 642231048 _____ (DaemonicMU ) C:\Users\Pepa7\Downloads\daemu_s6_1_00_full.exe
2015-08-29 00:44 - 2015-09-08 20:12 - 00002548 _____ C:\WINDOWS\PFRO.log
2015-08-29 00:42 - 2015-08-29 00:42 - 56501344 _____ (Oracle Corporation) C:\Users\Pepa7\Downloads\jre-8u60-windows-x64.exe
2015-08-29 00:39 - 2015-08-29 00:39 - 00584288 _____ (Oracle Corporation) C:\Users\Pepa7\Downloads\jxpiinstall(1).exe
2015-08-29 00:33 - 2015-08-29 00:42 - 00000000 ____D C:\Users\Pepa7\.oracle_jre_usage
2015-08-29 00:33 - 2015-08-29 00:33 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Sun
2015-08-29 00:32 - 2015-08-29 00:32 - 00584288 _____ (Oracle Corporation) C:\Users\Pepa7\Downloads\jre-8u60-windows-i586-iftw.exe
2015-08-29 00:27 - 2015-08-29 00:27 - 00584288 _____ (Oracle Corporation) C:\Users\Pepa7\Downloads\jxpiinstall.exe
2015-08-28 00:48 - 2015-08-29 00:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-08-24 21:48 - 2015-08-24 21:48 - 00001169 _____ C:\Users\Public\Desktop\MSI Gaming APP.lnk
2015-08-24 21:35 - 2015-08-24 21:35 - 13477273 _____ C:\Users\Pepa7\Downloads\gaming_app_5(1).zip
2015-08-24 21:32 - 2015-08-24 21:32 - 00003002 _____ C:\WINDOWS\System32\Tasks\MSISW_Host
2015-08-24 21:32 - 2015-08-18 09:51 - 01692840 _____ (MSI) C:\WINDOWS\SysWOW64\muachost.exe
2015-08-24 21:31 - 2015-08-24 21:32 - 13477273 _____ C:\Users\Pepa7\Downloads\gaming_app_5.zip
2015-08-23 16:53 - 2015-08-23 16:53 - 00000000 ____D C:\Users\Pepa7\AppData\Local\ESN
2015-08-22 02:53 - 2015-08-25 22:33 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\.technic
2015-08-19 17:26 - 2015-08-19 17:26 - 00001864 _____ C:\Users\Pepa7\Desktop\Mafia II.lnk
2015-08-19 15:39 - 2015-08-19 15:41 - 104117057 _____ C:\Users\Pepa7\Downloads\Joes Adventures Free Ride(1).zip
2015-08-19 15:39 - 2015-08-19 15:39 - 09623899 _____ C:\Users\Pepa7\Downloads\DLC-Folder-Patch(1).zip
2015-08-19 15:07 - 2015-08-19 15:07 - 00242289 _____ C:\Users\Pepa7\Downloads\Better-Crosshairs.zip
2015-08-19 15:06 - 2015-08-19 15:06 - 00383198 _____ C:\Users\Pepa7\Downloads\First-Person-Shooting.zip
2015-08-19 01:19 - 2015-08-19 01:19 - 00000000 ____D C:\Users\Pepa7\AppData\Local\Macromedia
2015-08-19 01:07 - 2015-08-29 00:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-08-19 01:07 - 2015-08-19 01:19 - 00000000 ____D C:\Users\Pepa7\AppData\Local\Mozilla
2015-08-19 01:07 - 2015-08-19 01:07 - 00001175 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-08-19 01:07 - 2015-08-19 01:07 - 00001163 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-08-19 01:04 - 2015-08-19 01:04 - 41778720 _____ C:\Users\Pepa7\Downloads\Firefox Setup 40.0.2.exe
2015-08-18 19:29 - 2015-08-18 19:29 - 09623899 _____ C:\Users\Pepa7\Downloads\DLC-Folder-Patch (1).zip
2015-08-18 19:14 - 2015-08-18 19:14 - 00131191 _____ C:\Users\Pepa7\Downloads\steambackup.exe
2015-08-18 18:11 - 2015-08-23 23:13 - 00055419 _____ C:\WINDOWS\DirectX.log
2015-08-18 17:50 - 2015-09-13 09:30 - 00003016 _____ C:\WINDOWS\setupact.log
2015-08-18 17:50 - 2015-08-18 17:50 - 00000000 _____ C:\WINDOWS\setuperr.log
2015-08-18 16:34 - 2015-08-18 16:34 - 09623899 _____ C:\Users\Pepa7\Downloads\DLC-Folder-Patch.zip
2015-08-18 16:33 - 2015-08-18 16:38 - 104117057 _____ C:\Users\Pepa7\Downloads\Joes Adventures Free Ride.zip
2015-08-18 15:35 - 2015-08-18 15:35 - 00356298 _____ C:\Users\Pepa7\Downloads\mafia_II_crosshair_mod.rar
2015-08-18 14:23 - 2015-08-18 14:24 - 06822346 _____ C:\Users\Pepa7\Downloads\nocd.update_5.rar
2015-08-18 13:52 - 2015-08-18 13:52 - 01293704 _____ (Mojang) C:\Users\Pepa7\Downloads\Minecraft.exe
2015-08-17 19:24 - 2015-08-17 19:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler
2015-08-17 19:24 - 2015-08-17 19:24 - 00000000 ____D C:\Program Files\Defraggler
2015-08-17 19:22 - 2015-09-13 09:04 - 01310688 _____ C:\WINDOWS\WindowsUpdate.log
2015-08-17 19:22 - 2015-08-17 19:22 - 04532776 _____ (Piriform Ltd) C:\Users\Pepa7\Downloads\dfsetup219.exe
2015-08-17 19:13 - 2015-08-17 19:13 - 06609608 _____ (Piriform Ltd) C:\Users\Pepa7\Downloads\ccsetup508 (1).exe
2015-08-17 19:10 - 2015-08-17 19:10 - 00781312 _____ C:\Users\Pepa7\Downloads\delfix_1.010 (1).exe
2015-08-17 16:03 - 2015-09-13 09:45 - 02190848 _____ (Farbar) C:\Users\Pepa7\Desktop\FRST64.exe
2015-08-16 12:22 - 2015-08-17 15:58 - 00000000 ____D C:\Program Files\trend micro
2015-08-15 19:13 - 2015-08-15 19:13 - 00000000 ____D C:\Users\Pepa7\AppData\Local\2K Games
2015-08-15 18:58 - 2015-08-15 18:58 - 00288630 _____ C:\Users\Pepa7\Downloads\fulldamage.rar
2015-08-15 18:55 - 2015-08-15 18:55 - 04042064 _____ C:\Users\Pepa7\Downloads\volnajizda_v2.rar
2015-08-15 18:54 - 2015-08-15 18:54 - 04041856 _____ C:\Users\Pepa7\Downloads\freeride_v2.1 (1).rar
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-13 09:48 - 2015-05-08 23:05 - 00000000 ____D C:\Users\Pepa7\Desktop\PC testy
2015-09-13 09:38 - 2015-05-25 16:26 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1765931364-2895769979-1631063868-1001
2015-09-13 09:32 - 2015-08-12 22:06 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Raptr
2015-09-13 09:32 - 2014-12-25 00:39 - 00000000 ___DO C:\Users\Pepa7\OneDrive
2015-09-13 09:30 - 2014-12-26 00:32 - 00007598 _____ C:\Users\Pepa7\AppData\Local\Resmon.ResmonCfg
2015-09-13 09:30 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-09-13 09:24 - 2015-05-23 23:32 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-09-13 09:13 - 2014-12-24 23:47 - 00000000 ____D C:\Users\Pepa7
2015-09-13 09:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-09-13 00:54 - 2015-03-29 11:11 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Skype
2015-09-12 16:43 - 2014-12-27 12:29 - 00000000 ____D C:\Users\Pepa7\Desktop\Složky
2015-09-12 14:59 - 2014-12-25 01:02 - 00000000 ____D C:\Program Files (x86)\Steam
2015-09-12 14:50 - 2014-12-25 16:12 - 00000000 ____D C:\ProgramData\Origin
2015-09-12 14:24 - 2015-03-21 18:39 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\.minecraft
2015-09-12 12:12 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-09-11 18:42 - 2015-05-24 18:47 - 00000000 ____D C:\Users\Pepa7\AppData\Local\CrashDumps
2015-09-11 16:51 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2015-09-09 20:20 - 2013-08-22 16:44 - 00486120 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-09-09 20:19 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-09-09 20:17 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-09-09 17:29 - 2013-08-22 17:20 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-09-09 17:28 - 2014-03-18 17:10 - 00000000 ____D C:\Program Files\Windows Journal
2015-09-08 20:06 - 2014-12-25 01:08 - 00000000 ____D C:\ProgramData\Oracle
2015-09-08 19:32 - 2014-03-18 17:33 - 00005636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-09-08 19:32 - 2014-03-18 16:54 - 00751950 _____ C:\WINDOWS\system32\perfh005.dat
2015-09-08 19:32 - 2014-03-18 16:54 - 00155954 _____ C:\WINDOWS\system32\perfc005.dat
2015-09-06 14:01 - 2014-12-25 12:10 - 00000000 ____D C:\MSI
2015-09-05 23:28 - 2015-03-03 22:53 - 00000000 ____D C:\Program Files (x86)\SpeedFan
2015-09-05 22:09 - 2014-12-25 11:29 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner
2015-09-02 20:26 - 2014-12-25 16:12 - 00000000 ____D C:\Program Files (x86)\Origin
2015-08-25 22:31 - 2014-12-27 22:38 - 04730416 _____ () C:\Users\Pepa7\Desktop\TechnicLauncher.exe
2015-08-25 21:04 - 2014-12-25 22:15 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.xtr
2015-08-25 21:04 - 2014-12-25 21:22 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe
2015-08-25 21:04 - 2014-12-25 21:22 - 00280904 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0
2015-08-24 21:48 - 2014-12-25 11:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2015-08-23 23:32 - 2015-05-30 11:46 - 00001334 _____ C:\Users\Public\Desktop\Need for Speed™ Rivals(64 bit).lnk
2015-08-19 01:18 - 2014-12-25 00:21 - 00000000 ____D C:\Users\Pepa7\AppData\Local\Google
2015-08-19 01:18 - 2014-12-25 00:21 - 00000000 ____D C:\Program Files (x86)\Google
2015-08-19 01:07 - 2015-08-10 19:32 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Mozilla
2015-08-18 01:20 - 2014-12-24 23:48 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Adobe
2015-08-18 01:13 - 2015-02-25 14:03 - 00000000 ____D C:\Users\Pepa7\AppData\Local\Sony
2015-08-17 19:20 - 2015-01-07 23:12 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\DAEMON Tools Lite
2015-08-17 19:20 - 2014-12-24 23:45 - 00000000 ____D C:\WINDOWS\Minidump
2015-08-17 19:20 - 2014-12-24 23:43 - 00000000 ___DC C:\WINDOWS\Panther
2015-08-17 19:13 - 2015-08-06 11:01 - 00000000 ____D C:\Program Files\CCleaner
2015-08-17 19:10 - 2015-05-24 12:54 - 00000777 _____ C:\DelFix.txt
2015-08-16 22:40 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\System
==================== Files in the root of some directories =======
2015-03-21 18:39 - 2015-03-21 18:39 - 0001068 _____ () C:\Users\Pepa7\AppData\Roaming\.minecraft – zástupce (2).lnk
2015-03-21 18:39 - 2015-03-21 18:39 - 0001068 _____ () C:\Users\Pepa7\AppData\Roaming\.minecraft – zástupce.lnk
2015-03-09 20:08 - 2015-03-10 16:43 - 0000098 _____ () C:\Users\Pepa7\AppData\Roaming\LauncherSettings_live.cfg
2015-03-09 22:50 - 2015-03-09 22:56 - 0000040 _____ () C:\Users\Pepa7\AppData\Roaming\TheHunterSettings_live.cfg
2014-12-26 00:32 - 2015-09-13 09:30 - 0007598 _____ () C:\Users\Pepa7\AppData\Local\Resmon.ResmonCfg
2014-12-27 17:46 - 2014-12-27 17:46 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-09-07 20:36 - 2015-09-07 20:36 - 0000016 _____ () C:\ProgramData\mntemp
Some files in TEMP:
====================
C:\Users\Pepa7\AppData\Local\Temp\AdobePIM.dll
C:\Users\Pepa7\AppData\Local\Temp\cct.dll
C:\Users\Pepa7\AppData\Local\Temp\Creative Cloud Uninstaller.exe
C:\Users\Pepa7\AppData\Local\Temp\JavaIC.dll
C:\Users\Pepa7\AppData\Local\Temp\msscct32.dll
C:\Users\Pepa7\AppData\Local\Temp\sfamcc00001.dll
C:\Users\Pepa7\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Pepa7\AppData\Local\Temp\YSearchUtil.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-09-08 12:12
==================== End of FRST.txt ============================